Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-28002 |
|
SQL Injection in sqli (CVE-2026-28002)
SQL injection in sqli (CVE-2026-28002). Confidential information can be exposed externally.
|
| CVE-2026-27543 |
|
Unauthenticated Privilege Escalation in MStore API <= 4.20.0 versions.
Unauthenticated Privilege Escalation in MStore API <= 4.20.0 versions.
|
| CVE-2026-27539 |
|
Unauthenticated Cross Site Scripting (XSS) in Welcart e-Commerce <= 2.11.31 versions.
Unauthenticated Cross Site Scripting (XSS) in Welcart e-Commerce <= 2.11.31 versions.
|
| CVE-2026-27538 |
|
Unauthenticated SQL Injection in WP Directory Kit <= 1.5.4 versions.
Unauthenticated SQL Injection in WP Directory Kit <= 1.5.4 versions.
|
| CVE-2026-27536 |
|
Unauthenticated Cross Site Scripting (XSS) in MailChimp Subscribe Forms <= 4.3.3 versions.
Unauthenticated Cross Site Scripting (XSS) in MailChimp Subscribe Forms <= 4.3.3 versions.
|
| CVE-2026-27535 |
|
Subscriber Broken Access Control in Solace Extra <= 1.6.0 versions.
Subscriber Broken Access Control in Solace Extra <= 1.6.0 versions.
|
| CVE-2026-27380 |
|
Editor PHP Object Injection in Car Rental Manager <= 1.3.9 versions.
Editor PHP Object Injection in Car Rental Manager <= 1.3.9 versions.
|
| CVE-2026-27345 |
|
Unauthenticated Broken Access Control in Taxi Booking Manager for WooCommerce <= 2.0.3 versions.
Unauthenticated Broken Access Control in Taxi Booking Manager for WooCommerce <= 2.0.3 versions.
|
| CVE-2026-6471 |
|
Vulnerability in postgresql (CVE-2026-6471)
vulnerability in postgresql (CVE-2026-6471). Successful exploitation can lead to full system takeover.
|
| CVE-2026-6464 |
|
Vulnerability in postgresql (CVE-2026-6464)
vulnerability in postgresql (CVE-2026-6464). Successful exploitation can lead to full system takeover.
|
| CVE-2026-19385 |
|
Vulnerability in postgresql (CVE-2026-19385)
vulnerability in postgresql (CVE-2026-19385). Successful exploitation can lead to full system takeover.
|
| CVE-2026-18408 |
|
Vulnerability in postgresql (CVE-2026-18408)
vulnerability in postgresql (CVE-2026-18408). Successful exploitation can lead to full system takeover.
|
| CVE-2026-16239 |
|
Vulnerability in postgresql (CVE-2026-16239)
vulnerability in postgresql (CVE-2026-16239). Successful exploitation can lead to full system takeover.
|
| CVE-2026-16238 |
|
Vulnerability in postgresql (CVE-2026-16238)
vulnerability in postgresql (CVE-2026-16238). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15742 |
|
Vulnerability in postgresql (CVE-2026-15742)
vulnerability in postgresql (CVE-2026-15742). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15741 |
|
SQL Injection in sqli (CVE-2026-15741)
SQL injection in sqli (CVE-2026-15741). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14680 |
|
Vulnerability in postgresql (CVE-2026-14680)
vulnerability in postgresql (CVE-2026-14680). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14679 |
|
Vulnerability in postgresql (CVE-2026-14679)
vulnerability in postgresql (CVE-2026-14679). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14677 |
|
Vulnerability in postgresql (CVE-2026-14677)
vulnerability in postgresql (CVE-2026-14677). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14676 |
|
Vulnerability in postgresql (CVE-2026-14676)
vulnerability in postgresql (CVE-2026-14676). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14671 |
|
Vulnerability in postgresql (CVE-2026-14671)
vulnerability in postgresql (CVE-2026-14671). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14670 |
|
Vulnerability in postgresql (CVE-2026-14670)
vulnerability in postgresql (CVE-2026-14670). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14669 |
|
Vulnerability in postgresql (CVE-2026-14669)
vulnerability in postgresql (CVE-2026-14669). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14668 |
|
Vulnerability in postgresql (CVE-2026-14668)
vulnerability in postgresql (CVE-2026-14668). Confidential information can be exposed externally.
|
| CVE-2026-14664 |
|
Vulnerability in postgresql (CVE-2026-14664)
vulnerability in postgresql (CVE-2026-14664). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14662 |
|
Vulnerability in postgresql (CVE-2026-14662)
vulnerability in postgresql (CVE-2026-14662). Successful exploitation can lead to full system takeover.
|
| CVE-2026-73625 |
|
OS Command Injection in CVE-2026-73625 (CVE-2026-73625)
OS command injection in CVE-2026-73625 (CVE-2026-73625). Successful exploitation can lead to full system takeover.
|
| CVE-2026-73629 |
|
SSRF (Server-Side Request Forgery) in CVE-2026-73629 (CVE-2026-73629)
SSRF in CVE-2026-73629 (CVE-2026-73629). Confidential information can be exposed externally.
|
| CVE-2026-73617 |
|
Vulnerability in CVE-2026-73617 (CVE-2026-73617)
vulnerability in CVE-2026-73617 (CVE-2026-73617). Confidential information can be exposed externally.
|
| CVE-2026-73615 |
|
Vulnerability in CVE-2026-73615 (CVE-2026-73615)
vulnerability in CVE-2026-73615 (CVE-2026-73615). Successful exploitation can lead to full system takeover.
|
| CVE-2026-73624 |
|
Vulnerability in CVE-2026-73624 (CVE-2026-73624)
vulnerability in CVE-2026-73624 (CVE-2026-73624). Data can be tampered with by attackers.
|
| CVE-2026-73614 |
|
Vulnerability in CVE-2026-73614 (CVE-2026-73614)
vulnerability in CVE-2026-73614 (CVE-2026-73614). Successful exploitation can lead to full system takeover.
|
| CVE-2026-73623 |
|
OS Command Injection in CVE-2026-73623 (CVE-2026-73623)
OS command injection in CVE-2026-73623 (CVE-2026-73623). Successful exploitation can lead to full system takeover.
|
| CVE-2026-73622 |
|
Information Disclosure in CVE-2026-73622 (CVE-2026-73622)
vulnerability in CVE-2026-73622 (CVE-2026-73622). Confidential information can be exposed externally.
|
| CVE-2026-73613 |
|
Vulnerability in CVE-2026-73613 (CVE-2026-73613)
vulnerability in CVE-2026-73613 (CVE-2026-73613). Data can be tampered with by attackers.
|
| CVE-2026-73626 |
|
Vulnerability in CVE-2026-73626 (CVE-2026-73626)
vulnerability in CVE-2026-73626 (CVE-2026-73626). Successful exploitation can lead to full system takeover.
|
| CVE-2026-73620 |
|
Path Traversal in CVE-2026-73620 (CVE-2026-73620)
path traversal in CVE-2026-73620 (CVE-2026-73620). Data can be tampered with by attackers.
|
| CVE-2026-73618 |
|
Vulnerability in CVE-2026-73618 (CVE-2026-73618)
vulnerability in CVE-2026-73618 (CVE-2026-73618). Confidential information can be exposed externally.
|
| CVE-2026-73612 |
|
Vulnerability in CVE-2026-73612 (CVE-2026-73612)
vulnerability in CVE-2026-73612 (CVE-2026-73612). Confidential information can be exposed externally.
|
| CVE-2026-73608 |
|
Vulnerability in CVE-2026-73608 (CVE-2026-73608)
vulnerability in CVE-2026-73608 (CVE-2026-73608). Confidential information can be exposed externally. Mitigation: upgrade to `3.7.4` or later.
|
| CVE-2026-12263 |
|
Vulnerability in CVE-2026-12263 (CVE-2026-12263)
vulnerability in CVE-2026-12263 (CVE-2026-12263). Successful exploitation can lead to full system takeover.
|
| CVE-2026-59505 |
|
CWE-284: Improper Access Control
CWE-284: Improper Access Control
|
| CVE-2026-59501 |
|
CWE-284: Improper Access Control
CWE-284: Improper Access Control
|
| CVE-2026-59499 |
|
CWE-200: Exposure of Sensitive
Information to an Unauthorized Actor
CWE-200: Exposure of Sensitive
Information to an Unauthorized Actor
|
| CVE-2026-19484 |
|
Vulnerability in CVE-2026-19484 (CVE-2026-19484)
vulnerability in CVE-2026-19484 (CVE-2026-19484). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19481 |
|
Vulnerability in dos (CVE-2026-19481)
vulnerability in dos (CVE-2026-19481). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-11840 |
|
Zohocorp ManageEngine Password Manager Pro versions before 13232 and ManageEngine PAM360 versions...
Zohocorp ManageEngine Password Manager Pro versions before 13232 and ManageEngine PAM360 versions...
|
| CVE-2026-18146 |
|
The Fluent Forms – Customizable Contact Forms, Survey, Quiz, & Conversational Form Builder plugin...
The Fluent Forms – Customizable Contact Forms, Survey, Quiz, & Conversational Form Builder plugin...
|
| CVE-2026-18945 |
|
Vulnerability in wordpress (CVE-2026-18945)
vulnerability in wordpress (CVE-2026-18945). Data can be tampered with by attackers.
|
| CVE-2026-13610 |
|
Privilege Escalation in wordpress (CVE-2026-13610)
vulnerability in wordpress (CVE-2026-13610). Confidential information can be exposed externally.
|