Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

ID Title
CVE-2026-12598 Authentication Bypass in wordpress (CVE-2026-12598)
authentication bypass in wordpress (CVE-2026-12598). Successful exploitation can lead to full system takeover.
CVE-2026-12597 Authentication Bypass in wordpress (CVE-2026-12597)
authentication bypass in wordpress (CVE-2026-12597). Successful exploitation can lead to full system takeover.
CVE-2026-12595 Authentication Bypass in wordpress (CVE-2026-12595)
authentication bypass in wordpress (CVE-2026-12595). Successful exploitation can lead to full system takeover.
ECHO-d5b1-8a54-bb7b ECHO-d5b1-8a54-bb7b
ECHO-a29a-2b91-4618 ECHO-a29a-2b91-4618
ECHO-c2b7-6171-92cf ECHO-c2b7-6171-92cf
ECHO-2c90-87c7-3df1 ECHO-2c90-87c7-3df1
openSUSE-SU-2026:11247-1 Vulnerability in libredwg (openSUSE-SU-2026:11247-1)
vulnerability in libredwg (openSUSE-SU-2026:11247-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0.14.8413-1.1` or later.
openSUSE-SU-2026:11250-1 Vulnerability in qemu (openSUSE-SU-2026:11250-1)
vulnerability in qemu (openSUSE-SU-2026:11250-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `11.0.2-1.1` or later.
openSUSE-SU-2026:11252-1 Vulnerability in wget (openSUSE-SU-2026:11252-1)
vulnerability in wget (openSUSE-SU-2026:11252-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.25.0-3.1` or later.
openSUSE-SU-2026:11251-1 Vulnerability in traefik (openSUSE-SU-2026:11251-1)
vulnerability in traefik (openSUSE-SU-2026:11251-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `3.7.7-1.1` or later.
openSUSE-SU-2026:11249-1 Vulnerability in python-weasyprint (openSUSE-SU-2026:11249-1)
vulnerability in python-weasyprint (openSUSE-SU-2026:11249-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `69.0-1.1` or later.
openSUSE-SU-2026:11245-1 Vulnerability in GraphicsMagick (openSUSE-SU-2026:11245-1)
vulnerability in GraphicsMagick (openSUSE-SU-2026:11245-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.3.47-4.1` or later.
openSUSE-SU-2026:11248-1 Vulnerability in python-Django (openSUSE-SU-2026:11248-1)
vulnerability in python-Django (openSUSE-SU-2026:11248-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `5.2.16-1.1` or later.
openSUSE-SU-2026:11246-1 Vulnerability in libnfs (openSUSE-SU-2026:11246-1)
vulnerability in libnfs (openSUSE-SU-2026:11246-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `6.0.2-1.1` or later.
openSUSE-SU-2026:11253-1 Vulnerability in wpa_supplicant (openSUSE-SU-2026:11253-1)
vulnerability in wpa_supplicant (openSUSE-SU-2026:11253-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.11-7.1` or later.
UBUNTU-CVE-2026-57825 [Unknown description]
CVE-2026-49838 Vulnerability in github.com/osrg/gobgp/v4 (CVE-2026-49838)
vulnerability in github.com/osrg/gobgp/v4 (CVE-2026-49838). Risk of unauthorized operations or information disclosure. Exploitable via ``PathAttributeAsPath.DecodeFromBytes``. Mitigation: upgrade to `4.7.0` or later.
CVE-2026-49837 Out-of-Bounds Read in github.com/osrg/gobgp/v4 (CVE-2026-49837)
vulnerability in github.com/osrg/gobgp/v4 (CVE-2026-49837). Risk of unauthorized operations or information disclosure. Exploitable via ``CapLen``. Mitigation: upgrade to `4.6.0` or later.
CVE-2026-49836 Path Traversal in psd-tools (CVE-2026-49836)
path traversal in psd-tools (CVE-2026-49836). Risk of unauthorized operations or information disclosure. Exploitable via ``SmartObject``. Mitigation: upgrade to `1.17.1` or later.
CVE-2026-49834 Vulnerability in github.com/sigstore/sigstore-go (CVE-2026-49834)
vulnerability in github.com/sigstore/sigstore-go (CVE-2026-49834). Data can be tampered with by attackers. Mitigation: upgrade to `1.2.0` or later.
CVE-2026-53956 Path Traversal in rattler_cache (CVE-2026-53956)
path traversal in rattler_cache (CVE-2026-53956). Risk of unauthorized operations or information disclosure. Exploitable via ``rattler_cache``. Mitigation: upgrade to `0.9.0` or later.
CVE-2026-55252 Open Redirect in github.com/openrundev/openrun (CVE-2026-55252)
vulnerability in github.com/openrundev/openrun (CVE-2026-55252). Risk of unauthorized operations or information disclosure. Exploitable via `POST /redirecttest/abc/frag`. Mitigation: upgrade to `0.17.7` or later.
CVE-2026-59858 Code Injection in c (CVE-2026-59858)
code injection in c (CVE-2026-59858). Successful exploitation can lead to full system takeover.
CVE-2026-59857 Out-of-Bounds Write in c (CVE-2026-59857)
out-of-bounds write in c (CVE-2026-59857). Risk of unauthorized operations or information disclosure.
CVE-2026-59856 Code Injection in vim (CVE-2026-59856)
code injection in vim (CVE-2026-59856). Successful exploitation can lead to full system takeover.
CVE-2026-59855 Vulnerability in CVE-2026-59855 (CVE-2026-59855)
vulnerability in CVE-2026-59855 (CVE-2026-59855). Risk of unauthorized operations or information disclosure.
CVE-2026-59854 Vulnerability in CVE-2026-59854 (CVE-2026-59854)
vulnerability in CVE-2026-59854 (CVE-2026-59854). Confidential information can be exposed externally. Exploitable via `POST /api/file/globalCopyFiles`.
CVE-2026-59853 Vulnerability in CVE-2026-59853 (CVE-2026-59853)
vulnerability in CVE-2026-59853 (CVE-2026-59853). Confidential information can be exposed externally.
CVE-2026-59834 SQL Injection in CVE-2026-59834 (CVE-2026-59834)
SQL injection in CVE-2026-59834 (CVE-2026-59834). Confidential information can be exposed externally. Exploitable via `POST /api/search/fullTextSearchBlock`.
CVE-2026-59833 Cross-Site Scripting (XSS) in CVE-2026-59833 (CVE-2026-59833)
cross-site scripting in CVE-2026-59833 (CVE-2026-59833). Risk of unauthorized operations or information disclosure.
CVE-2026-59832 Path Traversal in CVE-2026-59832 (CVE-2026-59832)
path traversal in CVE-2026-59832 (CVE-2026-59832). Confidential information can be exposed externally.
CVE-2026-59831 Vulnerability in CVE-2026-59831 (CVE-2026-59831)
vulnerability in CVE-2026-59831 (CVE-2026-59831). Risk of unauthorized operations or information disclosure.
CVE-2026-57501 Vulnerability in CVE-2026-57501 (CVE-2026-57501)
vulnerability in CVE-2026-57501 (CVE-2026-57501). Risk of unauthorized operations or information disclosure.
MINI-w3w5-vm56-36qj MINI-w3w5-vm56-36qj
MINI-pr8r-c8p5-5cp9 MINI-pr8r-c8p5-5cp9
MINI-hrgq-r82h-94r9 MINI-hrgq-r82h-94r9
MINI-gwwm-xxc7-66gg MINI-gwwm-xxc7-66gg
MINI-8hq3-hh9m-cvhc MINI-8hq3-hh9m-cvhc
MINI-94f4-hcm7-mv68 MINI-94f4-hcm7-mv68
MINI-hxfw-w8pq-v5jx MINI-hxfw-w8pq-v5jx
MINI-fxp2-8phh-3cv7 MINI-fxp2-8phh-3cv7
MINI-3cmq-g3vv-2vpg MINI-3cmq-g3vv-2vpg
MINI-v8w8-ccmh-7cx9 MINI-v8w8-ccmh-7cx9
MINI-xq48-22jw-3xrm MINI-xq48-22jw-3xrm
MINI-qm35-9rv7-6chh MINI-qm35-9rv7-6chh
MINI-w2wh-vpg2-xgr9 MINI-w2wh-vpg2-xgr9
MINI-ffph-h4rf-qrh6 MINI-ffph-h4rf-qrh6
MINI-f3h7-42r4-39hg MINI-f3h7-42r4-39hg
MINI-8399-j6vc-cgp6 MINI-8399-j6vc-cgp6

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →