Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-18391 |
|
Unrestricted File Upload in wordpress (CVE-2026-18391)
vulnerability in wordpress (CVE-2026-18391). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14925 |
|
Information Disclosure in wordpress (CVE-2026-14925)
vulnerability in wordpress (CVE-2026-14925). Confidential information can be exposed externally.
|
| CVE-2026-14859 |
|
Vulnerability in wordpress (CVE-2026-14859)
vulnerability in wordpress (CVE-2026-14859). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14858 |
|
Vulnerability in wordpress (CVE-2026-14858)
vulnerability in wordpress (CVE-2026-14858). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14857 |
|
Vulnerability in wordpress (CVE-2026-14857)
vulnerability in wordpress (CVE-2026-14857). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13171 |
|
Vulnerability in wordpress (CVE-2026-13171)
vulnerability in wordpress (CVE-2026-13171). Data can be tampered with by attackers.
|
| CVE-2026-13177 |
|
Vulnerability in wordpress (CVE-2026-13177)
vulnerability in wordpress (CVE-2026-13177). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13613 |
|
SQL Injection in wordpress (CVE-2026-13613)
SQL injection in wordpress (CVE-2026-13613). Successful exploitation can lead to full system takeover.
|
| CVE-2026-13612 |
|
Vulnerability in wordpress (CVE-2026-13612)
vulnerability in wordpress (CVE-2026-13612). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13168 |
|
Information Disclosure in wordpress (CVE-2026-13168)
vulnerability in wordpress (CVE-2026-13168). Confidential information can be exposed externally.
|
| CVE-2026-12976 |
|
Information Disclosure in wordpress (CVE-2026-12976)
vulnerability in wordpress (CVE-2026-12976). Confidential information can be exposed externally.
|
| CVE-2026-15039 |
|
Unrestricted File Upload in wordpress (CVE-2026-15039)
vulnerability in wordpress (CVE-2026-15039). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18961 |
|
Authentication Bypass in wordpress (CVE-2026-18961)
authentication bypass in wordpress (CVE-2026-18961). Successful exploitation can lead to full system takeover.
|
| CVE-2026-73247 |
|
SSRF (Server-Side Request Forgery) in CVE-2026-73247 (CVE-2026-73247)
SSRF in CVE-2026-73247 (CVE-2026-73247). Confidential information can be exposed externally.
|
| CVE-2026-73246 |
|
Information Disclosure in CVE-2026-73246 (CVE-2026-73246)
vulnerability in CVE-2026-73246 (CVE-2026-73246). Confidential information can be exposed externally. Exploitable via `GET /worker`. Mitigation: upgrade to `2.0.0-rc6` or later.
|
| CVE-2026-19560 |
|
Use-After-Free in google (CVE-2026-19560)
vulnerability in google (CVE-2026-19560). Successful exploitation can lead to full system takeover.
|
| CVE-2026-19559 |
|
Use-After-Free in google (CVE-2026-19559)
vulnerability in google (CVE-2026-19559). Successful exploitation can lead to full system takeover.
|
| CVE-2026-19558 |
|
Use-After-Free in google (CVE-2026-19558)
vulnerability in google (CVE-2026-19558). Successful exploitation can lead to full system takeover.
|
| CVE-2026-19557 |
|
Use-After-Free in google (CVE-2026-19557)
vulnerability in google (CVE-2026-19557). Successful exploitation can lead to full system takeover.
|
| CVE-2026-19556 |
|
Use-After-Free in Google chrome (CVE-2026-19556)
vulnerability in Google chrome (CVE-2026-19556). Successful exploitation can lead to full system takeover.
|
| CVE-2026-71290 |
|
Vulnerability in apache (CVE-2026-71290)
vulnerability in apache (CVE-2026-71290). Confidential information can be exposed externally.
|
| CVE-2026-15606 |
|
Vulnerability in wordpress (CVE-2026-15606)
vulnerability in wordpress (CVE-2026-15606). Successful exploitation can lead to full system takeover.
|
| CVE-2026-55676 |
|
Unrestricted File Upload in nginx (CVE-2026-55676)
vulnerability in nginx (CVE-2026-55676). Successful exploitation can lead to full system takeover. Exploitable via `POST /server/php/submit.php`.
|
| CVE-2026-73244 |
|
Path Traversal in spring (CVE-2026-73244)
path traversal in spring (CVE-2026-73244). Risk of unauthorized operations or information disclosure. Exploitable via `POST /listFiles`.
|
| CVE-2026-73243 |
|
SSRF (Server-Side Request Forgery) in spring (CVE-2026-73243)
SSRF in spring (CVE-2026-73243). Risk of unauthorized operations or information disclosure. Exploitable via `GET /addTask`.
|
| CVE-2026-70339 |
|
Vulnerability in microsoft (CVE-2026-70339)
vulnerability in microsoft (CVE-2026-70339). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19091 |
|
Path Traversal in wordpress (CVE-2026-19091)
path traversal in wordpress (CVE-2026-19091). Data can be tampered with by attackers.
|
| CVE-2026-16230 |
|
Vulnerability in wordpress (CVE-2026-16230)
vulnerability in wordpress (CVE-2026-16230). Successful exploitation can lead to full system takeover.
|
| CVE-2026-13457 |
|
Unrestricted File Upload in wordpress (CVE-2026-13457)
vulnerability in wordpress (CVE-2026-13457). Confidential information can be exposed externally.
|
| CVE-2026-18692 |
|
An issue in MongoDB Server's handling of timeseries bucket lifecycle could allow an authenticated...
An issue in MongoDB Server's handling of timeseries bucket lifecycle could allow an authenticated...
|
| CVE-2026-18691 |
|
An issue in MongoDB Server's intra-cluster connection setup could allow a party with suitable...
An issue in MongoDB Server's intra-cluster connection setup could allow a party with suitable...
|
| CVE-2026-15426 |
|
The AcyMailing – An Ultimate Newsletter Plugin and Marketing Automation Solution for WordPress...
The AcyMailing – An Ultimate Newsletter Plugin and Marketing Automation Solution for WordPress...
|
| CVE-2026-61367 |
|
Vulnerability in microsoft (CVE-2026-61367)
vulnerability in microsoft (CVE-2026-61367). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61360 |
|
Vulnerability in microsoft (CVE-2026-61360)
vulnerability in microsoft (CVE-2026-61360). Confidential information can be exposed externally.
|
| CVE-2026-61359 |
|
Vulnerability in microsoft (CVE-2026-61359)
vulnerability in microsoft (CVE-2026-61359). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61357 |
|
Use-After-Free in microsoft (CVE-2026-61357)
vulnerability in microsoft (CVE-2026-61357). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61350 |
|
Vulnerability in microsoft (CVE-2026-61350)
vulnerability in microsoft (CVE-2026-61350). Confidential information can be exposed externally.
|
| CVE-2026-61349 |
|
Vulnerability in microsoft (CVE-2026-61349)
vulnerability in microsoft (CVE-2026-61349). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61347 |
|
Vulnerability in microsoft (CVE-2026-61347)
vulnerability in microsoft (CVE-2026-61347). Confidential information can be exposed externally.
|
| CVE-2026-61346 |
|
Use-After-Free in microsoft (CVE-2026-61346)
vulnerability in microsoft (CVE-2026-61346). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61348 |
|
Use-After-Free in microsoft (CVE-2026-61348)
vulnerability in microsoft (CVE-2026-61348). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61345 |
|
Vulnerability in microsoft (CVE-2026-61345)
vulnerability in microsoft (CVE-2026-61345). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-59138 |
|
Vulnerability in microsoft (CVE-2026-59138)
vulnerability in microsoft (CVE-2026-59138). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-59135 |
|
Vulnerability in microsoft (CVE-2026-59135)
vulnerability in microsoft (CVE-2026-59135). Confidential information can be exposed externally.
|
| CVE-2026-59134 |
|
Vulnerability in microsoft (CVE-2026-59134)
vulnerability in microsoft (CVE-2026-59134). Successful exploitation can lead to full system takeover.
|
| CVE-2026-59136 |
|
Vulnerability in microsoft (CVE-2026-59136)
vulnerability in microsoft (CVE-2026-59136). Confidential information can be exposed externally.
|
| CVE-2026-59137 |
|
Vulnerability in microsoft (CVE-2026-59137)
vulnerability in microsoft (CVE-2026-59137). Confidential information can be exposed externally.
|
| CVE-2026-59132 |
|
Vulnerability in microsoft (CVE-2026-59132)
vulnerability in microsoft (CVE-2026-59132). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-59133 |
|
Vulnerability in microsoft (CVE-2026-59133)
vulnerability in microsoft (CVE-2026-59133). Successful exploitation can lead to full system takeover.
|
| CVE-2026-59130 |
|
No cwe for this issue in AMD Zen allows an authorized attacker to disclose information locally.
No cwe for this issue in AMD Zen allows an authorized attacker to disclose information locally.
|