Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-19050 |
|
SSRF (Server-Side Request Forgery) in wordpress (CVE-2026-19050)
SSRF in wordpress (CVE-2026-19050). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19052 |
|
Vulnerability in wordpress (CVE-2026-19052)
vulnerability in wordpress (CVE-2026-19052). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16538 |
|
Vulnerability in wordpress (CVE-2026-16538)
vulnerability in wordpress (CVE-2026-16538). Confidential information can be exposed externally.
|
| CVE-2026-19217 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-19217)
cross-site scripting in wordpress (CVE-2026-19217). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18962 |
|
Vulnerability in wordpress (CVE-2026-18962)
vulnerability in wordpress (CVE-2026-18962). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18049 |
|
Information Disclosure in wordpress (CVE-2026-18049)
vulnerability in wordpress (CVE-2026-18049). Confidential information can be exposed externally.
|
| CVE-2026-18230 |
|
SQL Injection in wordpress (CVE-2026-18230)
SQL injection in wordpress (CVE-2026-18230). Confidential information can be exposed externally.
|
| CVE-2026-18391 |
|
Unrestricted File Upload in wordpress (CVE-2026-18391)
vulnerability in wordpress (CVE-2026-18391). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18057 |
|
SQL Injection in wordpress (CVE-2026-18057)
SQL injection in wordpress (CVE-2026-18057). Confidential information can be exposed externally.
|
| CVE-2026-18943 |
|
Information Disclosure in wordpress (CVE-2026-18943)
vulnerability in wordpress (CVE-2026-18943). Confidential information can be exposed externally.
|
| CVE-2026-16294 |
|
SSRF (Server-Side Request Forgery) in wordpress (CVE-2026-16294)
SSRF in wordpress (CVE-2026-16294). Confidential information can be exposed externally.
|
| CVE-2026-18789 |
|
Vulnerability in wordpress (CVE-2026-18789)
vulnerability in wordpress (CVE-2026-18789). Confidential information can be exposed externally.
|
| CVE-2026-18474 |
|
SQL Injection in wordpress (CVE-2026-18474)
SQL injection in wordpress (CVE-2026-18474). Confidential information can be exposed externally.
|
| CVE-2026-19073 |
|
Information Disclosure in wordpress (CVE-2026-19073)
vulnerability in wordpress (CVE-2026-19073). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18366 |
|
Privilege Escalation in wordpress (CVE-2026-18366)
vulnerability in wordpress (CVE-2026-18366). Successful exploitation can lead to full system takeover.
|
| CVE-2026-17013 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-17013)
cross-site scripting in wordpress (CVE-2026-17013). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16051 |
|
Code Injection in wordpress (CVE-2026-16051)
code injection in wordpress (CVE-2026-16051). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18035 |
|
Vulnerability in wordpress (CVE-2026-18035)
vulnerability in wordpress (CVE-2026-18035). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18048 |
|
Vulnerability in wordpress (CVE-2026-18048)
vulnerability in wordpress (CVE-2026-18048). Data can be tampered with by attackers.
|
| CVE-2026-18046 |
|
Authorization Flaw in wordpress (CVE-2026-18046)
vulnerability in wordpress (CVE-2026-18046). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16977 |
|
SQL Injection in wordpress (CVE-2026-16977)
SQL injection in wordpress (CVE-2026-16977). Confidential information can be exposed externally.
|
| CVE-2026-16737 |
|
Vulnerability in wordpress (CVE-2026-16737)
vulnerability in wordpress (CVE-2026-16737). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16253 |
|
Information Disclosure in wordpress (CVE-2026-16253)
vulnerability in wordpress (CVE-2026-16253). Confidential information can be exposed externally.
|
| CVE-2026-15249 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-15249)
cross-site scripting in wordpress (CVE-2026-15249). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15388 |
|
Authorization Flaw in wordpress (CVE-2026-15388)
vulnerability in wordpress (CVE-2026-15388). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16066 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-16066)
cross-site scripting in wordpress (CVE-2026-16066). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15039 |
|
Unrestricted File Upload in wordpress (CVE-2026-15039)
vulnerability in wordpress (CVE-2026-15039). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14925 |
|
Information Disclosure in wordpress (CVE-2026-14925)
vulnerability in wordpress (CVE-2026-14925). Confidential information can be exposed externally.
|
| CVE-2026-14859 |
|
Vulnerability in wordpress (CVE-2026-14859)
vulnerability in wordpress (CVE-2026-14859). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-12976 |
|
Information Disclosure in wordpress (CVE-2026-12976)
vulnerability in wordpress (CVE-2026-12976). Confidential information can be exposed externally.
|
| CVE-2026-13168 |
|
Information Disclosure in wordpress (CVE-2026-13168)
vulnerability in wordpress (CVE-2026-13168). Confidential information can be exposed externally.
|
| CVE-2026-13612 |
|
Vulnerability in wordpress (CVE-2026-13612)
vulnerability in wordpress (CVE-2026-13612). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13613 |
|
SQL Injection in wordpress (CVE-2026-13613)
SQL injection in wordpress (CVE-2026-13613). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14858 |
|
Vulnerability in wordpress (CVE-2026-14858)
vulnerability in wordpress (CVE-2026-14858). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14857 |
|
Vulnerability in wordpress (CVE-2026-14857)
vulnerability in wordpress (CVE-2026-14857). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13171 |
|
Vulnerability in wordpress (CVE-2026-13171)
vulnerability in wordpress (CVE-2026-13171). Data can be tampered with by attackers.
|
| CVE-2026-13177 |
|
Vulnerability in wordpress (CVE-2026-13177)
vulnerability in wordpress (CVE-2026-13177). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18961 |
|
Authentication Bypass in wordpress (CVE-2026-18961)
authentication bypass in wordpress (CVE-2026-18961). Successful exploitation can lead to full system takeover.
|
| CVE-2026-71290 |
|
Vulnerability in apache (CVE-2026-71290)
vulnerability in apache (CVE-2026-71290). Confidential information can be exposed externally.
|
| CVE-2026-15606 |
|
Vulnerability in wordpress (CVE-2026-15606)
vulnerability in wordpress (CVE-2026-15606). Successful exploitation can lead to full system takeover.
|
| CVE-2026-63177 |
|
Authorization Flaw in nginx (CVE-2026-63177)
vulnerability in nginx (CVE-2026-63177). Confidential information can be exposed externally. Exploitable via ``ngx.var.request_uri``.
|
| CVE-2026-55676 |
|
Unrestricted File Upload in nginx (CVE-2026-55676)
vulnerability in nginx (CVE-2026-55676). Successful exploitation can lead to full system takeover. Exploitable via `POST /server/php/submit.php`.
|
| CVE-2026-73243 |
|
SSRF (Server-Side Request Forgery) in spring (CVE-2026-73243)
SSRF in spring (CVE-2026-73243). Risk of unauthorized operations or information disclosure. Exploitable via `GET /addTask`.
|
| CVE-2026-73244 |
|
Path Traversal in spring (CVE-2026-73244)
path traversal in spring (CVE-2026-73244). Risk of unauthorized operations or information disclosure. Exploitable via `POST /listFiles`.
|
| CVE-2026-73229 |
|
Information Disclosure in django (CVE-2026-73229)
vulnerability in django (CVE-2026-73229). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-73031 |
|
telegram-search contains a stored cross-site scripting vulnerability that allows remote attackers...
telegram-search contains a stored cross-site scripting vulnerability that allows remote attackers...
|
| CVE-2026-19091 |
|
Path Traversal in wordpress (CVE-2026-19091)
path traversal in wordpress (CVE-2026-19091). Data can be tampered with by attackers.
|
| CVE-2026-16230 |
|
Vulnerability in wordpress (CVE-2026-16230)
vulnerability in wordpress (CVE-2026-16230). Successful exploitation can lead to full system takeover.
|
| CVE-2026-13457 |
|
Unrestricted File Upload in wordpress (CVE-2026-13457)
vulnerability in wordpress (CVE-2026-13457). Confidential information can be exposed externally.
|
| CVE-2026-73228 |
|
Vulnerability in django (CVE-2026-73228)
vulnerability in django (CVE-2026-73228). Risk of unauthorized operations or information disclosure.
|