2026 CVE Vulnerabilities

64,617 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-8047HIGH8.7The affected products perform improper length checking when parsing incoming HTTP requests, resulting in a size-limited ...
CVE-2026-8046HIGH8.1The affected products insufficiently verify authorization when deleting user accounts. An authenticated, low-privileged ...
CVE-2026-44469HIGH7The affected product extracts installation files to a temporary directory with incorrect default permissions during admi...
CVE-2026-44468HIGH8.5The affected product creates a directory with insecure default permissions during administrative installation. This allo...
CVE-2026-39655MEDIUM5.3Missing Authorization vulnerability in TeconceTheme Mayosis Core allows Exploiting Incorrectly Configured Access Control...
CVE-2026-9534MEDIUM6.3A flaw has been found in Totolink CA750-PoE 6.2c.510. This affects the function setWiFiWpsConfig of the file /cgi-bin/cs...
CVE-2026-9533MEDIUM6.3A vulnerability was detected in Totolink CA750-PoE 6.2c.510. The impacted element is the function recvUpgradeNewFw of th...
CVE-2026-9532MEDIUM6.3A security vulnerability has been detected in Totolink CA750-PoE 6.2c.510. The affected element is the function setUploa...
CVE-2026-9496HIGH7.7Versions of the package pacote from 11.2.7 and before 21.5.1 are vulnerable to Denial of Service (DoS) via the addGitSha...
CVE-2026-9495HIGH7.3Versions of the package @koa/router from 14.0.0 and before 15.0.0 are vulnerable to Access Control Bypass due to the mid...
CVE-2026-3314MEDIUM4.6Missing password field masking vulnerability in Hitachi Ops Center Analyzer (Hitachi Ops Center Analyzer detail view, Hi...
CVE-2026-9531MEDIUM6.3A weakness has been identified in Totolink CA750-PoE 6.2c.510. Impacted is the function setUpgradeUboot of the file /cgi...
CVE-2026-9530LOW3.3A weakness has been identified in GNU LibreDWG up to 0.14. The impacted element is the function read_2004_compressed_sec...
CVE-2026-9529LOW3.3A security flaw has been discovered in GNU LibreDWG up to 0.14. The affected element is the function match_BLOCK_HEADER ...
CVE-2026-9528HIGH7.3A vulnerability was identified in itsourcecode Electronic Judging System 1.0. Impacted is an unknown function of the fil...
CVE-2026-9527MEDIUM4.3A vulnerability was determined in itsourcecode Electronic Judging System 1.0. This issue affects some unknown processing...
CVE-2026-9526HIGH7.3A vulnerability was found in itsourcecode Electronic Judging System 1.0. This vulnerability affects unknown code of the ...
CVE-2026-9525HIGH7.3A vulnerability has been found in itsourcecode Electronic Judging System 1.0. This affects an unknown part of the file /...
CVE-2026-9524MEDIUM6.3A flaw has been found in xianrendzw EasyReport up to 2.0.17.0522_Beta. Affected by this issue is the function execute of...
CVE-2026-9523HIGH7.3A vulnerability was detected in Acrel Electrical EEMS Enterprise Power Operation and Maintenance Cloud Platform 3000WEBV...
CVE-2026-9538HIGH7.5Archive::Tar versions before 3.10 for Perl allow memory exhaustion via attacker controlled entry size field in tar heade...
CVE-2026-9521HIGH7.3A security vulnerability has been detected in fraillt bitsery up to 5.2.4. Affected is the function loadFromSharedState ...
CVE-2026-9520MEDIUM4.3A weakness has been identified in blitz-js blitz up to 3.0.2 on GitHub. This impacts an unknown function of the file pac...
CVE-2026-9519MEDIUM4.3A security flaw has been discovered in stonith404 pingvin-share up to 1.13.0. This affects the function getServerSidePro...
CVE-2026-9518MEDIUM4.3A vulnerability was identified in hemant6488 CodeIgniter-StudentManagementSystem. The impacted element is the function a...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now