Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-14936 |
|
Vulnerability in wordpress (CVE-2026-14936)
vulnerability in wordpress (CVE-2026-14936). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15147 |
|
Vulnerability in wordpress (CVE-2026-15147)
vulnerability in wordpress (CVE-2026-15147). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15208 |
|
Vulnerability in wordpress (CVE-2026-15208)
vulnerability in wordpress (CVE-2026-15208). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-12901 |
|
Vulnerability in wordpress (CVE-2026-12901)
vulnerability in wordpress (CVE-2026-12901). Data can be tampered with by attackers.
|
| CVE-2026-12501 |
|
Vulnerability in wordpress (CVE-2026-12501)
vulnerability in wordpress (CVE-2026-12501). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-11361 |
|
Vulnerability in wordpress (CVE-2026-11361)
vulnerability in wordpress (CVE-2026-11361). Data can be tampered with by attackers.
|
| CVE-2026-10599 |
|
Vulnerability in wordpress (CVE-2026-10599)
vulnerability in wordpress (CVE-2026-10599). Data can be tampered with by attackers.
|
| CVE-2026-15246 |
|
Vulnerability in wordpress (CVE-2026-15246)
vulnerability in wordpress (CVE-2026-15246). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-65583 |
|
Vulnerability in apache (CVE-2026-65583)
vulnerability in apache (CVE-2026-65583). Confidential information can be exposed externally.
|
| CVE-2026-63687 |
|
Vulnerability in apache (CVE-2026-63687)
vulnerability in apache (CVE-2026-63687). Confidential information can be exposed externally.
|
| CVE-2026-49331 |
|
Vulnerability in CVE-2026-49331 (CVE-2026-49331)
vulnerability in CVE-2026-49331 (CVE-2026-49331). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-67618 |
|
Vulnerability in CVE-2026-67618 (CVE-2026-67618)
vulnerability in CVE-2026-67618 (CVE-2026-67618). Confidential information can be exposed externally.
|
| CVE-2026-11836 |
|
Vulnerability in CVE-2026-11836 (CVE-2026-11836)
vulnerability in CVE-2026-11836 (CVE-2026-11836). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18248 |
|
Vulnerability in privilege-escalation (CVE-2026-18248)
vulnerability in privilege-escalation (CVE-2026-18248). Confidential information can be exposed externally.
|
| CVE-2026-68945 |
|
Vulnerability in @angular/common (CVE-2026-68945)
vulnerability in @angular/common (CVE-2026-68945). Risk of unauthorized operations or information disclosure. Exploitable via ``HttpTransferCache``.
|
| CVE-2026-59641 |
|
Vulnerability in bouncycastle (CVE-2026-59641)
vulnerability in bouncycastle (CVE-2026-59641). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-67307 |
|
Vulnerability in CVE-2026-67307 (CVE-2026-67307)
vulnerability in CVE-2026-67307 (CVE-2026-67307). Data can be tampered with by attackers. Mitigation: upgrade to `5.0.0-beta3` or later.
|
| CVE-2026-10827 |
|
Vulnerability in wordpress (CVE-2026-10827)
vulnerability in wordpress (CVE-2026-10827). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-28145 |
|
Vulnerability in CVE-2026-28145 (CVE-2026-28145)
vulnerability in CVE-2026-28145 (CVE-2026-28145). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-10079 |
|
Vulnerability in CVE-2026-10079 (CVE-2026-10079)
vulnerability in CVE-2026-10079 (CVE-2026-10079). Data can be tampered with by attackers.
|
| CVE-2026-62995 |
|
Vulnerability in CVE-2026-62995 (CVE-2026-62995)
vulnerability in CVE-2026-62995 (CVE-2026-62995). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-59247 |
|
Vulnerability in CVE-2026-59247 (CVE-2026-59247)
vulnerability in CVE-2026-59247 (CVE-2026-59247). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-12383 |
|
Vulnerability in CVE-2026-12383 (CVE-2026-12383)
vulnerability in CVE-2026-12383 (CVE-2026-12383). Data can be tampered with by attackers.
|
| CVE-2026-39155 |
|
Vulnerability in dos (CVE-2026-39155)
vulnerability in dos (CVE-2026-39155). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-15615 |
|
Vulnerability in CVE-2026-15615 (CVE-2026-15615)
vulnerability in CVE-2026-15615 (CVE-2026-15615). Data can be tampered with by attackers.
|
| CVE-2026-15612 |
|
Vulnerability in CVE-2026-15612 (CVE-2026-15612)
vulnerability in CVE-2026-15612 (CVE-2026-15612). Confidential information can be exposed externally.
|
| CVE-2026-73419 |
|
Vulnerability in @auth/core (CVE-2026-73419)
vulnerability in @auth/core (CVE-2026-73419). Confidential information can be exposed externally. Exploitable via ``state``. Mitigation: upgrade to `0.41.3` or later.
|
| CVE-2026-52688 |
|
RRSIGs with too few labels can lead to bypass of DNSSEC wildcard validation
RRSIGs with too few labels can lead to bypass of DNSSEC wildcard validation
|
| CVE-2026-50248 |
|
Vulnerability in nlnetlabs (CVE-2026-50248)
vulnerability in nlnetlabs (CVE-2026-50248). Data can be tampered with by attackers.
|
| CVE-2026-44690 |
|
Vulnerability in nlnetlabs (CVE-2026-44690)
vulnerability in nlnetlabs (CVE-2026-44690). Data can be tampered with by attackers.
|
| CVE-2026-13188 |
|
Vulnerability in progress (CVE-2026-13188)
vulnerability in progress (CVE-2026-13188). Data can be tampered with by attackers.
|
| CVE-2026-62517 |
|
Vulnerability in c (CVE-2026-62517)
vulnerability in c (CVE-2026-62517). Confidential information can be exposed externally.
|
| CVE-2026-12724 |
|
Vulnerability in wordpress (CVE-2026-12724)
vulnerability in wordpress (CVE-2026-12724). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-10724 |
|
Vulnerability in wordpress (CVE-2026-10724)
vulnerability in wordpress (CVE-2026-10724). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-63094 |
|
Vulnerability in CVE-2026-63094 (CVE-2026-63094)
vulnerability in CVE-2026-63094 (CVE-2026-63094). Confidential information can be exposed externally.
|
| CVE-2026-62215 |
|
Vulnerability in openclaw (CVE-2026-62215)
vulnerability in openclaw (CVE-2026-62215). Confidential information can be exposed externally.
|
| CVE-2026-44434 |
|
Vulnerability in h2o (CVE-2026-44434)
vulnerability in h2o (CVE-2026-44434). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-53536 |
|
Vulnerability in CVE-2026-53536 (CVE-2026-53536)
vulnerability in CVE-2026-53536 (CVE-2026-53536). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-48799 |
|
Vulnerability in CVE-2026-48799 (CVE-2026-48799)
vulnerability in CVE-2026-48799 (CVE-2026-48799). Data can be tampered with by attackers.
|
| CVE-2026-50526 |
|
Vulnerability in Microsoft.NET.Build.Containers (CVE-2026-50526)
vulnerability in Microsoft.NET.Build.Containers (CVE-2026-50526). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `8.0.29` or later.
|
| CVE-2026-47304 |
|
Vulnerability in System.Security.Cryptography.Xml (CVE-2026-47304)
vulnerability in System.Security.Cryptography.Xml (CVE-2026-47304). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `8.0.4` or later.
|
| CVE-2026-9561 |
|
Vulnerability in dos (CVE-2026-9561)
vulnerability in dos (CVE-2026-9561). Data can be tampered with by attackers.
|
| CVE-2026-11901 |
|
Vulnerability in wordpress (CVE-2026-11901)
vulnerability in wordpress (CVE-2026-11901). Risk of unauthorized operations or information disclosure. Exploitable via ``pending``.
|
| CVE-2026-53961 |
|
Vulnerability in discourse (CVE-2026-53961)
vulnerability in discourse (CVE-2026-53961). Risk of unauthorized operations or information disclosure. Exploitable via `POST /webhooks/aws`.
|
| CVE-2026-59930 |
|
Vulnerability in mistune (CVE-2026-59930)
vulnerability in mistune (CVE-2026-59930). Risk of unauthorized operations or information disclosure. Exploitable via ``toc``. Mitigation: upgrade to `3.3.0` or later.
|
| CVE-2026-53513 |
|
Vulnerability in @better-auth/sso (CVE-2026-53513)
vulnerability in @better-auth/sso (CVE-2026-53513). Confidential information can be exposed externally. Exploitable via `POST /sso/register`. Mitigation: upgrade to `1.6.11` or later.
|
| CVE-2026-53516 |
|
Authentication Bypass in better-auth (CVE-2026-53516)
authentication bypass in better-auth (CVE-2026-53516). Confidential information can be exposed externally. Exploitable via ``next``. Mitigation: upgrade to `1.6.11` or later.
|
| CVE-2026-53514 |
|
Authentication Bypass in better-auth (CVE-2026-53514)
authentication bypass in better-auth (CVE-2026-53514). Confidential information can be exposed externally. Exploitable via ``organization``. Mitigation: upgrade to `1.6.11` or later.
|
| CVE-2026-53512 |
|
Authentication Bypass in better-auth (CVE-2026-53512)
authentication bypass in better-auth (CVE-2026-53512). Confidential information can be exposed externally. Exploitable via ``oauthApplication``. Mitigation: upgrade to `1.6.11` or later.
|
| CVE-2026-54496 |
|
Vulnerability in zebrad (CVE-2026-54496)
vulnerability in zebrad (CVE-2026-54496). Data can be tampered with by attackers. Exploitable via ``halo2_gadgets``. Mitigation: upgrade to `5.0.0` or later.
|