2026 CVE Vulnerabilities

59,863 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-10817HIGH7.5Insufficient input validation leading to memory overread in NetScaler ADC and NetScaler Gateway if the TCP TimeStamp is ...
CVE-2026-10816HIGH7.5Arbitrary File Read (Unauthenticated) in NetScaler ADC and NetScaler Gateway if the access to NSIP, Cluster Management I...
CVE-2026-8402CRITICAL9.8Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Eksagate Electroni...
CVE-2026-57082MEDIUM5.9Net::BitTorrent versions before 2.1.0 for Perl generate the MSE Diffie-Hellman private key with a non-cryptographic PRNG...
CVE-2026-57081HIGH7.5Net::BitTorrent versions through 2.1.0 for Perl allow remote memory exhaustion via deeply nested bencoded input. bdecod...
CVE-2026-57080HIGH7.5Net::BitTorrent versions through 2.1.0 for Perl allow remote memory exhaustion via an uncapped peer-wire message-length ...
CVE-2026-57079MEDIUM5.3Net::BitTorrent versions before 2.1.0 for Perl write files outside the download directory via path traversal in peer-sup...
CVE-2026-53692MEDIUM5.9Redeight CMS version 1.0 uses the MD5 algorithm without a salt to store user passwords. Because MD5 is a cryptographical...
CVE-2026-53691HIGH8.6An Unrestricted File Upload vulnerability in Redeight CMS version 1.0 allows authenticated attackers to achieve Remote C...
CVE-2026-53690CRITICAL9.3An SQL Injection vulnerability exists in Redeight CMS version 1.0 via the "userEmail" parameter in the POST "/admin/inde...
CVE-2026-41053HIGH8.8Incorrect authentication caching in the team member ship expansion of the Rancher Github authentication provider caused ...
CVE-2026-14162CRITICAL9.8Hospital Queuing Management developed by Advantech has a Sensitive Data Exposure vulnerability, allowing unauthenticated...
CVE-2026-14161HIGH8.7Hospital Quening Management developed by Advantech has a Sensitive Data Exposure vulnerability, allowing unauthenticated...
CVE-2026-13766CRITICAL9.8DBIx::QuickORM versions before 0.000026 for Perl allow SQL injection via unquoted SQL identifiers. The default SQL buil...
CVE-2026-54475HIGH7.5Missing Authorization vulnerability in Apache ActiveMQ Broker, Apache ActiveMQ All, Apache ActiveMQ. Apache ActiveMQ Cl...
CVE-2026-53917HIGH7.5Memory Allocation with Excessive Size Value vulnerability in Apache ActiveMQ, Apache ActiveMQ All, Apache ActiveMQ Clien...
CVE-2026-53916HIGH7.5Memory Allocation with Excessive Size Value vulnerability in Apache ActiveMQ, Apache ActiveMQ All, Apache ActiveMQ Stomp...
CVE-2026-52760MEDIUM6.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Apache ActiveMQ, A...
CVE-2026-50750HIGH7.5Denial of Service via Out of Memory vulnerability in Apache ActiveMQ Broker, Apache ActiveMQ, Apache ActiveMQ All. Foll...
CVE-2026-50734HIGH7.5Memory Allocation with Excessive Size Value vulnerability in Apache ActiveMQ Client, Apache ActiveMQ, Apache ActiveMQ Al...
CVE-2026-49877HIGH8.1Improper Authorization vulnerability in Apache ActiveMQ. An authenticated low-privilege Web Console user by default can...
CVE-2026-49434HIGH7.5Improper Input Validation vulnerability in Apache ActiveMQ Broker, Apache ActiveMQ, Apache ActiveMQ All. An attacker th...
CVE-2026-49432HIGH7.5Improper Input Validation vulnerability in Apache ActiveMQ, Apache ActiveMQ All, Apache ActiveMQ Stomp. A remote unauth...
CVE-2026-13316MEDIUM4.4A flaw has been found in foreman when HTTP parameters are modified in http_proxies_controller and http_proxy files. Atta...
CVE-2026-9711CRITICAL9.8The EventON - WordPress Virtual Event Calendar Plugin plugin for WordPress (full) is vulnerable to SQL Injection via the...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now