2026 CVE Vulnerabilities
61,772 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-10568 | MEDIUM | 6.3 | 0.2% | Jun 2, 2026 | A vulnerability was detected in itsourcecode Fees Management System 1.0. Affected is an unknown function of the file /ma... |
| CVE-2026-10567 | LOW | 3.5 | 0.2% | Jun 2, 2026 | A security vulnerability has been detected in 1Panel-dev CordysCRM up to 1.4.1. This impacts the function Save of the fi... |
| CVE-2026-10566 | MEDIUM | 5.3 | 0.1% | Jun 2, 2026 | A weakness has been identified in FoundationAgents MetaGPT up to 0.8.2. This affects the function Message.check_instruct... |
| CVE-2026-10565 | LOW | 3.1 | 0.2% | Jun 2, 2026 | A security flaw has been discovered in Open5GS up to 2.7.6. The impacted element is the function gmm_state_security_mode... |
| CVE-2026-10510 | MEDIUM | 6.1 | 0.2% | Jun 2, 2026 | Cross-Site Scripting (XSS) in GeniexWebView component in Transsion AI Assistant Lifestyle application (com.transsion.aia... |
| CVE-2026-10100 | MEDIUM | 4.4 | 0.2% | Jun 2, 2026 | The Simple Custom Login Page plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the color settings fi... |
| CVE-2026-10559 | MEDIUM | 6.3 | 0.2% | Jun 2, 2026 | A flaw has been found in SourceCodester Pizzafy Ecommerce System 1.0. The affected element is an unknown function of the... |
| CVE-2026-10558 | MEDIUM | 6.3 | 0.2% | Jun 2, 2026 | A vulnerability was detected in SourceCodester Pizzafy Ecommerce System 1.0. Impacted is an unknown function of the file... |
| CVE-2026-10550 | MEDIUM | 6.3 | 1.1% | Jun 2, 2026 | A weakness has been identified in elunez eladmin up to 2.7. This vulnerability affects unknown code of the file App.java... |
| CVE-2026-10548 | MEDIUM | 5.3 | 0.1% | Jun 2, 2026 | A security flaw has been discovered in NousResearch hermes-agent up to 2026.4.23. This affects the function _sync_anthro... |
| CVE-2026-10529 | LOW | 2.4 | 0.2% | Jun 2, 2026 | A weakness has been identified in westboy CicadasCMS up to 2431154dac8d0735e04f1fd2a3c3556668fc8dab. Impacted is an unkn... |
| CVE-2026-9050 | MEDIUM | 4.3 | 0.2% | Jun 2, 2026 | The Slider Revolution plugin for WordPress in versions 6.0.0-6.7.55 and 7.0.0-7.0.14 is vulnerable to unauthorized modif... |
| CVE-2026-9048 | MEDIUM | 4.3 | 0.2% | Jun 2, 2026 | The Slider Revolution plugin for WordPress is vulnerable to Sensitive Information Exposure in versions 7.0.0 - 7.0.14, v... |
| CVE-2026-10528 | LOW | 3.3 | 0.1% | Jun 2, 2026 | A security flaw has been discovered in Orthanc DICOM Server up to 1.12.11. This issue affects the function DcmItem::read... |
| CVE-2026-10514 | LOW | 2.4 | 0.3% | Jun 2, 2026 | A vulnerability has been found in 1Panel-dev CordysCRM up to 1.6.2. This affects an unknown function of the file backend... |
| CVE-2026-10302 | MEDIUM | 6.3 | 0.2% | Jun 2, 2026 | A flaw has been found in itsourcecode Fees Management System 1.0. The impacted element is an unknown function of the fil... |
| CVE-2026-10301 | MEDIUM | 4.3 | 0.3% | Jun 2, 2026 | A vulnerability was detected in itsourcecode Fees Management System 1.0. The affected element is an unknown function of ... |
| CVE-2026-28511 | MEDIUM | 4.3 | 0.2% | Jun 1, 2026 | eLabFTW is an open source electronic lab notebook. Prior to version 5.4.2, in certain cases, an authenticated user perfo... |
| CVE-2026-25879 | CRITICAL | 9.8 | 0.4% | Jun 1, 2026 | Langroid is a framework for building large-language-model-powered applications. Prior to version 0.63.0, SQLChatAgent ex... |
| CVE-2026-25277 | HIGH | 8.8 | 0.1% | Jun 1, 2026 | Memory corruption while using Strongbox due to buffer overflow. |
| CVE-2026-25276 | HIGH | 8.8 | 0.1% | Jun 1, 2026 | Memory corruption while using Strongbox due to missing bounds check. |
| CVE-2026-25260 | HIGH | 7 | 0.1% | Jun 1, 2026 | Memory Corruption when accessing shared buffers without validation of concurrent user-mode input modifications. |
| CVE-2026-25259 | HIGH | 7.8 | 0.1% | Jun 1, 2026 | Memory corruption while processing multiple IOCTL command for escape operations. |
| CVE-2026-25258 | HIGH | 7.8 | 0.1% | Jun 1, 2026 | Memory corruption while processing IOCTL calls for escape operations. |
| CVE-2026-24782 | HIGH | 8.8 | 0.7% | Jun 1, 2026 | Kiteworks is a private data network (PDN). Prior to version 9.3.0,ultiple SQL Injection vulnerabilities in Kiteworks Sec... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now