2026 CVE Vulnerabilities

61,772 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-10568MEDIUM6.3A vulnerability was detected in itsourcecode Fees Management System 1.0. Affected is an unknown function of the file /ma...
CVE-2026-10567LOW3.5A security vulnerability has been detected in 1Panel-dev CordysCRM up to 1.4.1. This impacts the function Save of the fi...
CVE-2026-10566MEDIUM5.3A weakness has been identified in FoundationAgents MetaGPT up to 0.8.2. This affects the function Message.check_instruct...
CVE-2026-10565LOW3.1A security flaw has been discovered in Open5GS up to 2.7.6. The impacted element is the function gmm_state_security_mode...
CVE-2026-10510MEDIUM6.1Cross-Site Scripting (XSS) in GeniexWebView component in Transsion AI Assistant Lifestyle application (com.transsion.aia...
CVE-2026-10100MEDIUM4.4The Simple Custom Login Page plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the color settings fi...
CVE-2026-10559MEDIUM6.3A flaw has been found in SourceCodester Pizzafy Ecommerce System 1.0. The affected element is an unknown function of the...
CVE-2026-10558MEDIUM6.3A vulnerability was detected in SourceCodester Pizzafy Ecommerce System 1.0. Impacted is an unknown function of the file...
CVE-2026-10550MEDIUM6.3A weakness has been identified in elunez eladmin up to 2.7. This vulnerability affects unknown code of the file App.java...
CVE-2026-10548MEDIUM5.3A security flaw has been discovered in NousResearch hermes-agent up to 2026.4.23. This affects the function _sync_anthro...
CVE-2026-10529LOW2.4A weakness has been identified in westboy CicadasCMS up to 2431154dac8d0735e04f1fd2a3c3556668fc8dab. Impacted is an unkn...
CVE-2026-9050MEDIUM4.3The Slider Revolution plugin for WordPress in versions 6.0.0-6.7.55 and 7.0.0-7.0.14 is vulnerable to unauthorized modif...
CVE-2026-9048MEDIUM4.3The Slider Revolution plugin for WordPress is vulnerable to Sensitive Information Exposure in versions 7.0.0 - 7.0.14, v...
CVE-2026-10528LOW3.3A security flaw has been discovered in Orthanc DICOM Server up to 1.12.11. This issue affects the function DcmItem::read...
CVE-2026-10514LOW2.4A vulnerability has been found in 1Panel-dev CordysCRM up to 1.6.2. This affects an unknown function of the file backend...
CVE-2026-10302MEDIUM6.3A flaw has been found in itsourcecode Fees Management System 1.0. The impacted element is an unknown function of the fil...
CVE-2026-10301MEDIUM4.3A vulnerability was detected in itsourcecode Fees Management System 1.0. The affected element is an unknown function of ...
CVE-2026-28511MEDIUM4.3eLabFTW is an open source electronic lab notebook. Prior to version 5.4.2, in certain cases, an authenticated user perfo...
CVE-2026-25879CRITICAL9.8Langroid is a framework for building large-language-model-powered applications. Prior to version 0.63.0, SQLChatAgent ex...
CVE-2026-25277HIGH8.8Memory corruption while using Strongbox due to buffer overflow.
CVE-2026-25276HIGH8.8Memory corruption while using Strongbox due to missing bounds check.
CVE-2026-25260HIGH7Memory Corruption when accessing shared buffers without validation of concurrent user-mode input modifications.
CVE-2026-25259HIGH7.8Memory corruption while processing multiple IOCTL command for escape operations.
CVE-2026-25258HIGH7.8Memory corruption while processing IOCTL calls for escape operations.
CVE-2026-24782HIGH8.8Kiteworks is a private data network (PDN). Prior to version 9.3.0,ultiple SQL Injection vulnerabilities in Kiteworks Sec...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now