Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-76793 |
|
Authentication Bypass in wordpress (CVE-2026-76793)
authentication bypass in wordpress (CVE-2026-76793). Successful exploitation can lead to full system takeover.
|
| CVE-2026-76789 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-76789)
cross-site scripting in wordpress (CVE-2026-76789). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18052 |
|
Authentication Bypass in wordpress (CVE-2026-18052)
authentication bypass in wordpress (CVE-2026-18052). Successful exploitation can lead to full system takeover.
|
| CVE-2026-19883 |
|
Privilege Escalation in wordpress (CVE-2026-19883)
vulnerability in wordpress (CVE-2026-19883). Successful exploitation can lead to full system takeover.
|
| CVE-2026-34741 |
|
Vulnerability in CVE-2026-34741 (CVE-2026-34741)
vulnerability in CVE-2026-34741 (CVE-2026-34741). Data can be tampered with by attackers.
|
| CVE-2026-31803 |
|
Cross-Site Scripting (XSS) in CVE-2026-31803 (CVE-2026-31803)
cross-site scripting in CVE-2026-31803 (CVE-2026-31803). Successful exploitation can lead to full system takeover.
|
| CVE-2026-63135 |
|
Cross-Site Scripting (XSS) in yourls/yourls (CVE-2026-63135)
cross-site scripting in yourls/yourls (CVE-2026-63135). Data can be tampered with by attackers. Exploitable via `Referer header`. Mitigation: upgrade to `1.10.4` or later.
|
| CVE-2026-62960 |
|
Git for Windows is the Windows port of Git. Prior to 2.55.0.windows.4, a malicious remote Git server can advertise a bundle URI that reaches transport_get_remote_bundle_uri(), fetch_bundle_uri_interna...
Git for Windows is the Windows port of Git. Prior to 2.55.0.windows.4, a malicious remote Git server can advertise a bundle URI that reaches transport_get_remote_bundle_uri(), fetch_bundle_uri_internal(), and copy_uri_to_file() in bundle-uri.c during clone or fetch when transfer.bundleuri=true. Non-...
|
| CVE-2026-30819 |
|
Combodo iTop is a web based IT service management tool. Prior to 3.2.3, iTop has a reflected Cross-Site Scripting (XSS) vulnerability in its dashboard revert functionality with the parameter dashboard...
Combodo iTop is a web based IT service management tool. Prior to 3.2.3, iTop has a reflected Cross-Site Scripting (XSS) vulnerability in its dashboard revert functionality with the parameter dashboard_id in /pages/ajax.render.php. This issue has been fixed in version 3.2.3.
|
| CVE-2026-54789 |
|
Out-of-Bounds Read in apache (CVE-2026-54789)
vulnerability in apache (CVE-2026-54789). Risk of unauthorized operations or information disclosure. Exploitable via ``mod_auth_openidc``.
|
| CVE-2026-59654 |
|
Vulnerability in apache (CVE-2026-59654)
vulnerability in apache (CVE-2026-59654). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-66722 |
|
Vulnerability in apache (CVE-2026-66722)
vulnerability in apache (CVE-2026-66722). Successful exploitation can lead to full system takeover.
|
| CVE-2026-68745 |
|
Vulnerability in apache (CVE-2026-68745)
vulnerability in apache (CVE-2026-68745). Successful exploitation can lead to full system takeover.
|
| CVE-2026-61400 |
|
Command Injection in apache (CVE-2026-61400)
command injection in apache (CVE-2026-61400). Successful exploitation can lead to full system takeover. Exploitable via ``getDiagnosticsData``.
|
| CVE-2026-61397 |
|
Information Disclosure in apache (CVE-2026-61397)
vulnerability in apache (CVE-2026-61397). Confidential information can be exposed externally.
|
| CVE-2026-59655 |
|
Information Disclosure in apache (CVE-2026-59655)
vulnerability in apache (CVE-2026-59655). Confidential information can be exposed externally.
|
| CVE-2026-59799 |
|
Privilege Escalation in apache (CVE-2026-59799)
vulnerability in apache (CVE-2026-59799). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50222 |
|
Information Disclosure in apache (CVE-2026-50222)
vulnerability in apache (CVE-2026-50222). Confidential information can be exposed externally.
|
| CVE-2026-59657 |
|
Vulnerability in apache (CVE-2026-59657)
vulnerability in apache (CVE-2026-59657). Confidential information can be exposed externally.
|
| CVE-2026-63046 |
|
Vulnerability in apache (CVE-2026-63046)
vulnerability in apache (CVE-2026-63046). Successful exploitation can lead to full system takeover.
|
| CVE-2026-59780 |
|
Information Disclosure in apache (CVE-2026-59780)
vulnerability in apache (CVE-2026-59780). Confidential information can be exposed externally.
|
| CVE-2026-50112 |
|
OS Command Injection in apache (CVE-2026-50112)
OS command injection in apache (CVE-2026-50112). Successful exploitation can lead to full system takeover.
|
| CVE-2026-47359 |
|
OS Command Injection in apache (CVE-2026-47359)
OS command injection in apache (CVE-2026-47359). Successful exploitation can lead to full system takeover.
|
| CVE-2026-75796 |
|
Privilege Escalation in wordpress (CVE-2026-75796)
vulnerability in wordpress (CVE-2026-75796). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18781 |
|
Code Injection in wordpress (CVE-2026-18781)
code injection in wordpress (CVE-2026-18781). Successful exploitation can lead to full system takeover.
|
| CVE-2026-16576 |
|
Vulnerability in wordpress (CVE-2026-16576)
vulnerability in wordpress (CVE-2026-16576). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18409 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-18409)
cross-site scripting in wordpress (CVE-2026-18409). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-69558 |
|
Vulnerability in microsoft (CVE-2026-69558)
vulnerability in microsoft (CVE-2026-69558). Confidential information can be exposed externally.
|
| CVE-2026-69519 |
|
Vulnerability in microsoft (CVE-2026-69519)
vulnerability in microsoft (CVE-2026-69519). Confidential information can be exposed externally.
|
| CVE-2026-66800 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-66800)
SSRF in ssrf (CVE-2026-66800). Confidential information can be exposed externally.
|
| CVE-2026-19449 |
|
Privilege Escalation in ibm (CVE-2026-19449)
vulnerability in ibm (CVE-2026-19449). Successful exploitation can lead to full system takeover.
|
| CVE-2026-19446 |
|
Vulnerability in ibm (CVE-2026-19446)
vulnerability in ibm (CVE-2026-19446). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19442 |
|
Vulnerability in privilege-escalation (CVE-2026-19442)
vulnerability in privilege-escalation (CVE-2026-19442). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18832 |
|
Out-of-Bounds Write in ibm (CVE-2026-18832)
out-of-bounds write in ibm (CVE-2026-18832). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18840 |
|
Vulnerability in ibm (CVE-2026-18840)
vulnerability in ibm (CVE-2026-18840). Successful exploitation can lead to full system takeover.
|
| CVE-2026-19437 |
|
Out-of-Bounds Write in ibm (CVE-2026-19437)
out-of-bounds write in ibm (CVE-2026-19437). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18842 |
|
Out-of-Bounds Write in ibm (CVE-2026-18842)
out-of-bounds write in ibm (CVE-2026-18842). Successful exploitation can lead to full system takeover.
|
| CVE-2026-17436 |
|
Out-of-Bounds Write in ibm (CVE-2026-17436)
out-of-bounds write in ibm (CVE-2026-17436). Successful exploitation can lead to full system takeover.
|
| CVE-2026-17425 |
|
Out-of-Bounds Write in dos (CVE-2026-17425)
out-of-bounds write in dos (CVE-2026-17425). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18670 |
|
Vulnerability in dos (CVE-2026-18670)
vulnerability in dos (CVE-2026-18670). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18716 |
|
Out-of-Bounds Read in dos (CVE-2026-18716)
vulnerability in dos (CVE-2026-18716). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-17423 |
|
Out-of-Bounds Read in dos (CVE-2026-17423)
vulnerability in dos (CVE-2026-17423). Confidential information can be exposed externally.
|
| CVE-2026-17171 |
|
Vulnerability in ibm (CVE-2026-17171)
vulnerability in ibm (CVE-2026-17171). Successful exploitation can lead to full system takeover.
|
| CVE-2026-17170 |
|
Vulnerability in dos (CVE-2026-17170)
vulnerability in dos (CVE-2026-17170). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-17165 |
|
Vulnerability in dos (CVE-2026-17165)
vulnerability in dos (CVE-2026-17165). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-17159 |
|
Vulnerability in dos (CVE-2026-17159)
vulnerability in dos (CVE-2026-17159). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-17163 |
|
Vulnerability in dos (CVE-2026-17163)
vulnerability in dos (CVE-2026-17163). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-17168 |
|
Out-of-Bounds Write in ibm (CVE-2026-17168)
out-of-bounds write in ibm (CVE-2026-17168). Successful exploitation can lead to full system takeover.
|
| CVE-2026-17138 |
|
Vulnerability in ibm (CVE-2026-17138)
vulnerability in ibm (CVE-2026-17138). Successful exploitation can lead to full system takeover.
|
| CVE-2026-17060 |
|
Information Disclosure in dos (CVE-2026-17060)
vulnerability in dos (CVE-2026-17060). Confidential information can be exposed externally.
|