2026 CVE Vulnerabilities

64,760 CVEs published in 2026.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2026-81548HIGH8.8IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to execute arbitrary commands du...
CVE-2026-81547HIGH8.8IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to execute arbitrary commands du...
CVE-2026-81545HIGH8.8IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to execute arbitrary commands du...
CVE-2026-81539HIGH8.8IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to execute arbitrary code due to...
CVE-2026-77874HIGH8.6IBM Enterprise Build of Quarkus 3.27.1 through 3.27.5.SP1, and 3.33.1 through 3.33.3.SP1 is vulnerable to SQL injection....
CVE-2026-58008HIGH8.1Stack-based buffer overflow vulnerability in Altera Trusted Firmware on HPS allows Exploitation of Improperly Configured...
CVE-2026-58007HIGH8.1Untrusted pointer dereference vulnerability in Altera Trusted Firmware on HPS allows Exploitation of Improperly Configur...
CVE-2026-58006HIGH8.1Untrusted pointer dereference vulnerability in Altera Trusted Firmware on HPS allows Exploitation of Improperly Configur...
CVE-2026-58005HIGH8.1Out-of-bounds read vulnerability in Altera Trusted Firmware on HPS allows Privilege Escalation and Overflow Buffers. Th...
CVE-2026-58004HIGH8.1Out-of-bounds read vulnerability in Altera Trusted Firmware on HPS allows Privilege Escalation and Overflow Buffers. Th...
CVE-2026-56736HIGH8.2phpMyFAQ is an open source FAQ web application. A stored cross-site scripting (XSS) vulnerability in versions prior to 4...
CVE-2026-51997HIGH8.8An issue in geelen mcp-remote 0.1.16 through 0.1.38 allows a remote attacker to execute arbitrary code via the open() fu...
CVE-2026-51995HIGH7.5An issue in geelen mcp-remote 0.1.32 through 0.1.38 allows a remote attacker to obtain sensitive information via the src...
CVE-2026-13467HIGH8.1Out-of-bounds write vulnerability in Altera Trusted Firmware on HPS allows Exploitation of Improperly Configured or Impl...
CVE-2026-13466HIGH8.1Incorrect calculation of buffer size vulnerability in Altera Trusted Firmware on HPS allows Overflow Buffers. This issu...
CVE-2026-13465HIGH8.1Stack-based buffer overflow vulnerability in Altera Trusted Firmware on HPS allows Exploitation of Improperly Configured...
CVE-2026-12559HIGH7.3A Stored Cross-Site Scripting (XSS) vulnerability has been identified in OpenText Vendor Invoice Management for SAP Solu...
CVE-2026-97059HIGH8.2DCMTK through 3.7.0 contains a heap over-read vulnerability in ConcatenationLoader that copies pixel data frames without...
CVE-2026-97057HIGH7.5redis-parser through 3.0.0 fails to validate the multi-bulk length value in RESP protocol parsing, allowing attackers to...
CVE-2026-95521HIGH7.8A command injection flaw was found in rpm. Installing or rebuilding a source RPM whose source or spec file basenames con...
CVE-2026-95519HIGH7.8A flaw was found in rpm. An attacker can supply a crafted manifest file that, when processed by a user or automation usi...
CVE-2026-97182HIGH7.3A security vulnerability has been detected in halo-dev Halo up to 2.25.4/2.26.1. Affected is an unknown function of the ...
CVE-2026-96515HIGH8.6This vulnerability exists in the Netlink ICT HG323RW router due to insufficient authorization and input validation contr...
CVE-2026-88907HIGH7.4Incorrect Authorization vulnerability in TÜBİTAK ULAKBİM UlakPDF allows Authentication Bypass. This issue affects UlakP...
CVE-2026-7169HIGH7.5a vulnerability involving an unchecked search path element in Evope Collector, versions prior to 1.1.7.13, allows a loca...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now