Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-47889 |
|
Vulnerability in spring (CVE-2026-47889)
vulnerability in spring (CVE-2026-47889). Confidential information can be exposed externally.
|
| CVE-2026-47892 |
|
Authorization Flaw in spring (CVE-2026-47892)
vulnerability in spring (CVE-2026-47892). Successful exploitation can lead to full system takeover.
|
| CVE-2026-47888 |
|
Vulnerability in spring (CVE-2026-47888)
vulnerability in spring (CVE-2026-47888). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16567 |
|
Vulnerability in wordpress (CVE-2026-16567)
vulnerability in wordpress (CVE-2026-16567). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-47884 |
|
Path Traversal in spring (CVE-2026-47884)
path traversal in spring (CVE-2026-47884). Successful exploitation can lead to full system takeover.
|
| CVE-2026-47890 |
|
Vulnerability in spring (CVE-2026-47890)
vulnerability in spring (CVE-2026-47890). Successful exploitation can lead to full system takeover.
|
| CVE-2026-47887 |
|
Open Redirect in spring (CVE-2026-47887)
vulnerability in spring (CVE-2026-47887). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-47891 |
|
Vulnerability in spring (CVE-2026-47891)
vulnerability in spring (CVE-2026-47891). Successful exploitation can lead to full system takeover.
|
| CVE-2026-19223 |
|
Code Injection in wordpress (CVE-2026-19223)
code injection in wordpress (CVE-2026-19223). Successful exploitation can lead to full system takeover.
|
| CVE-2026-13416 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-13416)
cross-site scripting in wordpress (CVE-2026-13416). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13415 |
|
Privilege Escalation in wordpress (CVE-2026-13415)
vulnerability in wordpress (CVE-2026-13415). Successful exploitation can lead to full system takeover.
|
| CVE-2026-13414 |
|
Vulnerability in wordpress (CVE-2026-13414)
vulnerability in wordpress (CVE-2026-13414). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-47851 |
|
Analyzing a PDF with a deeply nested or cyclic table of contents can cause a StackOverflowError...
Analyzing a PDF with a deeply nested or cyclic table of contents can cause a StackOverflowError...
|
| CVE-2026-47852 |
|
A local attacker on a multi-user host can pre-create the deterministic cache path and plant a...
A local attacker on a multi-user host can pre-create the deterministic cache path and plant a...
|
| CVE-2026-47843 |
|
Vulnerability in react (CVE-2026-47843)
vulnerability in react (CVE-2026-47843). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-80426 |
|
Cross-Site Scripting (XSS) in react (CVE-2026-80426)
cross-site scripting in react (CVE-2026-80426). Confidential information can be exposed externally.
|
| CVE-2026-15990 |
|
Path Traversal in wordpress (CVE-2026-15990)
path traversal in wordpress (CVE-2026-15990). Confidential information can be exposed externally.
|
| CVE-2026-63041 |
|
Vulnerability in apache (CVE-2026-63041)
vulnerability in apache (CVE-2026-63041). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15985 |
|
Vulnerability in wordpress (CVE-2026-15985)
vulnerability in wordpress (CVE-2026-15985). Successful exploitation can lead to full system takeover.
|
| CVE-2026-5092 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-5092)
cross-site scripting in wordpress (CVE-2026-5092). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-3235 |
|
Vulnerability in wordpress (CVE-2026-3235)
vulnerability in wordpress (CVE-2026-3235). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18080 |
|
Unrestricted File Upload in wordpress (CVE-2026-18080)
vulnerability in wordpress (CVE-2026-18080). Successful exploitation can lead to full system takeover.
|
| CVE-2026-2388 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-2388)
cross-site scripting in wordpress (CVE-2026-2388). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-75977 |
|
Privilege Escalation in wordpress (CVE-2026-75977)
vulnerability in wordpress (CVE-2026-75977). Successful exploitation can lead to full system takeover.
|
| CVE-2026-6178 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-6178)
cross-site scripting in wordpress (CVE-2026-6178). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18884 |
|
SQL Injection in wordpress (CVE-2026-18884)
SQL injection in wordpress (CVE-2026-18884). Confidential information can be exposed externally.
|
| CVE-2026-3002 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-3002)
cross-site scripting in wordpress (CVE-2026-3002). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18431 |
|
Vulnerability in wordpress (CVE-2026-18431)
vulnerability in wordpress (CVE-2026-18431). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18331 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-18331)
cross-site scripting in wordpress (CVE-2026-18331). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-78146 |
|
Information Disclosure in wordpress (CVE-2026-78146)
vulnerability in wordpress (CVE-2026-78146). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-77790 |
|
Vulnerability in wordpress (CVE-2026-77790)
vulnerability in wordpress (CVE-2026-77790). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-77789 |
|
Vulnerability in wordpress (CVE-2026-77789)
vulnerability in wordpress (CVE-2026-77789). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-77758 |
|
Information Disclosure in wordpress (CVE-2026-77758)
vulnerability in wordpress (CVE-2026-77758). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-77757 |
|
Path Traversal in wordpress (CVE-2026-77757)
path traversal in wordpress (CVE-2026-77757). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-77754 |
|
Information Disclosure in wordpress (CVE-2026-77754)
vulnerability in wordpress (CVE-2026-77754). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-77695 |
|
Vulnerability in wordpress (CVE-2026-77695)
vulnerability in wordpress (CVE-2026-77695). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-77694 |
|
Vulnerability in wordpress (CVE-2026-77694)
vulnerability in wordpress (CVE-2026-77694). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-77693 |
|
Vulnerability in wordpress (CVE-2026-77693)
vulnerability in wordpress (CVE-2026-77693). Data can be tampered with by attackers.
|
| CVE-2026-75798 |
|
Vulnerability in wordpress (CVE-2026-75798)
vulnerability in wordpress (CVE-2026-75798). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-74929 |
|
Vulnerability in wordpress (CVE-2026-74929)
vulnerability in wordpress (CVE-2026-74929). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-74930 |
|
Vulnerability in wordpress (CVE-2026-74930)
vulnerability in wordpress (CVE-2026-74930). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-75797 |
|
Path Traversal in wordpress (CVE-2026-75797)
path traversal in wordpress (CVE-2026-75797). Confidential information can be exposed externally.
|
| CVE-2026-74928 |
|
Vulnerability in wordpress (CVE-2026-74928)
vulnerability in wordpress (CVE-2026-74928). Data can be tampered with by attackers.
|
| CVE-2026-74851 |
|
Code Injection in wordpress (CVE-2026-74851)
code injection in wordpress (CVE-2026-74851). Successful exploitation can lead to full system takeover.
|
| CVE-2026-19760 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-19760)
cross-site scripting in wordpress (CVE-2026-19760). Risk of unauthorized operations or information disclosure. Exploitable via `Host header`.
|
| CVE-2026-19220 |
|
Privilege Escalation in wordpress (CVE-2026-19220)
vulnerability in wordpress (CVE-2026-19220). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19718 |
|
Authentication Bypass in wordpress (CVE-2026-19718)
authentication bypass in wordpress (CVE-2026-19718). Successful exploitation can lead to full system takeover.
|
| CVE-2026-19094 |
|
SQL Injection in wordpress (CVE-2026-19094)
SQL injection in wordpress (CVE-2026-19094). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16986 |
|
Vulnerability in wordpress (CVE-2026-16986)
vulnerability in wordpress (CVE-2026-16986). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16984 |
|
Vulnerability in wordpress (CVE-2026-16984)
vulnerability in wordpress (CVE-2026-16984). Risk of unauthorized operations or information disclosure.
|