2026 CVE Vulnerabilities

66,316 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-75558MEDIUM5.3The Botslab G980H dash camera firmware uses a hard-coded cryptographic key and initialization vector to protect WiFi cre...
CVE-2026-14443HIGH8.4Incomplete log sanitization during bulk IPsec policy collection in Brocade SANnav versions before 3.0.1a permit extensio...
CVE-2026-14442MEDIUM6.9An information exposure vulnerability in the job scheduling component of SANnav allows sensitive credentials to be writt...
CVE-2026-14441MEDIUM6.9A logic flaw in Java cache key handling object comparison handling could lead to improper identifier resolution when pro...
CVE-2026-97365MEDIUM6.3A vulnerability was determined in chonkie-inc littrs 0.6.1/0.6.2. Impacted is the function Sandbox::mount of the file cr...
CVE-2026-97326HIGH7.3A weakness has been identified in songxinjianqwe Chat up to ac63d25297079eed5e4ba7e88d3b7a032637150d. Affected by this i...
CVE-2026-97325MEDIUM4.3A security flaw has been discovered in YunaiV/zhijiantianya ruoyi-vue-pro up to 2026.08. Affected by this vulnerability ...
CVE-2026-97324HIGH7.3A vulnerability was identified in YunaiV/zhijiantianya ruoyi-vue-pro up to 2026.08. Affected is the function updateDemoO...
CVE-2026-96883HIGH8.8pgcollection is an open source extension to PostgreSQL. A type confusion issue in AWS pgcollection 2.0.0 through 2.1.1 m...
CVE-2026-93354HIGH8.1Taskview Community before 1.56.0 contains a missing authentication vulnerability that allows unauthenticated attackers t...
CVE-2026-93291CRITICAL9.4Omni C20 lacks proper certificate validation which could allow an attacker to perform a man-in-the-middle attack which c...
CVE-2026-93290MEDIUM5.5Omni C20 uses hard-coded credentials that could allow an attacker to monitor log files to obtain credentials to access i...
CVE-2026-93289HIGH7.5The affected products are vulnerable to command injection attack that could allow an unauthenticated attacker to execute...
CVE-2026-88956MEDIUM6.8The Botslab G980H dash camera firmware contains an authentication vulnerability in the root account exposed through the ...
CVE-2026-88761MEDIUM5.3The Botslab G980H dash camera firmware generates the default WiFi password using predictable device information, portion...
CVE-2026-85496HIGH8.8The Botslab G980H dash camera firmware generates session identifiers using a small sequential value space rather than a ...
CVE-2026-84399HIGH8.8The Botslab G980H dash camera firmware contains an authorization vulnerability in its session based command functionalit...
CVE-2026-82566HIGH8.8The Botslab G980H dash camera firmware contains a session management vulnerability in which authentication state can rem...
CVE-2026-82372HIGH8.5Improper handling of sensitive data during IPsec policy creation and modification in Brocade SANnav versions before 3.0....
CVE-2026-82164HIGH7.1Dell Trusted Device Client, versions prior to 8.1.359.0, contain an Incorrect Permission Assignment for Critical Resourc...
CVE-2026-77967HIGH8.1The Botslab G980H dash camera firmware accepts a reusable authentication value without adequately verifying its freshnes...
CVE-2026-48543MEDIUM5.4Krayin CRM through 2.2.6 contains a stored client-side template injection vulnerability that allows authenticated attack...
CVE-2026-48542MEDIUM5.4Krayin CRM through 2.2.6 contains a stored client-side template injection vulnerability that allows authenticated attack...
CVE-2026-48541MEDIUM5.4Krayin CRM through 2.2.6 contains a stored client-side template injection vulnerability that allows authenticated attack...
CVE-2026-48540MEDIUM5.4Krayin CRM through 2.2.6 contains a stored client-side template injection vulnerability that allows authenticated attack...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now