Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-19718 |
|
Authentication Bypass in wordpress (CVE-2026-19718)
authentication bypass in wordpress (CVE-2026-19718). Successful exploitation can lead to full system takeover.
|
| CVE-2026-13404 |
|
Vulnerability in wordpress (CVE-2026-13404)
vulnerability in wordpress (CVE-2026-13404). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13406 |
|
Vulnerability in wordpress (CVE-2026-13406)
vulnerability in wordpress (CVE-2026-13406). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14212 |
|
Vulnerability in wordpress (CVE-2026-14212)
vulnerability in wordpress (CVE-2026-14212). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14216 |
|
Authentication Bypass in wordpress (CVE-2026-14216)
authentication bypass in wordpress (CVE-2026-14216). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-13172 |
|
Vulnerability in wordpress (CVE-2026-13172)
vulnerability in wordpress (CVE-2026-13172). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19632 |
|
Vulnerability in wordpress (CVE-2026-19632)
vulnerability in wordpress (CVE-2026-19632). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18985 |
|
Authorization Flaw in drupal (CVE-2026-18985)
vulnerability in drupal (CVE-2026-18985). Confidential information can be exposed externally.
|
| CVE-2026-18261 |
|
Vulnerability in Drupal Powerful Surveys. This issue affects Powerful Surveys versions: *.*.
Vulnerability in Drupal Powerful Surveys. This issue affects Powerful Surveys versions: *.*.
|
| CVE-2026-18260 |
|
Vulnerability in Drupal Disable Login Page. This issue affects Disable Login Page versions: *.*.
Vulnerability in Drupal Disable Login Page. This issue affects Disable Login Page versions: *.*.
|
| CVE-2026-18259 |
|
Vulnerability in drupal (CVE-2026-18259)
vulnerability in drupal (CVE-2026-18259). Confidential information can be exposed externally.
|
| CVE-2026-55805 |
|
Cross-Site Scripting (XSS) in drupal (CVE-2026-55805)
cross-site scripting in drupal (CVE-2026-55805). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16643 |
|
Vulnerability in drupal (CVE-2026-16643)
vulnerability in drupal (CVE-2026-16643). Confidential information can be exposed externally.
|
| CVE-2026-16640 |
|
Cross-Site Scripting (XSS) in drupal (CVE-2026-16640)
cross-site scripting in drupal (CVE-2026-16640). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16641 |
|
Vulnerability in Drupal Commerce Elavon. This issue affects Commerce Elavon versions: *.*.
Vulnerability in Drupal Commerce Elavon. This issue affects Commerce Elavon versions: *.*.
|
| CVE-2026-16642 |
|
Vulnerability in Drupal Email Login OTP. This issue affects Email Login OTP versions: *.*.
Vulnerability in Drupal Email Login OTP. This issue affects Email Login OTP versions: *.*.
|
| CVE-2026-16645 |
|
Vulnerability in drupal (CVE-2026-16645)
vulnerability in drupal (CVE-2026-16645). Confidential information can be exposed externally.
|
| CVE-2026-16639 |
|
Vulnerability in drupal (CVE-2026-16639)
vulnerability in drupal (CVE-2026-16639). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15917 |
|
Cross-Site Scripting (XSS) in drupal (CVE-2026-15917)
cross-site scripting in drupal (CVE-2026-15917). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16638 |
|
Cross-Site Scripting (XSS) in drupal (CVE-2026-16638)
cross-site scripting in drupal (CVE-2026-16638). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15088 |
|
Vulnerability in drupal (CVE-2026-15088)
vulnerability in drupal (CVE-2026-15088). Confidential information can be exposed externally.
|
| CVE-2026-15916 |
|
Vulnerability in drupal (CVE-2026-15916)
vulnerability in drupal (CVE-2026-15916). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16644 |
|
Authorization Flaw in drupal (CVE-2026-16644)
vulnerability in drupal (CVE-2026-16644). Confidential information can be exposed externally.
|
| CVE-2026-16646 |
|
Vulnerability in Drupal PanKM. This issue affects PanKM versions: *.*.
Vulnerability in Drupal PanKM. This issue affects PanKM versions: *.*.
|
| CVE-2026-65637 |
|
Vulnerability in apache (CVE-2026-65637)
vulnerability in apache (CVE-2026-65637). Successful exploitation can lead to full system takeover.
|
| CVE-2026-66422 |
|
Vulnerability in apache (CVE-2026-66422)
vulnerability in apache (CVE-2026-66422). Data can be tampered with by attackers.
|
| CVE-2026-65183 |
|
Vulnerability in apache (CVE-2026-65183)
vulnerability in apache (CVE-2026-65183). Successful exploitation can lead to full system takeover.
|
| CVE-2026-65927 |
|
Vulnerability in apache (CVE-2026-65927)
vulnerability in apache (CVE-2026-65927). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-65905 |
|
Vulnerability in apache (CVE-2026-65905)
vulnerability in apache (CVE-2026-65905). Successful exploitation can lead to full system takeover.
|
| CVE-2026-65182 |
|
Vulnerability in apache (CVE-2026-65182)
vulnerability in apache (CVE-2026-65182). Confidential information can be exposed externally.
|
| CVE-2026-73180 |
|
Vulnerability in apache (CVE-2026-73180)
vulnerability in apache (CVE-2026-73180). Confidential information can be exposed externally.
|
| CVE-2026-68569 |
|
Authentication Bypass in apache (CVE-2026-68569)
authentication bypass in apache (CVE-2026-68569). Confidential information can be exposed externally.
|
| CVE-2026-68525 |
|
Authorization Flaw in apache (CVE-2026-68525)
vulnerability in apache (CVE-2026-68525). Confidential information can be exposed externally.
|
| CVE-2026-68763 |
|
Vulnerability in apache (CVE-2026-68763)
vulnerability in apache (CVE-2026-68763). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-70665 |
|
Vulnerability in rails (CVE-2026-70665)
vulnerability in rails (CVE-2026-70665). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-74932 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-74932)
cross-site scripting in wordpress (CVE-2026-74932). Successful exploitation can lead to full system takeover. Exploitable via `Host header`.
|
| CVE-2026-78468 |
|
SQL Injection in wordpress (CVE-2026-78468)
SQL injection in wordpress (CVE-2026-78468). Confidential information can be exposed externally.
|
| CVE-2026-55571 |
|
Vulnerability in djust (CVE-2026-55571)
vulnerability in djust (CVE-2026-55571). Data can be tampered with by attackers. Exploitable via ``LiveViewConsumer``. Mitigation: upgrade to `1.0.4` or later.
|
| CVE-2026-77824 |
|
SQL Injection in wordpress (CVE-2026-77824)
SQL injection in wordpress (CVE-2026-77824). Confidential information can be exposed externally.
|
| CVE-2026-75908 |
|
Vulnerability in wordpress (CVE-2026-75908)
vulnerability in wordpress (CVE-2026-75908). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-75971 |
|
Privilege Escalation in wordpress (CVE-2026-75971)
vulnerability in wordpress (CVE-2026-75971). Successful exploitation can lead to full system takeover. Exploitable via ``import_start``.
|
| CVE-2026-55976 |
|
SSRF (Server-Side Request Forgery) in apache (CVE-2026-55976)
SSRF in apache (CVE-2026-55976). Confidential information can be exposed externally.
|
| CVE-2026-19949 |
|
SQL Injection in wordpress (CVE-2026-19949)
SQL injection in wordpress (CVE-2026-19949). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18547 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-18547)
cross-site scripting in wordpress (CVE-2026-18547). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-53561 |
|
Authentication Bypass in apache (CVE-2026-53561)
authentication bypass in apache (CVE-2026-53561). Confidential information can be exposed externally.
|
| CVE-2026-17587 |
|
Vulnerability in wordpress (CVE-2026-17587)
vulnerability in wordpress (CVE-2026-17587). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-49845 |
|
Code Injection in apache (CVE-2026-49845)
code injection in apache (CVE-2026-49845). Successful exploitation can lead to full system takeover.
|
| CVE-2026-78570 |
|
Privilege Escalation in wordpress (CVE-2026-78570)
vulnerability in wordpress (CVE-2026-78570). Successful exploitation can lead to full system takeover.
|
| CVE-2026-78572 |
|
Unsafe Deserialization in wordpress (CVE-2026-78572)
vulnerability in wordpress (CVE-2026-78572). Successful exploitation can lead to full system takeover.
|
| CVE-2026-78576 |
|
SQL Injection in wordpress (CVE-2026-78576)
SQL injection in wordpress (CVE-2026-78576). Confidential information can be exposed externally.
|