Blog

"Prevention is cheaper than a breach"

Live Vulnerability Intelligence

Threat Database

Search CVEs, inspect descriptions, and open detail pages with AI-assisted technical context.

Total3
Critical0
High1
Medium1
Reset
Showing 1-3 of 3 records
Threat Entry Updated 2026-02-18

CVE-2026-23535 - Wlc Plugin

wlc is a Weblate command-line client using Weblate's REST API. Prior to 1.17.2, the multi-translation download could write to an arbitrary location when instructed by a crafted server. This vulnerability is fixed in 1.17.2.

PLUGIN Wlc

CVE-2026-23535

HIGH CVSS 8.0 2026-01-16
Threat Entry Updated 2026-01-27

CVE-2026-22251 - Wlc Plugin

wlc is a Weblate command-line client using Weblate's REST API. Prior to 1.17.0, wlc supported providing unscoped API keys in the setting. This practice was discouraged for years, but the code was never removed. This might cause the API key to be leaked to different servers.

PLUGIN Wlc

CVE-2026-22251

MEDIUM CVSS 5.3 2026-01-12
Threat Entry Updated 2026-01-27

CVE-2026-22250 - Wlc Plugin

wlc is a Weblate command-line client using Weblate's REST API. Prior to 1.17.0, the SSL verification would be skipped for some crafted URLs. This vulnerability is fixed in 1.17.0.

PLUGIN Wlc

CVE-2026-22250

LOW CVSS 2.5 2026-01-12
Scroll to top