2026 CVE Vulnerabilities

64,922 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-22336CRITICAL9.3Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Directorist Bookin...
CVE-2026-7112MEDIUM5.6A vulnerability has been found in NousResearch hermes-agent 0.8.0. Affected by this vulnerability is the function _check...
CVE-2026-7110LOW3.5A flaw has been found in code-projects Invoice System in Laravel 1.0. Affected is an unknown function of the file /item....
CVE-2026-7109MEDIUM5.5A vulnerability was detected in code-projects Invoice System in Laravel 1.0. This impacts an unknown function of the fil...
CVE-2026-41409CRITICAL9.8The fix for CVE-2024-52046 in Apache MINA AbstractIoBuffer.getObject() was incomplete. The classname allowlist of classe...
CVE-2026-40858HIGH8.8The camel-infinispan component's ProtoStream-based remote aggregation repository deserializes data read from a remote In...
CVE-2026-40022HIGH8.2When authentication is enabled on the Apache Camel embedded HTTP server or embedded management server (camel-platform-ht...
CVE-2026-33454CRITICAL9.4The Camel-Mail component is vulnerable to Camel message header injection. The custom header filter strategy used by the ...
CVE-2026-7108MEDIUM4.3A security vulnerability has been detected in code-projects Invoice System in Laravel 1.0. This affects an unknown funct...
CVE-2026-7107MEDIUM6.3A weakness has been identified in code-projects Invoice System in Laravel 1.0. The impacted element is an unknown functi...
CVE-2026-7103LOW3.7A vulnerability was determined in code-projects Chat System 1.0. Affected is an unknown function of the file update_user...
CVE-2026-7102HIGH8.8A vulnerability was found in Tenda F456 1.0.0.5. This impacts the function FromWriteFacMac of the file /goform/WriteFacM...
CVE-2026-7101HIGH8.8A vulnerability has been found in Tenda F456 1.0.0.5. This affects the function fromWrlclientSet of the file /goform/Wrl...
CVE-2026-7100HIGH8.8A flaw has been found in Tenda F456 1.0.0.5. The impacted element is the function fromNatlimitof of the file /goform/Nat...
CVE-2026-7099HIGH8.8A vulnerability was detected in Tenda F456 1.0.0.5. The affected element is the function formQuickIndex of the file /gof...
CVE-2026-7098HIGH8.8A security vulnerability has been detected in Tenda F456 1.0.0.5. Impacted is the function fromDhcpListClient of the fil...
CVE-2026-42379HIGH7.7Insertion of Sensitive Information Into Sent Data vulnerability in WPDeveloper Templately allows Retrieve Embedded Sensi...
CVE-2026-41635CRITICAL9.8Apache MINA's AbstractIoBuffer.resolveClass() contains two branches, one of them (for static classes or primitive types)...
CVE-2026-40860CRITICAL9.8JmsBinding.extractBodyFromJms() in camel-jms, and the equivalent JmsBinding class in camel-sjms, deserialized the payloa...
CVE-2026-40473HIGH8.8The camel-mina component's MinaConverter.toObjectInput(IoBuffer) type converter wraps an IoBuffer in a java.io.ObjectInp...
CVE-2026-40453CRITICAL9.9The fix for CVE-2025-27636 added setLowerCase(true) to HttpHeaderFilterStrategy so that case-variant header names such a...
CVE-2026-40048HIGH7.8The Camel-PQC FileBasedKeyLifecycleManager class deserializes the contents of `<keyId>.key` files in the configured key ...
CVE-2026-7097HIGH8.8A weakness has been identified in Tenda F456 1.0.0.5. This issue affects the function fromwebExcptypemanFilter of the fi...
CVE-2026-7096HIGH8.8A security flaw has been discovered in Tenda HG3 2.0 300003070. This vulnerability affects the function formgponConf of ...
CVE-2026-7095MEDIUM4.3A vulnerability was identified in code-projects Employee Management System 1.0. This affects an unknown part of the file...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now