Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-48948 |
|
Vulnerability in joomla (CVE-2026-48948)
vulnerability in joomla (CVE-2026-48948). Successful exploitation can lead to full system takeover.
|
| CVE-2026-23698 |
|
Unrestricted File Upload in apache (CVE-2026-23698)
vulnerability in apache (CVE-2026-23698). Successful exploitation can lead to full system takeover.
|
| CVE-2026-23697 |
|
Unrestricted File Upload in apache (CVE-2026-23697)
vulnerability in apache (CVE-2026-23697). Successful exploitation can lead to full system takeover.
|
| CVE-2026-56812 |
|
Vulnerability in dos (CVE-2026-56812)
vulnerability in dos (CVE-2026-56812). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-56811 |
|
Vulnerability in dos (CVE-2026-56811)
vulnerability in dos (CVE-2026-56811). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-6101 |
|
Vulnerability in wordpress (CVE-2026-6101)
vulnerability in wordpress (CVE-2026-6101). Successful exploitation can lead to full system takeover.
|
| CVE-2026-12277 |
|
Vulnerability in wordpress (CVE-2026-12277)
vulnerability in wordpress (CVE-2026-12277). Data can be tampered with by attackers.
|
| CVE-2026-43825 |
|
Unsafe Deserialization in apache (CVE-2026-43825)
vulnerability in apache (CVE-2026-43825). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-46588 |
|
Vulnerability in org.apache.camel:camel-couchdb (CVE-2026-46588)
vulnerability in org.apache.camel:camel-couchdb (CVE-2026-46588). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `4.21.0` or later.
|
| CVE-2026-46587 |
|
Vulnerability in org.apache.camel:camel-couchbase (CVE-2026-46587)
vulnerability in org.apache.camel:camel-couchbase (CVE-2026-46587). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `4.21.0` or later.
|
| CVE-2026-49297 |
|
Path Traversal in apache (CVE-2026-49297)
path traversal in apache (CVE-2026-49297). Data can be tampered with by attackers. Exploitable via ``GCSToSFTPOperator``.
|
| CVE-2026-49042 |
|
Vulnerability in org.apache.camel:camel-langchain4j-tools (CVE-2026-49042)
vulnerability in org.apache.camel:camel-langchain4j-tools (CVE-2026-49042). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `4.21.0` or later.
|
| CVE-2026-55994 |
|
Vulnerability in org.apache.camel:camel-iggy (CVE-2026-55994)
vulnerability in org.apache.camel:camel-iggy (CVE-2026-55994). Confidential information can be exposed externally. Mitigation: upgrade to `4.21.0` or later.
|
| CVE-2026-55993 |
|
Vulnerability in org.apache.camel:camel-atmosphere-websocket (CVE-2026-55993)
vulnerability in org.apache.camel:camel-atmosphere-websocket (CVE-2026-55993). Confidential information can be exposed externally. Mitigation: upgrade to `4.21.0` or later.
|
| CVE-2026-46591 |
|
Vulnerability in org.apache.camel:camel-neo4j (CVE-2026-46591)
vulnerability in org.apache.camel:camel-neo4j (CVE-2026-46591). Data can be tampered with by attackers. Mitigation: upgrade to `4.21.0` or later.
|
| CVE-2026-46585 |
|
Vulnerability in org.apache.camel:camel-lucene (CVE-2026-46585)
vulnerability in org.apache.camel:camel-lucene (CVE-2026-46585). Confidential information can be exposed externally. Mitigation: upgrade to `4.21.0` or later.
|
| CVE-2026-46726 |
|
Vulnerability in org.apache.camel:camel-vertx-websocket (CVE-2026-46726)
vulnerability in org.apache.camel:camel-vertx-websocket (CVE-2026-46726). Confidential information can be exposed externally. Mitigation: upgrade to `4.21.0` or later.
|
| CVE-2026-46590 |
|
Unsafe Deserialization in org.apache.camel:camel-pqc (CVE-2026-46590)
vulnerability in org.apache.camel:camel-pqc (CVE-2026-46590). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `4.21.0` or later.
|
| CVE-2026-46592 |
|
Vulnerability in org.apache.camel:camel-cxf-soap (CVE-2026-46592)
vulnerability in org.apache.camel:camel-cxf-soap (CVE-2026-46592). Confidential information can be exposed externally. Mitigation: upgrade to `4.21.0` or later.
|
| CVE-2026-24012 |
|
Vulnerability in apache (CVE-2026-24012)
vulnerability in apache (CVE-2026-24012). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-42527 |
|
Unsafe Deserialization in org.apache.camel:camel-jms (CVE-2026-42527)
vulnerability in org.apache.camel:camel-jms (CVE-2026-42527). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `4.21.0` or later.
|
| CVE-2026-43865 |
|
Unsafe Deserialization in org.apache.camel:camel-hazelcast (CVE-2026-43865)
vulnerability in org.apache.camel:camel-hazelcast (CVE-2026-43865). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `4.21.0` or later.
|
| CVE-2026-40859 |
|
Unsafe Deserialization in org.apache.camel:camel-vertx-http (CVE-2026-40859)
vulnerability in org.apache.camel:camel-vertx-http (CVE-2026-40859). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `4.20.0` or later.
|
| CVE-2026-46457 |
|
Vulnerability in org.apache.camel:camel-nats (CVE-2026-46457)
vulnerability in org.apache.camel:camel-nats (CVE-2026-46457). Data can be tampered with by attackers. Mitigation: upgrade to `4.21.0` or later.
|
| CVE-2026-43866 |
|
Unsafe Deserialization in org.apache.camel:camel-jms (CVE-2026-43866)
vulnerability in org.apache.camel:camel-jms (CVE-2026-43866). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `4.21.0` or later.
|
| CVE-2026-14802 |
|
A vulnerability was detected in react create-react-app up to 5.0.1 on macOS. This affects the...
A vulnerability was detected in react create-react-app up to 5.0.1 on macOS. This affects the...
|
| CVE-2026-11766 |
|
Vulnerability in wordpress (CVE-2026-11766)
vulnerability in wordpress (CVE-2026-11766). Successful exploitation can lead to full system takeover.
|
| CVE-2026-11855 |
|
Vulnerability in wordpress (CVE-2026-11855)
vulnerability in wordpress (CVE-2026-11855). Successful exploitation can lead to full system takeover.
|
| CVE-2026-11962 |
|
Vulnerability in wordpress (CVE-2026-11962)
vulnerability in wordpress (CVE-2026-11962). Successful exploitation can lead to full system takeover.
|
| CVE-2026-12083 |
|
Vulnerability in wordpress (CVE-2026-12083)
vulnerability in wordpress (CVE-2026-12083). Successful exploitation can lead to full system takeover.
|
| CVE-2024-6228 |
|
Vulnerability in wordpress (CVE-2024-6228)
vulnerability in wordpress (CVE-2024-6228). Successful exploitation can lead to full system takeover.
|
| CVE-2026-10830 |
|
Vulnerability in wordpress (CVE-2026-10830)
vulnerability in wordpress (CVE-2026-10830). Successful exploitation can lead to full system takeover.
|
| CVE-2026-47896 |
|
Path Traversal in csharp (CVE-2026-47896)
path traversal in csharp (CVE-2026-47896). Confidential information can be exposed externally.
|
| CVE-2026-9148 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-9148)
cross-site scripting in wordpress (CVE-2026-9148). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-47897 |
|
Path Traversal in csharp (CVE-2026-47897)
path traversal in csharp (CVE-2026-47897). Data can be tampered with by attackers.
|
| CVE-2026-14352 |
|
Path Traversal in wordpress (CVE-2026-14352)
path traversal in wordpress (CVE-2026-14352). Confidential information can be exposed externally. Exploitable via `Referer header`.
|
| CVE-2026-13040 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-13040)
cross-site scripting in wordpress (CVE-2026-13040). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14327 |
|
Path Traversal in wordpress (CVE-2026-14327)
path traversal in wordpress (CVE-2026-14327). Confidential information can be exposed externally.
|
| CVE-2026-58460 |
|
Path Traversal in react (CVE-2026-58460)
path traversal in react (CVE-2026-58460). Data can be tampered with by attackers.
|
| CVE-2026-58467 |
|
Path Traversal in nginx (CVE-2026-58467)
path traversal in nginx (CVE-2026-58467). Confidential information can be exposed externally.
|
| CVE-2026-7311 |
|
Path Traversal in wordpress (CVE-2026-7311)
path traversal in wordpress (CVE-2026-7311). Data can be tampered with by attackers.
|
| CVE-2026-27402 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-27402)
cross-site scripting in wordpress (CVE-2026-27402). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-69155 |
|
Unauthenticated Cross Site Scripting (XSS) in Fitness Zone WordPress Theme <= 5.7 versions.
Unauthenticated Cross Site Scripting (XSS) in Fitness Zone WordPress Theme <= 5.7 versions.
|
| CVE-2025-69152 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2025-69152)
cross-site scripting in wordpress (CVE-2025-69152). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-69156 |
|
Unauthenticated Cross Site Scripting (XSS) in Kids Zone - Children WordPress Theme <= 5.4 versions.
Unauthenticated Cross Site Scripting (XSS) in Kids Zone - Children WordPress Theme <= 5.4 versions.
|
| CVE-2025-69134 |
|
Vulnerability in wordpress (CVE-2025-69134)
vulnerability in wordpress (CVE-2025-69134). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-69154 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2025-69154)
cross-site scripting in wordpress (CVE-2025-69154). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-9834 |
|
Command Injection in wordpress (CVE-2026-9834)
command injection in wordpress (CVE-2026-9834). Successful exploitation can lead to full system takeover. Exploitable via ``wp_db_exclude_table``.
|
| CVE-2026-13369 |
|
Path Traversal in wordpress (CVE-2026-13369)
path traversal in wordpress (CVE-2026-13369). Confidential information can be exposed externally.
|
| CVE-2026-8441 |
|
SQL Injection in wordpress (CVE-2026-8441)
SQL injection in wordpress (CVE-2026-8441). Confidential information can be exposed externally.
|