Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-58654 |
|
Unrestricted File Upload in path-traversal (CVE-2026-58654)
vulnerability in path-traversal (CVE-2026-58654). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.0.1` or later.
|
| CVE-2026-58480 |
|
Unrestricted File Upload in wordpress (CVE-2026-58480)
vulnerability in wordpress (CVE-2026-58480). Successful exploitation can lead to full system takeover.
|
| CVE-2026-41042 |
|
Vulnerability in apache (CVE-2026-41042)
vulnerability in apache (CVE-2026-41042). Confidential information can be exposed externally.
|
| CVE-2026-57256 |
|
Use-After-Free in foxit (CVE-2026-57256)
vulnerability in foxit (CVE-2026-57256). Successful exploitation can lead to full system takeover.
|
| CVE-2026-57252 |
|
Use-After-Free in foxit (CVE-2026-57252)
vulnerability in foxit (CVE-2026-57252). Successful exploitation can lead to full system takeover.
|
| CVE-2026-57250 |
|
Use-After-Free in foxit (CVE-2026-57250)
vulnerability in foxit (CVE-2026-57250). Successful exploitation can lead to full system takeover.
|
| CVE-2026-57248 |
|
Vulnerability in foxit (CVE-2026-57248)
vulnerability in foxit (CVE-2026-57248). Successful exploitation can lead to full system takeover.
|
| CVE-2026-57246 |
|
Vulnerability in foxit (CVE-2026-57246)
vulnerability in foxit (CVE-2026-57246). Successful exploitation can lead to full system takeover.
|
| CVE-2026-57244 |
|
Use-After-Free in foxit (CVE-2026-57244)
vulnerability in foxit (CVE-2026-57244). Successful exploitation can lead to full system takeover.
|
| CVE-2026-57243 |
|
Out-of-Bounds Read in foxit (CVE-2026-57243)
vulnerability in foxit (CVE-2026-57243). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-57242 |
|
Use-After-Free in foxit (CVE-2026-57242)
vulnerability in foxit (CVE-2026-57242). Successful exploitation can lead to full system takeover.
|
| CVE-2026-57241 |
|
Out-of-Bounds Read in foxit (CVE-2026-57241)
vulnerability in foxit (CVE-2026-57241). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-57240 |
|
Use-After-Free in foxit (CVE-2026-57240)
vulnerability in foxit (CVE-2026-57240). Successful exploitation can lead to full system takeover.
|
| CVE-2026-57238 |
|
Use-After-Free in foxit (CVE-2026-57238)
vulnerability in foxit (CVE-2026-57238). Successful exploitation can lead to full system takeover.
|
| CVE-2026-57237 |
|
Use-After-Free in foxit (CVE-2026-57237)
vulnerability in foxit (CVE-2026-57237). Successful exploitation can lead to full system takeover.
|
| CVE-2026-13129 |
|
Use-After-Free in foxit (CVE-2026-13129)
vulnerability in foxit (CVE-2026-13129). Successful exploitation can lead to full system takeover.
|
| CVE-2026-13128 |
|
Use-After-Free in foxit (CVE-2026-13128)
vulnerability in foxit (CVE-2026-13128). Successful exploitation can lead to full system takeover.
|
| CVE-2026-13127 |
|
Use-After-Free in foxit (CVE-2026-13127)
vulnerability in foxit (CVE-2026-13127). Successful exploitation can lead to full system takeover.
|
| CVE-2026-13126 |
|
Use-After-Free in foxit (CVE-2026-13126)
vulnerability in foxit (CVE-2026-13126). Successful exploitation can lead to full system takeover.
|
| CVE-2026-12378 |
|
Vulnerability in wordpress (CVE-2026-12378)
vulnerability in wordpress (CVE-2026-12378). Successful exploitation can lead to full system takeover.
|
| CVE-2026-9731 |
|
Cross-Site Request Forgery (CSRF) in wordpress (CVE-2026-9731)
vulnerability in wordpress (CVE-2026-9731). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-9701 |
|
Vulnerability in wordpress (CVE-2026-9701)
vulnerability in wordpress (CVE-2026-9701). Successful exploitation can lead to full system takeover. Exploitable via ``eventer_verification_code``.
|
| CVE-2026-14487 |
|
Path Traversal in wordpress (CVE-2026-14487)
path traversal in wordpress (CVE-2026-14487). Data can be tampered with by attackers.
|
| CVE-2026-56843 |
|
Vulnerability in c (CVE-2026-56843)
vulnerability in c (CVE-2026-56843). Successful exploitation can lead to full system takeover.
|
| CVE-2026-53531 |
|
Vulnerability in ratex-parser (CVE-2026-53531)
vulnerability in ratex-parser (CVE-2026-53531). Risk of unauthorized operations or information disclosure. Exploitable via ``SIGABRT``. Mitigation: upgrade to `0.1.11` or later.
|
| CVE-2026-53530 |
|
Vulnerability in ratex-parser (CVE-2026-53530)
vulnerability in ratex-parser (CVE-2026-53530). Risk of unauthorized operations or information disclosure. Exploitable via ``parse_symbol_inner``. Mitigation: upgrade to `0.1.11` or later.
|
| CVE-2026-51937 |
|
Vulnerability in CVE-2026-51937 (CVE-2026-51937)
vulnerability in CVE-2026-51937 (CVE-2026-51937). Confidential information can be exposed externally.
|
| CVE-2026-50811 |
|
Out-of-Bounds Read in c (CVE-2026-50811)
vulnerability in c (CVE-2026-50811). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-50810 |
|
Vulnerability in c (CVE-2026-50810)
vulnerability in c (CVE-2026-50810). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14739 |
|
Out-of-Bounds Write in perl (CVE-2026-14739)
out-of-bounds write in perl (CVE-2026-14739). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14740 |
|
Out-of-Bounds Read in perl (CVE-2026-14740)
vulnerability in perl (CVE-2026-14740). Confidential information can be exposed externally.
|
| CVE-2026-36163 |
|
Cross-Site Scripting (XSS) in CVE-2026-36163 (CVE-2026-36163)
cross-site scripting in CVE-2026-36163 (CVE-2026-36163). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-36162 |
|
Cross-Site Scripting (XSS) in CVE-2026-36162 (CVE-2026-36162)
cross-site scripting in CVE-2026-36162 (CVE-2026-36162). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14380 |
|
Vulnerability in perl (CVE-2026-14380)
vulnerability in perl (CVE-2026-14380). Successful exploitation can lead to full system takeover.
|
| CVE-2026-58266 |
|
Path Traversal in aqt (CVE-2026-58266)
path traversal in aqt (CVE-2026-58266). Confidential information can be exposed externally. Exploitable via ``getImageForOcclusion``. Mitigation: upgrade to `25.9.4` or later.
|
| CVE-2026-55408 |
|
Code Injection in CVE-2026-55408 (CVE-2026-55408)
code injection in CVE-2026-55408 (CVE-2026-55408). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-58469 |
|
Out-of-Bounds Read in c (CVE-2026-58469)
vulnerability in c (CVE-2026-58469). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-58470 |
|
Vulnerability in c (CVE-2026-58470)
vulnerability in c (CVE-2026-58470). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-58471 |
|
Vulnerability in c (CVE-2026-58471)
vulnerability in c (CVE-2026-58471). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-58472 |
|
Vulnerability in c (CVE-2026-58472)
vulnerability in c (CVE-2026-58472). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-55592 |
|
Cross-Site Scripting (XSS) in CVE-2026-55592 (CVE-2026-55592)
cross-site scripting in CVE-2026-55592 (CVE-2026-55592). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-53511 |
|
Code Injection in CVE-2026-53511 (CVE-2026-53511)
code injection in CVE-2026-53511 (CVE-2026-53511). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-23698 |
|
Unrestricted File Upload in apache (CVE-2026-23698)
vulnerability in apache (CVE-2026-23698). Successful exploitation can lead to full system takeover.
|
| CVE-2026-23697 |
|
Unrestricted File Upload in apache (CVE-2026-23697)
vulnerability in apache (CVE-2026-23697). Successful exploitation can lead to full system takeover.
|
| CVE-2026-56812 |
|
Vulnerability in dos (CVE-2026-56812)
vulnerability in dos (CVE-2026-56812). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-6101 |
|
Vulnerability in wordpress (CVE-2026-6101)
vulnerability in wordpress (CVE-2026-6101). Successful exploitation can lead to full system takeover.
|
| CVE-2026-10659 |
|
Vulnerability in c (CVE-2026-10659)
vulnerability in c (CVE-2026-10659). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-40187 |
|
OS Command Injection in egroupware/egroupware (CVE-2026-40187)
OS command injection in egroupware/egroupware (CVE-2026-40187). Risk of unauthorized operations or information disclosure. Exploitable via ``chgrp``. Mitigation: upgrade to `23.1.20260601` or later.
|
| CVE-2026-11610 |
|
Vulnerability in c (CVE-2026-11610)
vulnerability in c (CVE-2026-11610). Successful exploitation can lead to full system takeover.
|
| CVE-2026-12277 |
|
Vulnerability in wordpress (CVE-2026-12277)
vulnerability in wordpress (CVE-2026-12277). Data can be tampered with by attackers.
|