2026 CVE Vulnerabilities
66,985 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-97325 | MEDIUM | 4.3 | 0.3% | Sep 24, 2026 | A security flaw has been discovered in YunaiV/zhijiantianya ruoyi-vue-pro up to 2026.08. Affected by this vulnerability ... |
| CVE-2026-97324 | HIGH | 7.3 | — | Sep 24, 2026 | A vulnerability was identified in YunaiV/zhijiantianya ruoyi-vue-pro up to 2026.08. Affected is the function updateDemoO... |
| CVE-2026-96883 | HIGH | 8.8 | — | Sep 24, 2026 | pgcollection is an open source extension to PostgreSQL. A type confusion issue in AWS pgcollection 2.0.0 through 2.1.1 m... |
| CVE-2026-93354 | HIGH | 8.1 | — | Sep 24, 2026 | Taskview Community before 1.56.0 contains a missing authentication vulnerability that allows unauthenticated attackers t... |
| CVE-2026-93291 | CRITICAL | 9.4 | — | Sep 24, 2026 | Omni C20 lacks proper certificate validation which could allow an attacker to perform a man-in-the-middle attack which c... |
| CVE-2026-93290 | MEDIUM | 5.5 | — | Sep 24, 2026 | Omni C20 uses hard-coded credentials that could allow an attacker to monitor log files to obtain credentials to access i... |
| CVE-2026-93289 | HIGH | 7.5 | — | Sep 24, 2026 | The affected products are vulnerable to command injection attack that could allow an unauthenticated attacker to execute... |
| CVE-2026-88956 | MEDIUM | 6.8 | 0.2% | Sep 24, 2026 | The Botslab G980H dash camera firmware contains an authentication vulnerability in the root account exposed through the ... |
| CVE-2026-88761 | MEDIUM | 5.3 | 0.2% | Sep 24, 2026 | The Botslab G980H dash camera firmware generates the default WiFi password using predictable device information, portion... |
| CVE-2026-85496 | HIGH | 8.8 | 0.3% | Sep 24, 2026 | The Botslab G980H dash camera firmware generates session identifiers using a small sequential value space rather than a ... |
| CVE-2026-84399 | HIGH | 8.8 | — | Sep 24, 2026 | The Botslab G980H dash camera firmware contains an authorization vulnerability in its session based command functionalit... |
| CVE-2026-82566 | HIGH | 8.8 | — | Sep 24, 2026 | The Botslab G980H dash camera firmware contains a session management vulnerability in which authentication state can rem... |
| CVE-2026-82372 | HIGH | 8.5 | 0.2% | Sep 24, 2026 | Improper handling of sensitive data during IPsec policy creation and modification in Brocade SANnav versions before 3.0.... |
| CVE-2026-82164 | HIGH | 7.1 | 0.1% | Sep 24, 2026 | Dell Trusted Device Client, versions prior to 8.1.359.0, contain an Incorrect Permission Assignment for Critical Resourc... |
| CVE-2026-77967 | HIGH | 8.1 | 0.2% | Sep 24, 2026 | The Botslab G980H dash camera firmware accepts a reusable authentication value without adequately verifying its freshnes... |
| CVE-2026-48543 | MEDIUM | 5.4 | 0.1% | Sep 24, 2026 | Krayin CRM through 2.2.6 contains a stored client-side template injection vulnerability that allows authenticated attack... |
| CVE-2026-48542 | MEDIUM | 5.4 | — | Sep 24, 2026 | Krayin CRM through 2.2.6 contains a stored client-side template injection vulnerability that allows authenticated attack... |
| CVE-2026-48541 | MEDIUM | 5.4 | 0.1% | Sep 24, 2026 | Krayin CRM through 2.2.6 contains a stored client-side template injection vulnerability that allows authenticated attack... |
| CVE-2026-48540 | MEDIUM | 5.4 | — | Sep 24, 2026 | Krayin CRM through 2.2.6 contains a stored client-side template injection vulnerability that allows authenticated attack... |
| CVE-2026-97323 | MEDIUM | 6.3 | — | Sep 24, 2026 | A vulnerability was determined in YunaiV/zhijiantianya ruoyi-vue-pro up to 2026.08. This impacts the function getOrigina... |
| CVE-2026-97322 | MEDIUM | 4.3 | — | Sep 24, 2026 | A vulnerability was found in YunaiV/zhijiantianya ruoyi-vue-pro up to 2026.08. This affects an unknown function of the f... |
| CVE-2026-97321 | MEDIUM | 6.3 | — | Sep 24, 2026 | A vulnerability has been found in YunaiV/zhijiantianya ruoyi-vue-pro up to 2026.08. The impacted element is the function... |
| CVE-2026-97320 | MEDIUM | 6.3 | 0.2% | Sep 24, 2026 | A flaw has been found in YunaiV/zhijiantianya ruoyi-vue-pro up to 2026.08. The affected element is the function AiKnowle... |
| CVE-2026-96749 | HIGH | 8.4 | 0.1% | Sep 24, 2026 | An integer overflow in the BSON document encoding component of the MongoDB Python Driver's bundled native extension may ... |
| CVE-2026-96748 | MEDIUM | 6.5 | — | Sep 24, 2026 | PyMongo's connection string parsing decodes percent-encoded characters in the host portion before the host list is separ... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now