脆弱性一覧

CVE / GHSA / KEV / OSV を統合監視。タグ・カテゴリで絞り込み可能。

ID タイトル
CVE-2026-66605 CVE-2026-66605 に クロスサイトスクリプティング (CVE-2026-66605)
CVE-2026-66605 に XSS (クロスサイトスクリプティング) (CVE-2026-66605) が存在。不正な操作・情報露出のリスクがあります。
CVE-2026-66673 Unauthenticated Cross Site Scripting (XSS) in Flatastic <= 2.0 versions.
Unauthenticated Cross Site Scripting (XSS) in Flatastic <= 2.0 versions.
CVE-2026-66614 Unauthenticated Cross Site Scripting (XSS) in SEO Plugin by Squirrly SEO <= 14.2.2 versions.
Unauthenticated Cross Site Scripting (XSS) in SEO Plugin by Squirrly SEO <= 14.2.2 versions.
CVE-2026-66612 Unauthenticated Cross Site Scripting (XSS) in Aora <= 1.3.19 versions.
Unauthenticated Cross Site Scripting (XSS) in Aora <= 1.3.19 versions.
CVE-2026-66609 Unauthenticated SQL Injection in TheGem (Elementor) <= 5.12.3 versions.
Unauthenticated SQL Injection in TheGem (Elementor) <= 5.12.3 versions.
CVE-2026-66647 Subscriber Broken Access Control in Homlisti <= 3.1.2 versions.
Subscriber Broken Access Control in Homlisti <= 3.1.2 versions.
CVE-2026-66616 Unauthenticated Cross Site Scripting (XSS) in Form Maker by 10Web <= 1.15.46 versions.
Unauthenticated Cross Site Scripting (XSS) in Form Maker by 10Web <= 1.15.46 versions.
CVE-2026-66672 Unauthenticated PHP Object Injection in Flatastic <= 2.0 versions.
Unauthenticated PHP Object Injection in Flatastic <= 2.0 versions.
CVE-2026-66611 Unauthenticated Cross Site Scripting (XSS) in Paymob for WooCommerce <= 4.1.10 versions.
Unauthenticated Cross Site Scripting (XSS) in Paymob for WooCommerce <= 4.1.10 versions.
CVE-2026-66649 Unauthenticated SQL Injection in Directory Pro <= 2.5.8 versions.
Unauthenticated SQL Injection in Directory Pro <= 2.5.8 versions.
CVE-2026-66615 Unauthenticated Cross Site Scripting (XSS) in Podlove Podcast Publisher <= 4.5.4 versions.
Unauthenticated Cross Site Scripting (XSS) in Podlove Podcast Publisher <= 4.5.4 versions.
CVE-2026-66607 Unauthenticated Cross Site Scripting (XSS) in Advance Product Search <= 1.4.8 versions.
Unauthenticated Cross Site Scripting (XSS) in Advance Product Search <= 1.4.8 versions.
CVE-2026-66604 Unauthenticated Cross Site Scripting (XSS) in GeoDirectory <= 2.8.173 versions.
Unauthenticated Cross Site Scripting (XSS) in GeoDirectory <= 2.8.173 versions.
CVE-2026-66600 Author Arbitrary File Upload in Media LIbrary Assistant <= 3.39 versions.
Author Arbitrary File Upload in Media LIbrary Assistant <= 3.39 versions.
CVE-2026-66593 Unauthenticated SQL Injection in Security & Malware scan by CleanTalk <= 2.184 versions.
Unauthenticated SQL Injection in Security & Malware scan by CleanTalk <= 2.184 versions.
CVE-2026-66594 Subscriber SQL Injection in WordPress Persistent Login <= 3.1.0 versions.
Subscriber SQL Injection in WordPress Persistent Login <= 3.1.0 versions.
CVE-2026-66606 Unauthenticated Cross Site Scripting (XSS) in SmartSMTP <= 1.2.0 versions.
Unauthenticated Cross Site Scripting (XSS) in SmartSMTP <= 1.2.0 versions.
CVE-2026-66601 Subscriber Cross Site Scripting (XSS) in Media LIbrary Assistant <= 3.39 versions.
Subscriber Cross Site Scripting (XSS) in Media LIbrary Assistant <= 3.39 versions.
CVE-2026-66597 Unauthenticated Cross Site Scripting (XSS) in wpDataTables <= 6.5.1.4 versions.
Unauthenticated Cross Site Scripting (XSS) in wpDataTables <= 6.5.1.4 versions.
CVE-2026-66598 Unauthenticated Cross Site Scripting (XSS) in B2BKing Premium <= 5.6.07 versions.
Unauthenticated Cross Site Scripting (XSS) in B2BKing Premium <= 5.6.07 versions.
CVE-2026-66595 Unauthenticated Broken Access Control in WP Data Access <= 5.5.80 versions.
Unauthenticated Broken Access Control in WP Data Access <= 5.5.80 versions.
CVE-2026-66582 Unauthenticated Cross Site Scripting (XSS) in TranslatePress <= 3.3.2 versions.
Unauthenticated Cross Site Scripting (XSS) in TranslatePress <= 3.3.2 versions.
CVE-2026-66592 Unauthenticated SQL Injection in rtMedia for WordPress, BuddyPress and bbPress <= 4.7.11 versions.
Unauthenticated SQL Injection in rtMedia for WordPress, BuddyPress and bbPress <= 4.7.11 versions.
CVE-2026-66581 Unauthenticated Cross Site Scripting (XSS) in JetEngine <= 3.8.14.1 versions.
Unauthenticated Cross Site Scripting (XSS) in JetEngine <= 3.8.14.1 versions.
CVE-2025-62307 CVE-2025-62307 の脆弱性 (CVE-2025-62307)
CVE-2025-62307 に 脆弱性 (CVE-2025-62307) が存在。不正な操作・情報露出のリスクがあります。
CVE-2026-66590 Unauthenticated Cross Site Scripting (XSS) in Tagembed <= 7.4 versions.
Unauthenticated Cross Site Scripting (XSS) in Tagembed <= 7.4 versions.
CVE-2026-28150 Unauthenticated Local File Inclusion in Golo Framework < 1.7.5 versions.
Unauthenticated Local File Inclusion in Golo Framework < 1.7.5 versions.
CVE-2025-15689 Unauthenticated Privilege Escalation in Capella <= 2.5.5 versions.
Unauthenticated Privilege Escalation in Capella <= 2.5.5 versions.
CVE-2026-66583 Unauthenticated PHP Object Injection in Forminator <= 1.57.0 versions.
Unauthenticated PHP Object Injection in Forminator <= 1.57.0 versions.
CVE-2025-53999 Unauthenticated Broken Access Control in Altair <= 5.2.2 versions.
Unauthenticated Broken Access Control in Altair <= 5.2.2 versions.
CVE-2026-66586 Author Local File Inclusion in WP Cafe Pro < 3.0.15 versions.
Author Local File Inclusion in WP Cafe Pro < 3.0.15 versions.
CVE-2025-15688 Unauthenticated SQL Injection in Capella <= 2.5.5 versions.
Unauthenticated SQL Injection in Capella <= 2.5.5 versions.
CVE-2025-15637 Unauthenticated Local File Inclusion in Shuffle <= 1.8 versions.
Unauthenticated Local File Inclusion in Shuffle <= 1.8 versions.
CVE-2026-77067 CVE-2026-77067 に SSRF (サーバー側リクエスト偽造) (CVE-2026-77067)
CVE-2026-77067 に SSRF (CVE-2026-77067) が存在。不正な操作・情報露出のリスクがあります。
CVE-2026-77066 CVE-2026-77066 に SSRF (サーバー側リクエスト偽造) (CVE-2026-77066)
CVE-2026-77066 に SSRF (CVE-2026-77066) が存在。不正な操作・情報露出のリスクがあります。
CVE-2026-77026 CVE-2026-77026 の脆弱性 (CVE-2026-77026)
CVE-2026-77026 に 脆弱性 (CVE-2026-77026) が存在。不正な操作・情報露出のリスクがあります。
CVE-2026-73199 dos の脆弱性 (CVE-2026-73199)
dos に 脆弱性 (CVE-2026-73199) が存在。不正な操作・情報露出のリスクがあります。``JOIN_OID`` 経由で攻撃可能。
CVE-2026-73198 A flaw was found in FreeIPA. A remote, unauthenticated attacker can exploit a vulnerability in...
A flaw was found in FreeIPA. A remote, unauthenticated attacker can exploit a vulnerability in...
CVE-2026-73197 A flaw was found in FreeIPA. A remote, unauthenticated attacker can exploit this vulnerability by...
A flaw was found in FreeIPA. A remote, unauthenticated attacker can exploit this vulnerability by...
CVE-2026-73196 dos の脆弱性 (CVE-2026-73196)
dos に 脆弱性 (CVE-2026-73196) が存在。不正な操作・情報露出のリスクがあります。
CVE-2026-13097 privilege-escalation の脆弱性 (CVE-2026-13097)
privilege-escalation に 脆弱性 (CVE-2026-13097) が存在。機密情報が外部に流出する可能性があります。
CVE-2026-11861 freeipa の脆弱性 (CVE-2026-11861)
freeipa に 脆弱性 (CVE-2026-11861) が存在。機密情報が外部に流出する可能性があります。
CVE-2026-18917 A flaw was found in libvirt. An unprivileged local user could exploit an integer overflow...
A flaw was found in libvirt. An unprivileged local user could exploit an integer overflow...
CVE-2026-14953 CVE-2026-14953 の脆弱性 (CVE-2026-14953)
CVE-2026-14953 に 脆弱性 (CVE-2026-14953) が存在。不正な操作・情報露出のリスクがあります。
CVE-2026-77014 c の脆弱性 (CVE-2026-77014)
c に 脆弱性 (CVE-2026-77014) が存在。不正な操作・情報露出のリスクがあります。
CVE-2026-76610 CVE-2026-76610 の脆弱性 (CVE-2026-76610)
CVE-2026-76610 に 脆弱性 (CVE-2026-76610) が存在。不正な操作・情報露出のリスクがあります。
CVE-2026-14951 CVE-2026-14951 に CSRF (CVE-2026-14951)
CVE-2026-14951 に 脆弱性 (CVE-2026-14951) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
CVE-2026-14949 CVE-2026-14949 に 認可不備 (CVE-2026-14949)
CVE-2026-14949 に 脆弱性 (CVE-2026-14949) が存在。データの不正な改ざんを許す可能性があります。
CVE-2026-14950 CVE-2026-14950 の脆弱性 (CVE-2026-14950)
CVE-2026-14950 に 脆弱性 (CVE-2026-14950) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。
CVE-2026-14952 CVE-2026-14952 の脆弱性 (CVE-2026-14952)
CVE-2026-14952 に 脆弱性 (CVE-2026-14952) が存在。機密情報が外部に流出する可能性があります。

🍪 Cookie について

当サイトはログイン状態の保持・言語設定・サービス改善のために Cookie を使用します。詳細は下記リンクをご確認ください。

詳細 →