Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-16146 |
|
SQL Injection in wordpress (CVE-2026-16146)
SQL injection in wordpress (CVE-2026-16146). Confidential information can be exposed externally.
|
| CVE-2026-16586 |
|
SQL Injection in wordpress (CVE-2026-16586)
SQL injection in wordpress (CVE-2026-16586). Confidential information can be exposed externally.
|
| CVE-2026-16094 |
|
SQL Injection in wordpress (CVE-2026-16094)
SQL injection in wordpress (CVE-2026-16094). Confidential information can be exposed externally.
|
| CVE-2026-15993 |
|
SQL Injection in wordpress (CVE-2026-15993)
SQL injection in wordpress (CVE-2026-15993). Confidential information can be exposed externally.
|
| CVE-2026-15453 |
|
SQL Injection in wordpress (CVE-2026-15453)
SQL injection in wordpress (CVE-2026-15453). Confidential information can be exposed externally.
|
| CVE-2026-15162 |
|
SQL Injection in wordpress (CVE-2026-15162)
SQL injection in wordpress (CVE-2026-15162). Confidential information can be exposed externally.
|
| CVE-2026-16080 |
|
SQL Injection in wordpress (CVE-2026-16080)
SQL injection in wordpress (CVE-2026-16080). Confidential information can be exposed externally.
|
| CVE-2026-71571 |
|
SQL Injection in sqli (CVE-2026-71571)
SQL injection in sqli (CVE-2026-71571). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-67365 |
|
SQL Injection in sqli (CVE-2026-67365)
SQL injection in sqli (CVE-2026-67365). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-18403 |
|
SQL Injection in sqli (CVE-2026-18403)
SQL injection in sqli (CVE-2026-18403). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19680 |
|
SQL Injection in sqli (CVE-2026-19680)
SQL injection in sqli (CVE-2026-19680). Confidential information can be exposed externally.
|
| CVE-2026-19631 |
|
SQL Injection in sqli (CVE-2026-19631)
SQL injection in sqli (CVE-2026-19631). Confidential information can be exposed externally.
|
| CVE-2026-73850 |
|
SQL Injection in sqli (CVE-2026-73850)
SQL injection in sqli (CVE-2026-73850). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-48528 |
|
SQL Injection in tomcat (CVE-2026-48528)
SQL injection in tomcat (CVE-2026-48528). Successful exploitation can lead to full system takeover. Exploitable via ``nodeId``.
|
| CVE-2026-19825 |
|
A security vulnerability has been detected in SourceCodester Simple Client Management System 1.0....
A security vulnerability has been detected in SourceCodester Simple Client Management System 1.0....
|
| CVE-2026-72811 |
|
SQL Injection in sqli (CVE-2026-72811)
SQL injection in sqli (CVE-2026-72811). Confidential information can be exposed externally. Mitigation: upgrade to `3.7.4` or later.
|
| CVE-2026-15205 |
|
SQL Injection in wordpress (CVE-2026-15205)
SQL injection in wordpress (CVE-2026-15205). Confidential information can be exposed externally.
|
| CVE-2026-12743 |
|
SQL Injection in wordpress (CVE-2026-12743)
SQL injection in wordpress (CVE-2026-12743). Confidential information can be exposed externally.
|
| CVE-2026-16810 |
|
SQL Injection in wordpress (CVE-2026-16810)
SQL injection in wordpress (CVE-2026-16810). Confidential information can be exposed externally.
|
| CVE-2026-19787 |
|
Vulnerability in sqli (CVE-2026-19787)
vulnerability in sqli (CVE-2026-19787). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19785 |
|
Vulnerability in sqli (CVE-2026-19785)
vulnerability in sqli (CVE-2026-19785). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19767 |
|
Vulnerability in sqli (CVE-2026-19767)
vulnerability in sqli (CVE-2026-19767). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-19764 |
|
A vulnerability was identified in Raisecom Communication Command and Dispatch Management Platform...
A vulnerability was identified in Raisecom Communication Command and Dispatch Management Platform...
|
| CVE-2026-72853 |
|
SQL Injection in sqli (CVE-2026-72853)
SQL injection in sqli (CVE-2026-72853). Successful exploitation can lead to full system takeover.
|
| CVE-2026-72851 |
|
SQL Injection in sqli (CVE-2026-72851)
SQL injection in sqli (CVE-2026-72851). Successful exploitation can lead to full system takeover.
|
| CVE-2026-16961 |
|
SQL Injection in sqli (CVE-2026-16961)
SQL injection in sqli (CVE-2026-16961). Confidential information can be exposed externally.
|
| CVE-2024-58374 |
|
SQL Injection in sqli (CVE-2024-58374)
SQL injection in sqli (CVE-2024-58374). Confidential information can be exposed externally.
|
| CVE-2019-25765 |
|
SQL Injection in sqli (CVE-2019-25765)
SQL injection in sqli (CVE-2019-25765). Confidential information can be exposed externally.
|
| CVE-2026-59109 |
|
Vulnerability in sqli (CVE-2026-59109)
vulnerability in sqli (CVE-2026-59109). Successful exploitation can lead to full system takeover.
|
| CVE-2026-73670 |
|
SQL Injection in sqli (CVE-2026-73670)
SQL injection in sqli (CVE-2026-73670). Successful exploitation can lead to full system takeover.
|
| CVE-2026-19710 |
|
Vulnerability in sqli (CVE-2026-19710)
vulnerability in sqli (CVE-2026-19710). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-73346 |
|
Administrator SQL Injection in MailChimp For WooCommerce < 6.2 versions.
Administrator SQL Injection in MailChimp For WooCommerce < 6.2 versions.
|
| CVE-2026-66658 |
|
Subscriber SQL Injection in Reviewer <= 3.14.2 versions.
Subscriber SQL Injection in Reviewer <= 3.14.2 versions.
|
| CVE-2026-66478 |
|
Unauthenticated SQL Injection in Church Admin <= 5.1.1 versions.
Unauthenticated SQL Injection in Church Admin <= 5.1.1 versions.
|
| CVE-2026-66472 |
|
Unauthenticated SQL Injection in Everest Backup <= 2.3.12 versions.
Unauthenticated SQL Injection in Everest Backup <= 2.3.12 versions.
|
| CVE-2026-66458 |
|
Unauthenticated SQL Injection in RealPress <= 1.1.2 versions.
Unauthenticated SQL Injection in RealPress <= 1.1.2 versions.
|
| CVE-2026-66446 |
|
Subscriber SQL Injection in If-So Dynamic Content Personalization <= 1.10 versions.
Subscriber SQL Injection in If-So Dynamic Content Personalization <= 1.10 versions.
|
| CVE-2026-66436 |
|
Unauthenticated SQL Injection in Active Products Tables for WooCommerce <= 1.1.1 versions.
Unauthenticated SQL Injection in Active Products Tables for WooCommerce <= 1.1.1 versions.
|
| CVE-2026-66430 |
|
Subscriber SQL Injection in Visitor Traffic Real Time Statistics Pro <= 11.10 versions.
Subscriber SQL Injection in Visitor Traffic Real Time Statistics Pro <= 11.10 versions.
|
| CVE-2026-61969 |
|
Unauthenticated SQL Injection in Listdom <= 5.6.0 versions.
Unauthenticated SQL Injection in Listdom <= 5.6.0 versions.
|
| CVE-2026-61966 |
|
Subscriber SQL Injection in WPJAM Basic <= 7.0.1 versions.
Subscriber SQL Injection in WPJAM Basic <= 7.0.1 versions.
|
| CVE-2026-28184 |
|
Subscriber SQL Injection in Form Maker by 10Web <= 1.15.44 versions.
Subscriber SQL Injection in Form Maker by 10Web <= 1.15.44 versions.
|
| CVE-2026-28168 |
|
Subscriber SQL Injection in CubeWP <= 1.1.30 versions.
Subscriber SQL Injection in CubeWP <= 1.1.30 versions.
|
| CVE-2026-28156 |
|
Subscriber SQL Injection in Do Lasso <= 358 versions.
Subscriber SQL Injection in Do Lasso <= 358 versions.
|
| CVE-2026-28002 |
|
SQL Injection in sqli (CVE-2026-28002)
SQL injection in sqli (CVE-2026-28002). Confidential information can be exposed externally.
|
| CVE-2026-28142 |
|
Unauthenticated SQL Injection in Web Directory Free <= 1.7.13 versions.
Unauthenticated SQL Injection in Web Directory Free <= 1.7.13 versions.
|
| CVE-2026-28001 |
|
Unauthenticated SQL Injection in WP Directory Kit <= 1.5.4 versions.
Unauthenticated SQL Injection in WP Directory Kit <= 1.5.4 versions.
|
| CVE-2026-27538 |
|
Unauthenticated SQL Injection in WP Directory Kit <= 1.5.4 versions.
Unauthenticated SQL Injection in WP Directory Kit <= 1.5.4 versions.
|
| CVE-2026-15741 |
|
SQL Injection in sqli (CVE-2026-15741)
SQL injection in sqli (CVE-2026-15741). Successful exploitation can lead to full system takeover.
|
| CVE-2026-11840 |
|
Zohocorp ManageEngine Password Manager Pro versions before 13232 and ManageEngine PAM360 versions...
Zohocorp ManageEngine Password Manager Pro versions before 13232 and ManageEngine PAM360 versions...
|