Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-40828 |
|
SQL Injection in sqli (CVE-2026-40828)
SQL injection in sqli (CVE-2026-40828). Confidential information can be exposed externally.
|
| CVE-2025-66593 |
|
Vulnerability in synology (CVE-2025-66593)
vulnerability in synology (CVE-2025-66593). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-14713 |
|
Vulnerability in synology (CVE-2025-14713)
vulnerability in synology (CVE-2025-14713). Confidential information can be exposed externally.
|
| CVE-2025-30028 |
|
SQL Injection in synology (CVE-2025-30028)
SQL injection in synology (CVE-2025-30028). Confidential information can be exposed externally.
|
| CVE-2026-40827 |
|
SQL Injection in sqli (CVE-2026-40827)
SQL injection in sqli (CVE-2026-40827). Confidential information can be exposed externally.
|
| CVE-2026-40831 |
|
SQL Injection in sqli (CVE-2026-40831)
SQL injection in sqli (CVE-2026-40831). Confidential information can be exposed externally.
|
| CVE-2025-13392 |
|
Vulnerability in synology (CVE-2025-13392)
vulnerability in synology (CVE-2025-13392). Successful exploitation can lead to full system takeover.
|
| CVE-2025-12686 |
|
Vulnerability in synology (CVE-2025-12686)
vulnerability in synology (CVE-2025-12686). Successful exploitation can lead to full system takeover.
|
| CVE-2024-47272 |
|
Authorization Flaw in synology (CVE-2024-47272)
vulnerability in synology (CVE-2024-47272). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-66592 |
|
Vulnerability in synology (CVE-2025-66592)
vulnerability in synology (CVE-2025-66592). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-13167 |
|
Cross-Site Scripting (XSS) in synology (CVE-2025-13167)
cross-site scripting in synology (CVE-2025-13167). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-22741 |
|
Cross-Site Scripting (XSS) in CVE-2025-22741 (CVE-2025-22741)
cross-site scripting in CVE-2025-22741 (CVE-2025-22741). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-2237 |
|
Vulnerability in synology (CVE-2026-2237)
vulnerability in synology (CVE-2026-2237). Confidential information can be exposed externally.
|
| CVE-2025-10466 |
|
Cross-Site Scripting (XSS) in synology (CVE-2025-10466)
cross-site scripting in synology (CVE-2025-10466). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-52747 |
|
Cross-Site Scripting (XSS) in CVE-2025-52747 (CVE-2025-52747)
cross-site scripting in CVE-2025-52747 (CVE-2025-52747). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-8942 |
|
Cross-Site Request Forgery (CSRF) in wordpress (CVE-2026-8942)
vulnerability in wordpress (CVE-2026-8942). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-8906 |
|
Cross-Site Request Forgery (CSRF) in wordpress (CVE-2026-8906)
vulnerability in wordpress (CVE-2026-8906). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-8143 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-8143)
cross-site scripting in wordpress (CVE-2026-8143). Risk of unauthorized operations or information disclosure.
|
| CVE-2024-47267 |
|
Path Traversal in path-traversal (CVE-2024-47267)
path traversal in path-traversal (CVE-2024-47267). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-41704 |
|
Vulnerability in cloud-foundry (CVE-2026-41704)
vulnerability in cloud-foundry (CVE-2026-41704). Data can be tampered with by attackers.
|
| CVE-2024-11399 |
|
Vulnerability in synology (CVE-2024-11399)
vulnerability in synology (CVE-2024-11399). Risk of unauthorized operations or information disclosure.
|
| CVE-2024-47270 |
|
Vulnerability in synology (CVE-2024-47270)
vulnerability in synology (CVE-2024-47270). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-40825 |
|
SQL Injection in sqli (CVE-2026-40825)
SQL injection in sqli (CVE-2026-40825). Confidential information can be exposed externally.
|
| CVE-2026-8042 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-8042)
cross-site scripting in wordpress (CVE-2026-8042). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-6169 |
|
Code Injection in wordpress (CVE-2026-6169)
code injection in wordpress (CVE-2026-6169). Successful exploitation can lead to full system takeover.
|
| CVE-2024-47268 |
|
Vulnerability in synology (CVE-2024-47268)
vulnerability in synology (CVE-2024-47268). Confidential information can be exposed externally.
|
| CVE-2026-41009 |
|
Path Traversal in cloud-foundry (CVE-2026-41009)
path traversal in cloud-foundry (CVE-2026-41009). Data can be tampered with by attackers.
|
| CVE-2026-8832 |
|
Code Injection in wordpress (CVE-2026-8832)
code injection in wordpress (CVE-2026-8832). Successful exploitation can lead to full system takeover.
|
| CVE-2024-47271 |
|
Vulnerability in synology (CVE-2024-47271)
vulnerability in synology (CVE-2024-47271). Confidential information can be exposed externally.
|
| CVE-2023-52945 |
|
Vulnerability in synology (CVE-2023-52945)
vulnerability in synology (CVE-2023-52945). Successful exploitation can lead to full system takeover.
|
| CVE-2026-49001 |
|
Cross-Site Request Forgery (CSRF) in csrf (CVE-2026-49001)
vulnerability in csrf (CVE-2026-49001). Data can be tampered with by attackers.
|
| CVE-2026-40823 |
|
SQL Injection in sqli (CVE-2026-40823)
SQL injection in sqli (CVE-2026-40823). Confidential information can be exposed externally.
|
| CVE-2026-40819 |
|
SQL Injection in c (CVE-2026-40819)
SQL injection in c (CVE-2026-40819). Confidential information can be exposed externally.
|
| CVE-2026-40822 |
|
SQL Injection in sqli (CVE-2026-40822)
SQL injection in sqli (CVE-2026-40822). Confidential information can be exposed externally.
|
| CVE-2026-7618 |
|
SQL Injection in wordpress (CVE-2026-7618)
SQL injection in wordpress (CVE-2026-7618). Confidential information can be exposed externally.
|
| CVE-2026-40824 |
|
SQL Injection in sqli (CVE-2026-40824)
SQL injection in sqli (CVE-2026-40824). Confidential information can be exposed externally.
|
| CVE-2026-40815 |
|
SQL Injection in sqli (CVE-2026-40815)
SQL injection in sqli (CVE-2026-40815). Confidential information can be exposed externally.
|
| CVE-2026-40818 |
|
SQL Injection in sqli (CVE-2026-40818)
SQL injection in sqli (CVE-2026-40818). Confidential information can be exposed externally.
|
| CVE-2026-40826 |
|
SQL Injection in sqli (CVE-2026-40826)
SQL injection in sqli (CVE-2026-40826). Confidential information can be exposed externally.
|
| CVE-2024-47269 |
|
Vulnerability in synology (CVE-2024-47269)
vulnerability in synology (CVE-2024-47269). Confidential information can be exposed externally.
|
| CVE-2026-40821 |
|
SQL Injection in sqli (CVE-2026-40821)
SQL injection in sqli (CVE-2026-40821). Confidential information can be exposed externally.
|
| CVE-2026-40817 |
|
SQL Injection in sqli (CVE-2026-40817)
SQL injection in sqli (CVE-2026-40817). Confidential information can be exposed externally.
|
| CVE-2026-40814 |
|
SQL Injection in sqli (CVE-2026-40814)
SQL injection in sqli (CVE-2026-40814). Confidential information can be exposed externally.
|
| CVE-2026-40816 |
|
SQL Injection in sqli (CVE-2026-40816)
SQL injection in sqli (CVE-2026-40816). Confidential information can be exposed externally.
|
| CVE-2026-40813 |
|
SQL Injection in sqli (CVE-2026-40813)
SQL injection in sqli (CVE-2026-40813). Confidential information can be exposed externally.
|
| CVE-2026-40810 |
|
SQL Injection in sqli (CVE-2026-40810)
SQL injection in sqli (CVE-2026-40810). Confidential information can be exposed externally.
|
| CVE-2026-3375 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-3375)
cross-site scripting in wordpress (CVE-2026-3375). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-40811 |
|
SQL Injection in sqli (CVE-2026-40811)
SQL injection in sqli (CVE-2026-40811). Confidential information can be exposed externally.
|
| CVE-2026-3896 |
|
Vulnerability in wordpress (CVE-2026-3896)
vulnerability in wordpress (CVE-2026-3896). Risk of unauthorized operations or information disclosure. Exploitable via ``lsow_admin_ajax``.
|
| CVE-2026-40812 |
|
SQL Injection in sqli (CVE-2026-40812)
SQL injection in sqli (CVE-2026-40812). Confidential information can be exposed externally.
|