Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-15369 |
|
Privilege Escalation in CVE-2026-15369 (CVE-2026-15369)
vulnerability in CVE-2026-15369 (CVE-2026-15369). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14494 |
|
Unrestricted File Upload in wordpress (CVE-2026-14494)
vulnerability in wordpress (CVE-2026-14494). Successful exploitation can lead to full system takeover.
|
| CVE-2026-55634 |
|
SQL Injection in pimcore/pimcore (CVE-2026-55634)
SQL injection in pimcore/pimcore (CVE-2026-55634). Successful exploitation can lead to full system takeover. Exploitable via ``objects``. Mitigation: upgrade to `2026.1.6` or later.
|
| CVE-2026-55565 |
|
Code Injection in org.yamcs:yamcs-core (CVE-2026-55565)
code injection in org.yamcs:yamcs-core (CVE-2026-55565). Successful exploitation can lead to full system takeover. Exploitable via `POST /api/archive/{instance}`. Mitigation: upgrade to `5.12.8` or later.
|
| CVE-2026-55559 |
|
Code Injection in org.yamcs:yamcs-core (CVE-2026-55559)
code injection in org.yamcs:yamcs-core (CVE-2026-55559). Successful exploitation can lead to full system takeover. Exploitable via `POST /api/instances`. Mitigation: upgrade to `5.12.8` or later.
|
| CVE-2026-55511 |
|
Code Injection in org.yamcs:yamcs-core (CVE-2026-55511)
code injection in org.yamcs:yamcs-core (CVE-2026-55511). Successful exploitation can lead to full system takeover. Exploitable via `POST /api/archive/{instance}`. Mitigation: upgrade to `5.12.8` or later.
|
| CVE-2026-76581 |
|
Vulnerability in wordpress (CVE-2026-76581)
vulnerability in wordpress (CVE-2026-76581). Successful exploitation can lead to full system takeover. Exploitable via ``wdpsso_step1``.
|
| CVE-2026-19092 |
|
Vulnerability in wordpress (CVE-2026-19092)
vulnerability in wordpress (CVE-2026-19092). Successful exploitation can lead to full system takeover.
|
| CVE-2026-78286 |
|
Unauthenticated PHP Object Injection in Geo Controller <= 8.9.8 versions.
Unauthenticated PHP Object Injection in Geo Controller <= 8.9.8 versions.
|
| CVE-2026-78292 |
|
Unauthenticated PHP Object Injection in Hash Form <= 1.4.1 versions.
Unauthenticated PHP Object Injection in Hash Form <= 1.4.1 versions.
|
| CVE-2026-32566 |
|
Vulnerability in wordpress (CVE-2026-32566)
vulnerability in wordpress (CVE-2026-32566). Successful exploitation can lead to full system takeover.
|
| CVE-2026-77016 |
|
Vulnerability in wordpress (CVE-2026-77016)
vulnerability in wordpress (CVE-2026-77016). Data can be tampered with by attackers.
|
| CVE-2023-49105 KEV |
|
[KEV] Authentication Bypass in owncloud (CVE-2023-49105)
authentication bypass in owncloud (CVE-2023-49105). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2026-80428 |
|
Unsafe Deserialization in CVE-2026-80428 (CVE-2026-80428)
vulnerability in CVE-2026-80428 (CVE-2026-80428). Successful exploitation can lead to full system takeover.
|
| CVE-2026-80203 |
|
Authorization Flaw in CVE-2026-80203 (CVE-2026-80203)
vulnerability in CVE-2026-80203 (CVE-2026-80203). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18080 |
|
Unrestricted File Upload in wordpress (CVE-2026-18080)
vulnerability in wordpress (CVE-2026-18080). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18431 |
|
Vulnerability in wordpress (CVE-2026-18431)
vulnerability in wordpress (CVE-2026-18431). Successful exploitation can lead to full system takeover.
|
| CVE-2026-19632 |
|
Vulnerability in wordpress (CVE-2026-19632)
vulnerability in wordpress (CVE-2026-19632). Successful exploitation can lead to full system takeover.
|
| CVE-2026-16644 |
|
Authorization Flaw in drupal (CVE-2026-16644)
vulnerability in drupal (CVE-2026-16644). Confidential information can be exposed externally.
|
| CVE-2026-16641 |
|
Vulnerability in Drupal Commerce Elavon. This issue affects Commerce Elavon versions: *.*.
Vulnerability in Drupal Commerce Elavon. This issue affects Commerce Elavon versions: *.*.
|
| CVE-2026-16639 |
|
Vulnerability in drupal (CVE-2026-16639)
vulnerability in drupal (CVE-2026-16639). Successful exploitation can lead to full system takeover.
|
| CVE-2026-16645 |
|
Vulnerability in drupal (CVE-2026-16645)
vulnerability in drupal (CVE-2026-16645). Confidential information can be exposed externally.
|
| CVE-2026-65905 |
|
Vulnerability in apache (CVE-2026-65905)
vulnerability in apache (CVE-2026-65905). Successful exploitation can lead to full system takeover.
|
| CVE-2026-68525 |
|
Authorization Flaw in apache (CVE-2026-68525)
vulnerability in apache (CVE-2026-68525). Confidential information can be exposed externally.
|
| CVE-2026-65637 |
|
Vulnerability in apache (CVE-2026-65637)
vulnerability in apache (CVE-2026-65637). Successful exploitation can lead to full system takeover.
|
| CVE-2026-65182 |
|
Vulnerability in apache (CVE-2026-65182)
vulnerability in apache (CVE-2026-65182). Confidential information can be exposed externally.
|
| CVE-2026-79188 |
|
Out-of-Bounds Write in google (CVE-2026-79188)
out-of-bounds write in google (CVE-2026-79188). Successful exploitation can lead to full system takeover.
|
| CVE-2026-79189 |
|
Out-of-Bounds Write in google (CVE-2026-79189)
out-of-bounds write in google (CVE-2026-79189). Successful exploitation can lead to full system takeover.
|
| CVE-2026-79149 |
|
Use-After-Free in google (CVE-2026-79149)
vulnerability in google (CVE-2026-79149). Successful exploitation can lead to full system takeover.
|
| CVE-2026-79152 |
|
Authorization Flaw in google (CVE-2026-79152)
vulnerability in google (CVE-2026-79152). Successful exploitation can lead to full system takeover.
|
| CVE-2026-79150 |
|
Use-After-Free in google (CVE-2026-79150)
vulnerability in google (CVE-2026-79150). Successful exploitation can lead to full system takeover.
|
| CVE-2026-79129 |
|
Use-After-Free in google (CVE-2026-79129)
vulnerability in google (CVE-2026-79129). Successful exploitation can lead to full system takeover.
|
| CVE-2026-79140 |
|
Use-After-Free in google (CVE-2026-79140)
vulnerability in google (CVE-2026-79140). Successful exploitation can lead to full system takeover.
|
| CVE-2026-79131 |
|
Out-of-Bounds Write in google (CVE-2026-79131)
out-of-bounds write in google (CVE-2026-79131). Successful exploitation can lead to full system takeover.
|
| CVE-2026-79128 |
|
Use-After-Free in google (CVE-2026-79128)
vulnerability in google (CVE-2026-79128). Successful exploitation can lead to full system takeover.
|
| CVE-2026-79130 |
|
Vulnerability in google (CVE-2026-79130)
vulnerability in google (CVE-2026-79130). Successful exploitation can lead to full system takeover.
|
| CVE-2026-79138 |
|
Out-of-Bounds Write in google (CVE-2026-79138)
out-of-bounds write in google (CVE-2026-79138). Successful exploitation can lead to full system takeover.
|
| CVE-2026-79091 |
|
Use-After-Free in google (CVE-2026-79091)
vulnerability in google (CVE-2026-79091). Successful exploitation can lead to full system takeover.
|
| CVE-2026-79111 |
|
Vulnerability in google (CVE-2026-79111)
vulnerability in google (CVE-2026-79111). Successful exploitation can lead to full system takeover.
|
| CVE-2026-79090 |
|
Privilege Escalation in google (CVE-2026-79090)
vulnerability in google (CVE-2026-79090). Successful exploitation can lead to full system takeover.
|
| CVE-2026-79052 |
|
Use-After-Free in google (CVE-2026-79052)
vulnerability in google (CVE-2026-79052). Successful exploitation can lead to full system takeover.
|
| CVE-2026-79064 |
|
Use-After-Free in google (CVE-2026-79064)
vulnerability in google (CVE-2026-79064). Successful exploitation can lead to full system takeover.
|
| CVE-2026-79078 |
|
Use-After-Free in google (CVE-2026-79078)
vulnerability in google (CVE-2026-79078). Successful exploitation can lead to full system takeover.
|
| CVE-2026-79056 |
|
Use-After-Free in google (CVE-2026-79056)
vulnerability in google (CVE-2026-79056). Successful exploitation can lead to full system takeover.
|
| CVE-2026-79026 |
|
Use-After-Free in google (CVE-2026-79026)
vulnerability in google (CVE-2026-79026). Successful exploitation can lead to full system takeover.
|
| CVE-2026-79019 |
|
Out-of-Bounds Write in google (CVE-2026-79019)
out-of-bounds write in google (CVE-2026-79019). Successful exploitation can lead to full system takeover.
|
| CVE-2026-79043 |
|
Out-of-Bounds Write in google (CVE-2026-79043)
out-of-bounds write in google (CVE-2026-79043). Successful exploitation can lead to full system takeover.
|
| CVE-2026-79047 |
|
Use-After-Free in google (CVE-2026-79047)
vulnerability in google (CVE-2026-79047). Successful exploitation can lead to full system takeover.
|
| CVE-2026-78985 |
|
Vulnerability in google (CVE-2026-78985)
vulnerability in google (CVE-2026-78985). Successful exploitation can lead to full system takeover.
|
| CVE-2026-78989 |
|
Out-of-Bounds Read in google (CVE-2026-78989)
vulnerability in google (CVE-2026-78989). Successful exploitation can lead to full system takeover.
|