2026 CVE Vulnerabilities

61,772 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-24761MEDIUM4.3Kiteworks is a private data network (PDN). Prior to version 9.3.0, an Insecure Direct Object Reference (IDOR) vulnerabil...
CVE-2026-24756MEDIUM4.3Kiteworks is a private data network (PDN). Prior to version 9.3.0, an Insecure Direct Object Reference (IDOR) vulnerabil...
CVE-2026-24755MEDIUM5.4Kiteworks is a private data network (PDN). Prior to version 9.3.0, an Insecure Direct Object Reference (IDOR) vulnerabil...
CVE-2026-24754MEDIUM5.4Kiteworks is a private data network (PDN). Prior to version 9.3.0, a stored XSS vulnerability in Kiteworks Secure Data F...
CVE-2026-24753MEDIUM6.5Kiteworks is a private data network (PDN). Prior to version 9.3.0, an Insecure Direct Object Reference (IDOR) vulnerabil...
CVE-2026-24752HIGH8.2Kiteworks is a private data network (PDN). Prior to version 9.3.0, a reflected XSS vulnerability in Kiteworks Secure Dat...
CVE-2026-24092HIGH7.2Memory Corruption when processing fastboot commands to set display mode.
CVE-2026-24091HIGH7.2Memory corruption while processing fastboot commands with improperly formatted input.
CVE-2026-24090HIGH7.1Cryptographic issue while processing partition table entries allows unauthorized modification of boot flow.
CVE-2026-24089HIGH7.2Memory corruption while processing fastboot commands with invalid input.
CVE-2026-24088HIGH8.2Cryptographic Issue while processing a specific partition which allows unauthorized write access to load a customized bo...
CVE-2026-24087HIGH7.2Memory corruption while processing fastboot OEM commands.
CVE-2026-24085HIGH7.2Memory Corruption when processing display command line information due to improper initialization of a variable.
CVE-2026-10300LOW3.7A security vulnerability has been detected in SGLang 0.5.10.post1. Impacted is an unknown function of the file python/sg...
CVE-2026-10299LOW3.8A weakness has been identified in code-projects Online Hospital Management System 1.0. This issue affects some unknown p...
CVE-2026-10298LOW3.3A security flaw has been discovered in ggml-org whisper.cpp up to 1.8.2. This vulnerability affects the function whisper...
CVE-2026-10297MEDIUM6.3A vulnerability was identified in itsourcecode Fees Management System 1.0. This affects an unknown part of the file /man...
CVE-2026-10296MEDIUM6.3A vulnerability was determined in itsourcecode Fees Management System 1.0. Affected by this issue is some unknown functi...
CVE-2026-10295LOW3.3A vulnerability was found in SourceCodester Customer Review App 1.0. Affected by this vulnerability is the function add_...
CVE-2026-49491HIGH8.8Pixa Bank 2.0 contains an SQL injection vulnerability that allows unauthenticated attackers to extract sensitive data by...
CVE-2026-40965CRITICAL10Cloud Foundry UAA versions v76.12.0 through v78.12.0 are vulnerable to a private key exposure. The server contains a vul...
CVE-2026-40964HIGH7.5Authentication Bypass in cf-auth-proxy in Cloud Foundry Foundation all installations allows an unauthenticated remote at...
CVE-2026-28586LOW3.3In multiple functions of AppOpsService.java, there is a possible missing permission check due to a permissions bypass. T...
CVE-2026-28581MEDIUM4In fixInitiatingUserIfNecessary of CallIntentProcessor.java, there is a possible way to make an emergency call due to a ...
CVE-2026-28580HIGH7.8In multiple functions, there is a possible desync in persistence due to an incorrect bounds check. This could lead to lo...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now