脆弱性一覧
CVE / GHSA / KEV / OSV を統合監視。タグ・カテゴリで絞り込み可能。
| ID | タイトル | |
|---|---|---|
| CVE-2026-16925 |
|
privilege-escalation の脆弱性 (CVE-2026-16925)
privilege-escalation に 脆弱性 (CVE-2026-16925) が存在。データの不正な改ざんを許す可能性があります。
|
| CVE-2026-76990 |
|
sqli の脆弱性 (CVE-2026-76990)
sqli に 脆弱性 (CVE-2026-76990) が存在。不正な操作・情報露出のリスクがあります。
|
| CVE-2026-16923 |
|
ibm に 権限昇格 (CVE-2026-16923)
ibm に 脆弱性 (CVE-2026-16923) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
|
| CVE-2026-16922 |
|
ibm の脆弱性 (CVE-2026-16922)
ibm に 脆弱性 (CVE-2026-16922) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
|
| CVE-2026-76635 |
|
sqli に SQLインジェクション (CVE-2026-76635)
sqli に SQLインジェクション (CVE-2026-76635) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
|
| CVE-2026-76833 |
|
CVE-2026-76833 の脆弱性 (CVE-2026-76833)
CVE-2026-76833 に 脆弱性 (CVE-2026-76833) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
|
| CVE-2026-76633 |
|
CVE-2026-76633 の脆弱性 (CVE-2026-76633)
CVE-2026-76633 に 脆弱性 (CVE-2026-76633) が存在。機密情報が外部に流出する可能性があります。
|
| CVE-2026-63490 |
|
CVE-2026-63490 に パストラバーサル (CVE-2026-63490)
CVE-2026-63490 に パストラバーサル (CVE-2026-63490) が存在。機密情報が外部に流出する可能性があります。
|
| CVE-2026-76987 |
|
CVE-2026-76987 に バッファオーバーフロー (CVE-2026-76987)
CVE-2026-76987 に 脆弱性 (CVE-2026-76987) が存在。不正な操作・情報露出のリスクがあります。
|
| CVE-2026-74011 |
|
sqli に SQLインジェクション (CVE-2026-74011)
sqli に SQLインジェクション (CVE-2026-74011) が存在。機密情報が外部に流出する可能性があります。
|
| CVE-2026-73998 |
|
Subscriber SQL Injection in WP w3all phpBB <= 3.0.5 versions.
Subscriber SQL Injection in WP w3all phpBB <= 3.0.5 versions.
|
| CVE-2026-74013 |
|
Subscriber SQL Injection in eShipper Commerce <= 2.16.13 versions.
Subscriber SQL Injection in eShipper Commerce <= 2.16.13 versions.
|
| CVE-2026-74020 |
|
Unauthenticated Broken Access Control in Koji <= 2.2.1 versions.
Unauthenticated Broken Access Control in Koji <= 2.2.1 versions.
|
| CVE-2026-74021 |
|
Unauthenticated Broken Access Control in Chaplin <= 2.6.8 versions.
Unauthenticated Broken Access Control in Chaplin <= 2.6.8 versions.
|
| CVE-2026-74019 |
|
Unauthenticated Broken Access Control in EPROLO Dropshipping <= 2.4.2 versions.
Unauthenticated Broken Access Control in EPROLO Dropshipping <= 2.4.2 versions.
|
| CVE-2026-68564 |
|
Unauthenticated Cross Site Scripting (XSS) in NotificationX Pro <= 3.1.4 versions.
Unauthenticated Cross Site Scripting (XSS) in NotificationX Pro <= 3.1.4 versions.
|
| CVE-2026-66677 |
|
Subscriber Broken Authentication in Leyka <= 3.32.3 versions.
Subscriber Broken Authentication in Leyka <= 3.32.3 versions.
|
| CVE-2026-66605 |
|
CVE-2026-66605 に クロスサイトスクリプティング (CVE-2026-66605)
CVE-2026-66605 に XSS (クロスサイトスクリプティング) (CVE-2026-66605) が存在。不正な操作・情報露出のリスクがあります。
|
| CVE-2026-66673 |
|
Unauthenticated Cross Site Scripting (XSS) in Flatastic <= 2.0 versions.
Unauthenticated Cross Site Scripting (XSS) in Flatastic <= 2.0 versions.
|
| CVE-2026-66614 |
|
Unauthenticated Cross Site Scripting (XSS) in SEO Plugin by Squirrly SEO <= 14.2.2 versions.
Unauthenticated Cross Site Scripting (XSS) in SEO Plugin by Squirrly SEO <= 14.2.2 versions.
|
| CVE-2026-66612 |
|
Unauthenticated Cross Site Scripting (XSS) in Aora <= 1.3.19 versions.
Unauthenticated Cross Site Scripting (XSS) in Aora <= 1.3.19 versions.
|
| CVE-2026-66616 |
|
Unauthenticated Cross Site Scripting (XSS) in Form Maker by 10Web <= 1.15.46 versions.
Unauthenticated Cross Site Scripting (XSS) in Form Maker by 10Web <= 1.15.46 versions.
|
| CVE-2026-66611 |
|
Unauthenticated Cross Site Scripting (XSS) in Paymob for WooCommerce <= 4.1.10 versions.
Unauthenticated Cross Site Scripting (XSS) in Paymob for WooCommerce <= 4.1.10 versions.
|
| CVE-2026-66615 |
|
Unauthenticated Cross Site Scripting (XSS) in Podlove Podcast Publisher <= 4.5.4 versions.
Unauthenticated Cross Site Scripting (XSS) in Podlove Podcast Publisher <= 4.5.4 versions.
|
| CVE-2026-66607 |
|
Unauthenticated Cross Site Scripting (XSS) in Advance Product Search <= 1.4.8 versions.
Unauthenticated Cross Site Scripting (XSS) in Advance Product Search <= 1.4.8 versions.
|
| CVE-2026-66604 |
|
Unauthenticated Cross Site Scripting (XSS) in GeoDirectory <= 2.8.173 versions.
Unauthenticated Cross Site Scripting (XSS) in GeoDirectory <= 2.8.173 versions.
|
| CVE-2026-66594 |
|
Subscriber SQL Injection in WordPress Persistent Login <= 3.1.0 versions.
Subscriber SQL Injection in WordPress Persistent Login <= 3.1.0 versions.
|
| CVE-2026-66606 |
|
Unauthenticated Cross Site Scripting (XSS) in SmartSMTP <= 1.2.0 versions.
Unauthenticated Cross Site Scripting (XSS) in SmartSMTP <= 1.2.0 versions.
|
| CVE-2026-66597 |
|
Unauthenticated Cross Site Scripting (XSS) in wpDataTables <= 6.5.1.4 versions.
Unauthenticated Cross Site Scripting (XSS) in wpDataTables <= 6.5.1.4 versions.
|
| CVE-2026-66598 |
|
Unauthenticated Cross Site Scripting (XSS) in B2BKing Premium <= 5.6.07 versions.
Unauthenticated Cross Site Scripting (XSS) in B2BKing Premium <= 5.6.07 versions.
|
| CVE-2026-66582 |
|
Unauthenticated Cross Site Scripting (XSS) in TranslatePress <= 3.3.2 versions.
Unauthenticated Cross Site Scripting (XSS) in TranslatePress <= 3.3.2 versions.
|
| CVE-2026-66581 |
|
Unauthenticated Cross Site Scripting (XSS) in JetEngine <= 3.8.14.1 versions.
Unauthenticated Cross Site Scripting (XSS) in JetEngine <= 3.8.14.1 versions.
|
| CVE-2026-66590 |
|
Unauthenticated Cross Site Scripting (XSS) in Tagembed <= 7.4 versions.
Unauthenticated Cross Site Scripting (XSS) in Tagembed <= 7.4 versions.
|
| CVE-2026-28150 |
|
Unauthenticated Local File Inclusion in Golo Framework < 1.7.5 versions.
Unauthenticated Local File Inclusion in Golo Framework < 1.7.5 versions.
|
| CVE-2025-15637 |
|
Unauthenticated Local File Inclusion in Shuffle <= 1.8 versions.
Unauthenticated Local File Inclusion in Shuffle <= 1.8 versions.
|
| CVE-2026-73198 |
|
A flaw was found in FreeIPA. A remote, unauthenticated attacker can exploit a vulnerability in...
A flaw was found in FreeIPA. A remote, unauthenticated attacker can exploit a vulnerability in...
|
| CVE-2026-73197 |
|
A flaw was found in FreeIPA. A remote, unauthenticated attacker can exploit this vulnerability by...
A flaw was found in FreeIPA. A remote, unauthenticated attacker can exploit this vulnerability by...
|
| CVE-2026-13097 |
|
privilege-escalation の脆弱性 (CVE-2026-13097)
privilege-escalation に 脆弱性 (CVE-2026-13097) が存在。機密情報が外部に流出する可能性があります。
|
| CVE-2026-18917 |
|
A flaw was found in libvirt. An unprivileged local user could exploit an integer overflow...
A flaw was found in libvirt. An unprivileged local user could exploit an integer overflow...
|
| CVE-2026-14951 |
|
CVE-2026-14951 に CSRF (CVE-2026-14951)
CVE-2026-14951 に 脆弱性 (CVE-2026-14951) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
|
| CVE-2026-14952 |
|
CVE-2026-14952 の脆弱性 (CVE-2026-14952)
CVE-2026-14952 に 脆弱性 (CVE-2026-14952) が存在。機密情報が外部に流出する可能性があります。
|
| CVE-2026-14946 |
|
CVE-2026-14946 に 危険なファイルアップロード (CVE-2026-14946)
CVE-2026-14946 に 脆弱性 (CVE-2026-14946) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
|
| CVE-2026-14947 |
|
path-traversal の脆弱性 (CVE-2026-14947)
path-traversal に 脆弱性 (CVE-2026-14947) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
|
| CVE-2026-14948 |
|
CVE-2026-14948 の脆弱性 (CVE-2026-14948)
CVE-2026-14948 に 脆弱性 (CVE-2026-14948) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
|
| CVE-2026-75963 |
|
wordpress の脆弱性 (CVE-2026-75963)
wordpress に 脆弱性 (CVE-2026-75963) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
|
| CVE-2026-15049 |
|
wordpress に 危険なファイルアップロード (CVE-2026-15049)
wordpress に 脆弱性 (CVE-2026-15049) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
|
| CVE-2026-76795 |
|
CVE-2026-76795 に SSRF (サーバー側リクエスト偽造) (CVE-2026-76795)
CVE-2026-76795 に SSRF (CVE-2026-76795) が存在。不正な操作・情報露出のリスクがあります。
|
| CVE-2026-76783 |
|
sqli の脆弱性 (CVE-2026-76783)
sqli に 脆弱性 (CVE-2026-76783) が存在。不正な操作・情報露出のリスクがあります。
|
| CVE-2026-76764 |
|
sqli の脆弱性 (CVE-2026-76764)
sqli に 脆弱性 (CVE-2026-76764) が存在。不正な操作・情報露出のリスクがあります。
|
| CVE-2026-76762 |
|
sqli の脆弱性 (CVE-2026-76762)
sqli に 脆弱性 (CVE-2026-76762) が存在。不正な操作・情報露出のリスクがあります。
|