2026 CVE Vulnerabilities

59,915 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-13565HIGH7.3A vulnerability was determined in SourceCodester Class and Exam Timetabling System 1.0/1.php. Affected by this vulnerabi...
CVE-2026-13165HIGH8.6SzafirHost verifies the downloaded native library archive with one JarFile parser (reading the Central Directory) but ex...
CVE-2026-12856HIGH8.8A flaw was found in the vscode-java extension, which provides Java language support for Visual Studio Code. The extensio...
CVE-2026-12616MEDIUM6.9The /v1/upload/sbom endpoint extracts the iss claim from the attacker-supplied JWT with signature verification disabled,...
CVE-2026-11979HIGH7.8libxml2 is vulnerable to multiple stack-based buffer overflows in the xmlcatalog utility when running in --shell mode. T...
CVE-2026-41992HIGH7.5GNU gzip contains a global buffer overflow vulnerability in the LZH decompression logic caused by improper reuse of shar...
CVE-2026-41991MEDIUM4.7GNU gzip contains a vulnerability in the gzexe utility related to insecure temporary file handling. When the mktemp util...
CVE-2026-13564HIGH8.8A vulnerability was found in Edimax EW-7478APC 1.04. Affected is the function formPPPoESetup of the file /goform/formPPP...
CVE-2026-13563HIGH8.8A vulnerability has been found in Edimax EW-7478APC 1.04. This impacts the function formL2TPSetup of the file /goform/fo...
CVE-2026-13562HIGH8.8A flaw has been found in Edimax EW-7478APC 1.04. This affects the function formiNICSiteSurvey of the file /goform/formiN...
CVE-2026-13561MEDIUM6.3A vulnerability was detected in Edimax EW-7478APC 1.04. The impacted element is the function formiNICbasic of the file /...
CVE-2026-13560MEDIUM6.3A security vulnerability has been detected in Edimax EW-7478APC 1.04. The affected element is the function formAccept of...
CVE-2026-13559HIGH7.3A weakness has been identified in code-projects Real State Services 1.0. Impacted is an unknown function of the file /si...
CVE-2026-13558LOW3.5A security flaw has been discovered in CodeAstro Complaint Management System 1.0. This issue affects some unknown proces...
CVE-2026-57346HIGH7.1Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Epiphyt Embed Privacy al...
CVE-2026-25707HIGH8.8A relative path traversal bug problem when processing repository metadata in libzypp before 17.38.10 could be used by re...
CVE-2026-13601MEDIUM6.5A flaw was found in Yelp due to an overly permissive Content Security Policy (CSP) implementation provided by yelp-xsl. ...
CVE-2026-13557MEDIUM4.3A vulnerability was identified in itsourcecode Online Hotel Management System 1.0. This vulnerability affects unknown co...
CVE-2026-13556MEDIUM4.3A vulnerability was determined in itsourcecode Online Hotel Management System 1.0. This affects an unknown part of the f...
CVE-2026-13555HIGH7.3A vulnerability was found in itsourcecode Online Hotel Management System 1.0. Affected by this issue is some unknown fun...
CVE-2026-13554MEDIUM4.3A vulnerability has been found in itsourcecode Online Hotel Management System 1.0. Affected by this vulnerability is an ...
CVE-2026-13553HIGH7.3A flaw has been found in itsourcecode Online Hotel Management System 1.0. Affected is an unknown function of the file /a...
CVE-2026-13552HIGH7.3A vulnerability was detected in itsourcecode Online Hotel Management System 1.0. This impacts an unknown function of the...
CVE-2026-9267MEDIUM6.9Eclipse tinydtls before commit b3efd41ad111a4920f599f51ffa4f5e9f1e72221 contains an out-of-bounds read vulnerability in ...
CVE-2026-57966MEDIUM4.4A path traversal vulnerability was found in spice-vdagent. This flaw allows a malicious or compromised SPICE host to wri...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now