Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-73847 |
|
Cross-Site Request Forgery (CSRF) in csrf (CVE-2026-73847)
vulnerability in csrf (CVE-2026-73847). Confidential information can be exposed externally.
|
| CVE-2026-55579 |
|
Vulnerability in pheditor/pheditor (CVE-2026-55579)
vulnerability in pheditor/pheditor (CVE-2026-55579). Successful exploitation can lead to full system takeover. Exploitable via ``admin``. Mitigation: upgrade to `2.0.6` or later.
|
| CVE-2026-49352 |
|
Vulnerability in 9router (CVE-2026-49352)
vulnerability in 9router (CVE-2026-49352). Successful exploitation can lead to full system takeover. Exploitable via ``JWT_SECRET``. Mitigation: upgrade to `0.4.45` or later.
|
| CVE-2026-7839 |
|
Vulnerability in c (CVE-2026-7839)
vulnerability in c (CVE-2026-7839). Confidential information can be exposed externally.
|
| CVE-2026-46386 |
|
Unsafe Deserialization in rails (CVE-2026-46386)
vulnerability in rails (CVE-2026-46386). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50091 |
|
Vulnerability in c (CVE-2026-50091)
vulnerability in c (CVE-2026-50091). Confidential information can be exposed externally.
|
| CVE-2026-50083 |
|
Vulnerability in c (CVE-2026-50083)
vulnerability in c (CVE-2026-50083). Confidential information can be exposed externally.
|
| CVE-2026-8876 |
|
Vulnerability in securly (CVE-2026-8876)
vulnerability in securly (CVE-2026-8876). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-45039 |
|
Vulnerability in CVE-2026-45039 (CVE-2026-45039)
vulnerability in CVE-2026-45039 (CVE-2026-45039). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `1.0.0-beta.2` or later.
|
| CVE-2026-24444 |
|
Vulnerability in CVE-2026-24444 (CVE-2026-24444)
vulnerability in CVE-2026-24444 (CVE-2026-24444). Successful exploitation can lead to full system takeover.
|
| CVE-2026-7786 |
|
Vulnerability in cisa (CVE-2026-7786)
vulnerability in cisa (CVE-2026-7786). Successful exploitation can lead to full system takeover.
|
| CVE-2026-48244 |
|
Vulnerability in CVE-2026-48244 (CVE-2026-48244)
vulnerability in CVE-2026-48244 (CVE-2026-48244). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-48245 |
|
Vulnerability in CVE-2026-48245 (CVE-2026-48245)
vulnerability in CVE-2026-48245 (CVE-2026-48245). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-48242 |
|
Vulnerability in CVE-2026-48242 (CVE-2026-48242)
vulnerability in CVE-2026-48242 (CVE-2026-48242). Successful exploitation can lead to full system takeover.
|
| CVE-2026-48243 |
|
Vulnerability in CVE-2026-48243 (CVE-2026-48243)
vulnerability in CVE-2026-48243 (CVE-2026-48243). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-48241 |
|
Vulnerability in CVE-2026-48241 (CVE-2026-48241)
vulnerability in CVE-2026-48241 (CVE-2026-48241). Successful exploitation can lead to full system takeover.
|
| CVE-2026-9139 |
|
Vulnerability in CVE-2026-9139 (CVE-2026-9139)
vulnerability in CVE-2026-9139 (CVE-2026-9139). Successful exploitation can lead to full system takeover.
|
| CVE-2026-1233 |
|
The Text to Speech for WP (AI Voices by Mementor) plugin for WordPress is vulnerable to sensitive information exposure in all versions up to, and including, 1.9.8. This is due to the plugin containing...
The Text to Speech for WP (AI Voices by Mementor) plugin for WordPress is vulnerable to sensitive information exposure in all versions up to, and including, 1.9.8. This is due to the plugin containing hardcoded MySQL database credentials for the vendor's external telemetry server in the `Mementor_TT...
|
| CVE-2016-20031 |
|
Vulnerability in c (CVE-2016-20031)
vulnerability in c (CVE-2016-20031). Confidential information can be exposed externally.
|
| CVE-2017-10616 |
|
Vulnerability in c (CVE-2017-10616)
vulnerability in c (CVE-2017-10616). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-14143 |
|
Vulnerability in kaltura (CVE-2017-14143)
vulnerability in kaltura (CVE-2017-14143). Successful exploitation can lead to full system takeover.
|
| CVE-2017-5230 |
|
Vulnerability in rapid7 (CVE-2017-5230)
vulnerability in rapid7 (CVE-2017-5230). Successful exploitation can lead to full system takeover.
|