Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-19084 |
|
Vulnerability in wordpress (CVE-2026-19084)
vulnerability in wordpress (CVE-2026-19084). Confidential information can be exposed externally.
|
| CVE-2026-19423 |
|
Privilege Escalation in wordpress (CVE-2026-19423)
vulnerability in wordpress (CVE-2026-19423). Successful exploitation can lead to full system takeover.
|
| CVE-2026-4246 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-4246)
cross-site scripting in wordpress (CVE-2026-4246). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76053 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-76053)
cross-site scripting in wordpress (CVE-2026-76053). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-77365 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-77365)
cross-site scripting in wordpress (CVE-2026-77365). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18983 |
|
Unrestricted File Upload in wordpress (CVE-2026-18983)
vulnerability in wordpress (CVE-2026-18983). Successful exploitation can lead to full system takeover.
|
| CVE-2026-3129 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-3129)
cross-site scripting in wordpress (CVE-2026-3129). Risk of unauthorized operations or information disclosure. Exploitable via ``width``.
|
| CVE-2026-15798 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-15798)
cross-site scripting in wordpress (CVE-2026-15798). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16654 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-16654)
cross-site scripting in wordpress (CVE-2026-16654). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16759 |
|
Vulnerability in wordpress (CVE-2026-16759)
vulnerability in wordpress (CVE-2026-16759). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18324 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-18324)
cross-site scripting in wordpress (CVE-2026-18324). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18978 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-18978)
cross-site scripting in wordpress (CVE-2026-18978). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19092 |
|
Vulnerability in wordpress (CVE-2026-19092)
vulnerability in wordpress (CVE-2026-19092). Successful exploitation can lead to full system takeover.
|
| CVE-2026-32564 |
|
Subscriber SQL Injection in ACPT (Pro) - Custom Post Types Plugin for WordPress <= 2.0.63 versions.
Subscriber SQL Injection in ACPT (Pro) - Custom Post Types Plugin for WordPress <= 2.0.63 versions.
|
| CVE-2026-32566 |
|
Vulnerability in wordpress (CVE-2026-32566)
vulnerability in wordpress (CVE-2026-32566). Successful exploitation can lead to full system takeover.
|
| CVE-2026-78139 |
|
Vulnerability in wordpress (CVE-2026-78139)
vulnerability in wordpress (CVE-2026-78139). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-78333 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-78333)
cross-site scripting in wordpress (CVE-2026-78333). Successful exploitation can lead to full system takeover.
|
| CVE-2026-77018 |
|
Unrestricted File Upload in wordpress (CVE-2026-77018)
vulnerability in wordpress (CVE-2026-77018). Successful exploitation can lead to full system takeover.
|
| CVE-2026-78137 |
|
Vulnerability in wordpress (CVE-2026-78137)
vulnerability in wordpress (CVE-2026-78137). Data can be tampered with by attackers.
|
| CVE-2026-78138 |
|
Information Disclosure in wordpress (CVE-2026-78138)
vulnerability in wordpress (CVE-2026-78138). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-78125 |
|
Information Disclosure in wordpress (CVE-2026-78125)
vulnerability in wordpress (CVE-2026-78125). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-77016 |
|
Vulnerability in wordpress (CVE-2026-77016)
vulnerability in wordpress (CVE-2026-77016). Data can be tampered with by attackers.
|
| CVE-2026-76549 |
|
Cross-Site Request Forgery (CSRF) in wordpress (CVE-2026-76549)
vulnerability in wordpress (CVE-2026-76549). Data can be tampered with by attackers.
|
| CVE-2026-77017 |
|
Information Disclosure in wordpress (CVE-2026-77017)
vulnerability in wordpress (CVE-2026-77017). Confidential information can be exposed externally.
|
| CVE-2026-13415 |
|
Privilege Escalation in wordpress (CVE-2026-13415)
vulnerability in wordpress (CVE-2026-13415). Successful exploitation can lead to full system takeover.
|
| CVE-2026-19225 |
|
Code Injection in wordpress (CVE-2026-19225)
code injection in wordpress (CVE-2026-19225). Successful exploitation can lead to full system takeover.
|
| CVE-2026-19715 |
|
Information Disclosure in wordpress (CVE-2026-19715)
vulnerability in wordpress (CVE-2026-19715). Confidential information can be exposed externally.
|
| CVE-2026-16569 |
|
Vulnerability in wordpress (CVE-2026-16569)
vulnerability in wordpress (CVE-2026-16569). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19454 |
|
Authorization Flaw in wordpress (CVE-2026-19454)
vulnerability in wordpress (CVE-2026-19454). Confidential information can be exposed externally.
|
| CVE-2026-13416 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-13416)
cross-site scripting in wordpress (CVE-2026-13416). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16568 |
|
Vulnerability in wordpress (CVE-2026-16568)
vulnerability in wordpress (CVE-2026-16568). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19223 |
|
Code Injection in wordpress (CVE-2026-19223)
code injection in wordpress (CVE-2026-19223). Successful exploitation can lead to full system takeover.
|
| CVE-2026-16567 |
|
Vulnerability in wordpress (CVE-2026-16567)
vulnerability in wordpress (CVE-2026-16567). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13414 |
|
Vulnerability in wordpress (CVE-2026-13414)
vulnerability in wordpress (CVE-2026-13414). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15990 |
|
Path Traversal in wordpress (CVE-2026-15990)
path traversal in wordpress (CVE-2026-15990). Confidential information can be exposed externally.
|
| CVE-2026-15985 |
|
Vulnerability in wordpress (CVE-2026-15985)
vulnerability in wordpress (CVE-2026-15985). Successful exploitation can lead to full system takeover.
|
| CVE-2026-5092 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-5092)
cross-site scripting in wordpress (CVE-2026-5092). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-3235 |
|
Vulnerability in wordpress (CVE-2026-3235)
vulnerability in wordpress (CVE-2026-3235). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18080 |
|
Unrestricted File Upload in wordpress (CVE-2026-18080)
vulnerability in wordpress (CVE-2026-18080). Successful exploitation can lead to full system takeover.
|
| CVE-2026-2388 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-2388)
cross-site scripting in wordpress (CVE-2026-2388). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-75977 |
|
Privilege Escalation in wordpress (CVE-2026-75977)
vulnerability in wordpress (CVE-2026-75977). Successful exploitation can lead to full system takeover.
|
| CVE-2026-6178 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-6178)
cross-site scripting in wordpress (CVE-2026-6178). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18884 |
|
SQL Injection in wordpress (CVE-2026-18884)
SQL injection in wordpress (CVE-2026-18884). Confidential information can be exposed externally.
|
| CVE-2026-18431 |
|
Vulnerability in wordpress (CVE-2026-18431)
vulnerability in wordpress (CVE-2026-18431). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18331 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-18331)
cross-site scripting in wordpress (CVE-2026-18331). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-3002 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-3002)
cross-site scripting in wordpress (CVE-2026-3002). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-78146 |
|
Information Disclosure in wordpress (CVE-2026-78146)
vulnerability in wordpress (CVE-2026-78146). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-77758 |
|
Information Disclosure in wordpress (CVE-2026-77758)
vulnerability in wordpress (CVE-2026-77758). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-77693 |
|
Vulnerability in wordpress (CVE-2026-77693)
vulnerability in wordpress (CVE-2026-77693). Data can be tampered with by attackers.
|
| CVE-2026-77789 |
|
Vulnerability in wordpress (CVE-2026-77789)
vulnerability in wordpress (CVE-2026-77789). Risk of unauthorized operations or information disclosure.
|