Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-73670 |
|
SQL Injection in sqli (CVE-2026-73670)
SQL injection in sqli (CVE-2026-73670). Successful exploitation can lead to full system takeover.
|
| CVE-2026-73570 KEV |
|
[KEV] OS Command Injection in Synacor zimbra-collaboration-suite (CVE-2026-73570)
OS command injection in Synacor zimbra-collaboration-suite (CVE-2026-73570). Confidential information can be exposed externally. Listed in CISA KEV — actively exploited.
|
| CVE-2026-73515 |
|
Out-of-Bounds Read in dos (CVE-2026-73515)
vulnerability in dos (CVE-2026-73515). Confidential information can be exposed externally.
|
| CVE-2026-73514 |
|
Out-of-Bounds Write in CVE-2026-73514 (CVE-2026-73514)
out-of-bounds write in CVE-2026-73514 (CVE-2026-73514). Successful exploitation can lead to full system takeover.
|
| CVE-2026-19710 |
|
Vulnerability in sqli (CVE-2026-19710)
vulnerability in sqli (CVE-2026-19710). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-68454 |
|
Vulnerability in CVE-2026-68454 (CVE-2026-68454)
vulnerability in CVE-2026-68454 (CVE-2026-68454). Successful exploitation can lead to full system takeover.
|
| CVE-2026-68452 |
|
Vulnerability in CVE-2026-68452 (CVE-2026-68452)
vulnerability in CVE-2026-68452 (CVE-2026-68452). Successful exploitation can lead to full system takeover.
|
| CVE-2026-68453 |
|
Vulnerability in CVE-2026-68453 (CVE-2026-68453)
vulnerability in CVE-2026-68453 (CVE-2026-68453). Confidential information can be exposed externally.
|
| CVE-2026-63424 |
|
Vulnerability in CVE-2026-63424 (CVE-2026-63424)
vulnerability in CVE-2026-63424 (CVE-2026-63424). Data can be tampered with by attackers.
|
| CVE-2026-66256 |
|
Unsafe Deserialization in apache (CVE-2026-66256)
vulnerability in apache (CVE-2026-66256). Successful exploitation can lead to full system takeover.
|
| CVE-2026-63425 |
|
Vulnerability in CVE-2026-63425 (CVE-2026-63425)
vulnerability in CVE-2026-63425 (CVE-2026-63425). Successful exploitation can lead to full system takeover.
|
| CVE-2026-63426 |
|
Vulnerability in CVE-2026-63426 (CVE-2026-63426)
vulnerability in CVE-2026-63426 (CVE-2026-63426). Data can be tampered with by attackers.
|
| CVE-2026-68451 |
|
Vulnerability in CVE-2026-68451 (CVE-2026-68451)
vulnerability in CVE-2026-68451 (CVE-2026-68451). Successful exploitation can lead to full system takeover.
|
| CVE-2026-6387 |
|
Vulnerability in CVE-2026-6387 (CVE-2026-6387)
vulnerability in CVE-2026-6387 (CVE-2026-6387). Successful exploitation can lead to full system takeover.
|
| CVE-2026-63423 |
|
Vulnerability in CVE-2026-63423 (CVE-2026-63423)
vulnerability in CVE-2026-63423 (CVE-2026-63423). Successful exploitation can lead to full system takeover.
|
| CVE-2026-28154 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-28154)
cross-site scripting in wordpress (CVE-2026-28154). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19291 |
|
Vulnerability in CVE-2026-19291 (CVE-2026-19291)
vulnerability in CVE-2026-19291 (CVE-2026-19291). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15994 |
|
Vulnerability in c (CVE-2026-15994)
vulnerability in c (CVE-2026-15994). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14456 |
|
Vulnerability in dos (CVE-2026-14456)
vulnerability in dos (CVE-2026-14456). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19292 |
|
Vulnerability in CVE-2026-19292 (CVE-2026-19292)
vulnerability in CVE-2026-19292 (CVE-2026-19292). Successful exploitation can lead to full system takeover.
|
| CVE-2026-19293 |
|
Vulnerability in CVE-2026-19293 (CVE-2026-19293)
vulnerability in CVE-2026-19293 (CVE-2026-19293). Successful exploitation can lead to full system takeover.
|
| CVE-2026-16101 |
|
Vulnerability in CVE-2026-16101 (CVE-2026-16101)
vulnerability in CVE-2026-16101 (CVE-2026-16101). Successful exploitation can lead to full system takeover.
|
| CVE-2026-12036 |
|
Vulnerability in CVE-2026-12036 (CVE-2026-12036)
vulnerability in CVE-2026-12036 (CVE-2026-12036). Data can be tampered with by attackers.
|
| CVE-2026-70464 |
|
Vulnerability in dos (CVE-2026-70464)
vulnerability in dos (CVE-2026-70464). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-70463 |
|
Authorization Flaw in CVE-2026-70463 (CVE-2026-70463)
vulnerability in CVE-2026-70463 (CVE-2026-70463). Confidential information can be exposed externally.
|
| CVE-2026-70461 |
|
Out-of-Bounds Write in CVE-2026-70461 (CVE-2026-70461)
out-of-bounds write in CVE-2026-70461 (CVE-2026-70461). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-70460 |
|
Path Traversal in path-traversal (CVE-2026-70460)
path traversal in path-traversal (CVE-2026-70460). Successful exploitation can lead to full system takeover.
|
| CVE-2026-70458 |
|
Out-of-Bounds Write in CVE-2026-70458 (CVE-2026-70458)
out-of-bounds write in CVE-2026-70458 (CVE-2026-70458). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-70456 |
|
Out-of-Bounds Write in CVE-2026-70456 (CVE-2026-70456)
out-of-bounds write in CVE-2026-70456 (CVE-2026-70456). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-70455 |
|
Vulnerability in dos (CVE-2026-70455)
vulnerability in dos (CVE-2026-70455). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-70454 |
|
Vulnerability in CVE-2026-70454 (CVE-2026-70454)
vulnerability in CVE-2026-70454 (CVE-2026-70454). Confidential information can be exposed externally.
|
| CVE-2026-70453 |
|
Vulnerability in dos (CVE-2026-70453)
vulnerability in dos (CVE-2026-70453). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-70452 |
|
Vulnerability in CVE-2026-70452 (CVE-2026-70452)
vulnerability in CVE-2026-70452 (CVE-2026-70452). Confidential information can be exposed externally.
|
| CVE-2026-53803 |
|
Vulnerability in privilege-escalation (CVE-2026-53803)
vulnerability in privilege-escalation (CVE-2026-53803). Successful exploitation can lead to full system takeover.
|
| CVE-2026-53802 |
|
Vulnerability in CVE-2026-53802 (CVE-2026-53802)
vulnerability in CVE-2026-53802 (CVE-2026-53802). Confidential information can be exposed externally.
|
| CVE-2026-53795 |
|
Vulnerability in CVE-2026-53795 (CVE-2026-53795)
vulnerability in CVE-2026-53795 (CVE-2026-53795). Data can be tampered with by attackers.
|
| CVE-2026-53793 |
|
Vulnerability in CVE-2026-53793 (CVE-2026-53793)
vulnerability in CVE-2026-53793 (CVE-2026-53793). Confidential information can be exposed externally.
|
| CVE-2026-53790 |
|
OS Command Injection in CVE-2026-53790 (CVE-2026-53790)
OS command injection in CVE-2026-53790 (CVE-2026-53790). Successful exploitation can lead to full system takeover.
|
| CVE-2026-53785 |
|
Vulnerability in path-traversal (CVE-2026-53785)
vulnerability in path-traversal (CVE-2026-53785). Data can be tampered with by attackers.
|
| CVE-2026-53784 |
|
Vulnerability in path-traversal (CVE-2026-53784)
vulnerability in path-traversal (CVE-2026-53784). Confidential information can be exposed externally.
|
| CVE-2026-53783 |
|
Vulnerability in CVE-2026-53783 (CVE-2026-53783)
vulnerability in CVE-2026-53783 (CVE-2026-53783). Confidential information can be exposed externally.
|
| CVE-2026-73346 |
|
Administrator SQL Injection in MailChimp For WooCommerce < 6.2 versions.
Administrator SQL Injection in MailChimp For WooCommerce < 6.2 versions.
|
| CVE-2026-73188 |
|
Unauthenticated Sensitive Data Exposure in KiviCare <= 4.5.1 versions.
Unauthenticated Sensitive Data Exposure in KiviCare <= 4.5.1 versions.
|
| CVE-2026-67991 |
|
Vulnerability in dos (CVE-2026-67991)
vulnerability in dos (CVE-2026-67991). Confidential information can be exposed externally.
|
| CVE-2026-67986 |
|
Code Injection in CVE-2026-67986 (CVE-2026-67986)
code injection in CVE-2026-67986 (CVE-2026-67986). Successful exploitation can lead to full system takeover.
|
| CVE-2026-66704 |
|
Unauthenticated Server Side Request Forgery (SSRF) in Gutenverse Companion <= 2.5.1 versions.
Unauthenticated Server Side Request Forgery (SSRF) in Gutenverse Companion <= 2.5.1 versions.
|
| CVE-2026-66700 |
|
Unauthenticated Cross Site Scripting (XSS) in Smart Online Order for Clover <= 1.6.1 versions.
Unauthenticated Cross Site Scripting (XSS) in Smart Online Order for Clover <= 1.6.1 versions.
|
| CVE-2026-66698 |
|
Unauthenticated Cross Site Scripting (XSS) in SureDash <= 1.10.1 versions.
Unauthenticated Cross Site Scripting (XSS) in SureDash <= 1.10.1 versions.
|
| CVE-2026-66697 |
|
Cross-Site Scripting (XSS) in CVE-2026-66697 (CVE-2026-66697)
cross-site scripting in CVE-2026-66697 (CVE-2026-66697). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-66661 |
|
Subscriber Privilege Escalation in Directories Pro <= 2.0.5 versions.
Subscriber Privilege Escalation in Directories Pro <= 2.0.5 versions.
|