Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-10672 |
|
Out-of-Bounds Read in c (CVE-2026-10672)
vulnerability in c (CVE-2026-10672). Confidential information can be exposed externally.
|
| CVE-2026-9561 |
|
Vulnerability in dos (CVE-2026-9561)
vulnerability in dos (CVE-2026-9561). Data can be tampered with by attackers.
|
| CVE-2026-15416 |
|
Vulnerability in CVE-2026-15416 (CVE-2026-15416)
vulnerability in CVE-2026-15416 (CVE-2026-15416). Confidential information can be exposed externally.
|
| CVE-2026-12511 |
|
Vulnerability in wordpress (CVE-2026-12511)
vulnerability in wordpress (CVE-2026-12511). Confidential information can be exposed externally.
|
| CVE-2026-12583 |
|
Unsafe Deserialization in wordpress (CVE-2026-12583)
vulnerability in wordpress (CVE-2026-12583). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15676 |
|
Vulnerability in sqli (CVE-2026-15676)
vulnerability in sqli (CVE-2026-15676). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15675 |
|
Vulnerability in sqli (CVE-2026-15675)
vulnerability in sqli (CVE-2026-15675). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-58233 |
|
Unsafe Deserialization in deserialization (CVE-2026-58233)
vulnerability in deserialization (CVE-2026-58233). Confidential information can be exposed externally.
|
| CVE-2026-58101 |
|
Vulnerability in dos (CVE-2026-58101)
vulnerability in dos (CVE-2026-58101). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-57856 |
|
Path Traversal in path-traversal (CVE-2026-57856)
path traversal in path-traversal (CVE-2026-57856). Successful exploitation can lead to full system takeover.
|
| CVE-2026-62194 |
|
Vulnerability in privilege-escalation (CVE-2026-62194)
vulnerability in privilege-escalation (CVE-2026-62194). Successful exploitation can lead to full system takeover.
|
| CVE-2026-62185 |
|
Vulnerability in CVE-2026-62185 (CVE-2026-62185)
vulnerability in CVE-2026-62185 (CVE-2026-62185). Confidential information can be exposed externally.
|
| CVE-2026-51539 |
|
Vulnerability in dos (CVE-2026-51539)
vulnerability in dos (CVE-2026-51539). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-39042 |
|
Vulnerability in dos (CVE-2026-39042)
vulnerability in dos (CVE-2026-39042). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15680 |
|
Vulnerability in CVE-2026-15680 (CVE-2026-15680)
vulnerability in CVE-2026-15680 (CVE-2026-15680). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15597 |
|
Vulnerability in sqli (CVE-2026-15597)
vulnerability in sqli (CVE-2026-15597). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15684 |
|
Vulnerability in privilege-escalation (CVE-2026-15684)
vulnerability in privilege-escalation (CVE-2026-15684). Successful exploitation can lead to full system takeover.
|
| CVE-2026-49972 |
|
Unrestricted File Upload in laravel (CVE-2026-49972)
vulnerability in laravel (CVE-2026-49972). Successful exploitation can lead to full system takeover.
|
| CVE-2026-49970 |
|
Path Traversal in plank/laravel-mediable (CVE-2026-49970)
path traversal in plank/laravel-mediable (CVE-2026-49970). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `7.0.0` or later.
|
| CVE-2026-26396 |
|
Path Traversal in path-traversal (CVE-2026-26396)
path traversal in path-traversal (CVE-2026-26396). Confidential information can be exposed externally.
|
| CVE-2025-45869 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2025-45869)
SSRF in ssrf (CVE-2025-45869). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-61462 |
|
Vulnerability in path-traversal (CVE-2026-61462)
vulnerability in path-traversal (CVE-2026-61462). Confidential information can be exposed externally.
|
| CVE-2026-61463 |
|
Privilege Escalation in privilege-escalation (CVE-2026-61463)
vulnerability in privilege-escalation (CVE-2026-61463). Successful exploitation can lead to full system takeover.
|
| CVE-2026-59245 |
|
Privilege Escalation in apache (CVE-2026-59245)
vulnerability in apache (CVE-2026-59245). Confidential information can be exposed externally. Exploitable via ``dag_id``.
|
| CVE-2026-15584 |
|
Vulnerability in privilege-escalation (CVE-2026-15584)
vulnerability in privilege-escalation (CVE-2026-15584). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61956 |
|
Cross-Site Request Forgery (CSRF) in csrf (CVE-2026-61956)
vulnerability in csrf (CVE-2026-61956). Data can be tampered with by attackers.
|
| CVE-2026-59521 |
|
Unsafe Deserialization in deserialization (CVE-2026-59521)
vulnerability in deserialization (CVE-2026-59521). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61955 |
|
SQL Injection in sqli (CVE-2026-61955)
SQL injection in sqli (CVE-2026-61955). Confidential information can be exposed externally.
|
| CVE-2026-57815 |
|
Path Traversal in wordpress (CVE-2026-57815)
path traversal in wordpress (CVE-2026-57815). Confidential information can be exposed externally.
|
| CVE-2026-59516 |
|
Cross-Site Scripting (XSS) in CVE-2026-59516 (CVE-2026-59516)
cross-site scripting in CVE-2026-59516 (CVE-2026-59516). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-57816 |
|
Cross-Site Scripting (XSS) in CVE-2026-57816 (CVE-2026-57816)
cross-site scripting in CVE-2026-57816 (CVE-2026-57816). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-57814 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-57814)
cross-site scripting in wordpress (CVE-2026-57814). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-57810 |
|
SQL Injection in sqli (CVE-2026-57810)
SQL injection in sqli (CVE-2026-57810). Confidential information can be exposed externally.
|
| CVE-2026-57786 |
|
Cross-Site Request Forgery (CSRF) in csrf (CVE-2026-57786)
vulnerability in csrf (CVE-2026-57786). Successful exploitation can lead to full system takeover.
|
| CVE-2026-57787 |
|
SQL Injection in sqli (CVE-2026-57787)
SQL injection in sqli (CVE-2026-57787). Confidential information can be exposed externally.
|
| CVE-2026-57771 |
|
SQL Injection in sqli (CVE-2026-57771)
SQL injection in sqli (CVE-2026-57771). Confidential information can be exposed externally.
|
| CVE-2026-57772 |
|
SQL Injection in wordpress (CVE-2026-57772)
SQL injection in wordpress (CVE-2026-57772). Confidential information can be exposed externally.
|
| CVE-2026-57773 |
|
SQL Injection in sqli (CVE-2026-57773)
SQL injection in sqli (CVE-2026-57773). Confidential information can be exposed externally.
|
| CVE-2026-57768 |
|
Vulnerability in privilege-escalation (CVE-2026-57768)
vulnerability in privilege-escalation (CVE-2026-57768). Data can be tampered with by attackers.
|
| CVE-2026-57745 |
|
Cross-Site Scripting (XSS) in CVE-2026-57745 (CVE-2026-57745)
cross-site scripting in CVE-2026-57745 (CVE-2026-57745). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-57741 |
|
Cross-Site Scripting (XSS) in CVE-2026-57741 (CVE-2026-57741)
cross-site scripting in CVE-2026-57741 (CVE-2026-57741). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-57734 |
|
Cross-Site Scripting (XSS) in CVE-2026-57734 (CVE-2026-57734)
cross-site scripting in CVE-2026-57734 (CVE-2026-57734). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-57733 |
|
Cross-Site Scripting (XSS) in CVE-2026-57733 (CVE-2026-57733)
cross-site scripting in CVE-2026-57733 (CVE-2026-57733). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-57732 |
|
Cross-Site Scripting (XSS) in CVE-2026-57732 (CVE-2026-57732)
cross-site scripting in CVE-2026-57732 (CVE-2026-57732). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-57728 |
|
Cross-Site Scripting (XSS) in CVE-2026-57728 (CVE-2026-57728)
cross-site scripting in CVE-2026-57728 (CVE-2026-57728). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-57725 |
|
Cross-Site Scripting (XSS) in CVE-2026-57725 (CVE-2026-57725)
cross-site scripting in CVE-2026-57725 (CVE-2026-57725). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-57709 |
|
Path Traversal in path-traversal (CVE-2026-57709)
path traversal in path-traversal (CVE-2026-57709). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-57712 |
|
Cross-Site Scripting (XSS) in CVE-2026-57712 (CVE-2026-57712)
cross-site scripting in CVE-2026-57712 (CVE-2026-57712). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-57718 |
|
Cross-Site Scripting (XSS) in CVE-2026-57718 (CVE-2026-57718)
cross-site scripting in CVE-2026-57718 (CVE-2026-57718). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-57713 |
|
Unsafe Deserialization in deserialization (CVE-2026-57713)
vulnerability in deserialization (CVE-2026-57713). Successful exploitation can lead to full system takeover.
|