Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-11872 |
|
Vulnerability in wordpress (CVE-2026-11872)
vulnerability in wordpress (CVE-2026-11872). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-8457 |
|
Vulnerability in wordpress (CVE-2026-8457)
vulnerability in wordpress (CVE-2026-8457). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18352 |
|
Path Traversal in wordpress (CVE-2026-18352)
path traversal in wordpress (CVE-2026-18352). Confidential information can be exposed externally.
|
| CVE-2026-13339 |
|
Path Traversal in wordpress (CVE-2026-13339)
path traversal in wordpress (CVE-2026-13339). Confidential information can be exposed externally.
|
| CVE-2026-67309 |
|
Path Traversal in github.com/traefik/traefik/v3 (CVE-2026-67309)
path traversal in github.com/traefik/traefik/v3 (CVE-2026-67309). Risk of unauthorized operations or information disclosure. Exploitable via ``RewriteTarget``. Mitigation: upgrade to `3.7.8` or later.
|
| CVE-2026-6453 |
|
SQL Injection in wordpress (CVE-2026-6453)
SQL injection in wordpress (CVE-2026-6453). Confidential information can be exposed externally.
|
| CVE-2026-18435 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-18435)
cross-site scripting in wordpress (CVE-2026-18435). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18344 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-18344)
cross-site scripting in wordpress (CVE-2026-18344). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18062 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-18062)
cross-site scripting in wordpress (CVE-2026-18062). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18059 |
|
Information Disclosure in wordpress (CVE-2026-18059)
vulnerability in wordpress (CVE-2026-18059). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-17605 |
|
Vulnerability in wordpress (CVE-2026-17605)
vulnerability in wordpress (CVE-2026-17605). Successful exploitation can lead to full system takeover.
|
| CVE-2026-17580 |
|
Vulnerability in wordpress (CVE-2026-17580)
vulnerability in wordpress (CVE-2026-17580). Confidential information can be exposed externally.
|
| CVE-2026-17571 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-17571)
cross-site scripting in wordpress (CVE-2026-17571). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-17555 |
|
SQL Injection in wordpress (CVE-2026-17555)
SQL injection in wordpress (CVE-2026-17555). Confidential information can be exposed externally.
|
| CVE-2026-16685 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-16685)
cross-site scripting in wordpress (CVE-2026-16685). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16684 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-16684)
cross-site scripting in wordpress (CVE-2026-16684). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16635 |
|
Privilege Escalation in wordpress (CVE-2026-16635)
vulnerability in wordpress (CVE-2026-16635). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15951 |
|
SQL Injection in wordpress (CVE-2026-15951)
SQL injection in wordpress (CVE-2026-15951). Confidential information can be exposed externally. Exploitable via ``fields``.
|
| CVE-2026-15964 |
|
Vulnerability in wordpress (CVE-2026-15964)
vulnerability in wordpress (CVE-2026-15964). Successful exploitation can lead to full system takeover. Exploitable via ``wp_ajax_nopriv_ssoprocess_ajax``.
|
| CVE-2026-16087 |
|
SQL Injection in wordpress (CVE-2026-16087)
SQL injection in wordpress (CVE-2026-16087). Confidential information can be exposed externally.
|
| CVE-2026-16091 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-16091)
cross-site scripting in wordpress (CVE-2026-16091). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16144 |
|
Code Injection in wordpress (CVE-2026-16144)
code injection in wordpress (CVE-2026-16144). Successful exploitation can lead to full system takeover.
|
| CVE-2026-16614 |
|
SQL Injection in wordpress (CVE-2026-16614)
SQL injection in wordpress (CVE-2026-16614). Confidential information can be exposed externally.
|
| CVE-2026-16090 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-16090)
cross-site scripting in wordpress (CVE-2026-16090). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15950 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-15950)
cross-site scripting in wordpress (CVE-2026-15950). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15662 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-15662)
cross-site scripting in wordpress (CVE-2026-15662). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15649 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-15649)
cross-site scripting in wordpress (CVE-2026-15649). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15645 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-15645)
cross-site scripting in wordpress (CVE-2026-15645). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15644 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-15644)
cross-site scripting in wordpress (CVE-2026-15644). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15601 |
|
Path Traversal in wordpress (CVE-2026-15601)
path traversal in wordpress (CVE-2026-15601). Confidential information can be exposed externally.
|
| CVE-2026-15450 |
|
Path Traversal in wordpress (CVE-2026-15450)
path traversal in wordpress (CVE-2026-15450). Data can be tampered with by attackers.
|
| CVE-2026-15052 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-15052)
cross-site scripting in wordpress (CVE-2026-15052). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15018 |
|
SQL Injection in wordpress (CVE-2026-15018)
SQL injection in wordpress (CVE-2026-15018). Confidential information can be exposed externally.
|
| CVE-2026-13458 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-13458)
cross-site scripting in wordpress (CVE-2026-13458). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-11995 |
|
Vulnerability in wordpress (CVE-2026-11995)
vulnerability in wordpress (CVE-2026-11995). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-10782 |
|
Vulnerability in wordpress (CVE-2026-10782)
vulnerability in wordpress (CVE-2026-10782). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-14073 |
|
Vulnerability in wordpress (CVE-2025-14073)
vulnerability in wordpress (CVE-2025-14073). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-2916 |
|
Information Disclosure in wordpress (CVE-2026-2916)
vulnerability in wordpress (CVE-2026-2916). Risk of unauthorized operations or information disclosure. Exploitable via ``JkitDashboardOption``.
|
| CVE-2026-15988 |
|
Cross-Site Request Forgery (CSRF) in wordpress (CVE-2026-15988)
vulnerability in wordpress (CVE-2026-15988). Successful exploitation can lead to full system takeover.
|
| CVE-2025-14469 |
|
Cross-Site Request Forgery (CSRF) in wordpress (CVE-2025-14469)
vulnerability in wordpress (CVE-2025-14469). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14840 |
|
Vulnerability in wordpress (CVE-2026-14840)
vulnerability in wordpress (CVE-2026-14840). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15234 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-15234)
cross-site scripting in wordpress (CVE-2026-15234). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15244 |
|
Path Traversal in c (CVE-2026-15244)
path traversal in c (CVE-2026-15244). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15368 |
|
Privilege Escalation in wordpress (CVE-2026-15368)
vulnerability in wordpress (CVE-2026-15368). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15262 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-15262)
cross-site scripting in wordpress (CVE-2026-15262). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15932 |
|
Path Traversal in wordpress (CVE-2026-15932)
path traversal in wordpress (CVE-2026-15932). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14292 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-14292)
cross-site scripting in wordpress (CVE-2026-14292). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14315 |
|
Vulnerability in wordpress (CVE-2026-14315)
vulnerability in wordpress (CVE-2026-14315). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14309 |
|
Authentication Bypass in wordpress (CVE-2026-14309)
authentication bypass in wordpress (CVE-2026-14309). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14561 |
|
Authentication Bypass in wordpress (CVE-2026-14561)
authentication bypass in wordpress (CVE-2026-14561). Risk of unauthorized operations or information disclosure.
|