脆弱性一覧
CVE / GHSA / KEV / OSV を統合監視。タグ・カテゴリで絞り込み可能。
| ID | タイトル | |
|---|---|---|
| CVE-2026-81579 |
|
privilege-escalation の脆弱性 (CVE-2026-81579)
privilege-escalation に 脆弱性 (CVE-2026-81579) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
|
| CVE-2026-81576 |
|
CVE-2026-81576 の脆弱性 (CVE-2026-81576)
CVE-2026-81576 に 脆弱性 (CVE-2026-81576) が存在。機密情報が外部に流出する可能性があります。
|
| CVE-2026-81575 |
|
CVE-2026-81575 の脆弱性 (CVE-2026-81575)
CVE-2026-81575 に 脆弱性 (CVE-2026-81575) が存在。不正な操作・情報露出のリスクがあります。
|
| CVE-2026-81574 |
|
CVE-2026-81574 の脆弱性 (CVE-2026-81574)
CVE-2026-81574 に 脆弱性 (CVE-2026-81574) が存在。不正な操作・情報露出のリスクがあります。
|
| CVE-2026-81573 |
|
c の脆弱性 (CVE-2026-81573)
c に 脆弱性 (CVE-2026-81573) が存在。データの不正な改ざんを許す可能性があります。
|
| CVE-2026-81572 |
|
c の脆弱性 (CVE-2026-81572)
c に 脆弱性 (CVE-2026-81572) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
|
| CVE-2026-81279 |
|
Subscriber Broken Access Control in Push Notification for Post and BuddyPress <= 3.20 versions.
Subscriber Broken Access Control in Push Notification for Post and BuddyPress <= 3.20 versions.
|
| CVE-2026-81277 |
|
Contributor SQL Injection in Suggestion Engine for WooCommerce <= 2.0.11 versions.
Contributor SQL Injection in Suggestion Engine for WooCommerce <= 2.0.11 versions.
|
| CVE-2026-81276 |
|
Unauthenticated Broken Access Control in Kali Forms <= 2.4.23 versions.
Unauthenticated Broken Access Control in Kali Forms <= 2.4.23 versions.
|
| CVE-2026-81274 |
|
Subscriber Broken Access Control in Ditty <= 3.1.67 versions.
Subscriber Broken Access Control in Ditty <= 3.1.67 versions.
|
| CVE-2026-81273 |
|
Unauthenticated Cross Site Request Forgery (CSRF) in FluentBooking Pro <= 2.2.4 versions.
Unauthenticated Cross Site Request Forgery (CSRF) in FluentBooking Pro <= 2.2.4 versions.
|
| CVE-2026-81272 |
|
Editor Broken Access Control in FluentPlayer Pro <= 1.3.2 versions.
Editor Broken Access Control in FluentPlayer Pro <= 1.3.2 versions.
|
| CVE-2026-81271 |
|
Unauthenticated Cross Site Request Forgery (CSRF) in GeoDirectory <= 2.8.176 versions.
Unauthenticated Cross Site Request Forgery (CSRF) in GeoDirectory <= 2.8.176 versions.
|
| CVE-2026-80433 |
|
Subscriber Sensitive Data Exposure in SureFeedback Client Site <= 1.2.12 versions.
Subscriber Sensitive Data Exposure in SureFeedback Client Site <= 1.2.12 versions.
|
| CVE-2026-78293 |
|
Unauthenticated Cross Site Scripting (XSS) in WP w3all phpBB <= 3.0.6 versions.
Unauthenticated Cross Site Scripting (XSS) in WP w3all phpBB <= 3.0.6 versions.
|
| CVE-2026-78292 |
|
Unauthenticated PHP Object Injection in Hash Form <= 1.4.1 versions.
Unauthenticated PHP Object Injection in Hash Form <= 1.4.1 versions.
|
| CVE-2026-78289 |
|
Unauthenticated Cross Site Scripting (XSS) in CozyStay <= 1.10.0 versions.
Unauthenticated Cross Site Scripting (XSS) in CozyStay <= 1.10.0 versions.
|
| CVE-2026-78288 |
|
Unauthenticated SQL Injection in Beautiful Taxonomy Filters <= 2.4.6 versions.
Unauthenticated SQL Injection in Beautiful Taxonomy Filters <= 2.4.6 versions.
|
| CVE-2026-78286 |
|
Unauthenticated PHP Object Injection in Geo Controller <= 8.9.8 versions.
Unauthenticated PHP Object Injection in Geo Controller <= 8.9.8 versions.
|
| CVE-2026-78285 |
|
Subscriber SQL Injection in Like Button Rating <= 2.6.61 versions.
Subscriber SQL Injection in Like Button Rating <= 2.6.61 versions.
|
| CVE-2026-78283 |
|
Unauthenticated Cross Site Scripting (XSS) in Music Player for WooCommerce <= 1.8.9 versions.
Unauthenticated Cross Site Scripting (XSS) in Music Player for WooCommerce <= 1.8.9 versions.
|
| CVE-2026-78281 |
|
Unauthenticated Cross Site Scripting (XSS) in CP Media Player <= 1.3.0 versions.
Unauthenticated Cross Site Scripting (XSS) in CP Media Player <= 1.3.0 versions.
|
| CVE-2026-78276 |
|
Editor PHP Object Injection in Fluent Boards Pro <= 2.0.11 versions.
Editor PHP Object Injection in Fluent Boards Pro <= 2.0.11 versions.
|
| CVE-2026-78275 |
|
Editor Arbitrary File Deletion in Fluent Boards Pro <= 2.0.11 versions.
Editor Arbitrary File Deletion in Fluent Boards Pro <= 2.0.11 versions.
|
| CVE-2026-78274 |
|
Editor Arbitrary File Upload in Fluent Boards Pro <= 2.0.11 versions.
Editor Arbitrary File Upload in Fluent Boards Pro <= 2.0.11 versions.
|
| CVE-2026-78273 |
|
Subscriber Cross Site Scripting (XSS) in Fluent Boards Pro <= 2.0.11 versions.
Subscriber Cross Site Scripting (XSS) in Fluent Boards Pro <= 2.0.11 versions.
|
| CVE-2026-78271 |
|
Editor Privilege Escalation in FluentCRM Pro <= 3.1.12 versions.
Editor Privilege Escalation in FluentCRM Pro <= 3.1.12 versions.
|
| CVE-2026-78261 |
|
Unauthenticated Cross Site Scripting (XSS) in Realtyna Organic IDX plugin <= 5.4.1 versions.
Unauthenticated Cross Site Scripting (XSS) in Realtyna Organic IDX plugin <= 5.4.1 versions.
|
| CVE-2026-78260 |
|
Unauthenticated SQL Injection in Epayco <= 8.4.6 versions.
Unauthenticated SQL Injection in Epayco <= 8.4.6 versions.
|
| CVE-2026-78257 |
|
Contributor PHP Object Injection in Booking and Rental Manager <= 2.7.5 versions.
Contributor PHP Object Injection in Booking and Rental Manager <= 2.7.5 versions.
|
| CVE-2026-75020 |
|
apache の脆弱性 (CVE-2026-75020)
apache に 脆弱性 (CVE-2026-75020) が存在。不正な操作・情報露出のリスクがあります。
|
| CVE-2026-75005 |
|
apache の脆弱性 (CVE-2026-75005)
apache に 脆弱性 (CVE-2026-75005) が存在。不正な操作・情報露出のリスクがあります。
|
| CVE-2026-74848 |
|
apache の脆弱性 (CVE-2026-74848)
apache に 脆弱性 (CVE-2026-74848) が存在。不正な操作・情報露出のリスクがあります。
|
| CVE-2026-59355 |
|
CVE-2026-59355 に オープンリダイレクト (CVE-2026-59355)
CVE-2026-59355 に 脆弱性 (CVE-2026-59355) が存在。不正な操作・情報露出のリスクがあります。
|
| CVE-2026-59354 |
|
ssrf の脆弱性 (CVE-2026-59354)
ssrf に 脆弱性 (CVE-2026-59354) が存在。機密情報が外部に流出する可能性があります。
|
| CVE-2026-32566 |
|
wordpress の脆弱性 (CVE-2026-32566)
wordpress に 脆弱性 (CVE-2026-32566) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
|
| CVE-2026-32564 |
|
Subscriber SQL Injection in ACPT (Pro) - Custom Post Types Plugin for WordPress <= 2.0.63 versions.
Subscriber SQL Injection in ACPT (Pro) - Custom Post Types Plugin for WordPress <= 2.0.63 versions.
|
| CVE-2026-32550 |
|
Subscriber SQL Injection in Kadence Shop Kit <= 3.0.6 versions.
Subscriber SQL Injection in Kadence Shop Kit <= 3.0.6 versions.
|
| CVE-2026-32479 |
|
Unauthenticated SQL Injection in Visitor Traffic Real Time Statistics Pro <= 11.17 versions.
Unauthenticated SQL Injection in Visitor Traffic Real Time Statistics Pro <= 11.17 versions.
|
| CVE-2026-27330 |
|
Unauthenticated Broken Access Control in Mobile App for WooCommerce <= 0.4.62 versions.
Unauthenticated Broken Access Control in Mobile App for WooCommerce <= 0.4.62 versions.
|
| CVE-2026-78333 |
|
wordpress に クロスサイトスクリプティング (CVE-2026-78333)
wordpress に XSS (クロスサイトスクリプティング) (CVE-2026-78333) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
|
| CVE-2026-78139 |
|
wordpress の脆弱性 (CVE-2026-78139)
wordpress に 脆弱性 (CVE-2026-78139) が存在。不正な操作・情報露出のリスクがあります。
|
| CVE-2026-78125 |
|
wordpress に 情報漏洩 (CVE-2026-78125)
wordpress に 脆弱性 (CVE-2026-78125) が存在。不正な操作・情報露出のリスクがあります。
|
| CVE-2026-77989 |
|
csharp に クロスサイトスクリプティング (CVE-2026-77989)
csharp に XSS (クロスサイトスクリプティング) (CVE-2026-77989) が存在。不正な操作・情報露出のリスクがあります。
|
| CVE-2026-78138 |
|
wordpress に 情報漏洩 (CVE-2026-78138)
wordpress に 脆弱性 (CVE-2026-78138) が存在。不正な操作・情報露出のリスクがあります。
|
| CVE-2026-78137 |
|
wordpress の脆弱性 (CVE-2026-78137)
wordpress に 脆弱性 (CVE-2026-78137) が存在。データの不正な改ざんを許す可能性があります。
|
| CVE-2026-77018 |
|
wordpress に 危険なファイルアップロード (CVE-2026-77018)
wordpress に 脆弱性 (CVE-2026-77018) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
|
| CVE-2026-77991 |
|
csharp に 危険なファイルアップロード (CVE-2026-77991)
csharp に 脆弱性 (CVE-2026-77991) が存在。不正な操作・情報露出のリスクがあります。
|
| CVE-2026-77990 |
|
csharp の脆弱性 (CVE-2026-77990)
csharp に 脆弱性 (CVE-2026-77990) が存在。不正な操作・情報露出のリスクがあります。
|
| CVE-2026-77034 |
|
csharp の脆弱性 (CVE-2026-77034)
csharp に 脆弱性 (CVE-2026-77034) が存在。不正な操作・情報露出のリスクがあります。
|