2026 CVE Vulnerabilities

45,447 CVEs published in 2026.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2026-27685CRITICAL9.1SAP NetWeaver Enterprise Portal Administration is vulnerable if a privileged user uploads untrusted or malicious content...
CVE-2026-0953CRITICAL9.8The Tutor LMS Pro plugin for WordPress is vulnerable to authentication bypass in all versions up to, and including, 3.9....
CVE-2026-31816CRITICAL9.1Budibase is a low code platform for creating internal tools, workflows, and admin panels. In 3.31.4 and earlier, the Bud...
CVE-2026-25960CRITICAL9.8vLLM is an inference and serving engine for large language models (LLMs). The SSRF protection fix for CVE-2026-24779 add...
CVE-2026-25737CRITICAL9Budibase is a low code platform for creating internal tools, workflows, and admin panels. In 3.24.0 and earlier, an arbi...
CVE-2026-3818CRITICAL9.8A flaw has been found in Tiandy Easy7 CMS Windows 7.17.0. Impacted is an unknown function of the file /Easy7/apps/WebSer...
CVE-2026-3813CRITICAL9.8A vulnerability was identified in opencc JFlow up to 5badc00db382d7cb82dad231e6a866b18e0addfe. Affected by this vulnerab...
CVE-2026-24713CRITICAL9.8Improper Input Validation vulnerability in Apache IoTDB. This issue affects Apache IoTDB: from 1.0.0 before 1.3.7, from...
CVE-2026-24015CRITICAL9.8A vulnerability in Apache IoTDB. This issue affects Apache IoTDB: from 1.0.0 before 1.3.7, from 2.0.0 before 2.0.7. Us...
CVE-2026-3823CRITICAL9.8EHG2408 series switch developed by Atop Technologies has a Stack-based Buffer Overflow vulnerability, allowing unauthent...
CVE-2026-3630CRITICAL9.8Delta Electronics COMMGR2 has Stack-based Buffer Overflow vulnerability.
CVE-2026-3795CRITICAL9.8A security flaw has been discovered in doramart DoraCMS 3.0.x. Impacted is the function createFileBypath of the file /Do...
CVE-2026-3794CRITICAL9.8A vulnerability was identified in doramart DoraCMS 3.0.x. This issue affects some unknown processing of the file /api/v1...
CVE-2026-3765CRITICAL9.8A vulnerability was identified in itsourcecode University Management System 1.0. This affects an unknown function of the...
CVE-2026-3762CRITICAL9.8A vulnerability has been found in SourceCodester Client Database Management System 1.0/3.1. Impacted is an unknown funct...
CVE-2026-3760CRITICAL9.8A vulnerability was detected in itsourcecode University Management System 1.0. This vulnerability affects unknown code o...
CVE-2026-3759CRITICAL9.8A security vulnerability has been detected in projectworlds Online Art Gallery Shop 1.0. This affects an unknown part of...
CVE-2026-3758CRITICAL9.8A weakness has been identified in projectworlds Online Art Gallery Shop 1.0. Affected by this issue is some unknown func...
CVE-2026-3757CRITICAL9.8A security flaw has been discovered in projectworlds Online Art Gallery Shop 1.0. Affected by this vulnerability is an u...
CVE-2026-3747CRITICAL9.8A vulnerability was identified in itsourcecode University Management System 1.0. Affected by this issue is some unknown ...
CVE-2026-3746CRITICAL9.8A vulnerability was determined in SourceCodester Simple Responsive Tourism Website 1.0. Affected by this vulnerability i...
CVE-2026-3744CRITICAL9.8A vulnerability has been found in code-projects Student Web Portal 1.0. This impacts the function valreg_passwdation of ...
CVE-2026-3740CRITICAL9.8A weakness has been identified in itsourcecode University Management System 1.0. Impacted is an unknown function of the ...
CVE-2026-3736CRITICAL9.8A vulnerability was found in code-projects Simple Flight Ticket Booking System 1.0. Affected by this issue is some unkno...
CVE-2026-3735CRITICAL9.8A vulnerability has been found in code-projects Simple Flight Ticket Booking System 1.0. Affected by this vulnerability ...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now