Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-27535 |
|
Subscriber Broken Access Control in Solace Extra <= 1.6.0 versions.
Subscriber Broken Access Control in Solace Extra <= 1.6.0 versions.
|
| CVE-2026-27380 |
|
Editor PHP Object Injection in Car Rental Manager <= 1.3.9 versions.
Editor PHP Object Injection in Car Rental Manager <= 1.3.9 versions.
|
| CVE-2026-27345 |
|
Unauthenticated Broken Access Control in Taxi Booking Manager for WooCommerce <= 2.0.3 versions.
Unauthenticated Broken Access Control in Taxi Booking Manager for WooCommerce <= 2.0.3 versions.
|
| CVE-2026-21832 |
|
Vulnerability in CVE-2026-21832 (CVE-2026-21832)
vulnerability in CVE-2026-21832 (CVE-2026-21832). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19716 |
|
Cross-Site Scripting (XSS) in CVE-2026-19716 (CVE-2026-19716)
cross-site scripting in CVE-2026-19716 (CVE-2026-19716). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-62318 |
|
Cross-Site Request Forgery (CSRF) in CVE-2025-62318 (CVE-2025-62318)
vulnerability in CVE-2025-62318 (CVE-2025-62318). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-62315 |
|
Vulnerability in CVE-2025-62315 (CVE-2025-62315)
vulnerability in CVE-2025-62315 (CVE-2025-62315). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-62314 |
|
Vulnerability in CVE-2025-62314 (CVE-2025-62314)
vulnerability in CVE-2025-62314 (CVE-2025-62314). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-55102 |
|
Vulnerability in hashi-vault-js (CVE-2026-55102)
vulnerability in hashi-vault-js (CVE-2026-55102). Risk of unauthorized operations or information disclosure. Exploitable via ``Vault.js``. Mitigation: upgrade to `0.5.2` or later.
|
| CVE-2026-55088 |
|
Information Disclosure in ep_etherpad-lite (CVE-2026-55088)
vulnerability in ep_etherpad-lite (CVE-2026-55088). Confidential information can be exposed externally. Exploitable via ``prefsHttp``. Mitigation: upgrade to `3.1.0` or later.
|
| CVE-2026-55086 |
|
Vulnerability in ep_etherpad-lite (CVE-2026-55086)
vulnerability in ep_etherpad-lite (CVE-2026-55086). Risk of unauthorized operations or information disclosure. Exploitable via ``ExportHandler``. Mitigation: upgrade to `3.1.0` or later.
|
| CVE-2026-55087 |
|
Cross-Site Scripting (XSS) in ep_etherpad-lite (CVE-2026-55087)
cross-site scripting in ep_etherpad-lite (CVE-2026-55087). Risk of unauthorized operations or information disclosure. Exploitable via ``String.prototype.replaceAll``. Mitigation: upgrade to `3.1.0` or later.
|
| CVE-2026-55072 |
|
Vulnerability in pimcore/pimcore (CVE-2026-55072)
vulnerability in pimcore/pimcore (CVE-2026-55072). Risk of unauthorized operations or information disclosure. Exploitable via ``objects``. Mitigation: upgrade to `12.3.9` or later.
|
| CVE-2026-73585 |
|
Vulnerability in redhat (CVE-2026-73585)
vulnerability in redhat (CVE-2026-73585). Data can be tampered with by attackers.
|
| CVE-2026-73584 |
|
Vulnerability in dos (CVE-2026-73584)
vulnerability in dos (CVE-2026-73584). Data can be tampered with by attackers.
|
| CVE-2026-73583 |
|
Out-of-Bounds Read in dos (CVE-2026-73583)
vulnerability in dos (CVE-2026-73583). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-6471 |
|
Vulnerability in postgresql (CVE-2026-6471)
vulnerability in postgresql (CVE-2026-6471). Successful exploitation can lead to full system takeover.
|
| CVE-2026-6470 |
|
Vulnerability in dos (CVE-2026-6470)
vulnerability in dos (CVE-2026-6470). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-6469 |
|
Vulnerability in postgresql (CVE-2026-6469)
vulnerability in postgresql (CVE-2026-6469). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-6464 |
|
Vulnerability in postgresql (CVE-2026-6464)
vulnerability in postgresql (CVE-2026-6464). Successful exploitation can lead to full system takeover.
|
| CVE-2026-49827 |
|
Vulnerability in CVE-2026-49827 (CVE-2026-49827)
vulnerability in CVE-2026-49827 (CVE-2026-49827). Successful exploitation can lead to full system takeover.
|
| CVE-2026-19385 |
|
Vulnerability in postgresql (CVE-2026-19385)
vulnerability in postgresql (CVE-2026-19385). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18408 |
|
Vulnerability in postgresql (CVE-2026-18408)
vulnerability in postgresql (CVE-2026-18408). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18024 |
|
Vulnerability in postgresql (CVE-2026-18024)
vulnerability in postgresql (CVE-2026-18024). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16241 |
|
Vulnerability in dos (CVE-2026-16241)
vulnerability in dos (CVE-2026-16241). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16239 |
|
Vulnerability in postgresql (CVE-2026-16239)
vulnerability in postgresql (CVE-2026-16239). Successful exploitation can lead to full system takeover.
|
| CVE-2026-16238 |
|
Vulnerability in postgresql (CVE-2026-16238)
vulnerability in postgresql (CVE-2026-16238). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15742 |
|
Vulnerability in postgresql (CVE-2026-15742)
vulnerability in postgresql (CVE-2026-15742). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15741 |
|
SQL Injection in sqli (CVE-2026-15741)
SQL injection in sqli (CVE-2026-15741). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14681 |
|
Vulnerability in postgresql (CVE-2026-14681)
vulnerability in postgresql (CVE-2026-14681). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14680 |
|
Vulnerability in postgresql (CVE-2026-14680)
vulnerability in postgresql (CVE-2026-14680). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14679 |
|
Vulnerability in postgresql (CVE-2026-14679)
vulnerability in postgresql (CVE-2026-14679). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14678 |
|
Vulnerability in postgresql (CVE-2026-14678)
vulnerability in postgresql (CVE-2026-14678). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14677 |
|
Vulnerability in postgresql (CVE-2026-14677)
vulnerability in postgresql (CVE-2026-14677). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14676 |
|
Vulnerability in postgresql (CVE-2026-14676)
vulnerability in postgresql (CVE-2026-14676). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14673 |
|
Vulnerability in postgresql (CVE-2026-14673)
vulnerability in postgresql (CVE-2026-14673). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14672 |
|
Vulnerability in postgresql (CVE-2026-14672)
vulnerability in postgresql (CVE-2026-14672). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14671 |
|
Vulnerability in postgresql (CVE-2026-14671)
vulnerability in postgresql (CVE-2026-14671). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14670 |
|
Vulnerability in postgresql (CVE-2026-14670)
vulnerability in postgresql (CVE-2026-14670). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14669 |
|
Vulnerability in postgresql (CVE-2026-14669)
vulnerability in postgresql (CVE-2026-14669). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14668 |
|
Vulnerability in postgresql (CVE-2026-14668)
vulnerability in postgresql (CVE-2026-14668). Confidential information can be exposed externally.
|
| CVE-2026-14666 |
|
Vulnerability in postgresql (CVE-2026-14666)
vulnerability in postgresql (CVE-2026-14666). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14664 |
|
Vulnerability in postgresql (CVE-2026-14664)
vulnerability in postgresql (CVE-2026-14664). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14663 |
|
Vulnerability in postgresql (CVE-2026-14663)
vulnerability in postgresql (CVE-2026-14663). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14662 |
|
Vulnerability in postgresql (CVE-2026-14662)
vulnerability in postgresql (CVE-2026-14662). Successful exploitation can lead to full system takeover.
|
| CVE-2025-52640 |
|
Vulnerability in CVE-2025-52640 (CVE-2025-52640)
vulnerability in CVE-2025-52640 (CVE-2025-52640). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-73625 |
|
OS Command Injection in CVE-2026-73625 (CVE-2026-73625)
OS command injection in CVE-2026-73625 (CVE-2026-73625). Successful exploitation can lead to full system takeover.
|
| CVE-2026-73628 |
|
Cross-Site Scripting (XSS) in CVE-2026-73628 (CVE-2026-73628)
cross-site scripting in CVE-2026-73628 (CVE-2026-73628). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.6.1` or later.
|
| CVE-2026-73629 |
|
SSRF (Server-Side Request Forgery) in CVE-2026-73629 (CVE-2026-73629)
SSRF in CVE-2026-73629 (CVE-2026-73629). Confidential information can be exposed externally.
|
| CVE-2026-73617 |
|
Vulnerability in CVE-2026-73617 (CVE-2026-73617)
vulnerability in CVE-2026-73617 (CVE-2026-73617). Confidential information can be exposed externally.
|