Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-15156 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-15156)
cross-site scripting in wordpress (CVE-2026-15156). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-12900 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-12900)
cross-site scripting in wordpress (CVE-2026-12900). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-58624 |
|
Vulnerability in apache (CVE-2026-58624)
vulnerability in apache (CVE-2026-58624). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-56624 |
|
Vulnerability in apache (CVE-2026-56624)
vulnerability in apache (CVE-2026-56624). Confidential information can be exposed externally.
|
| CVE-2026-56623 |
|
Path Traversal in apache (CVE-2026-56623)
path traversal in apache (CVE-2026-56623). Confidential information can be exposed externally.
|
| CVE-2026-56452 |
|
Path Traversal in c (CVE-2026-56452)
path traversal in c (CVE-2026-56452). Data can be tampered with by attackers.
|
| CVE-2026-53596 |
|
Vulnerability in laravel (CVE-2026-53596)
vulnerability in laravel (CVE-2026-53596). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-53595 |
|
Vulnerability in laravel (CVE-2026-53595)
vulnerability in laravel (CVE-2026-53595). Confidential information can be exposed externally. Exploitable via `POST /user-setup/{hash}/{invite_sent_at}`.
|
| CVE-2026-53594 |
|
Path Traversal in laravel (CVE-2026-53594)
path traversal in laravel (CVE-2026-53594). Confidential information can be exposed externally.
|
| CVE-2026-53593 |
|
Unrestricted File Upload in laravel (CVE-2026-53593)
vulnerability in laravel (CVE-2026-53593). Successful exploitation can lead to full system takeover. Exploitable via `POST /uploads/upload`.
|
| CVE-2026-53591 |
|
Authentication Bypass in laravel (CVE-2026-53591)
authentication bypass in laravel (CVE-2026-53591). Data can be tampered with by attackers. Exploitable via ``last_reply_from``.
|
| CVE-2026-53592 |
|
Vulnerability in laravel (CVE-2026-53592)
vulnerability in laravel (CVE-2026-53592). Risk of unauthorized operations or information disclosure. Exploitable via ``getQueryParam``.
|
| CVE-2026-48812 |
|
Authentication Bypass in laravel (CVE-2026-48812)
authentication bypass in laravel (CVE-2026-48812). Confidential information can be exposed externally. Exploitable via ``token_type``.
|
| CVE-2026-45295 |
|
Vulnerability in laravel (CVE-2026-45295)
vulnerability in laravel (CVE-2026-45295). Risk of unauthorized operations or information disclosure. Exploitable via `GET /thread/read/{conversation_id}/{thread_id}`.
|
| CVE-2026-32825 |
|
Vulnerability in rails (CVE-2026-32825)
vulnerability in rails (CVE-2026-32825). Confidential information can be exposed externally.
|
| CVE-2026-32820 |
|
Path Traversal in rails (CVE-2026-32820)
path traversal in rails (CVE-2026-32820). Confidential information can be exposed externally. Exploitable via ``docs``.
|
| CVE-2026-32823 |
|
Cross-Site Request Forgery (CSRF) in rails (CVE-2026-32823)
vulnerability in rails (CVE-2026-32823). Risk of unauthorized operations or information disclosure. Exploitable via ``GET``.
|
| CVE-2026-45797 |
|
Cross-Site Scripting (XSS) in express (CVE-2026-45797)
cross-site scripting in express (CVE-2026-45797). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-53421 |
|
Vulnerability in apache (CVE-2026-53421)
vulnerability in apache (CVE-2026-53421). Successful exploitation can lead to full system takeover.
|
| CVE-2026-53405 |
|
Vulnerability in apache (CVE-2026-53405)
vulnerability in apache (CVE-2026-53405). Successful exploitation can lead to full system takeover.
|
| CVE-2026-57308 |
|
SQL Injection in apache (CVE-2026-57308)
SQL injection in apache (CVE-2026-57308). Successful exploitation can lead to full system takeover.
|
| CVE-2026-62418 |
|
SSRF (Server-Side Request Forgery) in apache (CVE-2026-62418)
SSRF in apache (CVE-2026-62418). Confidential information can be exposed externally.
|
| CVE-2026-63071 |
|
Vulnerability in apache (CVE-2026-63071)
vulnerability in apache (CVE-2026-63071). Successful exploitation can lead to full system takeover.
|
| CVE-2026-62183 |
|
Privilege Escalation in apache (CVE-2026-62183)
vulnerability in apache (CVE-2026-62183). Successful exploitation can lead to full system takeover.
|
| CVE-2026-9833 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-9833)
cross-site scripting in wordpress (CVE-2026-9833). Risk of unauthorized operations or information disclosure. Exploitable via ``edit_pages``.
|
| CVE-2026-8825 |
|
Information Disclosure in wordpress (CVE-2026-8825)
vulnerability in wordpress (CVE-2026-8825). Confidential information can be exposed externally.
|
| CVE-2026-13432 |
|
Vulnerability in wordpress (CVE-2026-13432)
vulnerability in wordpress (CVE-2026-13432). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13156 |
|
Cross-Site Request Forgery (CSRF) in wordpress (CVE-2026-13156)
vulnerability in wordpress (CVE-2026-13156). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13147 |
|
Vulnerability in wordpress (CVE-2026-13147)
vulnerability in wordpress (CVE-2026-13147). Confidential information can be exposed externally.
|
| CVE-2026-13142 |
|
Privilege Escalation in wordpress (CVE-2026-13142)
vulnerability in wordpress (CVE-2026-13142). Successful exploitation can lead to full system takeover.
|
| CVE-2026-12973 |
|
Vulnerability in wordpress (CVE-2026-12973)
vulnerability in wordpress (CVE-2026-12973). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-12972 |
|
Vulnerability in wordpress (CVE-2026-12972)
vulnerability in wordpress (CVE-2026-12972). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-12970 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-12970)
cross-site scripting in wordpress (CVE-2026-12970). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-12898 |
|
Path Traversal in wordpress (CVE-2026-12898)
path traversal in wordpress (CVE-2026-12898). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-12723 |
|
Vulnerability in wordpress (CVE-2026-12723)
vulnerability in wordpress (CVE-2026-12723). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-12724 |
|
Vulnerability in wordpress (CVE-2026-12724)
vulnerability in wordpress (CVE-2026-12724). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-10724 |
|
Vulnerability in wordpress (CVE-2026-10724)
vulnerability in wordpress (CVE-2026-10724). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-12592 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-12592)
cross-site scripting in wordpress (CVE-2026-12592). Successful exploitation can lead to full system takeover.
|
| CVE-2026-11868 |
|
Vulnerability in wordpress (CVE-2026-11868)
vulnerability in wordpress (CVE-2026-11868). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-11349 |
|
SQL Injection in wordpress (CVE-2026-11349)
SQL injection in wordpress (CVE-2026-11349). Confidential information can be exposed externally.
|
| CVE-2026-10755 |
|
Authorization Flaw in wordpress (CVE-2026-10755)
vulnerability in wordpress (CVE-2026-10755). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-10081 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-10081)
cross-site scripting in wordpress (CVE-2026-10081). Successful exploitation can lead to full system takeover.
|
| CVE-2026-64071 |
|
Vulnerability in express (CVE-2026-64071)
vulnerability in express (CVE-2026-64071). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16216 |
|
Cross-Site Request Forgery (CSRF) in django (CVE-2026-16216)
vulnerability in django (CVE-2026-16216). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16215 |
|
Vulnerability in django (CVE-2026-16215)
vulnerability in django (CVE-2026-16215). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16214 |
|
Vulnerability in django (CVE-2026-16214)
vulnerability in django (CVE-2026-16214). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16212 |
|
Vulnerability in django (CVE-2026-16212)
vulnerability in django (CVE-2026-16212). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16213 |
|
Vulnerability in c (CVE-2026-16213)
vulnerability in c (CVE-2026-16213). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16208 |
|
Vulnerability in django (CVE-2026-16208)
vulnerability in django (CVE-2026-16208). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16207 |
|
Vulnerability in django (CVE-2026-16207)
vulnerability in django (CVE-2026-16207). Risk of unauthorized operations or information disclosure.
|