Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-82421 |
|
Vulnerability in sqli (CVE-2026-82421)
vulnerability in sqli (CVE-2026-82421). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15369 |
|
Privilege Escalation in wordpress (CVE-2026-15369)
vulnerability in wordpress (CVE-2026-15369). Successful exploitation can lead to full system takeover.
|
| CVE-2026-75807 |
|
Authentication Bypass in wordpress (CVE-2026-75807)
authentication bypass in wordpress (CVE-2026-75807). Successful exploitation can lead to full system takeover.
|
| CVE-2026-82476 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-82476)
SSRF in ssrf (CVE-2026-82476). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-82475 |
|
iFlytek astron-agent through 1.1.1 contains an authorization bypass vulnerability in the copyFlow...
iFlytek astron-agent through 1.1.1 contains an authorization bypass vulnerability in the copyFlow...
|
| CVE-2026-82474 |
|
Sudo through 1.9.17p2 fails to apply intercept policy checks to the execveat system call in...
Sudo through 1.9.17p2 fails to apply intercept policy checks to the execveat system call in...
|
| CVE-2026-82473 |
|
KubeEdge CloudCore through 1.23.1 accepts node task status reports on its HTTPS server without...
KubeEdge CloudCore through 1.23.1 accepts node task status reports on its HTTPS server without...
|
| CVE-2026-82472 |
|
Documenso before 2.13.0 accepts PDF file uploads on the /api/files/upload-pdf endpoint without...
Documenso before 2.13.0 accepts PDF file uploads on the /api/files/upload-pdf endpoint without...
|
| CVE-2026-82470 |
|
Vulnerability in CVE-2026-82470 (CVE-2026-82470)
vulnerability in CVE-2026-82470 (CVE-2026-82470). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-82469 |
|
Vulnerability in CVE-2026-82469 (CVE-2026-82469)
vulnerability in CVE-2026-82469 (CVE-2026-82469). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-82468 |
|
Cross-Site Request Forgery (CSRF) in csrf (CVE-2026-82468)
vulnerability in csrf (CVE-2026-82468). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-82467 |
|
Open Redirect in CVE-2026-82467 (CVE-2026-82467)
vulnerability in CVE-2026-82467 (CVE-2026-82467). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-82466 |
|
Rodauth before 2.46.0 contains an authentication bypass vulnerability in the webauthn_login route...
Rodauth before 2.46.0 contains an authentication bypass vulnerability in the webauthn_login route...
|
| CVE-2026-82465 |
|
Vulnerability in CVE-2026-82465 (CVE-2026-82465)
vulnerability in CVE-2026-82465 (CVE-2026-82465). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-82464 |
|
Open Redirect in CVE-2026-82464 (CVE-2026-82464)
vulnerability in CVE-2026-82464 (CVE-2026-82464). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-82463 |
|
pac4j-core before 6.5.6 contains an authentication bypass vulnerability in...
pac4j-core before 6.5.6 contains an authentication bypass vulnerability in...
|
| CVE-2026-82462 |
|
Vulnerability in CVE-2026-82462 (CVE-2026-82462)
vulnerability in CVE-2026-82462 (CVE-2026-82462). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-82461 |
|
pac4j-oidc before 6.5.6 fails to verify access token signatures, issuers, audiences, or expiry...
pac4j-oidc before 6.5.6 fails to verify access token signatures, issuers, audiences, or expiry...
|
| CVE-2026-82460 |
|
Path Traversal in path-traversal (CVE-2026-82460)
path traversal in path-traversal (CVE-2026-82460). Successful exploitation can lead to full system takeover.
|
| CVE-2026-82481 |
|
The cohttp package before 6.3.0 for OCaml allows directory traversal.
The cohttp package before 6.3.0 for OCaml allows directory traversal.
|
| CVE-2026-82477 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-82477)
SSRF in ssrf (CVE-2026-82477). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-82457 |
|
Vulnerability in CVE-2026-82457 (CVE-2026-82457)
vulnerability in CVE-2026-82457 (CVE-2026-82457). Successful exploitation can lead to full system takeover.
|
| CVE-2026-82456 |
|
Vulnerability in CVE-2026-82456 (CVE-2026-82456)
vulnerability in CVE-2026-82456 (CVE-2026-82456). Successful exploitation can lead to full system takeover.
|
| CVE-2026-82454 |
|
Vulnerability in CVE-2026-82454 (CVE-2026-82454)
vulnerability in CVE-2026-82454 (CVE-2026-82454). Confidential information can be exposed externally.
|
| CVE-2026-82452 |
|
Vulnerability in c (CVE-2026-82452)
vulnerability in c (CVE-2026-82452). Successful exploitation can lead to full system takeover.
|
| CVE-2026-82451 |
|
Cross-Site Scripting (XSS) in CVE-2026-82451 (CVE-2026-82451)
cross-site scripting in CVE-2026-82451 (CVE-2026-82451). Risk of unauthorized operations or information disclosure. Exploitable via `Referer header`.
|
| CVE-2026-82455 |
|
Vulnerability in CVE-2026-82455 (CVE-2026-82455)
vulnerability in CVE-2026-82455 (CVE-2026-82455). Data can be tampered with by attackers.
|
| CVE-2026-82453 |
|
Vulnerability in CVE-2026-82453 (CVE-2026-82453)
vulnerability in CVE-2026-82453 (CVE-2026-82453). Confidential information can be exposed externally.
|
| CVE-2026-82450 |
|
Unrestricted File Upload in CVE-2026-82450 (CVE-2026-82450)
vulnerability in CVE-2026-82450 (CVE-2026-82450). Successful exploitation can lead to full system takeover.
|
| CVE-2026-82449 |
|
Vulnerability in CVE-2026-82449 (CVE-2026-82449)
vulnerability in CVE-2026-82449 (CVE-2026-82449). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-82448 |
|
Vulnerability in CVE-2026-82448 (CVE-2026-82448)
vulnerability in CVE-2026-82448 (CVE-2026-82448). Successful exploitation can lead to full system takeover.
|
| CVE-2026-82447 |
|
Vulnerability in CVE-2026-82447 (CVE-2026-82447)
vulnerability in CVE-2026-82447 (CVE-2026-82447). Successful exploitation can lead to full system takeover.
|
| CVE-2026-14494 |
|
Unrestricted File Upload in wordpress (CVE-2026-14494)
vulnerability in wordpress (CVE-2026-14494). Successful exploitation can lead to full system takeover.
|
| CVE-2026-80192 |
|
Authentication Bypass in CVE-2026-80192 (CVE-2026-80192)
authentication bypass in CVE-2026-80192 (CVE-2026-80192). Confidential information can be exposed externally.
|
| CVE-2026-82364 |
|
Vulnerability in CVE-2026-82364 (CVE-2026-82364)
vulnerability in CVE-2026-82364 (CVE-2026-82364). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-80725 |
|
Vulnerability in CVE-2026-80725 (CVE-2026-80725)
vulnerability in CVE-2026-80725 (CVE-2026-80725). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-81026 |
|
Vulnerability in wordpress (CVE-2026-81026)
vulnerability in wordpress (CVE-2026-81026). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-80311 |
|
Vulnerability in wordpress (CVE-2026-80311)
vulnerability in wordpress (CVE-2026-80311). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-77704 |
|
Vulnerability in wordpress (CVE-2026-77704)
vulnerability in wordpress (CVE-2026-77704). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-81346 |
|
Vulnerability in wordpress (CVE-2026-81346)
vulnerability in wordpress (CVE-2026-81346). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76548 |
|
Vulnerability in wordpress (CVE-2026-76548)
vulnerability in wordpress (CVE-2026-76548). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-77007 |
|
Vulnerability in wordpress (CVE-2026-77007)
vulnerability in wordpress (CVE-2026-77007). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18234 |
|
Vulnerability in wordpress (CVE-2026-18234)
vulnerability in wordpress (CVE-2026-18234). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-80488 |
|
Vulnerability in wordpress (CVE-2026-80488)
vulnerability in wordpress (CVE-2026-80488). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76547 |
|
Vulnerability in wordpress (CVE-2026-76547)
vulnerability in wordpress (CVE-2026-76547). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-81200 |
|
Vulnerability in wordpress (CVE-2026-81200)
vulnerability in wordpress (CVE-2026-81200). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-77786 |
|
Vulnerability in wordpress (CVE-2026-77786)
vulnerability in wordpress (CVE-2026-77786). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76546 |
|
Vulnerability in wordpress (CVE-2026-76546)
vulnerability in wordpress (CVE-2026-76546). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-77012 |
|
Vulnerability in wordpress (CVE-2026-77012)
vulnerability in wordpress (CVE-2026-77012). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18233 |
|
Vulnerability in wordpress (CVE-2026-18233)
vulnerability in wordpress (CVE-2026-18233). Risk of unauthorized operations or information disclosure.
|