2026 CVE Vulnerabilities

61,932 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-40546HIGH8.7SOPlanning is vulnerable to SQL Injection across multiple endpoints and parameters. Attacker with low privileges can inj...
CVE-2026-40545MEDIUM5.1SOPlanning is vulnerable to Reflected XSS via the taches parameter. An attacker can craft a malicious URL which, when op...
CVE-2026-40544MEDIUM5.1SOPlanning is vulnerable to Stored Cross-Site Scripting (XSS) via /process/upload_backup endpoint. An authenticated atta...
CVE-2026-40543HIGH8.8SOPlanning does not enforce authorization for backup functionalities. An unauthenticated attacker can directly query bac...
CVE-2026-32325HIGH8.5Privilege chaining issue exists in ServerView Agents for Windows V11.60.04 and earlier. If this vulnerability is exploit...
CVE-2026-27788HIGH8.5Incorrect permission assignment for critical resource issue exists in ServerView Agents for Windows V11.60.04 and earlie...
CVE-2026-10517Rejected reason: Retracted following review by Red Hat Product Security and confirmation from the upstream Clair/Clairco...
CVE-2026-10243HIGH7.3A security vulnerability has been detected in code-projects Smart Parking System 1.0. Affected is an unknown function of...
CVE-2026-10242MEDIUM6.3A weakness has been identified in itsourcecode Content Management System 1.0. This impacts an unknown function of the fi...
CVE-2026-10241MEDIUM6.3A security flaw has been discovered in jeecgboot The server processes these URLs up to 3.9.1. This affects the function ...
CVE-2026-10240MEDIUM6.3A vulnerability was identified in JeecgBoot up to 3.9.2. The impacted element is an unknown function of the file /airag/...
CVE-2026-10239MEDIUM6.3A vulnerability was determined in JeecgBoot up to 3.9.2. The affected element is the function WordUtil.addImage of the f...
CVE-2026-10237MEDIUM4.7A vulnerability was found in SourceCodester Water Billing Management System 1.0. Impacted is an unknown function of the ...
CVE-2026-10236HIGH7.3A vulnerability has been found in SourceCodester Water Billing Management System 1.0. This issue affects some unknown pr...
CVE-2026-45192MEDIUM6.5A bug in the GET `/api/v2/connections/{connection_id}` REST API endpoint in Apache Airflow allowed an authenticated UI/A...
CVE-2026-35563HIGH8.5It was identified that the LDAP client implementation in version 2.1.7 does not verify if the server certificate matches...
CVE-2026-10235MEDIUM6.3A flaw has been found in CodeAstro Ingredients Stock Management System 1.0. This vulnerability affects unknown code of t...
CVE-2026-10234LOW3.5A vulnerability was detected in Mettle sendportal up to 3.0.1. This affects an unknown part of the file /webview/ of the...
CVE-2026-10233LOW3.3A security vulnerability has been detected in Assimp up to 6.0.4. Affected by this issue is the function HL1MDLLoader::r...
CVE-2026-10232MEDIUM5.3A weakness has been identified in Assimp up to 6.0.4. Affected by this vulnerability is the function aiNode::~aiNode of ...
CVE-2026-10231MEDIUM5.3A security flaw has been discovered in Assimp up to 6.0.4. Affected is the function HL1MDLLoader::extract_anim_value of ...
CVE-2026-10230MEDIUM5.3A vulnerability was identified in Assimp up to 6.0.4. This impacts the function Assimp::MDL::HalfLife::HL1MDLLoader::rea...
CVE-2026-10229MEDIUM5.3A vulnerability was determined in Assimp up to 6.0.4. This affects the function HL1MDLLoader::read_meshes of the file HL...
CVE-2026-10228LOW3.5A vulnerability was found in raisulislamg4 student_management_system_by_php up to 310d950e09013d5133c6b9210aff9444382d16...
CVE-2026-10227HIGH7.3A vulnerability has been found in raisulislamg4 student_management_system_by_php up to 310d950e09013d5133c6b9210aff94443...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now