Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-7660 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-7660)
cross-site scripting in wordpress (CVE-2026-7660). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-7651 |
|
Vulnerability in wordpress (CVE-2026-7651)
vulnerability in wordpress (CVE-2026-7651). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-7634 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-7634)
cross-site scripting in wordpress (CVE-2026-7634). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-7621 |
|
Vulnerability in wordpress (CVE-2026-7621)
vulnerability in wordpress (CVE-2026-7621). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-7552 |
|
Vulnerability in wordpress (CVE-2026-7552)
vulnerability in wordpress (CVE-2026-7552). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-7052 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-7052)
cross-site scripting in wordpress (CVE-2026-7052). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-6455 |
|
Cross-Site Request Forgery (CSRF) in wordpress (CVE-2026-6455)
vulnerability in wordpress (CVE-2026-6455). Data can be tampered with by attackers.
|
| CVE-2026-6427 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-6427)
cross-site scripting in wordpress (CVE-2026-6427). Risk of unauthorized operations or information disclosure.
|
| DEBIAN-CVE-2026-44604 |
|
Vulnerability in rpm (DEBIAN-CVE-2026-44604)
vulnerability in rpm (DEBIAN-CVE-2026-44604). Successful exploitation can lead to full system takeover. Exploitable via ``rpmuncompress``.
|
| CVE-2026-44604 |
|
OS Command Injection in CVE-2026-44604 (CVE-2026-44604)
OS command injection in CVE-2026-44604 (CVE-2026-44604). Successful exploitation can lead to full system takeover. Exploitable via ``rpmuncompress``.
|
| SUSE-SU-2026:2102-1 |
|
Vulnerability in SUSE-SU-2026:2102-1 (SUSE-SU-2026:2102-1)
vulnerability in SUSE-SU-2026:2102-1 (SUSE-SU-2026:2102-1). Risk of unauthorized operations or information disclosure.
|
| USN-8329-1 |
|
Vulnerability in ffmpeg (USN-8329-1)
vulnerability in ffmpeg (USN-8329-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `7:6.1.1-3ubuntu5+esm8` or later.
|
| DEBIAN-CVE-2026-48095 |
|
Vulnerability in 7zip (DEBIAN-CVE-2026-48095)
vulnerability in 7zip (DEBIAN-CVE-2026-48095). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `26.01+dfsg-1` or later.
|
| GHSA-8hcx-p7m8-gc28 |
|
Vulnerability in org.keycloak:keycloak-services (GHSA-8hcx-p7m8-gc28)
vulnerability in org.keycloak:keycloak-services (GHSA-8hcx-p7m8-gc28). Confidential information can be exposed externally. Mitigation: upgrade to `26.6.4` or later.
|
| USN-8328-1 |
|
Vulnerability in openjdk-21 (USN-8328-1)
vulnerability in openjdk-21 (USN-8328-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `21.0.11+10-1~20.04.2` or later.
|
| CVE-2026-9803 |
|
Out-of-Bounds Read in org.keycloak:keycloak-services (CVE-2026-9803)
vulnerability in org.keycloak:keycloak-services (CVE-2026-9803). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `26.6.3` or later.
|
| CVE-2026-9802 |
|
Vulnerability in org.keycloak:keycloak-services (CVE-2026-9802)
vulnerability in org.keycloak:keycloak-services (CVE-2026-9802). Confidential information can be exposed externally. Mitigation: upgrade to `26.6.3` or later.
|
| CVE-2026-9801 |
|
Vulnerability in org.keycloak:keycloak-ldap-federation (CVE-2026-9801)
vulnerability in org.keycloak:keycloak-ldap-federation (CVE-2026-9801). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `26.6.3` or later.
|
| CVE-2026-9798 |
|
Vulnerability in org.keycloak:keycloak-services (CVE-2026-9798)
vulnerability in org.keycloak:keycloak-services (CVE-2026-9798). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-9673 |
|
Vulnerability in json-2-csv (CVE-2026-9673)
vulnerability in json-2-csv (CVE-2026-9673). Confidential information can be exposed externally. Mitigation: upgrade to `5.5.11` or later.
|
| CVE-2026-9644 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-9644)
cross-site scripting in wordpress (CVE-2026-9644). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-9009 |
|
Unrestricted File Upload in wordpress (CVE-2026-9009)
vulnerability in wordpress (CVE-2026-9009). Successful exploitation can lead to full system takeover.
|
| CVE-2026-7533 |
|
Cross-Site Request Forgery (CSRF) in wordpress (CVE-2026-7533)
vulnerability in wordpress (CVE-2026-7533). Risk of unauthorized operations or information disclosure. Exploitable via ``admin_init``.
|
| CVE-2026-3173 |
|
Vulnerability in wordpress (CVE-2026-3173)
vulnerability in wordpress (CVE-2026-3173). Confidential information can be exposed externally.
|
| USN-8327-1 |
|
Vulnerability in openjdk-17 (USN-8327-1)
vulnerability in openjdk-17 (USN-8327-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `17.0.19+10-1~18.04.2` or later.
|
| BELL-CVE-2026-5222 |
|
BELL-CVE-2026-5222 |
| BELL-CVE-2026-5223 |
|
BELL-CVE-2026-5223 |
| BELL-CVE-2026-9538 |
|
BELL-CVE-2026-9538 |
| BELL-CVE-2026-46727 |
|
CVE-2026-46727 does not affect BellSoft software
CVE-2026-46727 does not affect BellSoft software
|
| BELL-CVE-2026-42506 |
|
BELL-CVE-2026-42506 |
| BELL-CVE-2026-42502 |
|
BELL-CVE-2026-42502 |
| BELL-CVE-2026-42497 |
|
BELL-CVE-2026-42497 |
| BELL-CVE-2026-41071 |
|
BELL-CVE-2026-41071 |
| BELL-CVE-2026-41069 |
|
BELL-CVE-2026-41069 |
| BELL-CVE-2026-39821 |
|
BELL-CVE-2026-39821 |
| BELL-CVE-2026-27136 |
|
BELL-CVE-2026-27136 |
| BELL-CVE-2026-42496 |
|
BELL-CVE-2026-42496 |
| BELL-CVE-2026-25681 |
|
BELL-CVE-2026-25681 |
| BELL-CVE-2026-25680 |
|
BELL-CVE-2026-25680 |
| BELL-CVE-2026-8643 |
|
BELL-CVE-2026-8643 |
| BELL-CVE-2026-46103 |
|
BELL-CVE-2026-46103 |
| BELL-CVE-2026-46102 |
|
BELL-CVE-2026-46102 |
| BELL-CVE-2026-46099 |
|
BELL-CVE-2026-46099 |
| BELL-CVE-2026-46095 |
|
BELL-CVE-2026-46095
CVE-2026-46095 does not affect BellSoft software
|
| BELL-CVE-2026-46093 |
|
BELL-CVE-2026-46093 |
| BELL-CVE-2026-46089 |
|
BELL-CVE-2026-46089 |
| BELL-CVE-2026-46092 |
|
BELL-CVE-2026-46092 |
| BELL-CVE-2026-46082 |
|
BELL-CVE-2026-46082 |
| BELL-CVE-2026-46083 |
|
BELL-CVE-2026-46083 |
| BELL-CVE-2026-46084 |
|
BELL-CVE-2026-46084 |