Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-82421 |
|
Vulnerability in CVE-2026-82421 (CVE-2026-82421)
vulnerability in CVE-2026-82421 (CVE-2026-82421). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-55855 |
|
SQL Injection in mariadb (CVE-2026-55855)
SQL injection in mariadb (CVE-2026-55855). Confidential information can be exposed externally. Mitigation: upgrade to `3.2.4` or later.
|
| CVE-2026-77586 |
|
SQL Injection in CVE-2026-77586 (CVE-2026-77586)
SQL injection in CVE-2026-77586 (CVE-2026-77586). Successful exploitation can lead to full system takeover.
|
| CVE-2026-77184 |
|
SQL Injection in CVE-2026-77184 (CVE-2026-77184)
SQL injection in CVE-2026-77184 (CVE-2026-77184). Confidential information can be exposed externally.
|
| CVE-2026-55634 |
|
SQL Injection in pimcore/pimcore (CVE-2026-55634)
SQL injection in pimcore/pimcore (CVE-2026-55634). Successful exploitation can lead to full system takeover. Exploitable via ``objects``. Mitigation: upgrade to `2026.1.6` or later.
|
| CVE-2026-55509 |
|
SQL Injection in WsgiDAV (CVE-2026-55509)
SQL injection in WsgiDAV (CVE-2026-55509). Risk of unauthorized operations or information disclosure. Exploitable via ``MySQLBrowserProvider``. Mitigation: upgrade to `4.3.5` or later.
|
| CVE-2026-82227 |
|
Contributor SQL Injection in WPBulky <= 1.2.2 versions.
Contributor SQL Injection in WPBulky <= 1.2.2 versions.
|
| CVE-2026-78072 |
|
Joomla Extension - Jefferson49 - Unauthenticated blind SQLi in Sexy Polling Reloaded < 5.6.1
Joomla Extension - Jefferson49 - Unauthenticated blind SQLi in Sexy Polling Reloaded < 5.6.1
|
| CVE-2026-78070 |
|
SQL Injection in sqli (CVE-2026-78070)
SQL injection in sqli (CVE-2026-78070). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-40018 |
|
None None None No publicly available exploits are known.
None None None No publicly available exploits are known.
|
| CVE-2026-5097 |
|
SQL Injection in wordpress (CVE-2026-5097)
SQL injection in wordpress (CVE-2026-5097). Confidential information can be exposed externally.
|
| CVE-2026-78614 |
|
SQL Injection in sqli (CVE-2026-78614)
SQL injection in sqli (CVE-2026-78614). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-78612 |
|
SQL Injection in sqli (CVE-2026-78612)
SQL injection in sqli (CVE-2026-78612). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-78613 |
|
SQL Injection in sqli (CVE-2026-78613)
SQL injection in sqli (CVE-2026-78613). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-75417 |
|
SQL Injection in sqli (CVE-2026-75417)
SQL injection in sqli (CVE-2026-75417). Successful exploitation can lead to full system takeover.
|
| CVE-2026-81728 |
|
SQL Injection in sqli (CVE-2026-81728)
SQL injection in sqli (CVE-2026-81728). Confidential information can be exposed externally.
|
| CVE-2026-74820 |
|
SQL Injection in sqli (CVE-2026-74820)
SQL injection in sqli (CVE-2026-74820). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-81675 |
|
SQL Injection in sqli (CVE-2026-81675)
SQL injection in sqli (CVE-2026-81675). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-81676 |
|
SQL Injection in sqli (CVE-2026-81676)
SQL injection in sqli (CVE-2026-81676). Risk of unauthorized operations or information disclosure. Exploitable via ``limit_videos``.
|
| CVE-2026-81677 |
|
SQL Injection in sqli (CVE-2026-81677)
SQL injection in sqli (CVE-2026-81677). Risk of unauthorized operations or information disclosure. Exploitable via ``id_ambito``.
|
| CVE-2026-81673 |
|
SQL Injection in sqli (CVE-2026-81673)
SQL injection in sqli (CVE-2026-81673). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-81672 |
|
SQL Injection in sqli (CVE-2026-81672)
SQL injection in sqli (CVE-2026-81672). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-81674 |
|
SQL Injection in sqli (CVE-2026-81674)
SQL injection in sqli (CVE-2026-81674). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-81277 |
|
Contributor SQL Injection in Suggestion Engine for WooCommerce <= 2.0.11 versions.
Contributor SQL Injection in Suggestion Engine for WooCommerce <= 2.0.11 versions.
|
| CVE-2026-78285 |
|
Subscriber SQL Injection in Like Button Rating <= 2.6.61 versions.
Subscriber SQL Injection in Like Button Rating <= 2.6.61 versions.
|
| CVE-2026-78288 |
|
Unauthenticated SQL Injection in Beautiful Taxonomy Filters <= 2.4.6 versions.
Unauthenticated SQL Injection in Beautiful Taxonomy Filters <= 2.4.6 versions.
|
| CVE-2026-78260 |
|
Unauthenticated SQL Injection in Epayco <= 8.4.6 versions.
Unauthenticated SQL Injection in Epayco <= 8.4.6 versions.
|
| CVE-2026-32550 |
|
Subscriber SQL Injection in Kadence Shop Kit <= 3.0.6 versions.
Subscriber SQL Injection in Kadence Shop Kit <= 3.0.6 versions.
|
| CVE-2026-32564 |
|
Subscriber SQL Injection in ACPT (Pro) - Custom Post Types Plugin for WordPress <= 2.0.63 versions.
Subscriber SQL Injection in ACPT (Pro) - Custom Post Types Plugin for WordPress <= 2.0.63 versions.
|
| CVE-2026-32479 |
|
Unauthenticated SQL Injection in Visitor Traffic Real Time Statistics Pro <= 11.17 versions.
Unauthenticated SQL Injection in Visitor Traffic Real Time Statistics Pro <= 11.17 versions.
|
| CVE-2026-81203 |
|
Vulnerability in sqli (CVE-2026-81203)
vulnerability in sqli (CVE-2026-81203). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-75330 |
|
SQL Injection in sqli (CVE-2026-75330)
SQL injection in sqli (CVE-2026-75330). Successful exploitation can lead to full system takeover.
|
| CVE-2026-75336 |
|
SQL Injection in sqli (CVE-2026-75336)
SQL injection in sqli (CVE-2026-75336). Successful exploitation can lead to full system takeover.
|
| CVE-2026-49809 |
|
SQL Injection in sqli (CVE-2026-49809)
SQL injection in sqli (CVE-2026-49809). Confidential information can be exposed externally.
|
| CVE-2026-80236 |
|
SQL Injection in sqli (CVE-2026-80236)
SQL injection in sqli (CVE-2026-80236). Confidential information can be exposed externally.
|
| CVE-2026-9668 |
|
SQL Injection in privilege-escalation (CVE-2026-9668)
SQL injection in privilege-escalation (CVE-2026-9668). Confidential information can be exposed externally.
|
| CVE-2026-18884 |
|
SQL Injection in wordpress (CVE-2026-18884)
SQL injection in wordpress (CVE-2026-18884). Confidential information can be exposed externally.
|
| CVE-2026-19094 |
|
SQL Injection in wordpress (CVE-2026-19094)
SQL injection in wordpress (CVE-2026-19094). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-79845 |
|
Vulnerability in sqli (CVE-2026-79845)
vulnerability in sqli (CVE-2026-79845). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-79804 |
|
Vulnerability in sqli (CVE-2026-79804)
vulnerability in sqli (CVE-2026-79804). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-75497 |
|
SQL Injection in CVE-2026-75497 (CVE-2026-75497)
SQL injection in CVE-2026-75497 (CVE-2026-75497). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `123c97c` or later.
|
| CVE-2026-78468 |
|
SQL Injection in wordpress (CVE-2026-78468)
SQL injection in wordpress (CVE-2026-78468). Confidential information can be exposed externally.
|
| CVE-2026-75498 |
|
SQL Injection in CVE-2026-75498 (CVE-2026-75498)
SQL injection in CVE-2026-75498 (CVE-2026-75498). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `123c97c` or later.
|
| CVE-2026-78864 |
|
Vulnerability in sqli (CVE-2026-78864)
vulnerability in sqli (CVE-2026-78864). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-77824 |
|
SQL Injection in wordpress (CVE-2026-77824)
SQL injection in wordpress (CVE-2026-77824). Confidential information can be exposed externally.
|
| CVE-2026-19949 |
|
SQL Injection in wordpress (CVE-2026-19949)
SQL injection in wordpress (CVE-2026-19949). Successful exploitation can lead to full system takeover.
|
| CVE-2026-78576 |
|
SQL Injection in wordpress (CVE-2026-78576)
SQL injection in wordpress (CVE-2026-78576). Confidential information can be exposed externally.
|
| CVE-2026-78568 |
|
SQL Injection in wordpress (CVE-2026-78568)
SQL injection in wordpress (CVE-2026-78568). Successful exploitation can lead to full system takeover.
|
| CVE-2026-77137 |
|
SQL Injection in CVE-2026-77137 (CVE-2026-77137)
SQL injection in CVE-2026-77137 (CVE-2026-77137). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-78656 |
|
Vulnerability in sqli (CVE-2026-78656)
vulnerability in sqli (CVE-2026-78656). Risk of unauthorized operations or information disclosure.
|