2026 CVE Vulnerabilities
62,806 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-48866 | CRITICAL | 9.6 | 0.5% | Jun 1, 2026 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Rocketgenius Inc. Gravit... |
| CVE-2026-48865 | HIGH | 7.1 | 0.2% | Jun 1, 2026 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ThimPress LearnPre... |
| CVE-2026-48839 | HIGH | 7.1 | 0.2% | Jun 1, 2026 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in VeronaLabs WP Stat... |
| CVE-2026-48559 | MEDIUM | 5.4 | 0.2% | Jun 1, 2026 | Lightweight Music Server (LMS) though 3.76.0 contains a stored cross-site scripting vulnerability that allows attackers ... |
| CVE-2026-42683 | HIGH | 7.1 | 0.1% | Jun 1, 2026 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in e4jvikwp VikBookin... |
| CVE-2026-42682 | CRITICAL | 9.1 | 0.3% | Jun 1, 2026 | Missing Authorization vulnerability in Tomdever wpForo Forum allows Exploiting Incorrectly Configured Access Control Sec... |
| CVE-2026-42681 | HIGH | 7.1 | 0.1% | Jun 1, 2026 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in E2Pdf.Com e2pdf al... |
| CVE-2026-42680 | CRITICAL | 9.8 | 0.3% | Jun 1, 2026 | Incorrect Privilege Assignment vulnerability in Wasiliy Strecker / ContestGallery developer Contest Gallery Pro allows P... |
| CVE-2026-42251 | HIGH | 8.7 | 0.4% | Jun 1, 2026 | Use of hard-coded credentials in KS-SOMED allowed an unauthorized attacker access to FTP server that hosted the applicat... |
| CVE-2026-37221 | HIGH | 7.5 | 0.3% | Jun 1, 2026 | FlexRIC v2.0.0 crashes when receiving a RIC_SUBSCRIPTION_RESPONSE with an unknown ric_id that has no corresponding pendi... |
| CVE-2026-37220 | HIGH | 7.5 | 0.3% | Jun 1, 2026 | FlexRIC v2.0.0 crashes when an SCTP association is closed before an E2_SETUP_REQUEST is sent. The near-RT RIC assumes a ... |
| CVE-2026-10533 | MEDIUM | 5 | 0.2% | Jun 1, 2026 | A flaw was found in OpenShift Container Platform. Completed pods with restartPolicy: Never do not count toward ResourceQ... |
| CVE-2026-10267 | LOW | 3.3 | 0.1% | Jun 1, 2026 | A security flaw has been discovered in janet-lang janet up to 1.41.0. This affects the function doframe of the file src/... |
| CVE-2026-10265 | MEDIUM | 6.3 | 0.2% | Jun 1, 2026 | A vulnerability was identified in itsourcecode Content Management System 1.0. Affected by this issue is some unknown fun... |
| CVE-2026-10264 | LOW | 3.5 | 0.3% | Jun 1, 2026 | A vulnerability was determined in lharries whatsapp-mcp 0.0.1. Affected by this vulnerability is the function SendMessag... |
| CVE-2026-10263 | HIGH | 7.3 | 0.3% | Jun 1, 2026 | A vulnerability was found in SourceCodester Computer Repair Shop Management System up to 1.0. Affected is an unknown fun... |
| CVE-2026-10262 | HIGH | 7.3 | 0.3% | Jun 1, 2026 | A vulnerability has been found in code-projects Real State Services 1.0. This impacts an unknown function of the file /l... |
| CVE-2026-10261 | HIGH | 7.3 | 0.3% | Jun 1, 2026 | A flaw has been found in CodeAstro Online Job Portal 1.0. This affects an unknown function of the file /users/applicatio... |
| CVE-2026-10260 | HIGH | 7.3 | 0.3% | Jun 1, 2026 | A vulnerability was detected in CodeAstro Online Job Portal 1.0. The impacted element is an unknown function of the file... |
| CVE-2026-10259 | HIGH | 8.8 | 0.5% | Jun 1, 2026 | A security vulnerability has been detected in H3C Magic B0 up to 100R002. The affected element is the function SetMobile... |
| CVE-2026-0826 | CRITICAL | 9.2 | 32.2% | Jun 1, 2026 | In certain scenarios when the admin has enabled Interactive Connectivity Establishment (ICE), a buffer overflow could en... |
| CVE-2026-9309 | MEDIUM | 5.4 | 0.2% | Jun 1, 2026 | Firefox for iOS Reader View did not properly escape HTML tags in JSON-LD metadata. A malicious page could inject markup ... |
| CVE-2026-9308 | MEDIUM | 5.4 | 0.2% | Jun 1, 2026 | Firefox for iOS Reader View replaced page content in its HTML template before replacing other internal placeholders. A m... |
| CVE-2026-34193 | MEDIUM | 4.3 | 0.1% | Jun 1, 2026 | Kernel software installed and running inside a Guest/Host VM may post improper commands to the GPU Firmware to trigger a... |
| CVE-2026-10532 | LOW | 2.9 | 0.3% | Jun 1, 2026 | Deserialization of untrusted data vulnerability in QOS.CH Sarl logback logback-core (HardenedObjectInputStream (logback-... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now