2026 CVE Vulnerabilities
61,772 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-24761 | MEDIUM | 4.3 | 0.1% | Jun 1, 2026 | Kiteworks is a private data network (PDN). Prior to version 9.3.0, an Insecure Direct Object Reference (IDOR) vulnerabil... |
| CVE-2026-24756 | MEDIUM | 4.3 | 0.2% | Jun 1, 2026 | Kiteworks is a private data network (PDN). Prior to version 9.3.0, an Insecure Direct Object Reference (IDOR) vulnerabil... |
| CVE-2026-24755 | MEDIUM | 5.4 | 0.1% | Jun 1, 2026 | Kiteworks is a private data network (PDN). Prior to version 9.3.0, an Insecure Direct Object Reference (IDOR) vulnerabil... |
| CVE-2026-24754 | MEDIUM | 5.4 | 0.1% | Jun 1, 2026 | Kiteworks is a private data network (PDN). Prior to version 9.3.0, a stored XSS vulnerability in Kiteworks Secure Data F... |
| CVE-2026-24753 | MEDIUM | 6.5 | 0.2% | Jun 1, 2026 | Kiteworks is a private data network (PDN). Prior to version 9.3.0, an Insecure Direct Object Reference (IDOR) vulnerabil... |
| CVE-2026-24752 | HIGH | 8.2 | 0.3% | Jun 1, 2026 | Kiteworks is a private data network (PDN). Prior to version 9.3.0, a reflected XSS vulnerability in Kiteworks Secure Dat... |
| CVE-2026-24092 | HIGH | 7.2 | 0.1% | Jun 1, 2026 | Memory Corruption when processing fastboot commands to set display mode. |
| CVE-2026-24091 | HIGH | 7.2 | 0.1% | Jun 1, 2026 | Memory corruption while processing fastboot commands with improperly formatted input. |
| CVE-2026-24090 | HIGH | 7.1 | 0.1% | Jun 1, 2026 | Cryptographic issue while processing partition table entries allows unauthorized modification of boot flow. |
| CVE-2026-24089 | HIGH | 7.2 | 0.1% | Jun 1, 2026 | Memory corruption while processing fastboot commands with invalid input. |
| CVE-2026-24088 | HIGH | 8.2 | 0.1% | Jun 1, 2026 | Cryptographic Issue while processing a specific partition which allows unauthorized write access to load a customized bo... |
| CVE-2026-24087 | HIGH | 7.2 | 0.1% | Jun 1, 2026 | Memory corruption while processing fastboot OEM commands. |
| CVE-2026-24085 | HIGH | 7.2 | 0.1% | Jun 1, 2026 | Memory Corruption when processing display command line information due to improper initialization of a variable. |
| CVE-2026-10300 | LOW | 3.7 | 0.4% | Jun 1, 2026 | A security vulnerability has been detected in SGLang 0.5.10.post1. Impacted is an unknown function of the file python/sg... |
| CVE-2026-10299 | LOW | 3.8 | 0.3% | Jun 1, 2026 | A weakness has been identified in code-projects Online Hospital Management System 1.0. This issue affects some unknown p... |
| CVE-2026-10298 | LOW | 3.3 | 0.1% | Jun 1, 2026 | A security flaw has been discovered in ggml-org whisper.cpp up to 1.8.2. This vulnerability affects the function whisper... |
| CVE-2026-10297 | MEDIUM | 6.3 | 0.2% | Jun 1, 2026 | A vulnerability was identified in itsourcecode Fees Management System 1.0. This affects an unknown part of the file /man... |
| CVE-2026-10296 | MEDIUM | 6.3 | 0.3% | Jun 1, 2026 | A vulnerability was determined in itsourcecode Fees Management System 1.0. Affected by this issue is some unknown functi... |
| CVE-2026-10295 | LOW | 3.3 | 0.1% | Jun 1, 2026 | A vulnerability was found in SourceCodester Customer Review App 1.0. Affected by this vulnerability is the function add_... |
| CVE-2026-49491 | HIGH | 8.8 | 0.3% | Jun 1, 2026 | Pixa Bank 2.0 contains an SQL injection vulnerability that allows unauthenticated attackers to extract sensitive data by... |
| CVE-2026-40965 | CRITICAL | 10 | 0.3% | Jun 1, 2026 | Cloud Foundry UAA versions v76.12.0 through v78.12.0 are vulnerable to a private key exposure. The server contains a vul... |
| CVE-2026-40964 | HIGH | 7.5 | 0.4% | Jun 1, 2026 | Authentication Bypass in cf-auth-proxy in Cloud Foundry Foundation all installations allows an unauthenticated remote at... |
| CVE-2026-28586 | LOW | 3.3 | 0.1% | Jun 1, 2026 | In multiple functions of AppOpsService.java, there is a possible missing permission check due to a permissions bypass. T... |
| CVE-2026-28581 | MEDIUM | 4 | 0.1% | Jun 1, 2026 | In fixInitiatingUserIfNecessary of CallIntentProcessor.java, there is a possible way to make an emergency call due to a ... |
| CVE-2026-28580 | HIGH | 7.8 | 0.1% | Jun 1, 2026 | In multiple functions, there is a possible desync in persistence due to an incorrect bounds check. This could lead to lo... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now