Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-5134 |
|
SQL Injection in sqli (CVE-2026-5134)
SQL injection in sqli (CVE-2026-5134). Successful exploitation can lead to full system takeover.
|
| CVE-2026-19041 |
|
Vulnerability in CVE-2026-19041 (CVE-2026-19041)
vulnerability in CVE-2026-19041 (CVE-2026-19041). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19040 |
|
SSRF (Server-Side Request Forgery) in CVE-2026-19040 (CVE-2026-19040)
SSRF in CVE-2026-19040 (CVE-2026-19040). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18501 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-18501)
cross-site scripting in wordpress (CVE-2026-18501). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16731 |
|
Vulnerability in CVE-2026-16731 (CVE-2026-16731)
vulnerability in CVE-2026-16731 (CVE-2026-16731). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16316 |
|
Vulnerability in CVE-2026-16316 (CVE-2026-16316)
vulnerability in CVE-2026-16316 (CVE-2026-16316). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16315 |
|
Vulnerability in CVE-2026-16315 (CVE-2026-16315)
vulnerability in CVE-2026-16315 (CVE-2026-16315). Confidential information can be exposed externally.
|
| CVE-2026-12605 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-12605)
SSRF in ssrf (CVE-2026-12605). Successful exploitation can lead to full system takeover. Exploitable via ``gfresttoken``.
|
| CVE-2026-70556 |
|
Cross-Site Request Forgery (CSRF) in csrf (CVE-2026-70556)
vulnerability in csrf (CVE-2026-70556). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-66733 |
|
Vulnerability in CVE-2026-66733 (CVE-2026-66733)
vulnerability in CVE-2026-66733 (CVE-2026-66733). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-66732 |
|
Vulnerability in CVE-2026-66732 (CVE-2026-66732)
vulnerability in CVE-2026-66732 (CVE-2026-66732). Data can be tampered with by attackers.
|
| CVE-2026-65551 |
|
Vulnerability in CVE-2026-65551 (CVE-2026-65551)
vulnerability in CVE-2026-65551 (CVE-2026-65551). Confidential information can be exposed externally.
|
| CVE-2026-19039 |
|
Vulnerability in CVE-2026-19039 (CVE-2026-19039)
vulnerability in CVE-2026-19039 (CVE-2026-19039). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19038 |
|
Path Traversal in path-traversal (CVE-2026-19038)
path traversal in path-traversal (CVE-2026-19038). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19037 |
|
Vulnerability in cpp (CVE-2026-19037)
vulnerability in cpp (CVE-2026-19037). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19036 |
|
Command Injection in CVE-2026-19036 (CVE-2026-19036)
command injection in CVE-2026-19036 (CVE-2026-19036). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15599 |
|
Vulnerability in CVE-2026-15599 (CVE-2026-15599)
vulnerability in CVE-2026-15599 (CVE-2026-15599). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-0673 |
|
Vulnerability in wordpress (CVE-2026-0673)
vulnerability in wordpress (CVE-2026-0673). Risk of unauthorized operations or information disclosure. Exploitable via ``element_pack_contact_form``.
|
| CVE-2026-19035 |
|
Command Injection in CVE-2026-19035 (CVE-2026-19035)
command injection in CVE-2026-19035 (CVE-2026-19035). Successful exploitation can lead to full system takeover.
|
| CVE-2026-5158 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-5158)
cross-site scripting in wordpress (CVE-2026-5158). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-65583 |
|
Vulnerability in apache (CVE-2026-65583)
vulnerability in apache (CVE-2026-65583). Confidential information can be exposed externally.
|
| CVE-2026-68079 |
|
Vulnerability in apache (CVE-2026-68079)
vulnerability in apache (CVE-2026-68079). Successful exploitation can lead to full system takeover.
|
| CVE-2026-5391 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-5391)
cross-site scripting in wordpress (CVE-2026-5391). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-61466 |
|
Vulnerability in apache (CVE-2026-61466)
vulnerability in apache (CVE-2026-61466). Confidential information can be exposed externally. Exploitable via ``scope``.
|
| CVE-2026-68481 |
|
Vulnerability in apache (CVE-2026-68481)
vulnerability in apache (CVE-2026-68481). Confidential information can be exposed externally.
|
| CVE-2026-8166 |
|
Cross-Site Scripting (XSS) in CVE-2026-8166 (CVE-2026-8166)
cross-site scripting in CVE-2026-8166 (CVE-2026-8166). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-63687 |
|
Vulnerability in apache (CVE-2026-63687)
vulnerability in apache (CVE-2026-63687). Confidential information can be exposed externally.
|
| CVE-2026-11983 |
|
Vulnerability in wordpress (CVE-2026-11983)
vulnerability in wordpress (CVE-2026-11983). Risk of unauthorized operations or information disclosure. Exploitable via ``ai_ajax``.
|
| CVE-2026-57818 |
|
Vulnerability in apache (CVE-2026-57818)
vulnerability in apache (CVE-2026-57818). Successful exploitation can lead to full system takeover.
|
| CVE-2025-15028 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2025-15028)
cross-site scripting in wordpress (CVE-2025-15028). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-9266 |
|
Vulnerability in wordpress (CVE-2025-9266)
vulnerability in wordpress (CVE-2025-9266). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-66909 |
|
Unsafe Deserialization in apache (CVE-2026-66909)
vulnerability in apache (CVE-2026-66909). Successful exploitation can lead to full system takeover.
|
| CVE-2026-65432 |
|
XXE (XML External Entity) in apache (CVE-2026-65432)
vulnerability in apache (CVE-2026-65432). Confidential information can be exposed externally.
|
| CVE-2026-64958 |
|
Vulnerability in apache (CVE-2026-64958)
vulnerability in apache (CVE-2026-64958). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-57819 |
|
Vulnerability in apache (CVE-2026-57819)
vulnerability in apache (CVE-2026-57819). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-57817 |
|
Vulnerability in apache (CVE-2026-57817)
vulnerability in apache (CVE-2026-57817). Successful exploitation can lead to full system takeover. Exploitable via ``c_hash``.
|
| CVE-2026-54225 |
|
Vulnerability in apache (CVE-2026-54225)
vulnerability in apache (CVE-2026-54225). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19034 |
|
Command Injection in CVE-2026-19034 (CVE-2026-19034)
command injection in CVE-2026-19034 (CVE-2026-19034). Successful exploitation can lead to full system takeover.
|
| CVE-2026-55980 |
|
Vulnerability in CVE-2026-55980 (CVE-2026-55980)
vulnerability in CVE-2026-55980 (CVE-2026-55980). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-55979 |
|
Vulnerability in CVE-2026-55979 (CVE-2026-55979)
vulnerability in CVE-2026-55979 (CVE-2026-55979). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-55978 |
|
Vulnerability in CVE-2026-55978 (CVE-2026-55978)
vulnerability in CVE-2026-55978 (CVE-2026-55978). Data can be tampered with by attackers.
|
| CVE-2026-64640 |
|
Authorization Flaw in apache (CVE-2026-64640)
vulnerability in apache (CVE-2026-64640). Confidential information can be exposed externally.
|
| CVE-2026-19022 |
|
Vulnerability in CVE-2026-19022 (CVE-2026-19022)
vulnerability in CVE-2026-19022 (CVE-2026-19022). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-12762 |
|
Code Injection in pgadmin4 (CVE-2025-12762)
code injection in pgadmin4 (CVE-2025-12762). Confidential information can be exposed externally. Mitigation: upgrade to `9.10` or later.
|
| CVE-2024-31867 |
|
Vulnerability in jvn (CVE-2024-31867)
vulnerability in jvn (CVE-2024-31867). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-64604 |
|
Vulnerability in c (CVE-2026-64604)
vulnerability in c (CVE-2026-64604). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-64603 |
|
Vulnerability in CVE-2026-64603 (CVE-2026-64603)
vulnerability in CVE-2026-64603 (CVE-2026-64603). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-64602 |
|
Vulnerability in c (CVE-2026-64602)
vulnerability in c (CVE-2026-64602). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-64601 |
|
Vulnerability in CVE-2026-64601 (CVE-2026-64601)
vulnerability in CVE-2026-64601 (CVE-2026-64601). Successful exploitation can lead to full system takeover.
|
| CVE-2026-64599 |
|
Vulnerability in CVE-2026-64599 (CVE-2026-64599)
vulnerability in CVE-2026-64599 (CVE-2026-64599). Successful exploitation can lead to full system takeover.
|