Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

Filtering: Group: cms Tag: cwe-918 Clear
ID Title
CVE-2026-5096 SSRF (Server-Side Request Forgery) in wordpress (CVE-2026-5096)
SSRF in wordpress (CVE-2026-5096). Risk of unauthorized operations or information disclosure.
CVE-2026-78003 SSRF (Server-Side Request Forgery) in wordpress (CVE-2026-78003)
SSRF in wordpress (CVE-2026-78003). Successful exploitation can lead to full system takeover.
CVE-2026-13176 SSRF (Server-Side Request Forgery) in wordpress (CVE-2026-13176)
SSRF in wordpress (CVE-2026-13176). Risk of unauthorized operations or information disclosure.
CVE-2026-17565 SSRF (Server-Side Request Forgery) in wordpress (CVE-2026-17565)
SSRF in wordpress (CVE-2026-17565). Risk of unauthorized operations or information disclosure.
CVE-2026-13700 SSRF (Server-Side Request Forgery) in wordpress (CVE-2026-13700)
SSRF in wordpress (CVE-2026-13700). Confidential information can be exposed externally.
CVE-2026-17123 SSRF (Server-Side Request Forgery) in wordpress (CVE-2026-17123)
SSRF in wordpress (CVE-2026-17123). Successful exploitation can lead to full system takeover.
CVE-2026-19050 SSRF (Server-Side Request Forgery) in wordpress (CVE-2026-19050)
SSRF in wordpress (CVE-2026-19050). Risk of unauthorized operations or information disclosure.
CVE-2026-16294 SSRF (Server-Side Request Forgery) in wordpress (CVE-2026-16294)
SSRF in wordpress (CVE-2026-16294). Confidential information can be exposed externally.
CVE-2026-14860 SSRF (Server-Side Request Forgery) in wordpress (CVE-2026-14860)
SSRF in wordpress (CVE-2026-14860). Risk of unauthorized operations or information disclosure.
CVE-2026-12971 SSRF (Server-Side Request Forgery) in wordpress (CVE-2026-12971)
SSRF in wordpress (CVE-2026-12971). Risk of unauthorized operations or information disclosure.
CVE-2026-16268 SSRF (Server-Side Request Forgery) in wordpress (CVE-2026-16268)
SSRF in wordpress (CVE-2026-16268). Data can be tampered with by attackers.
CVE-2026-16536 SSRF (Server-Side Request Forgery) in wordpress (CVE-2026-16536)
SSRF in wordpress (CVE-2026-16536). Risk of unauthorized operations or information disclosure.
CVE-2026-14939 SSRF (Server-Side Request Forgery) in wordpress (CVE-2026-14939)
SSRF in wordpress (CVE-2026-14939). Confidential information can be exposed externally.
CVE-2026-10526 SSRF (Server-Side Request Forgery) in wordpress (CVE-2026-10526)
SSRF in wordpress (CVE-2026-10526). Risk of unauthorized operations or information disclosure.
CVE-2026-13604 SSRF (Server-Side Request Forgery) in wordpress (CVE-2026-13604)
SSRF in wordpress (CVE-2026-13604). Risk of unauthorized operations or information disclosure.
CVE-2026-6089 SSRF (Server-Side Request Forgery) in wordpress (CVE-2026-6089)
SSRF in wordpress (CVE-2026-6089). Confidential information can be exposed externally.
CVE-2026-4912 SSRF (Server-Side Request Forgery) in wordpress (CVE-2026-4912)
SSRF in wordpress (CVE-2026-4912). Risk of unauthorized operations or information disclosure.
CVE-2026-65442 Unauthenticated Server Side Request Forgery (SSRF) in FormCraft <= 3.9.15 versions.
Unauthenticated Server Side Request Forgery (SSRF) in FormCraft <= 3.9.15 versions.
CVE-2026-61953 Unauthenticated Server Side Request Forgery (SSRF) in Simple Link Directory Pro <= 15.0.6 versions.
Unauthenticated Server Side Request Forgery (SSRF) in Simple Link Directory Pro <= 15.0.6 versions.
CVE-2025-15662 SSRF (Server-Side Request Forgery) in wordpress (CVE-2025-15662)
SSRF in wordpress (CVE-2025-15662). Confidential information can be exposed externally.
CVE-2026-57407 SSRF (Server-Side Request Forgery) in wordpress (CVE-2026-57407)
SSRF in wordpress (CVE-2026-57407). Risk of unauthorized operations or information disclosure.
CVE-2026-55807 SSRF (Server-Side Request Forgery) in drupal (CVE-2026-55807)
SSRF in drupal (CVE-2026-55807). Risk of unauthorized operations or information disclosure.
CVE-2026-13233 SSRF (Server-Side Request Forgery) in drupal/ai_provider_openai (CVE-2026-13233)
SSRF in drupal/ai_provider_openai (CVE-2026-13233). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.1.1, 1.2.2` or later.
CVE-2026-12123 SSRF (Server-Side Request Forgery) in wordpress (CVE-2026-12123)
SSRF in wordpress (CVE-2026-12123). Risk of unauthorized operations or information disclosure. Exploitable via ``mp4``.
CVE-2026-11397 SSRF (Server-Side Request Forgery) in wordpress (CVE-2026-11397)
SSRF in wordpress (CVE-2026-11397). Risk of unauthorized operations or information disclosure.
CVE-2026-12100 SSRF (Server-Side Request Forgery) in wordpress (CVE-2026-12100)
SSRF in wordpress (CVE-2026-12100). Risk of unauthorized operations or information disclosure.
CVE-2026-12095 SSRF (Server-Side Request Forgery) in wordpress (CVE-2026-12095)
SSRF in wordpress (CVE-2026-12095). Risk of unauthorized operations or information disclosure.
CVE-2026-11370 SSRF (Server-Side Request Forgery) in wordpress (CVE-2026-11370)
SSRF in wordpress (CVE-2026-11370). Risk of unauthorized operations or information disclosure.
CVE-2026-4328 SSRF (Server-Side Request Forgery) in wordpress (CVE-2026-4328)
SSRF in wordpress (CVE-2026-4328). Risk of unauthorized operations or information disclosure.
CVE-2026-11989 SSRF (Server-Side Request Forgery) in wordpress (CVE-2026-11989)
SSRF in wordpress (CVE-2026-11989). Risk of unauthorized operations or information disclosure.
CVE-2026-11395 SSRF (Server-Side Request Forgery) in wordpress (CVE-2026-11395)
SSRF in wordpress (CVE-2026-11395). Risk of unauthorized operations or information disclosure.
CVE-2026-46698 SSRF (Server-Side Request Forgery) in wordpress (CVE-2026-46698)
SSRF in wordpress (CVE-2026-46698). Risk of unauthorized operations or information disclosure.
CVE-2026-46697 SSRF (Server-Side Request Forgery) in wordpress (CVE-2026-46697)
SSRF in wordpress (CVE-2026-46697). Confidential information can be exposed externally.
CVE-2026-10586 SSRF (Server-Side Request Forgery) in wordpress (CVE-2026-10586)
SSRF in wordpress (CVE-2026-10586). Risk of unauthorized operations or information disclosure.
CVE-2026-5737 SSRF (Server-Side Request Forgery) in wordpress (CVE-2026-5737)
SSRF in wordpress (CVE-2026-5737). Risk of unauthorized operations or information disclosure.
CVE-2026-7798 SSRF (Server-Side Request Forgery) in wordpress (CVE-2026-7798)
SSRF in wordpress (CVE-2026-7798). Risk of unauthorized operations or information disclosure.
CVE-2026-6394 SSRF (Server-Side Request Forgery) in wordpress (CVE-2026-6394)
SSRF in wordpress (CVE-2026-6394). Risk of unauthorized operations or information disclosure.
CVE-2026-6514 SSRF (Server-Side Request Forgery) in wordpress (CVE-2026-6514)
SSRF in wordpress (CVE-2026-6514). Confidential information can be exposed externally.
CVE-2026-34647 SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-34647)
SSRF in ssrf (CVE-2026-34647). Confidential information can be exposed externally.
CVE-2026-6229 SSRF (Server-Side Request Forgery) in wordpress (CVE-2026-6229)
SSRF in wordpress (CVE-2026-6229). Risk of unauthorized operations or information disclosure.
CVE-2026-21293 SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-21293)
SSRF in ssrf (CVE-2026-21293). Risk of unauthorized operations or information disclosure.
CVE-2026-21294 SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-21294)
SSRF in ssrf (CVE-2026-21294). Risk of unauthorized operations or information disclosure.
CVE-2017-16870 SSRF (Server-Side Request Forgery) in wordpress (CVE-2017-16870)
SSRF in wordpress (CVE-2017-16870). Successful exploitation can lead to full system takeover.
CVE-2017-9066 SSRF (Server-Side Request Forgery) in wordpress (CVE-2017-9066)
SSRF in wordpress (CVE-2017-9066). Data can be tampered with by attackers.

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →