2026 CVE Vulnerabilities

66,985 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-97325MEDIUM4.3A security flaw has been discovered in YunaiV/zhijiantianya ruoyi-vue-pro up to 2026.08. Affected by this vulnerability ...
CVE-2026-97324HIGH7.3A vulnerability was identified in YunaiV/zhijiantianya ruoyi-vue-pro up to 2026.08. Affected is the function updateDemoO...
CVE-2026-96883HIGH8.8pgcollection is an open source extension to PostgreSQL. A type confusion issue in AWS pgcollection 2.0.0 through 2.1.1 m...
CVE-2026-93354HIGH8.1Taskview Community before 1.56.0 contains a missing authentication vulnerability that allows unauthenticated attackers t...
CVE-2026-93291CRITICAL9.4Omni C20 lacks proper certificate validation which could allow an attacker to perform a man-in-the-middle attack which c...
CVE-2026-93290MEDIUM5.5Omni C20 uses hard-coded credentials that could allow an attacker to monitor log files to obtain credentials to access i...
CVE-2026-93289HIGH7.5The affected products are vulnerable to command injection attack that could allow an unauthenticated attacker to execute...
CVE-2026-88956MEDIUM6.8The Botslab G980H dash camera firmware contains an authentication vulnerability in the root account exposed through the ...
CVE-2026-88761MEDIUM5.3The Botslab G980H dash camera firmware generates the default WiFi password using predictable device information, portion...
CVE-2026-85496HIGH8.8The Botslab G980H dash camera firmware generates session identifiers using a small sequential value space rather than a ...
CVE-2026-84399HIGH8.8The Botslab G980H dash camera firmware contains an authorization vulnerability in its session based command functionalit...
CVE-2026-82566HIGH8.8The Botslab G980H dash camera firmware contains a session management vulnerability in which authentication state can rem...
CVE-2026-82372HIGH8.5Improper handling of sensitive data during IPsec policy creation and modification in Brocade SANnav versions before 3.0....
CVE-2026-82164HIGH7.1Dell Trusted Device Client, versions prior to 8.1.359.0, contain an Incorrect Permission Assignment for Critical Resourc...
CVE-2026-77967HIGH8.1The Botslab G980H dash camera firmware accepts a reusable authentication value without adequately verifying its freshnes...
CVE-2026-48543MEDIUM5.4Krayin CRM through 2.2.6 contains a stored client-side template injection vulnerability that allows authenticated attack...
CVE-2026-48542MEDIUM5.4Krayin CRM through 2.2.6 contains a stored client-side template injection vulnerability that allows authenticated attack...
CVE-2026-48541MEDIUM5.4Krayin CRM through 2.2.6 contains a stored client-side template injection vulnerability that allows authenticated attack...
CVE-2026-48540MEDIUM5.4Krayin CRM through 2.2.6 contains a stored client-side template injection vulnerability that allows authenticated attack...
CVE-2026-97323MEDIUM6.3A vulnerability was determined in YunaiV/zhijiantianya ruoyi-vue-pro up to 2026.08. This impacts the function getOrigina...
CVE-2026-97322MEDIUM4.3A vulnerability was found in YunaiV/zhijiantianya ruoyi-vue-pro up to 2026.08. This affects an unknown function of the f...
CVE-2026-97321MEDIUM6.3A vulnerability has been found in YunaiV/zhijiantianya ruoyi-vue-pro up to 2026.08. The impacted element is the function...
CVE-2026-97320MEDIUM6.3A flaw has been found in YunaiV/zhijiantianya ruoyi-vue-pro up to 2026.08. The affected element is the function AiKnowle...
CVE-2026-96749HIGH8.4An integer overflow in the BSON document encoding component of the MongoDB Python Driver's bundled native extension may ...
CVE-2026-96748MEDIUM6.5PyMongo's connection string parsing decodes percent-encoded characters in the host portion before the host list is separ...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now