Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-81733 |
|
Cross-Site Request Forgery (CSRF) in csrf (CVE-2026-81733)
vulnerability in csrf (CVE-2026-81733). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-80210 |
|
Cross-Site Request Forgery (CSRF) in csrf (CVE-2026-80210)
vulnerability in csrf (CVE-2026-80210). Data can be tampered with by attackers.
|
| CVE-2026-57944 |
|
Cross-Site Request Forgery (CSRF) in CVE-2026-57944 (CVE-2026-57944)
vulnerability in CVE-2026-57944 (CVE-2026-57944). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-58001 |
|
Cross-Site Request Forgery (CSRF) in CVE-2026-58001 (CVE-2026-58001)
vulnerability in CVE-2026-58001 (CVE-2026-58001). Data can be tampered with by attackers.
|
| CVE-2026-58003 |
|
Cross-Site Request Forgery (CSRF) in CVE-2026-58003 (CVE-2026-58003)
vulnerability in CVE-2026-58003 (CVE-2026-58003). Confidential information can be exposed externally.
|
| CVE-2026-67358 |
|
Cross-Site Request Forgery (CSRF) in c (CVE-2026-67358)
vulnerability in c (CVE-2026-67358). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-77391 |
|
Cross-Site Request Forgery (CSRF) in CVE-2026-77391 (CVE-2026-77391)
vulnerability in CVE-2026-77391 (CVE-2026-77391). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-71123 |
|
Privilege Escalation in c (CVE-2026-71123)
vulnerability in c (CVE-2026-71123). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-55593 |
|
Cross-Site Request Forgery (CSRF) in froxlor/froxlor (CVE-2026-55593)
vulnerability in froxlor/froxlor (CVE-2026-55593). Data can be tampered with by attackers. Exploitable via ``allowed_from``. Mitigation: upgrade to `2.3.8` or later.
|
| CVE-2026-67921 |
|
Cross-Site Request Forgery (CSRF) in csrf (CVE-2026-67921)
vulnerability in csrf (CVE-2026-67921). Confidential information can be exposed externally.
|
| CVE-2026-45129 |
|
Cross-Site Request Forgery (CSRF) in CVE-2026-45129 (CVE-2026-45129)
vulnerability in CVE-2026-45129 (CVE-2026-45129). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-45128 |
|
Cross-Site Request Forgery (CSRF) in CVE-2026-45128 (CVE-2026-45128)
vulnerability in CVE-2026-45128 (CVE-2026-45128). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-45127 |
|
Cross-Site Request Forgery (CSRF) in CVE-2026-45127 (CVE-2026-45127)
vulnerability in CVE-2026-45127 (CVE-2026-45127). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-45126 |
|
Cross-Site Request Forgery (CSRF) in csrf (CVE-2026-45126)
vulnerability in csrf (CVE-2026-45126). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-45119 |
|
Cross-Site Request Forgery (CSRF) in CVE-2026-45119 (CVE-2026-45119)
vulnerability in CVE-2026-45119 (CVE-2026-45119). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-73847 |
|
Cross-Site Request Forgery (CSRF) in csrf (CVE-2026-73847)
vulnerability in csrf (CVE-2026-73847). Confidential information can be exposed externally.
|
| CVE-2026-19786 |
|
Cross-Site Request Forgery (CSRF) in CVE-2026-19786 (CVE-2026-19786)
vulnerability in CVE-2026-19786 (CVE-2026-19786). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-73481 |
|
Cross-Site Request Forgery (CSRF) in csrf (CVE-2026-73481)
vulnerability in csrf (CVE-2026-73481). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-73482 |
|
Cross-Site Request Forgery (CSRF) in csrf (CVE-2026-73482)
vulnerability in csrf (CVE-2026-73482). Data can be tampered with by attackers.
|
| CVE-2026-67990 |
|
Cross-Site Request Forgery (CSRF) in rails (CVE-2026-67990)
vulnerability in rails (CVE-2026-67990). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-62318 |
|
Cross-Site Request Forgery (CSRF) in CVE-2025-62318 (CVE-2025-62318)
vulnerability in CVE-2025-62318 (CVE-2025-62318). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-73222 |
|
Claude Code Templates is a CLI tool for configuring and monitoring Claude Code. Prior to 1.29.4, the Claude Code Studio server launched by the --studio option in cli-tool/src/sandbox-server.js binds t...
Claude Code Templates is a CLI tool for configuring and monitoring Claude Code. Prior to 1.29.4, the Claude Code Studio server launched by the --studio option in cli-tool/src/sandbox-server.js binds to all interfaces on port 3444, permits cross-origin requests, and requires no authentication. The PO...
|
| CVE-2026-19418 |
|
Vulnerability in CVE-2026-19418 (CVE-2026-19418)
vulnerability in CVE-2026-19418 (CVE-2026-19418). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-71273 |
|
Cross-Site Request Forgery (CSRF) in c (CVE-2026-71273)
vulnerability in c (CVE-2026-71273). Data can be tampered with by attackers. Exploitable via ``web_admin_password_enabled``.
|
| CVE-2026-7444 |
|
The Search Analytics for WP plugin for WordPress is vulnerable to Cross-Site Request Forgery in...
The Search Analytics for WP plugin for WordPress is vulnerable to Cross-Site Request Forgery in...
|
| CVE-2026-70376 |
|
Cross-Site Request Forgery (CSRF) in csrf (CVE-2026-70376)
vulnerability in csrf (CVE-2026-70376). Successful exploitation can lead to full system takeover. Exploitable via `Referer header`.
|
| CVE-2026-69093 |
|
Cross-Site Request Forgery (CSRF) in CVE-2026-69093 (CVE-2026-69093)
vulnerability in CVE-2026-69093 (CVE-2026-69093). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-67651 |
|
Cross-Site Request Forgery (CSRF) in csrf (CVE-2025-67651)
vulnerability in csrf (CVE-2025-67651). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-66416 |
|
Cross-Site Request Forgery (CSRF) in laravel (CVE-2026-66416)
vulnerability in laravel (CVE-2026-66416). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14239 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-14239)
cross-site scripting in wordpress (CVE-2026-14239). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-62563 |
|
Vulnerability in c (CVE-2026-62563)
vulnerability in c (CVE-2026-62563). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-62487 |
|
Cross-Site Request Forgery (CSRF) in c (CVE-2026-62487)
vulnerability in c (CVE-2026-62487). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-62443 |
|
Cross-Site Request Forgery (CSRF) in c (CVE-2026-62443)
vulnerability in c (CVE-2026-62443). Data can be tampered with by attackers.
|
| CVE-2026-61253 |
|
Cross-Site Request Forgery (CSRF) in c (CVE-2026-61253)
vulnerability in c (CVE-2026-61253). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-61217 |
|
Vulnerability in c (CVE-2026-61217)
vulnerability in c (CVE-2026-61217). Confidential information can be exposed externally.
|
| CVE-2026-61204 |
|
Privilege Escalation in c (CVE-2026-61204)
vulnerability in c (CVE-2026-61204). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61132 |
|
Cross-Site Request Forgery (CSRF) in c (CVE-2026-61132)
vulnerability in c (CVE-2026-61132). Confidential information can be exposed externally.
|
| CVE-2026-61101 |
|
Vulnerability in c (CVE-2026-61101)
vulnerability in c (CVE-2026-61101). Confidential information can be exposed externally.
|
| CVE-2026-61097 |
|
Vulnerability in c (CVE-2026-61097)
vulnerability in c (CVE-2026-61097). Confidential information can be exposed externally.
|
| CVE-2026-61082 |
|
Information Disclosure in c (CVE-2026-61082)
vulnerability in c (CVE-2026-61082). Confidential information can be exposed externally.
|
| CVE-2026-60957 |
|
Privilege Escalation in c (CVE-2026-60957)
vulnerability in c (CVE-2026-60957). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-60962 |
|
Vulnerability in c (CVE-2026-60962)
vulnerability in c (CVE-2026-60962). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-60911 |
|
Vulnerability in c (CVE-2026-60911)
vulnerability in c (CVE-2026-60911). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-60886 |
|
Information Disclosure in c (CVE-2026-60886)
vulnerability in c (CVE-2026-60886). Confidential information can be exposed externally.
|
| CVE-2026-60842 |
|
Vulnerability in c (CVE-2026-60842)
vulnerability in c (CVE-2026-60842). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-60685 |
|
Vulnerability in c (CVE-2026-60685)
vulnerability in c (CVE-2026-60685). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-60664 |
|
Cross-Site Scripting (XSS) in c (CVE-2026-60664)
cross-site scripting in c (CVE-2026-60664). Successful exploitation can lead to full system takeover.
|
| CVE-2026-60658 |
|
Cross-Site Request Forgery (CSRF) in c (CVE-2026-60658)
vulnerability in c (CVE-2026-60658). Successful exploitation can lead to full system takeover.
|
| CVE-2026-60643 |
|
Cross-Site Request Forgery (CSRF) in c (CVE-2026-60643)
vulnerability in c (CVE-2026-60643). Successful exploitation can lead to full system takeover.
|
| CVE-2026-60646 |
|
Cross-Site Scripting (XSS) in c (CVE-2026-60646)
cross-site scripting in c (CVE-2026-60646). Successful exploitation can lead to full system takeover.
|