2026 CVE Vulnerabilities

61,683 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-48111HIGH7.17-Zip is a file archiver with a high compression ratio. Versions 9.21 through 26.00 contain an off-by-one out-of-bounds ...
CVE-2026-48104MEDIUM4.27-Zip is a file archiver with a high compression ratio. Versions 9.18 through 26.00 contain an uninitialized heap read i...
CVE-2026-48103HIGH7.17-Zip is a file archiver with a high compression ratio. Versions 9.34 through 26.00 contain an off-by-one heap out-of-bo...
CVE-2026-11339HIGH8.8A vulnerability was detected in D-Link DWR-M920 up to 1.1.50. The affected element is the function sub_41CF20 of the fil...
CVE-2026-11338LOW2.4A security vulnerability has been detected in SourceCodester Ship Ferry Ticket Reservation System 1.0. Impacted is an un...
CVE-2026-11337MEDIUM4.3A vulnerability was found in tittuvarghese CollegeManagementSystem 3e476335cfbfb9a049e09f474c7ec885f69a9df3/a38852979f7e...
CVE-2026-9270CRITICAL9.1DataDog::DogStatsd versions through 0.07 for Perl allow metric injections. DataDog::DogStatsd does not properly sanitis...
CVE-2026-48102MEDIUM4.37-Zip is a file archiver with a high compression ratio. Versions 9.11 through 26.00 contain a heap out-of-bounds read of...
CVE-2026-48101MEDIUM6.57-Zip is a file archiver with a high compression ratio. Versions 9.21 through 26.00 contain an An uninitialized memory d...
CVE-2026-11362CRITICAL9.8DataDog::DogStatsd versions through 0.07 for Perl allow metric injections from event tags. DataDog::DogStatsd does not ...
CVE-2026-11336MEDIUM6.3A vulnerability has been found in tittuvarghese CollegeManagementSystem 3e476335cfbfb9a049e09f474c7ec885f69a9df3/a388529...
CVE-2026-6209Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2026-6208Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2026-6207Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2026-48095HIGH8.87-Zip is a file archiver with a high compression ratio. Versions 26.00 and prior contain a heap buffer overflow vulnerab...
CVE-2026-48092HIGH8.17-Zip is a file archiver with a high compression ratio. Versions 9.34 through 26.00 contain a heap memory disclosure via...
CVE-2026-38579MEDIUM6.1Multiple reflected Cross-Site Scripting (XSS) vulnerabilities in damasac thaipalliative_lte through version 3.0 allow re...
CVE-2026-37737MEDIUM6.5sanic-cors version 2.2.0 and prior contains an improper regular expression in the try_match() function in sanic_cors/cor...
CVE-2026-11335MEDIUM6.3A flaw has been found in tittuvarghese CollegeManagementSystem 3e476335cfbfb9a049e09f474c7ec885f69a9df3/a38852979f7e27ae...
CVE-2026-11334HIGH7.3A vulnerability was detected in tittuvarghese CollegeManagementSystem 3e476335cfbfb9a049e09f474c7ec885f69a9df3/a38852979...
CVE-2026-11333MEDIUM6.3A security vulnerability has been detected in tittuvarghese CollegeManagementSystem 3e476335cfbfb9a049e09f474c7ec885f69a...
CVE-2026-10879CRITICAL9.8DBI versions before 1.648 for Perl have a heap overflow when preparsing SQL statements with more than 9 binders. The pr...
CVE-2026-50235MEDIUM6.1Lyrion Music Server 9.2.0 contains a reflected cross-site scripting vulnerability in advanced search parameters that fai...
CVE-2026-50234HIGH8.7Lyrion Music Server 9.2.0 contains a path traversal vulnerability that allows unauthenticated attackers to read arbitrar...
CVE-2026-50233MEDIUM6.9Lyrion Music Server 9.2.0 contains an arbitrary directory listing vulnerability in its readdirectory query, exposed thro...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now