Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-4326 |
|
The Vertex Addons for Elementor plugin for WordPress is vulnerable to Missing Authorization in all versions up to and including 1.6.4. This is due to improper authorization enforcement in the activate...
The Vertex Addons for Elementor plugin for WordPress is vulnerable to Missing Authorization in all versions up to and including 1.6.4. This is due to improper authorization enforcement in the activate_required_plugins() function. Specifically, the current_user_can('install_plugins') capability check...
|
| CVE-2026-5827 |
|
Vulnerability in sqli (CVE-2026-5827)
vulnerability in sqli (CVE-2026-5827). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-5863 |
|
Vulnerability in google (CVE-2026-5863)
vulnerability in google (CVE-2026-5863). Successful exploitation can lead to full system takeover.
|
| CVE-2026-5824 |
|
Vulnerability in sqli (CVE-2026-5824)
vulnerability in sqli (CVE-2026-5824). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-5815 |
|
Buffer Overflow in CVE-2026-5815 (CVE-2026-5815)
vulnerability in CVE-2026-5815 (CVE-2026-5815). Successful exploitation can lead to full system takeover.
|
| CVE-2026-5814 |
|
Vulnerability in sqli (CVE-2026-5814)
vulnerability in sqli (CVE-2026-5814). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-5813 |
|
Vulnerability in c (CVE-2026-5813)
vulnerability in c (CVE-2026-5813). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-5173 |
|
Vulnerability in gitlab (CVE-2026-5173)
vulnerability in gitlab (CVE-2026-5173). Confidential information can be exposed externally.
|
| CVE-2026-1092 |
|
Vulnerability in dos (CVE-2026-1092)
vulnerability in dos (CVE-2026-1092). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-12664 |
|
Vulnerability in dos (CVE-2025-12664)
vulnerability in dos (CVE-2025-12664). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-5912 |
|
Vulnerability in google (CVE-2026-5912)
vulnerability in google (CVE-2026-5912). Successful exploitation can lead to full system takeover.
|
| CVE-2026-5913 |
|
Out-of-Bounds Read in google (CVE-2026-5913)
vulnerability in google (CVE-2026-5913). Confidential information can be exposed externally.
|
| CVE-2026-5914 |
|
Vulnerability in google (CVE-2026-5914)
vulnerability in google (CVE-2026-5914). Successful exploitation can lead to full system takeover.
|
| CVE-2026-5915 |
|
Vulnerability in google (CVE-2026-5915)
vulnerability in google (CVE-2026-5915). Data can be tampered with by attackers.
|
| CVE-2026-5907 |
|
Out-of-Bounds Read in google (CVE-2026-5907)
vulnerability in google (CVE-2026-5907). Confidential information can be exposed externally.
|
| CVE-2026-5908 |
|
Vulnerability in google (CVE-2026-5908)
vulnerability in google (CVE-2026-5908). Successful exploitation can lead to full system takeover.
|
| CVE-2026-5909 |
|
Vulnerability in google (CVE-2026-5909)
vulnerability in google (CVE-2026-5909). Successful exploitation can lead to full system takeover.
|
| CVE-2026-5910 |
|
Vulnerability in google (CVE-2026-5910)
vulnerability in google (CVE-2026-5910). Successful exploitation can lead to full system takeover.
|
| CVE-2026-5884 |
|
Vulnerability in google (CVE-2026-5884)
vulnerability in google (CVE-2026-5884). Successful exploitation can lead to full system takeover.
|
| CVE-2026-5879 |
|
Vulnerability in google (CVE-2026-5879)
vulnerability in google (CVE-2026-5879). Successful exploitation can lead to full system takeover.
|
| CVE-2026-5883 |
|
Use-After-Free in google (CVE-2026-5883)
vulnerability in google (CVE-2026-5883). Successful exploitation can lead to full system takeover.
|
| CVE-2026-5877 |
|
Use-After-Free in google (CVE-2026-5877)
vulnerability in google (CVE-2026-5877). Successful exploitation can lead to full system takeover.
|
| CVE-2026-5865 |
|
Vulnerability in google (CVE-2026-5865)
vulnerability in google (CVE-2026-5865). Successful exploitation can lead to full system takeover.
|
| CVE-2026-5870 |
|
Vulnerability in google (CVE-2026-5870)
vulnerability in google (CVE-2026-5870). Successful exploitation can lead to full system takeover.
|
| CVE-2026-5866 |
|
Use-After-Free in google (CVE-2026-5866)
vulnerability in google (CVE-2026-5866). Successful exploitation can lead to full system takeover.
|
| CVE-2026-5868 |
|
Vulnerability in google (CVE-2026-5868)
vulnerability in google (CVE-2026-5868). Successful exploitation can lead to full system takeover.
|
| CVE-2026-5871 |
|
Vulnerability in google (CVE-2026-5871)
vulnerability in google (CVE-2026-5871). Successful exploitation can lead to full system takeover.
|
| CVE-2026-5872 |
|
Use-After-Free in google (CVE-2026-5872)
vulnerability in google (CVE-2026-5872). Successful exploitation can lead to full system takeover.
|
| CVE-2026-5873 |
|
Out-of-Bounds Read in google (CVE-2026-5873)
vulnerability in google (CVE-2026-5873). Successful exploitation can lead to full system takeover.
|
| CVE-2026-5860 |
|
Use-After-Free in google (CVE-2026-5860)
vulnerability in google (CVE-2026-5860). Successful exploitation can lead to full system takeover.
|
| CVE-2026-5858 |
|
Vulnerability in google (CVE-2026-5858)
vulnerability in google (CVE-2026-5858). Successful exploitation can lead to full system takeover.
|
| CVE-2026-5859 |
|
Vulnerability in google (CVE-2026-5859)
vulnerability in google (CVE-2026-5859). Successful exploitation can lead to full system takeover.
|
| CVE-2026-5861 |
|
Use-After-Free in google (CVE-2026-5861)
vulnerability in google (CVE-2026-5861). Successful exploitation can lead to full system takeover.
|
| CVE-2026-5862 |
|
Vulnerability in google (CVE-2026-5862)
vulnerability in google (CVE-2026-5862). Successful exploitation can lead to full system takeover.
|
| CVE-2026-40036 |
|
Vulnerability in dfir-unfurl (CVE-2026-40036)
vulnerability in dfir-unfurl (CVE-2026-40036). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `20260405` or later.
|
| CVE-2026-40029 |
|
OS Command Injection in khyrenz (CVE-2026-40029)
OS command injection in khyrenz (CVE-2026-40029). Successful exploitation can lead to full system takeover.
|
| CVE-2026-40030 |
|
OS Command Injection in khyrenz (CVE-2026-40030)
OS command injection in khyrenz (CVE-2026-40030). Successful exploitation can lead to full system takeover.
|
| CVE-2026-40031 |
|
Vulnerability in ufrisk (CVE-2026-40031)
vulnerability in ufrisk (CVE-2026-40031). Successful exploitation can lead to full system takeover.
|
| CVE-2026-40032 |
|
OS Command Injection in CVE-2026-40032 (CVE-2026-40032)
OS command injection in CVE-2026-40032 (CVE-2026-40032). Successful exploitation can lead to full system takeover.
|
| CVE-2026-40027 |
|
Path Traversal in path-traversal (CVE-2026-40027)
path traversal in path-traversal (CVE-2026-40027). Confidential information can be exposed externally.
|
| CVE-2026-40024 |
|
Path Traversal in path-traversal (CVE-2026-40024)
path traversal in path-traversal (CVE-2026-40024). Confidential information can be exposed externally.
|
| CVE-2026-5805 |
|
Vulnerability in c (CVE-2026-5805)
vulnerability in c (CVE-2026-5805). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-39889 |
|
Information Disclosure in praisonai (CVE-2026-39889)
vulnerability in praisonai (CVE-2026-39889). Confidential information can be exposed externally. Exploitable via `GET /a2u/info`. Mitigation: upgrade to `4.5.115` or later.
|
| CVE-2026-39891 |
|
Code Injection in praisonai (CVE-2026-39891)
code injection in praisonai (CVE-2026-39891). Successful exploitation can lead to full system takeover. Exploitable via ``acp_create_file``. Mitigation: upgrade to `4.5.115` or later.
|
| CVE-2026-5436 |
|
Path Traversal in wordpress (CVE-2026-5436)
path traversal in wordpress (CVE-2026-5436). Successful exploitation can lead to full system takeover.
|
| CVE-2026-39883 |
|
Vulnerability in opentelemetry (CVE-2026-39883)
vulnerability in opentelemetry (CVE-2026-39883). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `1.43.0` or later.
|
| CVE-2026-39885 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2026-39885)
SSRF in ssrf (CVE-2026-39885). Confidential information can be exposed externally. Mitigation: upgrade to `2.3.0` or later.
|
| CVE-2026-39429 |
|
Vulnerability in github.com/kcp-dev/kcp (CVE-2026-39429)
vulnerability in github.com/kcp-dev/kcp (CVE-2026-39429). Confidential information can be exposed externally. Mitigation: upgrade to `0.29.3` or later.
|
| CVE-2026-5802 |
|
Command Injection in CVE-2026-5802 (CVE-2026-5802)
command injection in CVE-2026-5802 (CVE-2026-5802). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-39859 |
|
Path Traversal in liquidjs (CVE-2026-39859)
path traversal in liquidjs (CVE-2026-39859). Confidential information can be exposed externally. Mitigation: upgrade to `10.25.3` or later.
|