2026 CVE Vulnerabilities
63,076 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-42673 | HIGH | 7.5 | 0.2% | Jun 1, 2026 | Insertion of Sensitive Information Into Sent Data vulnerability in Logtivity Activity Logs Activity Logs, User Activity ... |
| CVE-2026-42672 | CRITICAL | 9.3 | 0.2% | Jun 1, 2026 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Wp Directory Kit W... |
| CVE-2026-42671 | MEDIUM | 6.5 | 0.2% | Jun 1, 2026 | Missing Authorization vulnerability in Paolo GeoDirectory allows Exploiting Incorrectly Configured Access Control Securi... |
| CVE-2026-38950 | HIGH | 7.8 | 0.1% | Jun 1, 2026 | An issue in ESA AnomalyMatch before 1.3.1 allow attackers to execute arbitrary code via crafted model checkpoint files. ... |
| CVE-2026-37227 | HIGH | 7.5 | 0.4% | Jun 1, 2026 | FlexRIC v2.0.0 contains reachable assert(0) calls in stub message handlers for whitelisted but unimplemented E2AP messag... |
| CVE-2026-37225 | HIGH | 7.5 | 0.4% | Jun 1, 2026 | FlexRIC v2.0.0 crashes when the iApp receives an E42_RIC_SUBSCRIPTION_REQUEST with an empty ricEventTriggerDefinition fi... |
| CVE-2026-37224 | HIGH | 7.5 | 0.4% | Jun 1, 2026 | FlexRIC v2.0.0 crashes when receiving a duplicate E2_SETUP_REQUEST from the same or spoofed E2 Node. The iApp registry e... |
| CVE-2026-37223 | HIGH | 7.5 | 0.4% | Jun 1, 2026 | FlexRIC v2.0.0 contains a reachable assertion in the iApp message dispatcher. The dispatcher validates incoming E2AP mes... |
| CVE-2026-37222 | HIGH | 7.5 | 0.4% | Jun 1, 2026 | FlexRIC v2.0.0 uses hardcoded assertions to validate Information Element (IE) counts in decoded E2AP messages. A remote ... |
| CVE-2026-10275 | MEDIUM | 5 | 0.3% | Jun 1, 2026 | A flaw has been found in OpenSC up to 0.26.1. This affects the function test_kpgen_certwrite of the file src/tools/pkcs1... |
| CVE-2026-10274 | MEDIUM | 6.3 | 0.2% | Jun 1, 2026 | A vulnerability was determined in indrasishbanerjee aem-mcp-server up to b5f833aef9b5dfd17a5991b3b18a8a11edbdc583. This ... |
| CVE-2026-10273 | HIGH | 7.3 | 1.4% | Jun 1, 2026 | A vulnerability was found in php-censor up to 2.1.6. This affects an unknown function of the file src/Model/Build/GitBui... |
| CVE-2026-10272 | MEDIUM | 6.5 | 0.3% | Jun 1, 2026 | A vulnerability has been found in a4m4 Student-Management-System up to f0c5f6842c5e8c431ff02b5260a565ca844df3a0. The imp... |
| CVE-2026-10271 | MEDIUM | 6.3 | 0.3% | Jun 1, 2026 | A flaw has been found in a4m4 Student-Management-System up to f0c5f6842c5e8c431ff02b5260a565ca844df3a0. The affected ele... |
| CVE-2026-10270 | HIGH | 7.5 | 0.7% | Jun 1, 2026 | A vulnerability was detected in D-Link DI-7001 MINI up to 19.09.19A1. Impacted is the function sprintf of the file /http... |
| CVE-2026-10269 | MEDIUM | 6.3 | 0.3% | Jun 1, 2026 | A security vulnerability has been detected in decolua 9router up to 0.4.0. This issue affects the function isAuthenticat... |
| CVE-2026-10268 | LOW | 3.3 | 0.1% | Jun 1, 2026 | A weakness has been identified in janet-lang janet up to 1.41.0. This vulnerability affects the function unmarshal_one_f... |
| CVE-2026-10118 | HIGH | 7.8 | 0.3% | Jun 1, 2026 | A flaw was found in Poppler's Splash backend. A remote attacker could exploit this vulnerability by crafting a malicious... |
| CVE-2026-8931 | CRITICAL | 9.4 | 0.7% | Jun 1, 2026 | A critical Remote Code Execution (RCE) vulnerability exists in Disig Web Signer versions 2.0.3 through 2.5.3. |
| CVE-2026-48879 | CRITICAL | 9.8 | 0.3% | Jun 1, 2026 | Incorrect Privilege Assignment vulnerability in Sergey AIWU allows Privilege Escalation. This issue affects AIWU: from ... |
| CVE-2026-48866 | CRITICAL | 9.6 | 0.5% | Jun 1, 2026 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Rocketgenius Inc. Gravit... |
| CVE-2026-48865 | HIGH | 7.1 | 0.2% | Jun 1, 2026 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ThimPress LearnPre... |
| CVE-2026-48839 | HIGH | 7.1 | 0.2% | Jun 1, 2026 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in VeronaLabs WP Stat... |
| CVE-2026-48559 | MEDIUM | 5.4 | 0.2% | Jun 1, 2026 | Lightweight Music Server (LMS) though 3.76.0 contains a stored cross-site scripting vulnerability that allows attackers ... |
| CVE-2026-42683 | HIGH | 7.1 | 0.1% | Jun 1, 2026 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in e4jvikwp VikBookin... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now