2026 CVE Vulnerabilities
64,868 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-77853 | HIGH | 8.7 | 1.0% | Sep 15, 2026 | Improper neutralization of special elements used in an OS command ('OS Command Injection') issue exists in FF-RFI079I4 a... |
| CVE-2026-76159 | HIGH | 7 | 0.1% | Sep 15, 2026 | Incorrect Permission Assignment for Critical Resource in the configuration loader of Duplicati for Windows versions bef... |
| CVE-2026-75092 | HIGH | 7.3 | 0.1% | Sep 15, 2026 | A privilege escalation flaw was found in the scan_mysql actor of leapp-upgrade-el9toel10 (provided by leapp-repository).... |
| CVE-2026-91778 | HIGH | 7.2 | 0.3% | Sep 15, 2026 | In affected versions of Octopus Server, users with certain scoped permission sets could execute arbitrary scripts on a w... |
| CVE-2026-91087 | HIGH | 7.3 | 0.4% | Sep 15, 2026 | A flaw has been found in GPAC up to f1219cde. This vulnerability affects the function gf_mo_get_od_id of the file compos... |
| CVE-2026-75983 | HIGH | 7.5 | 0.4% | Sep 15, 2026 | The Eventin – Event Calendar, Tickets, Registration, Booking & WooCommerce plugin for WordPress is vulnerable to Privile... |
| CVE-2026-91004 | HIGH | 7.3 | 0.3% | Sep 15, 2026 | A vulnerability has been found in SourceCodester Online Faculty Clearance System 1.0. The impacted element is an unknown... |
| CVE-2026-90880 | HIGH | 7.4 | 1.0% | Sep 15, 2026 | A security flaw has been discovered in D-Link DSL-3782 2016-07-28. This issue affects the function system of the file /c... |
| CVE-2026-90879 | HIGH | 7.3 | 0.3% | Sep 15, 2026 | A vulnerability was identified in zyx0814 FilePress up to 3.0.1. This vulnerability affects unknown code of the file dzz... |
| CVE-2026-90877 | HIGH | 7.3 | 0.3% | Sep 15, 2026 | A vulnerability was found in SourceCodester Online Faculty Clearance System 1.0. Affected by this issue is some unknown ... |
| CVE-2026-90876 | HIGH | 7.3 | 0.3% | Sep 15, 2026 | A vulnerability has been found in SourceCodester Online Faculty Clearance System 1.0. Affected by this vulnerability is ... |
| CVE-2026-90858 | HIGH | 7.3 | 0.3% | Sep 15, 2026 | A flaw has been found in subhajitkhan online-clinic-management-system up to e9ee77a8827a1446220fa07ee693dc4d9a29a578. Af... |
| CVE-2026-90856 | HIGH | 7.3 | 0.3% | Sep 15, 2026 | A security vulnerability has been detected in SourceCodester College Notes Gallery Management System 1.0. This impacts a... |
| CVE-2026-90855 | HIGH | 7.3 | 0.3% | Sep 15, 2026 | A weakness has been identified in SourceCodester/katojkalemba Online Food Ordering System 1.0. This affects an unknown f... |
| CVE-2026-90854 | HIGH | 7.3 | 0.3% | Sep 15, 2026 | A security flaw has been discovered in SourceCodester/katojkalemba Online Food Ordering System 1.0. The impacted element... |
| CVE-2026-90852 | HIGH | 7.3 | 0.3% | Sep 15, 2026 | A vulnerability has been found in luben zstd-jni up to 1.5.7-13. This vulnerability affects the function ZstdCompressCtx... |
| CVE-2026-88262 | HIGH | 8.7 | 0.3% | Sep 15, 2026 | Insufficient session expiration vulnerability in bizwell xClick allows Authentication Bypass. This issue affects xClick... |
| CVE-2026-91771 | HIGH | 8.8 | 1.2% | Sep 15, 2026 | Weights & Biases wandb before 0.29.0 fails to validate the file name from server responses in the File.download function... |
| CVE-2026-90849 | HIGH | 7.3 | 0.3% | Sep 15, 2026 | A security vulnerability has been detected in SourceCodester College Notes Gallery Management System 1.0. Affected by th... |
| CVE-2026-91752 | HIGH | 7.5 | 0.7% | Sep 15, 2026 | GNU libextractor before 1.15 contains a stack-based buffer overflow vulnerability in the process_star_office function th... |
| CVE-2026-91751 | HIGH | 8.3 | 0.3% | Sep 15, 2026 | Flextype CMS through 1.0.0-alpha.3 fails to properly validate id and new_id parameters in the Entries REST API, allowing... |
| CVE-2026-90846 | HIGH | 7.3 | 0.3% | Sep 15, 2026 | A vulnerability has been found in PHPGurukul Daily Expense Tracker System 1.1. Impacted is an unknown function of the fi... |
| CVE-2026-90844 | HIGH | 7.3 | 0.3% | Sep 15, 2026 | A vulnerability was detected in PHPGurukul Daily Expense Tracker System 1.1. This vulnerability affects unknown code of ... |
| CVE-2026-90843 | HIGH | 8.3 | 1.4% | Sep 15, 2026 | A security vulnerability has been detected in SabyasachiRana WebMap up to 8b95fe4dc301a3c09ddf145b895de0bf9f8d2a25. This... |
| CVE-2026-90841 | HIGH | 7.3 | 0.3% | Sep 15, 2026 | A security flaw has been discovered in PHPGurukul Blood Donor Management System 1.0. Affected by this vulnerability is a... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now