2026 CVE Vulnerabilities
64,909 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-40552 | MEDIUM | 4.7 | 0.3% | Apr 28, 2026 | mpGabinet is vulnerable to Remote Command Execution. An authorized user with access to the application and direct access... |
| CVE-2026-40551 | HIGH | 8.4 | 0.1% | Apr 28, 2026 | mpGabinet performs client-side authentication. An attacker with access to any application instance connected to the back... |
| CVE-2026-40550 | MEDIUM | 6.9 | 0.1% | Apr 28, 2026 | mpGabinet is vulnerable to Privilege Escalation due to excessive database privileges assigned to the user used by the ap... |
| CVE-2026-7309 | MEDIUM | 4.3 | 0.2% | Apr 28, 2026 | A flaw was found in the OpenShift Container Platform build system. A user with the `edit` ClusterRole can inject arbitra... |
| CVE-2026-7271 | MEDIUM | 5.5 | 0.5% | Apr 28, 2026 | A vulnerability was detected in DV0x creative-ad-agent up to 751b9e5146604dc65049bd0f62dcbdad6212f8a3. Impacted is an un... |
| CVE-2026-7269 | LOW | 2.4 | 0.2% | Apr 28, 2026 | A vulnerability was found in SourceCodester Pharmacy Sales and Inventory System 1.0. Affected is an unknown function of ... |
| CVE-2026-5781 | HIGH | 8.8 | 0.2% | Apr 28, 2026 | An authorization vulnerability in MphRx's Minerva V3.6.0, specifically in the '/minerva/moUser/update' endpoint, could a... |
| CVE-2026-5780 | HIGH | 8.1 | 0.2% | Apr 28, 2026 | An insecure direct object reference (IDOR) vulnerability in MphRx's Minerva V3.6.0, specifically in the endpoint '/miner... |
| CVE-2026-5779 | HIGH | 8.8 | 0.3% | Apr 28, 2026 | An insecure direct object reference (IDOR) vulnerability in MphRx's Minerva V3.6.0, specifically in the '/minerva/user/u... |
| CVE-2026-5435 | HIGH | 7.3 | 0.2% | Apr 28, 2026 | The deprecated functions ns_printrrf, ns_printrr and fp_nquery in the GNU C Library version 2.2 and newer fail to enforc... |
| CVE-2026-7268 | MEDIUM | 6.3 | 0.2% | Apr 28, 2026 | A vulnerability has been found in SourceCodester Pizzafy Ecommerce System 1.0. This impacts the function save_category o... |
| CVE-2026-7267 | MEDIUM | 6.3 | 0.2% | Apr 28, 2026 | A flaw has been found in SourceCodester Pizzafy Ecommerce System 1.0. This affects an unknown function of the file /view... |
| CVE-2026-7266 | MEDIUM | 6.3 | 0.2% | Apr 28, 2026 | A vulnerability was detected in SourceCodester Pizzafy Ecommerce System 1.0. The impacted element is the function save_o... |
| CVE-2026-7265 | MEDIUM | 6.3 | 0.2% | Apr 28, 2026 | A security vulnerability has been detected in SourceCodester Pizzafy Ecommerce System 1.0. The affected element is the f... |
| CVE-2026-3323 | HIGH | 7.5 | 0.4% | Apr 28, 2026 | An unsecured configuration interface on affected devices allows unauthenticated remote attackers to access sensitive inf... |
| CVE-2026-7280 | HIGH | 8.4 | 0.1% | Apr 28, 2026 | AVACAST developed by eMPIA Technology has a Unquoted Service Path vulnerability, allowing privileged local attackers to ... |
| CVE-2026-7279 | HIGH | 8.5 | 0.1% | Apr 28, 2026 | AVACAST developed by eMPIA Technology, has a DLL Hijacking vulnerability, allowing authenticated local attackers to plac... |
| CVE-2026-7264 | MEDIUM | 6.3 | 0.3% | Apr 28, 2026 | A weakness has been identified in SourceCodester Pizzafy Ecommerce System 1.0. Impacted is the function get_cart_items o... |
| CVE-2026-41636 | HIGH | 7.5 | 0.5% | Apr 28, 2026 | Uncontrolled Recursion vulnerability in Apache Thrift Node.js bindings This issue affects Apache Thrift: before 0.23.0.... |
| CVE-2026-41607 | MEDIUM | 6.5 | 0.9% | Apr 28, 2026 | Out-of-bounds Read vulnerability in Apache Thrift. This issue affects Apache Thrift: before 0.23.0. Users are recommen... |
| CVE-2026-41606 | MEDIUM | 5.3 | 1.1% | Apr 28, 2026 | Uncontrolled Recursion vulnerability in Apache Thrift. This issue affects Apache Thrift: before 0.23.0. Users are reco... |
| CVE-2026-41605 | HIGH | 7.3 | 0.9% | Apr 28, 2026 | Integer Overflow or Wraparound vulnerability in Apache Thrift. This issue affects Apache Thrift: before 0.23.0. Users ... |
| CVE-2026-41604 | HIGH | 8.2 | 0.9% | Apr 28, 2026 | Out-of-bounds Read vulnerability in Apache Thrift. This issue affects Apache Thrift: before 0.23.0. Users are recommen... |
| CVE-2026-41603 | — | — | 0.6% | Apr 28, 2026 | Rejected reason: This CVE ID is Rejected and will not be used. The record incorrectly described the affected language bi... |
| CVE-2026-41602 | HIGH | 7.5 | 1.2% | Apr 28, 2026 | Integer Overflow or Wraparound vulnerability in Apache Thrift TFramedTransport Go language implementation This issue af... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now