Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-63297 |
|
Vulnerability in CVE-2026-63297 (CVE-2026-63297)
vulnerability in CVE-2026-63297 (CVE-2026-63297). Successful exploitation can lead to full system takeover.
|
| CVE-2026-63296 |
|
Authorization Flaw in CVE-2026-63296 (CVE-2026-63296)
vulnerability in CVE-2026-63296 (CVE-2026-63296). Successful exploitation can lead to full system takeover.
|
| CVE-2026-63294 |
|
Vulnerability in CVE-2026-63294 (CVE-2026-63294)
vulnerability in CVE-2026-63294 (CVE-2026-63294). Successful exploitation can lead to full system takeover.
|
| CVE-2026-63293 |
|
Vulnerability in CVE-2026-63293 (CVE-2026-63293)
vulnerability in CVE-2026-63293 (CVE-2026-63293). Successful exploitation can lead to full system takeover.
|
| CVE-2026-62420 |
|
Authorization Flaw in CVE-2026-62420 (CVE-2026-62420)
vulnerability in CVE-2026-62420 (CVE-2026-62420). Successful exploitation can lead to full system takeover. Exploitable via `POST /1.0/instances/{name}`.
|
| CVE-2026-19656 |
|
Vulnerability in scada-lts (CVE-2026-19656)
vulnerability in scada-lts (CVE-2026-19656). Successful exploitation can lead to full system takeover.
|
| CVE-2026-17083 |
|
Out-of-Bounds Write in ibm (CVE-2026-17083)
out-of-bounds write in ibm (CVE-2026-17083). Successful exploitation can lead to full system takeover.
|
| CVE-2026-16956 |
|
OS Command Injection in ibm (CVE-2026-16956)
OS command injection in ibm (CVE-2026-16956). Successful exploitation can lead to full system takeover.
|
| CVE-2026-17276 |
|
Privilege Escalation in ibm (CVE-2026-17276)
vulnerability in ibm (CVE-2026-17276). Confidential information can be exposed externally.
|
| CVE-2026-17218 |
|
Out-of-Bounds Write in ibm (CVE-2026-17218)
out-of-bounds write in ibm (CVE-2026-17218). Successful exploitation can lead to full system takeover.
|
| CVE-2026-16860 |
|
Vulnerability in ibm (CVE-2026-16860)
vulnerability in ibm (CVE-2026-16860). Confidential information can be exposed externally.
|
| CVE-2026-73240 |
|
Vulnerability in apache (CVE-2026-73240)
vulnerability in apache (CVE-2026-73240). Successful exploitation can lead to full system takeover.
|
| CVE-2026-73300 |
|
SQL Injection in @budibase/server (CVE-2026-73300)
SQL injection in @budibase/server (CVE-2026-73300). Successful exploitation can lead to full system takeover.
|
| CVE-2026-73299 |
|
Code Injection in CVE-2026-73299 (CVE-2026-73299)
code injection in CVE-2026-73299 (CVE-2026-73299). Successful exploitation can lead to full system takeover.
|
| CVE-2026-73296 |
|
Vulnerability in CVE-2026-73296 (CVE-2026-73296)
vulnerability in CVE-2026-73296 (CVE-2026-73296). Confidential information can be exposed externally.
|
| CVE-2026-73294 |
|
OS Command Injection in CVE-2026-73294 (CVE-2026-73294)
OS command injection in CVE-2026-73294 (CVE-2026-73294). Successful exploitation can lead to full system takeover. Exploitable via `POST /api/project/{id}/repositories`.
|
| CVE-2025-59324 |
|
Vulnerability in CVE-2025-59324 (CVE-2025-59324)
vulnerability in CVE-2025-59324 (CVE-2025-59324). Confidential information can be exposed externally.
|
| CVE-2025-59321 |
|
Vulnerability in CVE-2025-59321 (CVE-2025-59321)
vulnerability in CVE-2025-59321 (CVE-2025-59321). Successful exploitation can lead to full system takeover.
|
| CVE-2026-73263 |
|
OS Command Injection in CVE-2026-73263 (CVE-2026-73263)
OS command injection in CVE-2026-73263 (CVE-2026-73263). Successful exploitation can lead to full system takeover. Exploitable via `POST /api/v1/providers/{id}/connection`.
|
| CVE-2026-50561 |
|
Authentication Bypass in CVE-2026-50561 (CVE-2026-50561)
authentication bypass in CVE-2026-50561 (CVE-2026-50561). Confidential information can be exposed externally. Exploitable via `Authorization header`.
|
| CVE-2025-59326 |
|
Vulnerability in CVE-2025-59326 (CVE-2025-59326)
vulnerability in CVE-2025-59326 (CVE-2025-59326). Successful exploitation can lead to full system takeover.
|
| CVE-2026-26035 |
|
Authentication Bypass in CVE-2026-26035 (CVE-2026-26035)
authentication bypass in CVE-2026-26035 (CVE-2026-26035). Successful exploitation can lead to full system takeover.
|
| CVE-2025-41769 |
|
Vulnerability in CVE-2025-41769 (CVE-2025-41769)
vulnerability in CVE-2025-41769 (CVE-2025-41769). Successful exploitation can lead to full system takeover.
|
| CVE-2026-66659 |
|
SQL Injection in sqli (CVE-2026-66659)
SQL injection in sqli (CVE-2026-66659). Confidential information can be exposed externally.
|
| CVE-2026-18391 |
|
Unrestricted File Upload in wordpress (CVE-2026-18391)
vulnerability in wordpress (CVE-2026-18391). Successful exploitation can lead to full system takeover.
|
| CVE-2026-16538 |
|
Vulnerability in wordpress (CVE-2026-16538)
vulnerability in wordpress (CVE-2026-16538). Confidential information can be exposed externally.
|
| CVE-2026-18366 |
|
Privilege Escalation in wordpress (CVE-2026-18366)
vulnerability in wordpress (CVE-2026-18366). Successful exploitation can lead to full system takeover.
|
| CVE-2026-16051 |
|
Code Injection in wordpress (CVE-2026-16051)
code injection in wordpress (CVE-2026-16051). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15039 |
|
Unrestricted File Upload in wordpress (CVE-2026-15039)
vulnerability in wordpress (CVE-2026-15039). Successful exploitation can lead to full system takeover.
|
| CVE-2026-72526 |
|
Vulnerability in privilege-escalation (CVE-2026-72526)
vulnerability in privilege-escalation (CVE-2026-72526). Successful exploitation can lead to full system takeover.
|
| CVE-2026-70398 |
|
Vulnerability in CVE-2026-70398 (CVE-2026-70398)
vulnerability in CVE-2026-70398 (CVE-2026-70398). Confidential information can be exposed externally.
|
| CVE-2026-68431 |
|
Vulnerability in CVE-2026-68431 (CVE-2026-68431)
vulnerability in CVE-2026-68431 (CVE-2026-68431). Confidential information can be exposed externally.
|
| CVE-2026-68067 |
|
Vulnerability in CVE-2026-68067 (CVE-2026-68067)
vulnerability in CVE-2026-68067 (CVE-2026-68067). Successful exploitation can lead to full system takeover.
|
| CVE-2026-67568 |
|
Vulnerability in CVE-2026-67568 (CVE-2026-67568)
vulnerability in CVE-2026-67568 (CVE-2026-67568). Confidential information can be exposed externally.
|
| CVE-2026-71290 |
|
Vulnerability in apache (CVE-2026-71290)
vulnerability in apache (CVE-2026-71290). Confidential information can be exposed externally.
|
| CVE-2026-66147 |
|
Code Injection in CVE-2026-66147 (CVE-2026-66147)
code injection in CVE-2026-66147 (CVE-2026-66147). Data can be tampered with by attackers.
|
| CVE-2026-48765 |
|
Vulnerability in CVE-2026-48765 (CVE-2026-48765)
vulnerability in CVE-2026-48765 (CVE-2026-48765). Confidential information can be exposed externally. Exploitable via ``credentialsId``.
|
| CVE-2026-73034 |
|
Path Traversal in path-traversal (CVE-2026-73034)
path traversal in path-traversal (CVE-2026-73034). Successful exploitation can lead to full system takeover.
|
| CVE-2026-73032 |
|
Code Injection in CVE-2026-73032 (CVE-2026-73032)
code injection in CVE-2026-73032 (CVE-2026-73032). Successful exploitation can lead to full system takeover.
|
| CVE-2026-66145 |
|
Code Injection in CVE-2026-66145 (CVE-2026-66145)
code injection in CVE-2026-66145 (CVE-2026-66145). Confidential information can be exposed externally.
|
| CVE-2026-16230 |
|
Vulnerability in wordpress (CVE-2026-16230)
vulnerability in wordpress (CVE-2026-16230). Successful exploitation can lead to full system takeover.
|
| CVE-2026-59124 |
|
Unsafe Deserialization in deserialization (CVE-2026-59124)
vulnerability in deserialization (CVE-2026-59124). Successful exploitation can lead to full system takeover.
|
| CVE-2026-50516 |
|
Vulnerability in microsoft (CVE-2026-50516)
vulnerability in microsoft (CVE-2026-50516). Confidential information can be exposed externally.
|
| CVE-2026-48362 |
|
OS Command Injection in adobe (CVE-2026-48362)
OS command injection in adobe (CVE-2026-48362). Successful exploitation can lead to full system takeover.
|
| CVE-2026-12571 |
|
Authentication Bypass in CVE-2026-12571 (CVE-2026-12571)
authentication bypass in CVE-2026-12571 (CVE-2026-12571). Successful exploitation can lead to full system takeover.
|
| CVE-2026-73211 |
|
SQL Injection in CVE-2026-73211 (CVE-2026-73211)
SQL injection in CVE-2026-73211 (CVE-2026-73211). Successful exploitation can lead to full system takeover.
|
| CVE-2026-73090 |
|
Authorization Flaw in CVE-2026-73090 (CVE-2026-73090)
vulnerability in CVE-2026-73090 (CVE-2026-73090). Data can be tampered with by attackers.
|
| CVE-2026-71398 |
|
Authorization Flaw in adobe (CVE-2026-71398)
vulnerability in adobe (CVE-2026-71398). Successful exploitation can lead to full system takeover.
|
| CVE-2026-71362 |
|
Authorization Flaw in privilege-escalation (CVE-2026-71362)
vulnerability in privilege-escalation (CVE-2026-71362). Confidential information can be exposed externally.
|
| CVE-2026-69102 |
|
Vulnerability in CVE-2026-69102 (CVE-2026-69102)
vulnerability in CVE-2026-69102 (CVE-2026-69102). Successful exploitation can lead to full system takeover.
|