Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-72843 |
|
Vulnerability in c (CVE-2026-72843)
vulnerability in c (CVE-2026-72843). Successful exploitation can lead to full system takeover.
|
| CVE-2026-54509 |
|
Vulnerability in CVE-2026-54509 (CVE-2026-54509)
vulnerability in CVE-2026-54509 (CVE-2026-54509). Confidential information can be exposed externally. Exploitable via `GET /api/journeys/`.
|
| CVE-2026-19755 |
|
Vulnerability in CVE-2026-19755 (CVE-2026-19755)
vulnerability in CVE-2026-19755 (CVE-2026-19755). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-53569 |
|
Vulnerability in CVE-2026-53569 (CVE-2026-53569)
vulnerability in CVE-2026-53569 (CVE-2026-53569). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-61663 |
|
Vulnerability in django-cms (CVE-2026-61663)
vulnerability in django-cms (CVE-2026-61663). Risk of unauthorized operations or information disclosure. Exploitable via ``PageContent``. Mitigation: upgrade to `5.0.9` or later.
|
| CVE-2026-63003 |
|
Vulnerability in django-cms (CVE-2026-63003)
vulnerability in django-cms (CVE-2026-63003). Confidential information can be exposed externally. Exploitable via `POST /admin/cms/pagecontent/`. Mitigation: upgrade to `5.0.9` or later.
|
| CVE-2026-54624 |
|
Vulnerability in django-cms (CVE-2026-54624)
vulnerability in django-cms (CVE-2026-54624). Confidential information can be exposed externally. Exploitable via ``render_object_structure``. Mitigation: upgrade to `5.0.8` or later.
|
| CVE-2026-55095 |
|
Vulnerability in CVE-2026-55095 (CVE-2026-55095)
vulnerability in CVE-2026-55095 (CVE-2026-55095). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76633 |
|
Vulnerability in CVE-2026-76633 (CVE-2026-76633)
vulnerability in CVE-2026-76633 (CVE-2026-76633). Confidential information can be exposed externally.
|
| CVE-2026-64965 |
|
Vulnerability in CVE-2026-64965 (CVE-2026-64965)
vulnerability in CVE-2026-64965 (CVE-2026-64965). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-28163 |
|
Vulnerability in CVE-2026-28163 (CVE-2026-28163)
vulnerability in CVE-2026-28163 (CVE-2026-28163). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-74019 |
|
Unauthenticated Broken Access Control in EPROLO Dropshipping <= 2.4.2 versions.
Unauthenticated Broken Access Control in EPROLO Dropshipping <= 2.4.2 versions.
|
| CVE-2026-74021 |
|
Unauthenticated Broken Access Control in Chaplin <= 2.6.8 versions.
Unauthenticated Broken Access Control in Chaplin <= 2.6.8 versions.
|
| CVE-2026-74020 |
|
Unauthenticated Broken Access Control in Koji <= 2.2.1 versions.
Unauthenticated Broken Access Control in Koji <= 2.2.1 versions.
|
| CVE-2026-66595 |
|
Unauthenticated Broken Access Control in WP Data Access <= 5.5.80 versions.
Unauthenticated Broken Access Control in WP Data Access <= 5.5.80 versions.
|
| CVE-2026-66647 |
|
Subscriber Broken Access Control in Homlisti <= 3.1.2 versions.
Subscriber Broken Access Control in Homlisti <= 3.1.2 versions.
|
| CVE-2025-53999 |
|
Unauthenticated Broken Access Control in Altair <= 5.2.2 versions.
Unauthenticated Broken Access Control in Altair <= 5.2.2 versions.
|
| CVE-2026-17153 |
|
Vulnerability in wordpress (CVE-2026-17153)
vulnerability in wordpress (CVE-2026-17153). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76398 |
|
Vulnerability in splunk (CVE-2026-76398)
vulnerability in splunk (CVE-2026-76398). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76394 |
|
Vulnerability in splunk (CVE-2026-76394)
vulnerability in splunk (CVE-2026-76394). Data can be tampered with by attackers.
|
| CVE-2026-76368 |
|
Vulnerability in splunk (CVE-2026-76368)
vulnerability in splunk (CVE-2026-76368). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76360 |
|
Vulnerability in splunk (CVE-2026-76360)
vulnerability in splunk (CVE-2026-76360). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76348 |
|
Vulnerability in dos (CVE-2026-76348)
vulnerability in dos (CVE-2026-76348). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76340 |
|
Vulnerability in splunk (CVE-2026-76340)
vulnerability in splunk (CVE-2026-76340). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76336 |
|
Vulnerability in splunk (CVE-2026-76336)
vulnerability in splunk (CVE-2026-76336). Data can be tampered with by attackers.
|
| CVE-2026-76322 |
|
Vulnerability in splunk (CVE-2026-76322)
vulnerability in splunk (CVE-2026-76322). Confidential information can be exposed externally.
|
| CVE-2026-76319 |
|
Vulnerability in splunk (CVE-2026-76319)
vulnerability in splunk (CVE-2026-76319). Successful exploitation can lead to full system takeover.
|
| CVE-2026-76255 |
|
Vulnerability in splunk (CVE-2026-76255)
vulnerability in splunk (CVE-2026-76255). Confidential information can be exposed externally.
|
| CVE-2026-76257 |
|
Vulnerability in splunk (CVE-2026-76257)
vulnerability in splunk (CVE-2026-76257). Confidential information can be exposed externally.
|
| CVE-2026-76251 |
|
Vulnerability in splunk (CVE-2026-76251)
vulnerability in splunk (CVE-2026-76251). Confidential information can be exposed externally.
|
| CVE-2026-59992 |
|
Vulnerability in next-tinacms-s3 (CVE-2026-59992)
vulnerability in next-tinacms-s3 (CVE-2026-59992). Risk of unauthorized operations or information disclosure. Exploitable via `DELETE /api/s3/media/x/anything-in-the-bucket`. Mitigation: upgrade to `23.0.4` or later.
|
| CVE-2026-54740 |
|
Vulnerability in CVE-2026-54740 (CVE-2026-54740)
vulnerability in CVE-2026-54740 (CVE-2026-54740). Data can be tampered with by attackers.
|
| CVE-2026-54741 |
|
Vulnerability in CVE-2026-54741 (CVE-2026-54741)
vulnerability in CVE-2026-54741 (CVE-2026-54741). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-53547 |
|
Vulnerability in CVE-2026-53547 (CVE-2026-53547)
vulnerability in CVE-2026-53547 (CVE-2026-53547). Successful exploitation can lead to full system takeover. Exploitable via `POST /database/export`.
|
| CVE-2026-53546 |
|
Vulnerability in CVE-2026-53546 (CVE-2026-53546)
vulnerability in CVE-2026-53546 (CVE-2026-53546). Confidential information can be exposed externally.
|
| CVE-2026-18544 |
|
Vulnerability in CVE-2026-18544 (CVE-2026-18544)
vulnerability in CVE-2026-18544 (CVE-2026-18544). Confidential information can be exposed externally.
|
| CVE-2026-76647 |
|
Information Disclosure in CVE-2026-76647 (CVE-2026-76647)
vulnerability in CVE-2026-76647 (CVE-2026-76647). Successful exploitation can lead to full system takeover.
|
| CVE-2026-55703 |
|
Vulnerability in snipe/snipe-it (CVE-2026-55703)
vulnerability in snipe/snipe-it (CVE-2026-55703). Risk of unauthorized operations or information disclosure. Exploitable via `GET /maintenances/5`. Mitigation: upgrade to `8.6.3` or later.
|
| CVE-2026-16938 |
|
Vulnerability in c (CVE-2026-16938)
vulnerability in c (CVE-2026-16938). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16930 |
|
Vulnerability in ibm (CVE-2026-16930)
vulnerability in ibm (CVE-2026-16930). Successful exploitation can lead to full system takeover.
|
| CVE-2026-64852 |
|
Vulnerability in CVE-2026-64852 (CVE-2026-64852)
vulnerability in CVE-2026-64852 (CVE-2026-64852). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-62667 |
|
Vulnerability in CVE-2026-62667 (CVE-2026-62667)
vulnerability in CVE-2026-62667 (CVE-2026-62667). Confidential information can be exposed externally.
|
| CVE-2026-62670 |
|
Vulnerability in CVE-2026-62670 (CVE-2026-62670)
vulnerability in CVE-2026-62670 (CVE-2026-62670). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-62666 |
|
Vulnerability in CVE-2026-62666 (CVE-2026-62666)
vulnerability in CVE-2026-62666 (CVE-2026-62666). Successful exploitation can lead to full system takeover.
|
| CVE-2026-58565 |
|
Vulnerability in dell (CVE-2026-58565)
vulnerability in dell (CVE-2026-58565). Successful exploitation can lead to full system takeover.
|
| CVE-2026-58562 |
|
Vulnerability in dell (CVE-2026-58562)
vulnerability in dell (CVE-2026-58562). Successful exploitation can lead to full system takeover.
|
| CVE-2026-45273 |
|
Vulnerability in CVE-2026-45273 (CVE-2026-45273)
vulnerability in CVE-2026-45273 (CVE-2026-45273). Risk of unauthorized operations or information disclosure. Exploitable via `POST /api/admin/settings`.
|
| CVE-2026-76223 |
|
Vulnerability in CVE-2026-76223 (CVE-2026-76223)
vulnerability in CVE-2026-76223 (CVE-2026-76223). Data can be tampered with by attackers. Mitigation: upgrade to `26.8.1` or later.
|
| CVE-2026-76215 |
|
Vulnerability in c (CVE-2026-76215)
vulnerability in c (CVE-2026-76215). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-76211 |
|
Vulnerability in CVE-2026-76211 (CVE-2026-76211)
vulnerability in CVE-2026-76211 (CVE-2026-76211). Risk of unauthorized operations or information disclosure.
|