Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-3897 |
|
Vulnerability in wordpress (CVE-2026-3897)
vulnerability in wordpress (CVE-2026-3897). Risk of unauthorized operations or information disclosure. Exploitable via ``labb_admin_ajax``.
|
| CVE-2026-3895 |
|
Vulnerability in wordpress (CVE-2026-3895)
vulnerability in wordpress (CVE-2026-3895). Risk of unauthorized operations or information disclosure. Exploitable via ``lvca_admin_ajax``.
|
| CVE-2026-2030 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-2030)
cross-site scripting in wordpress (CVE-2026-2030). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-3279 |
|
Vulnerability in wordpress (CVE-2026-3279)
vulnerability in wordpress (CVE-2026-3279). Data can be tampered with by attackers.
|
| CVE-2025-41669 |
|
Vulnerability in CVE-2025-41669 (CVE-2025-41669)
vulnerability in CVE-2025-41669 (CVE-2025-41669). Successful exploitation can lead to full system takeover.
|
| CVE-2026-3001 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-3001)
cross-site scripting in wordpress (CVE-2026-3001). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-41670 |
|
Vulnerability in privilege-escalation (CVE-2025-41670)
vulnerability in privilege-escalation (CVE-2025-41670). Successful exploitation can lead to full system takeover.
|
| MINI-6wc2-q68h-9h5v |
|
MINI-6wc2-q68h-9h5v |
| MINI-8444-x9p7-f644 |
|
MINI-8444-x9p7-f644 |
| MINI-2683-8qxh-v6v5 |
|
MINI-2683-8qxh-v6v5 |
| MINI-jjg8-62pp-cqmc |
|
MINI-jjg8-62pp-cqmc |
| ECHO-bdd6-92e0-39bb |
|
ECHO-bdd6-92e0-39bb |
| ECHO-516b-9033-dc39 |
|
ECHO-516b-9033-dc39 |
| ECHO-93fb-0419-2b65 |
|
ECHO-93fb-0419-2b65 |
| ECHO-8e44-1e55-58a6 |
|
ECHO-8e44-1e55-58a6 |
| ECHO-684c-26fc-673d |
|
ECHO-684c-26fc-673d |
| ECHO-0118-38e9-4edb |
|
ECHO-0118-38e9-4edb |
| ECHO-b6fa-1bcf-5451 |
|
Vulnerability in mbedtls (ECHO-b6fa-1bcf-5451)
vulnerability in mbedtls (ECHO-b6fa-1bcf-5451). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `3.6.6-0.1+e1` or later.
|
| ECHO-d2ff-7e29-2b4b |
|
ECHO-d2ff-7e29-2b4b |
| ECHO-fc34-8f29-f217 |
|
ECHO-fc34-8f29-f217 |
| ECHO-2b14-d1fe-8a7a |
|
ECHO-2b14-d1fe-8a7a |
| ECHO-af70-69c6-547c |
|
ECHO-af70-69c6-547c |
| openSUSE-SU-2026:20816-1 |
|
Vulnerability in openSUSE-SU-2026:20816-1 (openSUSE-SU-2026:20816-1)
vulnerability in openSUSE-SU-2026:20816-1 (openSUSE-SU-2026:20816-1). Risk of unauthorized operations or information disclosure.
|
| SUSE-SU-2026:21852-1 |
|
Vulnerability in SUSE-SU-2026:21852-1 (SUSE-SU-2026:21852-1)
vulnerability in SUSE-SU-2026:21852-1 (SUSE-SU-2026:21852-1). Risk of unauthorized operations or information disclosure.
|
| USN-8315-1 |
|
Vulnerability in mediawiki (USN-8315-1)
vulnerability in mediawiki (USN-8315-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1:1.31.7-1ubuntu0.1~esm1` or later.
|
| ROOT-APP-NPM-CVE-2026-2359 |
|
Vulnerability in @rootio/multer (ROOT-APP-NPM-CVE-2026-2359)
vulnerability in @rootio/multer (ROOT-APP-NPM-CVE-2026-2359). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.0.2-root.io.3, 1.4.4-root.io.2, 1.4.4-root.io.1` or later.
|
| ROOT-APP-NPM-CVE-2025-47935 |
|
Vulnerability in @rootio/multer (ROOT-APP-NPM-CVE-2025-47935)
vulnerability in @rootio/multer (ROOT-APP-NPM-CVE-2025-47935). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.4.5-lts.2-root.io.2, 1.4.5-lts.2-root.io.3, 1.4.5-lts.2-root.io.4, 1.4.5-lts.2-root.io.5, 1.4.4-root.io.2, 1.4.4-root.io.1` or later.
|
| ROOT-APP-NPM-CVE-2026-3520 |
|
Vulnerability in @rootio/multer (ROOT-APP-NPM-CVE-2026-3520)
vulnerability in @rootio/multer (ROOT-APP-NPM-CVE-2026-3520). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.0.2-root.io.1, 2.0.2-root.io.2, 2.0.2-root.io.3, 1.4.4-root.io.2, 1.4.4-root.io.1` or later.
|
| ROOT-APP-NPM-CVE-2026-3304 |
|
Vulnerability in @rootio/multer (ROOT-APP-NPM-CVE-2026-3304)
vulnerability in @rootio/multer (ROOT-APP-NPM-CVE-2026-3304). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.0.2-root.io.2, 1.4.4-root.io.2, 1.4.4-root.io.1` or later.
|
| ROOT-APP-NPM-CVE-2025-47944 |
|
Vulnerability in @rootio/multer (ROOT-APP-NPM-CVE-2025-47944)
vulnerability in @rootio/multer (ROOT-APP-NPM-CVE-2025-47944). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.4.5-lts.2-root.io.3, 1.4.5-lts.2-root.io.4, 1.4.5-lts.2-root.io.5, 1.4.4-root.io.2, 1.4.4-root.io.1` or later.
|
| CVE-2026-5760 |
|
Code Injection in jvn (CVE-2026-5760)
code injection in jvn (CVE-2026-5760). Successful exploitation can lead to full system takeover.
|
| CLSA-2026-1779870008 |
|
Vulnerability in libecpg-compat3 (CLSA-2026-1779870008)
vulnerability in libecpg-compat3 (CLSA-2026-1779870008). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `9.5.25-0ubuntu0.16.04.1+tuxcare.els13` or later.
|
| CLSA-2026-1779869103 |
|
Vulnerability in rsync (CLSA-2026-1779869103)
vulnerability in rsync (CLSA-2026-1779869103). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `3.1.3-6+tuxcare.els2` or later.
|
| SUSE-SU-2026:2087-1 |
|
Vulnerability in SUSE-SU-2026:2087-1 (SUSE-SU-2026:2087-1)
vulnerability in SUSE-SU-2026:2087-1 (SUSE-SU-2026:2087-1). Risk of unauthorized operations or information disclosure.
|
| SUSE-SU-2026:2086-1 |
|
Vulnerability in SUSE-SU-2026:2086-1 (SUSE-SU-2026:2086-1)
vulnerability in SUSE-SU-2026:2086-1 (SUSE-SU-2026:2086-1). Risk of unauthorized operations or information disclosure.
|
| SUSE-SU-2026:2085-1 |
|
Vulnerability in SUSE-SU-2026:2085-1 (SUSE-SU-2026:2085-1)
vulnerability in SUSE-SU-2026:2085-1 (SUSE-SU-2026:2085-1). Risk of unauthorized operations or information disclosure.
|
| SUSE-SU-2026:2084-1 |
|
Vulnerability in SUSE-SU-2026:2084-1 (SUSE-SU-2026:2084-1)
vulnerability in SUSE-SU-2026:2084-1 (SUSE-SU-2026:2084-1). Risk of unauthorized operations or information disclosure.
|
| SUSE-SU-2026:2083-1 |
|
Vulnerability in SUSE-SU-2026:2083-1 (SUSE-SU-2026:2083-1)
vulnerability in SUSE-SU-2026:2083-1 (SUSE-SU-2026:2083-1). Risk of unauthorized operations or information disclosure.
|
| ROOT-APP-NPM-CVE-2026-4800 |
|
Vulnerability in @rootio/lodash (ROOT-APP-NPM-CVE-2026-4800)
vulnerability in @rootio/lodash (ROOT-APP-NPM-CVE-2026-4800). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `4.17.21-root.io.2, 4.17.21-root.io.1, 4.17.20-root.io.2, 4.17.23-root.io.1, 4.17.20-root.io.3, 4.17.23-root.io.2` or later.
|
| ROOT-APP-NPM-CVE-2026-2950 |
|
Vulnerability in @rootio/lodash (ROOT-APP-NPM-CVE-2026-2950)
vulnerability in @rootio/lodash (ROOT-APP-NPM-CVE-2026-2950). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `4.17.21-root.io.2, 4.17.21-root.io.1, 4.17.23-root.io.1, 4.17.23-root.io.2` or later.
|
| ROOT-APP-NPM-CVE-2026-41673 |
|
Vulnerability in @rootio/xmldom__xmldom (ROOT-APP-NPM-CVE-2026-41673)
vulnerability in @rootio/xmldom__xmldom (ROOT-APP-NPM-CVE-2026-41673). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0.9.8-root.io.1, 0.8.11-root.io.1, 0.7.13-root.io.1, 0.7.13-root.io.2, 0.7.13-root.io.3, 0.9.8-root.io.2, 0.8.11-root.io.2` or later.
|
| ROOT-APP-NPM-CVE-2026-34601 |
|
Vulnerability in @rootio/xmldom__xmldom (ROOT-APP-NPM-CVE-2026-34601)
vulnerability in @rootio/xmldom__xmldom (ROOT-APP-NPM-CVE-2026-34601). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0.9.8-root.io.1, 0.8.11-root.io.1, 0.7.13-root.io.1, 0.7.13-root.io.2, 0.7.13-root.io.3, 0.9.8-root.io.2, 0.8.11-root.io.2` or later.
|
| ROOT-APP-NPM-CVE-2026-41675 |
|
Vulnerability in @rootio/xmldom__xmldom (ROOT-APP-NPM-CVE-2026-41675)
vulnerability in @rootio/xmldom__xmldom (ROOT-APP-NPM-CVE-2026-41675). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0.9.8-root.io.1, 0.8.11-root.io.1, 0.7.13-root.io.1, 0.7.13-root.io.2, 0.7.13-root.io.3, 0.9.8-root.io.2, 0.8.11-root.io.2` or later.
|
| ROOT-APP-NPM-CVE-2026-41674 |
|
Vulnerability in @rootio/xmldom__xmldom (ROOT-APP-NPM-CVE-2026-41674)
vulnerability in @rootio/xmldom__xmldom (ROOT-APP-NPM-CVE-2026-41674). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0.9.8-root.io.1, 0.8.11-root.io.1, 0.7.13-root.io.1, 0.7.13-root.io.2, 0.7.13-root.io.3, 0.9.8-root.io.2, 0.8.11-root.io.2` or later.
|
| ROOT-APP-NPM-CVE-2026-41672 |
|
Vulnerability in @rootio/xmldom__xmldom (ROOT-APP-NPM-CVE-2026-41672)
vulnerability in @rootio/xmldom__xmldom (ROOT-APP-NPM-CVE-2026-41672). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0.9.8-root.io.1, 0.8.11-root.io.1, 0.7.13-root.io.1, 0.7.13-root.io.2, 0.7.13-root.io.3, 0.9.8-root.io.2, 0.8.11-root.io.2` or later.
|
| DEBIAN-CVE-2026-46644 |
|
DEBIAN-CVE-2026-46644 |
| CVE-2026-9200 |
|
Vulnerability in wordpress (CVE-2026-9200)
vulnerability in wordpress (CVE-2026-9200). Successful exploitation can lead to full system takeover.
|
| CVE-2026-9014 |
|
Vulnerability in wordpress (CVE-2026-9014)
vulnerability in wordpress (CVE-2026-9014). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-8994 |
|
Authentication Bypass in wordpress (CVE-2026-8994)
authentication bypass in wordpress (CVE-2026-8994). Successful exploitation can lead to full system takeover. Exploitable via ``wp_ajax_nopriv``.
|
| CVE-2026-8943 |
|
Cross-Site Request Forgery (CSRF) in wordpress (CVE-2026-8943)
vulnerability in wordpress (CVE-2026-8943). Risk of unauthorized operations or information disclosure.
|