2026 CVE Vulnerabilities
67,214 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-95926 | HIGH | 7.3 | 0.4% | Sep 23, 2026 | A vulnerability was determined in SourceCodester Online Reviewer Management System 1.0. The impacted element is an unkno... |
| CVE-2026-96273 | MEDIUM | 5.5 | — | Sep 23, 2026 | Ghidra before 12.1.4 fails to validate the TYPE_COL byte in OptionsDB.createUnregisteredOption(), causing an ArrayIndexO... |
| CVE-2026-96272 | HIGH | 7.5 | 0.3% | Sep 23, 2026 | ClipBucket v5 before 5.5.3-#182 contains a blind SQL injection vulnerability in the photo search endpoint where the quer... |
| CVE-2026-96271 | HIGH | 7.1 | 0.2% | Sep 23, 2026 | Photoview through 2.4.0 contains an authorization bypass vulnerability in the shareAlbum GraphQL mutation that allows au... |
| CVE-2026-95925 | HIGH | 7.3 | 0.4% | Sep 23, 2026 | A vulnerability was found in SourceCodester Online Reviewer Management System 1.0. The affected element is an unknown fu... |
| CVE-2026-95924 | HIGH | 7.3 | 0.3% | Sep 23, 2026 | A vulnerability has been found in SourceCodester Online Reviewer Management System 1.0. Impacted is an unknown function ... |
| CVE-2026-95897 | MEDIUM | 5.5 | 0.3% | Sep 23, 2026 | A security vulnerability has been detected in Dask up to 2026.8.0. This affects the function from_npy_stack of the file ... |
| CVE-2026-95868 | MEDIUM | 6.3 | 0.3% | Sep 23, 2026 | A weakness has been identified in AdithyaYelloju Restaurant-Management-System up to 7f0e7e84255e8fcfd488e83f8f91451bbbff... |
| CVE-2026-95833 | MEDIUM | 6.3 | 0.3% | Sep 23, 2026 | A weakness has been identified in itsourcecode Leave Management System 1.0. Impacted is an unknown function of the file ... |
| CVE-2026-95830 | MEDIUM | 6.3 | 0.3% | Sep 23, 2026 | A security flaw has been discovered in theRealSain Pixtream up to 866afd4f0cea812b918780fb74b67dccf8c4d6a0. This issue a... |
| CVE-2026-95829 | MEDIUM | 6.3 | 0.2% | Sep 23, 2026 | A vulnerability was identified in TDuckCloud tduck-platform up to 5.3. This vulnerability affects the function Paginatio... |
| CVE-2026-94367 | HIGH | 7.2 | 1.0% | Sep 23, 2026 | OpenEye Apex Network Video Recorder (NVR) firmware 3.2.9.376 contains an OS command injection vulnerability in recbackup... |
| CVE-2026-92930 | MEDIUM | 6.2 | 0.2% | Sep 23, 2026 | OpenEye Apex Network Video Recorder (NVR) firmware 3.2.9.376 uses an administrator password-reset unlock-code design tha... |
| CVE-2026-92929 | MEDIUM | 5.3 | 0.4% | Sep 23, 2026 | OpenEye Apex Network Video Recorder (NVR) firmware 3.2.9.376 trusts an X-Forwarded-For header supplied by an arbitrary c... |
| CVE-2026-92928 | MEDIUM | 6.5 | 0.2% | Sep 23, 2026 | OpenEye Apex Network Video Recorder (NVR) firmware 3.2.9.376 contains a hardcoded, undocumented recovery account with a ... |
| CVE-2026-95828 | MEDIUM | 4.3 | 0.7% | Sep 22, 2026 | A vulnerability was determined in Mstfakts College-Management-System. This affects the function session_start of the fil... |
| CVE-2026-95820 | MEDIUM | 6.3 | 0.3% | Sep 22, 2026 | A vulnerability was found in anirbandutta9 College-Notes-Gallery up to 8c1cf3d98f30982d069c88ca172612c001eb39f6. Affecte... |
| CVE-2026-61685 | HIGH | 7.5 | 0.5% | Sep 22, 2026 | ReactPress is a publishing system for React developers. Prior to version 3.7.0, ReactPress API list endpoints build Type... |
| CVE-2026-57576 | MEDIUM | 6.5 | 0.8% | Sep 22, 2026 | plone.app.dexterity is a content-type system for the Plone content management system, and plone.app.contenttypes provide... |
| CVE-2026-18176 | HIGH | 7.4 | 0.2% | Sep 22, 2026 | IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remote attacker to obtain sensitive informati... |
| CVE-2026-18173 | LOW | 3.7 | 0.4% | Sep 22, 2026 | IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remote attacker to obtain sensitive informati... |
| CVE-2026-18172 | HIGH | 7.4 | 0.3% | Sep 22, 2026 | IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remote attacker to obtain sensitive informati... |
| CVE-2026-18170 | MEDIUM | 6.5 | 0.3% | Sep 22, 2026 | IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remote attacker to cause a denial of service ... |
| CVE-2026-18169 | CRITICAL | 9.9 | 0.8% | Sep 22, 2026 | IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remote authenticated attacker to obtain sensi... |
| CVE-2026-18163 | CRITICAL | 9.8 | 0.8% | Sep 22, 2026 | IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remote attacker to execute arbitrary code due... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now