Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-69242 |
|
Vulnerability in c (CVE-2026-69242)
vulnerability in c (CVE-2026-69242). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-72861 |
|
Vulnerability in CVE-2026-72861 (CVE-2026-72861)
vulnerability in CVE-2026-72861 (CVE-2026-72861). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-72854 |
|
Vulnerability in c (CVE-2026-72854)
vulnerability in c (CVE-2026-72854). Data can be tampered with by attackers.
|
| CVE-2026-72852 |
|
Vulnerability in c (CVE-2026-72852)
vulnerability in c (CVE-2026-72852). Successful exploitation can lead to full system takeover.
|
| CVE-2026-53587 |
|
Vulnerability in c (CVE-2026-53587)
vulnerability in c (CVE-2026-53587). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-53586 |
|
Information Disclosure in c (CVE-2026-53586)
vulnerability in c (CVE-2026-53586). Confidential information can be exposed externally. Exploitable via `Authorization header`.
|
| CVE-2026-53585 |
|
Vulnerability in c (CVE-2026-53585)
vulnerability in c (CVE-2026-53585). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-53584 |
|
Path Traversal in c (CVE-2026-53584)
path traversal in c (CVE-2026-53584). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-53583 |
|
Vulnerability in c (CVE-2026-53583)
vulnerability in c (CVE-2026-53583). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-50190 |
|
Cross-Site Scripting (XSS) in CVE-2026-50190 (CVE-2026-50190)
cross-site scripting in CVE-2026-50190 (CVE-2026-50190). Risk of unauthorized operations or information disclosure. Exploitable via ``permalink``.
|
| CVE-2026-63179 |
|
Path Traversal in winter/wn-backend-module (CVE-2026-63179)
path traversal in winter/wn-backend-module (CVE-2026-63179). Confidential information can be exposed externally. Exploitable via ``BrandSetting.custom_css``. Mitigation: upgrade to `1.2.13` or later.
|
| CVE-2026-54256 |
|
Vulnerability in winter/wn-backend-module (CVE-2026-54256)
vulnerability in winter/wn-backend-module (CVE-2026-54256). Risk of unauthorized operations or information disclosure. Exploitable via ``FileUpload``. Mitigation: upgrade to `1.2.13` or later.
|
| CVE-2026-72844 |
|
Vulnerability in c (CVE-2026-72844)
vulnerability in c (CVE-2026-72844). Data can be tampered with by attackers.
|
| CVE-2026-73259 |
|
Cross-Site Scripting (XSS) in c (CVE-2026-73259)
cross-site scripting in c (CVE-2026-73259). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-73258 |
|
Vulnerability in c (CVE-2026-73258)
vulnerability in c (CVE-2026-73258). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-73257 |
|
Vulnerability in c (CVE-2026-73257)
vulnerability in c (CVE-2026-73257). Confidential information can be exposed externally.
|
| CVE-2026-73256 |
|
Vulnerability in c (CVE-2026-73256)
vulnerability in c (CVE-2026-73256). Confidential information can be exposed externally.
|
| CVE-2026-73255 |
|
Path Traversal in c (CVE-2026-73255)
path traversal in c (CVE-2026-73255). Confidential information can be exposed externally.
|
| CVE-2026-73254 |
|
Cross-Site Scripting (XSS) in c (CVE-2026-73254)
cross-site scripting in c (CVE-2026-73254). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-73253 |
|
Vulnerability in c (CVE-2026-73253)
vulnerability in c (CVE-2026-73253). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-73251 |
|
Vulnerability in c (CVE-2026-73251)
vulnerability in c (CVE-2026-73251). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-63495 |
|
Vulnerability in c (CVE-2026-63495)
vulnerability in c (CVE-2026-63495). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-63388 |
|
Vulnerability in c (CVE-2026-63388)
vulnerability in c (CVE-2026-63388). Successful exploitation can lead to full system takeover.
|
| CVE-2026-63387 |
|
Vulnerability in c (CVE-2026-63387)
vulnerability in c (CVE-2026-63387). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-63385 |
|
Vulnerability in c (CVE-2026-63385)
vulnerability in c (CVE-2026-63385). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-63384 |
|
Vulnerability in c (CVE-2026-63384)
vulnerability in c (CVE-2026-63384). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-63383 |
|
Out-of-Bounds Read in c (CVE-2026-63383)
vulnerability in c (CVE-2026-63383). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-63382 |
|
Vulnerability in c (CVE-2026-63382)
vulnerability in c (CVE-2026-63382). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-63381 |
|
Vulnerability in c (CVE-2026-63381)
vulnerability in c (CVE-2026-63381). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-63380 |
|
Use-After-Free in c (CVE-2026-63380)
vulnerability in c (CVE-2026-63380). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-63379 |
|
Vulnerability in c (CVE-2026-63379)
vulnerability in c (CVE-2026-63379). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-77022 |
|
Buffer Overflow in c (CVE-2026-77022)
vulnerability in c (CVE-2026-77022). Successful exploitation can lead to full system takeover.
|
| CVE-2026-77019 |
|
Vulnerability in sqli (CVE-2026-77019)
vulnerability in sqli (CVE-2026-77019). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-77020 |
|
Vulnerability in sqli (CVE-2026-77020)
vulnerability in sqli (CVE-2026-77020). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-77025 |
|
Vulnerability in sqli (CVE-2026-77025)
vulnerability in sqli (CVE-2026-77025). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-61704 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-61704)
SSRF in ssrf (CVE-2026-61704). Confidential information can be exposed externally.
|
| CVE-2026-55586 |
|
Buffer Overflow in c (CVE-2026-55586)
vulnerability in c (CVE-2026-55586). Data can be tampered with by attackers.
|
| CVE-2026-54616 |
|
Out-of-Bounds Read in cpp (CVE-2026-54616)
vulnerability in cpp (CVE-2026-54616). Confidential information can be exposed externally.
|
| CVE-2026-18287 |
|
Code Injection in CVE-2026-18287 (CVE-2026-18287)
code injection in CVE-2026-18287 (CVE-2026-18287). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18286 |
|
Code Injection in CVE-2026-18286 (CVE-2026-18286)
code injection in CVE-2026-18286 (CVE-2026-18286). Successful exploitation can lead to full system takeover.
|
| CVE-2026-76997 |
|
Vulnerability in sqli (CVE-2026-76997)
vulnerability in sqli (CVE-2026-76997). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76998 |
|
Vulnerability in sqli (CVE-2026-76998)
vulnerability in sqli (CVE-2026-76998). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76999 |
|
Vulnerability in CVE-2026-76999 (CVE-2026-76999)
vulnerability in CVE-2026-76999 (CVE-2026-76999). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76991 |
|
Vulnerability in sqli (CVE-2026-76991)
vulnerability in sqli (CVE-2026-76991). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76996 |
|
Vulnerability in sqli (CVE-2026-76996)
vulnerability in sqli (CVE-2026-76996). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76995 |
|
Vulnerability in CVE-2026-76995 (CVE-2026-76995)
vulnerability in CVE-2026-76995 (CVE-2026-76995). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76990 |
|
Vulnerability in sqli (CVE-2026-76990)
vulnerability in sqli (CVE-2026-76990). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-64972 |
|
Cross-Site Scripting (XSS) in CVE-2026-64972 (CVE-2026-64972)
cross-site scripting in CVE-2026-64972 (CVE-2026-64972). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76633 |
|
Vulnerability in CVE-2026-76633 (CVE-2026-76633)
vulnerability in CVE-2026-76633 (CVE-2026-76633). Confidential information can be exposed externally.
|
| CVE-2026-76635 |
|
SQL Injection in sqli (CVE-2026-76635)
SQL injection in sqli (CVE-2026-76635). Successful exploitation can lead to full system takeover.
|