2026 CVE Vulnerabilities

62,885 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-9309MEDIUM5.4Firefox for iOS Reader View did not properly escape HTML tags in JSON-LD metadata. A malicious page could inject markup ...
CVE-2026-9308MEDIUM5.4Firefox for iOS Reader View replaced page content in its HTML template before replacing other internal placeholders. A m...
CVE-2026-34193MEDIUM4.3Kernel software installed and running inside a Guest/Host VM may post improper commands to the GPU Firmware to trigger a...
CVE-2026-10532LOW2.9Deserialization of untrusted data vulnerability in QOS.CH Sarl logback logback-core (HardenedObjectInputStream (logback-...
CVE-2026-10258MEDIUM6.3A weakness has been identified in itsourcecode Content Management System 1.0. Impacted is an unknown function of the fil...
CVE-2026-10257MEDIUM6.3A security flaw has been discovered in itsourcecode Content Management System 1.0. This issue affects some unknown proce...
CVE-2026-10256MEDIUM6.3A vulnerability was identified in itsourcecode Content Management System 1.0. This vulnerability affects unknown code of...
CVE-2026-10255MEDIUM5.5A vulnerability has been found in SourceCodester Pharmacy Sales and Inventory System 1.0. Affected by this vulnerability...
CVE-2026-10254MEDIUM5.5A flaw has been found in SourceCodester Pet Grooming Management Software 1.0. Affected is an unknown function of the fil...
CVE-2026-10253HIGH7.3A vulnerability was detected in itsourcecode Online House Rental System 1.0. This impacts an unknown function of the fil...
CVE-2026-10252HIGH7.3A security vulnerability has been detected in itsourcecode Online House Rental System 1.0. This affects an unknown funct...
CVE-2026-10251HIGH7.3A weakness has been identified in itsourcecode Online House Rental System 1.0. The impacted element is an unknown functi...
CVE-2026-49328MEDIUM5.3Server-Side Request Forgery (SSRF) in the UrlImageConverter component of Apache Fesod (Incubating) fesod-sheet before 2....
CVE-2026-25600MEDIUM6.4The PDBM application relies on a static, hard‑coded secret embedded in the PDBM.exe executable. This secret is used by ...
CVE-2026-25599MEDIUM6.3Missing authentication and clear‑text transmission of data from the heat pumps to the control server, combined with the ...
CVE-2026-10250HIGH7.3A security flaw has been discovered in itsourcecode Online Blood Bank Management System 1.0. The affected element is an ...
CVE-2026-10249HIGH7.3A vulnerability was identified in itsourcecode Online Blood Bank Management System 1.0. Impacted is an unknown function ...
CVE-2026-10248MEDIUM4.7A vulnerability was determined in SourceCodester Pharmacy Sales and Inventory System up to 1.0. This issue affects the f...
CVE-2026-10247LOW3.5A vulnerability was found in SourceCodester Pharmacy Sales and Inventory System 1.0. This vulnerability affects the func...
CVE-2026-10246LOW3.5A vulnerability has been found in SourceCodester Pharmacy Sales and Inventory System 1.0. This affects the function crea...
CVE-2026-10245LOW3.5A flaw has been found in SourceCodester Pharmacy Sales and Inventory System 1.0. Affected by this issue is the function ...
CVE-2026-10244LOW3.5A vulnerability was detected in SourceCodester Pharmacy Sales and Inventory System 1.0. Affected by this vulnerability i...
CVE-2026-9024HIGH8.7A Stored Cross-site Scripting (XSS) vulnerability affecting Process Experience Studio in DELMIA Service Process Engineer...
CVE-2026-8474MEDIUM5.3A vulnerability was discovered on Stormshield Network Security  * 4.3.0 to 4.3.41,  * 4.8.0 to 4.8.15,  * ...
CVE-2026-7858CRITICAL9.8A Deserialization of Untrusted Data vulnerability affecting Teamwork Cloud from No Magic Release 2022x through No Magic ...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now