Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-14239 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-14239)
cross-site scripting in wordpress (CVE-2026-14239). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13178 |
|
Vulnerability in wordpress (CVE-2026-13178)
vulnerability in wordpress (CVE-2026-13178). Data can be tampered with by attackers.
|
| CVE-2026-13330 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-13330)
cross-site scripting in wordpress (CVE-2026-13330). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15153 |
|
SQL Injection in wordpress (CVE-2026-15153)
SQL injection in wordpress (CVE-2026-15153). Confidential information can be exposed externally.
|
| CVE-2026-14222 |
|
Vulnerability in wordpress (CVE-2026-14222)
vulnerability in wordpress (CVE-2026-14222). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-11881 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-11881)
cross-site scripting in wordpress (CVE-2026-11881). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13344 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-13344)
cross-site scripting in wordpress (CVE-2026-13344). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15250 |
|
Vulnerability in wordpress (CVE-2026-15250)
vulnerability in wordpress (CVE-2026-15250). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14231 |
|
Information Disclosure in wordpress (CVE-2026-14231)
vulnerability in wordpress (CVE-2026-14231). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-11867 |
|
Vulnerability in wordpress (CVE-2026-11867)
vulnerability in wordpress (CVE-2026-11867). Data can be tampered with by attackers.
|
| CVE-2026-15255 |
|
Vulnerability in wordpress (CVE-2026-15255)
vulnerability in wordpress (CVE-2026-15255). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14305 |
|
Authentication Bypass in wordpress (CVE-2026-14305)
authentication bypass in wordpress (CVE-2026-14305). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13395 |
|
SQL Injection in wordpress (CVE-2026-13395)
SQL injection in wordpress (CVE-2026-13395). Confidential information can be exposed externally.
|
| CVE-2026-14207 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-14207)
cross-site scripting in wordpress (CVE-2026-14207). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15235 |
|
Information Disclosure in wordpress (CVE-2026-15235)
vulnerability in wordpress (CVE-2026-15235). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14221 |
|
Vulnerability in wordpress (CVE-2026-14221)
vulnerability in wordpress (CVE-2026-14221). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14602 |
|
Code Injection in wordpress (CVE-2026-14602)
code injection in wordpress (CVE-2026-14602). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14223 |
|
Vulnerability in wordpress (CVE-2026-14223)
vulnerability in wordpress (CVE-2026-14223). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14923 |
|
Authorization Flaw in wordpress (CVE-2026-14923)
vulnerability in wordpress (CVE-2026-14923). Confidential information can be exposed externally.
|
| CVE-2026-15054 |
|
Vulnerability in wordpress (CVE-2026-15054)
vulnerability in wordpress (CVE-2026-15054). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15240 |
|
Authentication Bypass in c (CVE-2026-15240)
authentication bypass in c (CVE-2026-15240). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14592 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-14592)
cross-site scripting in wordpress (CVE-2026-14592). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15252 |
|
Vulnerability in wordpress (CVE-2026-15252)
vulnerability in wordpress (CVE-2026-15252). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15382 |
|
Vulnerability in wordpress (CVE-2026-15382)
vulnerability in wordpress (CVE-2026-15382). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14318 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-14318)
cross-site scripting in wordpress (CVE-2026-14318). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15257 |
|
Vulnerability in wordpress (CVE-2026-15257)
vulnerability in wordpress (CVE-2026-15257). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14188 |
|
Information Disclosure in wordpress (CVE-2026-14188)
vulnerability in wordpress (CVE-2026-14188). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13143 |
|
Vulnerability in wordpress (CVE-2026-13143)
vulnerability in wordpress (CVE-2026-13143). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-11782 |
|
Vulnerability in wordpress (CVE-2026-11782)
vulnerability in wordpress (CVE-2026-11782). Data can be tampered with by attackers.
|
| CVE-2026-13145 |
|
Vulnerability in wordpress (CVE-2026-13145)
vulnerability in wordpress (CVE-2026-13145). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13345 |
|
Vulnerability in wordpress (CVE-2026-13345)
vulnerability in wordpress (CVE-2026-13345). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-1360 |
|
Unsafe Deserialization in wordpress (CVE-2026-1360)
vulnerability in wordpress (CVE-2026-1360). Successful exploitation can lead to full system takeover. Exploitable via ``allowed_classes``.
|
| CVE-2026-14356 |
|
Vulnerability in wordpress (CVE-2026-14356)
vulnerability in wordpress (CVE-2026-14356). Successful exploitation can lead to full system takeover.
|
| CVE-2026-16610 |
|
Unrestricted File Upload in wordpress (CVE-2026-16610)
vulnerability in wordpress (CVE-2026-16610). Successful exploitation can lead to full system takeover.
|
| CVE-2026-16092 |
|
SQL Injection in wordpress (CVE-2026-16092)
SQL injection in wordpress (CVE-2026-16092). Confidential information can be exposed externally.
|
| CVE-2026-1982 |
|
Vulnerability in wordpress (CVE-2026-1982)
vulnerability in wordpress (CVE-2026-1982). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14270 |
|
Unrestricted File Upload in wordpress (CVE-2026-14270)
vulnerability in wordpress (CVE-2026-14270). Successful exploitation can lead to full system takeover.
|
| CVE-2026-5060 |
|
Vulnerability in wordpress (CVE-2026-5060)
vulnerability in wordpress (CVE-2026-5060). Data can be tampered with by attackers. Exploitable via ``file_id``.
|
| CVE-2026-6089 |
|
SSRF (Server-Side Request Forgery) in wordpress (CVE-2026-6089)
SSRF in wordpress (CVE-2026-6089). Confidential information can be exposed externally.
|
| CVE-2026-7436 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-7436)
cross-site scripting in wordpress (CVE-2026-7436). Risk of unauthorized operations or information disclosure. Exploitable via ``wpcbm_best_seller``.
|
| CVE-2026-8791 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-8791)
cross-site scripting in wordpress (CVE-2026-8791). Risk of unauthorized operations or information disclosure. Exploitable via ``bookingWebsiteUrl``.
|
| CVE-2026-4604 |
|
Vulnerability in wordpress (CVE-2026-4604)
vulnerability in wordpress (CVE-2026-4604). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14900 |
|
Code Injection in wordpress (CVE-2026-14900)
code injection in wordpress (CVE-2026-14900). Successful exploitation can lead to full system takeover.
|
| CVE-2026-16597 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-16597)
cross-site scripting in wordpress (CVE-2026-16597). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16655 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-16655)
cross-site scripting in wordpress (CVE-2026-16655). Risk of unauthorized operations or information disclosure. Exploitable via ``password``.
|
| CVE-2026-14488 |
|
Vulnerability in wordpress (CVE-2026-14488)
vulnerability in wordpress (CVE-2026-14488). Data can be tampered with by attackers.
|
| CVE-2026-65100 |
|
Vulnerability in apache (CVE-2026-65100)
vulnerability in apache (CVE-2026-65100). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-58188 |
|
Out-of-Bounds Write in apache (CVE-2026-58188)
out-of-bounds write in apache (CVE-2026-58188). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-58189 |
|
SSRF (Server-Side Request Forgery) in apache (CVE-2026-58189)
SSRF in apache (CVE-2026-58189). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-59243 |
|
Vulnerability in apache (CVE-2026-59243)
vulnerability in apache (CVE-2026-59243). Successful exploitation can lead to full system takeover. Exploitable via ``True``.
|