Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

Filtering: Group: products Clear
ID Title
CVE-2026-62418 SSRF (Server-Side Request Forgery) in apache (CVE-2026-62418)
SSRF in apache (CVE-2026-62418). Confidential information can be exposed externally.
CVE-2026-63071 Vulnerability in apache (CVE-2026-63071)
vulnerability in apache (CVE-2026-63071). Successful exploitation can lead to full system takeover.
CVE-2026-62183 Privilege Escalation in apache (CVE-2026-62183)
vulnerability in apache (CVE-2026-62183). Successful exploitation can lead to full system takeover.
CVE-2026-53421 Vulnerability in apache (CVE-2026-53421)
vulnerability in apache (CVE-2026-53421). Successful exploitation can lead to full system takeover.
CVE-2026-57311 Unrestricted File Upload in CVE-2026-57311 (CVE-2026-57311)
vulnerability in CVE-2026-57311 (CVE-2026-57311). Risk of unauthorized operations or information disclosure.
CVE-2026-16244 Vulnerability in sqli (CVE-2026-16244)
vulnerability in sqli (CVE-2026-16244). Risk of unauthorized operations or information disclosure.
CVE-2026-16229 Cross-Site Scripting (XSS) in CVE-2026-16229 (CVE-2026-16229)
cross-site scripting in CVE-2026-16229 (CVE-2026-16229). Risk of unauthorized operations or information disclosure.
CVE-2026-16228 Vulnerability in sqli (CVE-2026-16228)
vulnerability in sqli (CVE-2026-16228). Risk of unauthorized operations or information disclosure.
CVE-2026-16227 Vulnerability in sqli (CVE-2026-16227)
vulnerability in sqli (CVE-2026-16227). Risk of unauthorized operations or information disclosure.
CVE-2026-16226 Vulnerability in CVE-2026-16226 (CVE-2026-16226)
vulnerability in CVE-2026-16226 (CVE-2026-16226). Risk of unauthorized operations or information disclosure.
CVE-2026-16220 Cross-Site Scripting (XSS) in CVE-2026-16220 (CVE-2026-16220)
cross-site scripting in CVE-2026-16220 (CVE-2026-16220). Risk of unauthorized operations or information disclosure.
CVE-2026-16219 Path Traversal in path-traversal (CVE-2026-16219)
path traversal in path-traversal (CVE-2026-16219). Risk of unauthorized operations or information disclosure.
CVE-2026-15899 Use-After-Free in Google chrome (CVE-2026-15899)
vulnerability in Google chrome (CVE-2026-15899). Successful exploitation can lead to full system takeover.
CVE-2026-16205 Cross-Site Scripting (XSS) in CVE-2026-16205 (CVE-2026-16205)
cross-site scripting in CVE-2026-16205 (CVE-2026-16205). Risk of unauthorized operations or information disclosure.
CVE-2026-16203 Cross-Site Scripting (XSS) in CVE-2026-16203 (CVE-2026-16203)
cross-site scripting in CVE-2026-16203 (CVE-2026-16203). Risk of unauthorized operations or information disclosure.
CVE-2026-16202 Cross-Site Scripting (XSS) in CVE-2026-16202 (CVE-2026-16202)
cross-site scripting in CVE-2026-16202 (CVE-2026-16202). Risk of unauthorized operations or information disclosure.
CVE-2026-16156 Cross-Site Scripting (XSS) in CVE-2026-16156 (CVE-2026-16156)
cross-site scripting in CVE-2026-16156 (CVE-2026-16156). Risk of unauthorized operations or information disclosure.
CVE-2026-16154 Vulnerability in sqli (CVE-2026-16154)
vulnerability in sqli (CVE-2026-16154). Risk of unauthorized operations or information disclosure.
CVE-2026-57857 Cross-Site Scripting (XSS) in wordpress (CVE-2026-57857)
cross-site scripting in wordpress (CVE-2026-57857). Risk of unauthorized operations or information disclosure.
CVE-2026-16155 Cross-Site Scripting (XSS) in CVE-2026-16155 (CVE-2026-16155)
cross-site scripting in CVE-2026-16155 (CVE-2026-16155). Risk of unauthorized operations or information disclosure.
CVE-2026-16152 Vulnerability in sqli (CVE-2026-16152)
vulnerability in sqli (CVE-2026-16152). Risk of unauthorized operations or information disclosure.
CVE-2026-16131 Vulnerability in sqli (CVE-2026-16131)
vulnerability in sqli (CVE-2026-16131). Risk of unauthorized operations or information disclosure.
CVE-2026-59173 Vulnerability in apache (CVE-2026-59173)
vulnerability in apache (CVE-2026-59173). Risk of unauthorized operations or information disclosure.
CVE-2026-13446 Vulnerability in langflow (CVE-2026-13446)
vulnerability in langflow (CVE-2026-13446). Successful exploitation can lead to full system takeover.
CVE-2026-13445 Vulnerability in langflow (CVE-2026-13445)
vulnerability in langflow (CVE-2026-13445). Confidential information can be exposed externally.
CVE-2026-8859 Path Traversal in path-traversal (CVE-2026-8859)
path traversal in path-traversal (CVE-2026-8859). Successful exploitation can lead to full system takeover.
CVE-2026-8635 Code Injection in c (CVE-2026-8635)
code injection in c (CVE-2026-8635). Successful exploitation can lead to full system takeover.
CVE-2026-8505 Vulnerability in langflow (CVE-2026-8505)
vulnerability in langflow (CVE-2026-8505). Successful exploitation can lead to full system takeover.
CVE-2026-7755 IBM Langflow OSS 1.0.0 through 1.10.0 Langflow could allow remote code execution due to...
IBM Langflow OSS 1.0.0 through 1.10.0 Langflow could allow remote code execution due to...
CVE-2026-7872 IBM Langflow OSS 1.0.0 through 1.10.0 allows an authenticated attacker to read arbitrary files...
IBM Langflow OSS 1.0.0 through 1.10.0 allows an authenticated attacker to read arbitrary files...
CVE-2026-8056 IBM Langflow OSS 1.0.0 through 1.10.0 allows authenticated users to override component parameters...
IBM Langflow OSS 1.0.0 through 1.10.0 allows authenticated users to override component parameters...
CVE-2026-8476 Unsafe Deserialization in langflow (CVE-2026-8476)
vulnerability in langflow (CVE-2026-8476). Successful exploitation can lead to full system takeover.
CVE-2026-8481 Code Injection in c (CVE-2026-8481)
code injection in c (CVE-2026-8481). Successful exploitation can lead to full system takeover. Exploitable via `POST /api/v1/validate/code`.
CVE-2026-7667 IBM Langflow OSS 1.0.0 through 1.10.0 allows an authenticated attacker to create a malicious flow...
IBM Langflow OSS 1.0.0 through 1.10.0 allows an authenticated attacker to create a malicious flow...
CVE-2026-7754 IBM Langflow OSS 1.0.0 through 1.10.0 Langflow 1.9.0 could allow server-side request forgery ...
IBM Langflow OSS 1.0.0 through 1.10.0 Langflow 1.9.0 could allow server-side request forgery ...
CVE-2026-63030 KEV WordPress Core — WordPress Core Interpretation Conflict Vulnerability
WordPress Core contains an interpretation conflict vulnerability that could allow an attacker to perform SQL Injection and achieve Remote Code Execution. This vulnerability can be chained with CVE-2026-60137.
CVE-2026-48373 Vulnerability in adobe (CVE-2026-48373)
vulnerability in adobe (CVE-2026-48373). Successful exploitation can lead to full system takeover.
CVE-2026-36669 Unrestricted File Upload in CVE-2026-36669 (CVE-2026-36669)
vulnerability in CVE-2026-36669 (CVE-2026-36669). Successful exploitation can lead to full system takeover.
CVE-2026-13448 Vulnerability in langflow (CVE-2026-13448)
vulnerability in langflow (CVE-2026-13448). Successful exploitation can lead to full system takeover.
CVE-2026-13473 Vulnerability in ibm (CVE-2026-13473)
vulnerability in ibm (CVE-2026-13473). Successful exploitation can lead to full system takeover.
CVE-2026-14499 OS Command Injection in langflow (CVE-2026-14499)
OS command injection in langflow (CVE-2026-14499). Successful exploitation can lead to full system takeover.
CVE-2026-9103 Vulnerability in langflow (CVE-2026-9103)
vulnerability in langflow (CVE-2026-9103). Successful exploitation can lead to full system takeover.
CVE-2026-9135 Code Injection in langflow (CVE-2026-9135)
code injection in langflow (CVE-2026-9135). Successful exploitation can lead to full system takeover.
CVE-2026-9202 Vulnerability in langflow (CVE-2026-9202)
vulnerability in langflow (CVE-2026-9202). Successful exploitation can lead to full system takeover.
CVE-2026-9198 KEV [KEV] Code Injection in Ibm langflow (CVE-2026-9198)
code injection in Ibm langflow (CVE-2026-9198). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
CVE-2026-63093 Vulnerability in anysphere (CVE-2026-63093)
vulnerability in anysphere (CVE-2026-63093). Successful exploitation can lead to full system takeover.
CVE-2026-16009 Vulnerability in sqli (CVE-2026-16009)
vulnerability in sqli (CVE-2026-16009). Risk of unauthorized operations or information disclosure.
CVE-2026-62764 Vulnerability in apache (CVE-2026-62764)
vulnerability in apache (CVE-2026-62764). Risk of unauthorized operations or information disclosure.
CVE-2026-15982 Privilege Escalation in wordpress (CVE-2026-15982)
vulnerability in wordpress (CVE-2026-15982). Successful exploitation can lead to full system takeover.
CVE-2026-14503 Information Disclosure in wordpress (CVE-2026-14503)
vulnerability in wordpress (CVE-2026-14503). Confidential information can be exposed externally.

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →