Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

ID Title
CVE-2026-57331 Performer Arbitrary File Deletion in Paid Videochat Turnkey Site <= 7.4.8 versions.
Performer Arbitrary File Deletion in Paid Videochat Turnkey Site <= 7.4.8 versions.
CVE-2026-57330 Subscriber Cross Site Scripting (XSS) in MasterStudy LMS <= 3.7.27 versions.
Subscriber Cross Site Scripting (XSS) in MasterStudy LMS <= 3.7.27 versions.
CVE-2026-57341 Vulnerability in CVE-2026-57341 (CVE-2026-57341)
vulnerability in CVE-2026-57341 (CVE-2026-57341). Risk of unauthorized operations or information disclosure.
CVE-2026-57329 Subscriber Cross Site Scripting (XSS) in WooCommerce Designer Pro <= 1.9.34 versions.
Subscriber Cross Site Scripting (XSS) in WooCommerce Designer Pro <= 1.9.34 versions.
CVE-2026-57336 Unauthenticated Cross Site Scripting (XSS) in Jobify <= 4.3.2 versions.
Unauthenticated Cross Site Scripting (XSS) in Jobify <= 4.3.2 versions.
CVE-2026-57523 Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2026-57327 Subscriber Broken Access Control in MainWP <= 6.1.1 versions.
Subscriber Broken Access Control in MainWP <= 6.1.1 versions.
CVE-2026-57337 Unauthenticated Cross Site Scripting (XSS) in Landing Page Builder <= 1.5.3.5 versions.
Unauthenticated Cross Site Scripting (XSS) in Landing Page Builder <= 1.5.3.5 versions.
CVE-2026-57333 Unauthenticated Cross Site Scripting (XSS) in Link Whisper Free <= 0.9.4 versions.
Unauthenticated Cross Site Scripting (XSS) in Link Whisper Free <= 0.9.4 versions.
CVE-2026-57335 Subscriber Broken Access Control in Ads by WPQuads <= 3.0.3 versions.
Subscriber Broken Access Control in Ads by WPQuads <= 3.0.3 versions.
CVE-2026-57328 Subscriber Cross Site Scripting (XSS) in Business Directory <= 6.4.22 versions.
Subscriber Cross Site Scripting (XSS) in Business Directory <= 6.4.22 versions.
CVE-2026-57332 Subscriber Broken Access Control in Wallet System for WooCommerce <= 2.7.6 versions.
Subscriber Broken Access Control in Wallet System for WooCommerce <= 2.7.6 versions.
CVE-2026-57326 Unauthenticated Cross Site Scripting (XSS) in Business Directory <= 6.4.22 versions.
Unauthenticated Cross Site Scripting (XSS) in Business Directory <= 6.4.22 versions.
CVE-2026-57320 Unauthenticated Cross Site Scripting (XSS) in BEAR <= 1.1.8 versions.
Unauthenticated Cross Site Scripting (XSS) in BEAR <= 1.1.8 versions.
CVE-2026-56124 Vulnerability in CVE-2026-56124 (CVE-2026-56124)
vulnerability in CVE-2026-56124 (CVE-2026-56124). Confidential information can be exposed externally.
CVE-2026-56290 KEV [KEV] Unrestricted File Upload in Joomlack page-builder-ck (CVE-2026-56290)
vulnerability in Joomlack page-builder-ck (CVE-2026-56290). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
CVE-2026-13573 Buffer Overflow in cpp (CVE-2026-13573)
vulnerability in cpp (CVE-2026-13573). Risk of unauthorized operations or information disclosure.
CVE-2026-13574 Buffer Overflow in cpp (CVE-2026-13574)
vulnerability in cpp (CVE-2026-13574). Risk of unauthorized operations or information disclosure.
CVE-2026-13571 Vulnerability in CVE-2026-13571 (CVE-2026-13571)
vulnerability in CVE-2026-13571 (CVE-2026-13571). Risk of unauthorized operations or information disclosure.
CVE-2026-13579 Vulnerability in sqli (CVE-2026-13579)
vulnerability in sqli (CVE-2026-13579). Risk of unauthorized operations or information disclosure.
CVE-2026-13578 Vulnerability in sqli (CVE-2026-13578)
vulnerability in sqli (CVE-2026-13578). Risk of unauthorized operations or information disclosure.
CVE-2026-13572 Vulnerability in sqli (CVE-2026-13572)
vulnerability in sqli (CVE-2026-13572). Risk of unauthorized operations or information disclosure.
CVE-2026-49049 Vulnerability in ollyo (CVE-2026-49049)
vulnerability in ollyo (CVE-2026-49049). Data can be tampered with by attackers.
SUSE-SU-2026:2685-1 Vulnerability in openCryptoki (SUSE-SU-2026:2685-1)
vulnerability in openCryptoki (SUSE-SU-2026:2685-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `3.17.0-5.24.1` or later.
CVE-2026-55844 Vulnerability in CVE-2026-55844 (CVE-2026-55844)
vulnerability in CVE-2026-55844 (CVE-2026-55844). Confidential information can be exposed externally. Mitigation: upgrade to `2025.5.0` or later.
CVE-2026-55607 Path Traversal in @anthropic-ai/claude-code (CVE-2026-55607)
path traversal in @anthropic-ai/claude-code (CVE-2026-55607). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `2.1.163` or later.
UBUNTU-CVE-2026-13573 Vulnerability in llvm-toolchain-18 (UBUNTU-CVE-2026-13573)
vulnerability in llvm-toolchain-18 (UBUNTU-CVE-2026-13573). Risk of unauthorized operations or information disclosure.
UBUNTU-CVE-2026-13574 Vulnerability in llvm-toolchain-18 (UBUNTU-CVE-2026-13574)
vulnerability in llvm-toolchain-18 (UBUNTU-CVE-2026-13574). Risk of unauthorized operations or information disclosure.
MINI-jh3m-gfvh-hwmv MINI-jh3m-gfvh-hwmv
MINI-x64f-qg4m-hhhr MINI-x64f-qg4m-hhhr
MINI-xfmc-2pvr-342r MINI-xfmc-2pvr-342r
MINI-vc2c-w43j-62qh MINI-vc2c-w43j-62qh
MINI-8j5c-qxrq-5vx6 MINI-8j5c-qxrq-5vx6
MINI-rc26-68mj-wg8q MINI-rc26-68mj-wg8q
MINI-w57r-8xrh-4j79 MINI-w57r-8xrh-4j79
MINI-g4hm-h6pj-rf36 MINI-g4hm-h6pj-rf36
MINI-hcfp-vfh6-r4rc MINI-hcfp-vfh6-r4rc
MINI-w6xx-rpg2-gw6w MINI-w6xx-rpg2-gw6w
MINI-x45f-j7xc-grh5 MINI-x45f-j7xc-grh5
MINI-v9jg-mwwg-h2fj MINI-v9jg-mwwg-h2fj
MINI-jgpp-fvgj-8jcr MINI-jgpp-fvgj-8jcr
MINI-hpqj-j56m-rrm4 MINI-hpqj-j56m-rrm4
MINI-q2r4-2989-x3xg MINI-q2r4-2989-x3xg
MINI-2v77-4mc5-w7m3 MINI-2v77-4mc5-w7m3
MINI-28fm-6w93-2x84 MINI-28fm-6w93-2x84
MINI-fxxc-mcpw-mh94 MINI-fxxc-mcpw-mh94
CVE-2026-56457 Vulnerability in hcltechsw (CVE-2026-56457)
vulnerability in hcltechsw (CVE-2026-56457). Risk of unauthorized operations or information disclosure.
CVE-2026-54371 Vulnerability in privilege-escalation (CVE-2026-54371)
vulnerability in privilege-escalation (CVE-2026-54371). Confidential information can be exposed externally.
CVE-2026-54370 Vulnerability in privilege-escalation (CVE-2026-54370)
vulnerability in privilege-escalation (CVE-2026-54370). Confidential information can be exposed externally.
CVE-2026-54369 Vulnerability in privilege-escalation (CVE-2026-54369)
vulnerability in privilege-escalation (CVE-2026-54369). Confidential information can be exposed externally.

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →