Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-5093 |
|
Vulnerability in wordpress (CVE-2026-5093)
vulnerability in wordpress (CVE-2026-5093). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-4561 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-4561)
cross-site scripting in wordpress (CVE-2026-4561). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-4559 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-4559)
cross-site scripting in wordpress (CVE-2026-4559). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-2996 |
|
Vulnerability in wordpress (CVE-2026-2996)
vulnerability in wordpress (CVE-2026-2996). Data can be tampered with by attackers.
|
| CVE-2026-62382 |
|
Authorization Flaw in CVE-2026-62382 (CVE-2026-62382)
vulnerability in CVE-2026-62382 (CVE-2026-62382). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.9.6` or later.
|
| CVE-2026-62381 |
|
Vulnerability in c (CVE-2026-62381)
vulnerability in c (CVE-2026-62381). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-62380 |
|
Vulnerability in netty (CVE-2026-62380)
vulnerability in netty (CVE-2026-62380). Data can be tampered with by attackers. Mitigation: upgrade to `4.2.17.Final` or later.
|
| CVE-2026-62243 |
|
Vulnerability in CVE-2026-62243 (CVE-2026-62243)
vulnerability in CVE-2026-62243 (CVE-2026-62243). Confidential information can be exposed externally. Mitigation: upgrade to `4.2.17.Final` or later.
|
| CVE-2026-62204 |
|
Vulnerability in CVE-2026-62204 (CVE-2026-62204)
vulnerability in CVE-2026-62204 (CVE-2026-62204). Data can be tampered with by attackers.
|
| CVE-2026-60084 |
|
Path Traversal in CVE-2026-60084 (CVE-2026-60084)
path traversal in CVE-2026-60084 (CVE-2026-60084). Data can be tampered with by attackers.
|
| CVE-2026-60083 |
|
Authorization Flaw in CVE-2026-60083 (CVE-2026-60083)
vulnerability in CVE-2026-60083 (CVE-2026-60083). Confidential information can be exposed externally.
|
| CVE-2026-59809 |
|
Vulnerability in CVE-2026-59809 (CVE-2026-59809)
vulnerability in CVE-2026-59809 (CVE-2026-59809). Confidential information can be exposed externally.
|
| CVE-2026-59808 |
|
Vulnerability in CVE-2026-59808 (CVE-2026-59808)
vulnerability in CVE-2026-59808 (CVE-2026-59808). Successful exploitation can lead to full system takeover.
|
| CVE-2026-59256 |
|
Information Disclosure in CVE-2026-59256 (CVE-2026-59256)
vulnerability in CVE-2026-59256 (CVE-2026-59256). Confidential information can be exposed externally.
|
| CVE-2026-58003 |
|
Cross-Site Request Forgery (CSRF) in CVE-2026-58003 (CVE-2026-58003)
vulnerability in CVE-2026-58003 (CVE-2026-58003). Confidential information can be exposed externally.
|
| CVE-2026-58002 |
|
Vulnerability in CVE-2026-58002 (CVE-2026-58002)
vulnerability in CVE-2026-58002 (CVE-2026-58002). Data can be tampered with by attackers.
|
| CVE-2026-58001 |
|
Cross-Site Request Forgery (CSRF) in CVE-2026-58001 (CVE-2026-58001)
vulnerability in CVE-2026-58001 (CVE-2026-58001). Data can be tampered with by attackers.
|
| CVE-2026-57998 |
|
OS Command Injection in CVE-2026-57998 (CVE-2026-57998)
OS command injection in CVE-2026-57998 (CVE-2026-57998). Successful exploitation can lead to full system takeover.
|
| CVE-2026-57944 |
|
Cross-Site Request Forgery (CSRF) in CVE-2026-57944 (CVE-2026-57944)
vulnerability in CVE-2026-57944 (CVE-2026-57944). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-56380 |
|
Information Disclosure in CVE-2026-56380 (CVE-2026-56380)
vulnerability in CVE-2026-56380 (CVE-2026-56380). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-4244 |
|
Vulnerability in wordpress (CVE-2026-4244)
vulnerability in wordpress (CVE-2026-4244). Risk of unauthorized operations or information disclosure. Exploitable via ``edit_others_posts``.
|
| CVE-2026-11948 |
|
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
|
| CVE-2026-11947 |
|
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
|
| CVE-2026-77988 |
|
Vulnerability in CVE-2026-77988 (CVE-2026-77988)
vulnerability in CVE-2026-77988 (CVE-2026-77988). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-66917 |
|
Cross-Site Scripting (XSS) in csharp (CVE-2026-66917)
cross-site scripting in csharp (CVE-2026-66917). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-66916 |
|
Vulnerability in csharp (CVE-2026-66916)
vulnerability in csharp (CVE-2026-66916). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-4245 |
|
Authorization Flaw in wordpress (CVE-2026-4245)
vulnerability in wordpress (CVE-2026-4245). Risk of unauthorized operations or information disclosure. Exploitable via ``duplicate_posts``.
|
| CVE-2026-3424 |
|
Code Injection in wordpress (CVE-2026-3424)
code injection in wordpress (CVE-2026-3424). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-77946 |
|
Buffer Overflow in CVE-2026-77946 (CVE-2026-77946)
vulnerability in CVE-2026-77946 (CVE-2026-77946). Successful exploitation can lead to full system takeover.
|
| CVE-2026-77945 |
|
Vulnerability in CVE-2026-77945 (CVE-2026-77945)
vulnerability in CVE-2026-77945 (CVE-2026-77945). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-78003 |
|
SSRF (Server-Side Request Forgery) in wordpress (CVE-2026-78003)
SSRF in wordpress (CVE-2026-78003). Successful exploitation can lead to full system takeover.
|
| CVE-2026-12710 |
|
Vulnerability in CVE-2026-12710 (CVE-2026-12710)
vulnerability in CVE-2026-12710 (CVE-2026-12710). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-77002 |
|
Authentication Bypass in wordpress (CVE-2026-77002)
authentication bypass in wordpress (CVE-2026-77002). Successful exploitation can lead to full system takeover.
|
| CVE-2026-77001 |
|
Authentication Bypass in wordpress (CVE-2026-77001)
authentication bypass in wordpress (CVE-2026-77001). Successful exploitation can lead to full system takeover.
|
| CVE-2026-77000 |
|
Authentication Bypass in wordpress (CVE-2026-77000)
authentication bypass in wordpress (CVE-2026-77000). Successful exploitation can lead to full system takeover.
|
| CVE-2026-76793 |
|
Authentication Bypass in wordpress (CVE-2026-76793)
authentication bypass in wordpress (CVE-2026-76793). Successful exploitation can lead to full system takeover.
|
| CVE-2026-76789 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-76789)
cross-site scripting in wordpress (CVE-2026-76789). Successful exploitation can lead to full system takeover.
|
| CVE-2026-19222 |
|
Privilege Escalation in wordpress (CVE-2026-19222)
vulnerability in wordpress (CVE-2026-19222). Successful exploitation can lead to full system takeover.
|
| CVE-2026-19221 |
|
Code Injection in wordpress (CVE-2026-19221)
code injection in wordpress (CVE-2026-19221). Successful exploitation can lead to full system takeover.
|
| CVE-2026-19093 |
|
Vulnerability in wordpress (CVE-2026-19093)
vulnerability in wordpress (CVE-2026-19093). Confidential information can be exposed externally.
|
| CVE-2026-18052 |
|
Authentication Bypass in wordpress (CVE-2026-18052)
authentication bypass in wordpress (CVE-2026-18052). Successful exploitation can lead to full system takeover.
|
| CVE-2026-16738 |
|
Vulnerability in wordpress (CVE-2026-16738)
vulnerability in wordpress (CVE-2026-16738). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16612 |
|
Information Disclosure in wordpress (CVE-2026-16612)
vulnerability in wordpress (CVE-2026-16612). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16260 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2026-16260)
cross-site scripting in wordpress (CVE-2026-16260). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14187 |
|
Vulnerability in wordpress (CVE-2026-14187)
vulnerability in wordpress (CVE-2026-14187). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76074 |
|
Vulnerability in wordpress (CVE-2026-76074)
vulnerability in wordpress (CVE-2026-76074). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76057 |
|
Vulnerability in wordpress (CVE-2026-76057)
vulnerability in wordpress (CVE-2026-76057). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-75027 |
|
Vulnerability in wordpress (CVE-2026-75027)
vulnerability in wordpress (CVE-2026-75027). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19883 |
|
Privilege Escalation in wordpress (CVE-2026-19883)
vulnerability in wordpress (CVE-2026-19883). Successful exploitation can lead to full system takeover.
|
| CVE-2026-77781 |
|
Vulnerability in CVE-2026-77781 (CVE-2026-77781)
vulnerability in CVE-2026-77781 (CVE-2026-77781). Risk of unauthorized operations or information disclosure.
|