2026 CVE Vulnerabilities

65,045 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-6629HIGH7.3A vulnerability has been found in Metasoft 美特软件 MetaCRM up to 6.4.0. This vulnerability affects the function Statement.e...
CVE-2026-6628MEDIUM6.3A flaw has been found in phili67 Ecclesia CRM up to 8.0.0. This affects the function ValidateInput of the file /v2/query...
CVE-2026-6626MEDIUM6.3A vulnerability was detected in Cockpit-HQ Cockpit up to 2.13.5. Affected by this issue is some unknown functionality of...
CVE-2026-6625HIGH7.3A security vulnerability has been detected in moxi624 Mogu Blog v2 up to 5.2. Affected by this vulnerability is the func...
CVE-2026-6624LOW2.4A weakness has been identified in BichitroGan ISP Billing Software 2025.3.20. Affected is an unknown function of the fil...
CVE-2026-6623MEDIUM4.8A security flaw has been discovered in BichitroGan ISP Billing Software 2025.3.20. This impacts an unknown function of t...
CVE-2026-6622LOW2.4A vulnerability was identified in BichitroGan ISP Billing Software 2025.3.20. This affects an unknown function of the fi...
CVE-2026-31430HIGH7.1In the Linux kernel, the following vulnerability has been resolved: X.509: Fix out-of-bounds access when parsing extens...
CVE-2026-31429MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: net: skb: fix cross-cache free of KFENCE-allocated ...
CVE-2026-6621HIGH7.3A vulnerability was determined in 1024bit extend-deep up to 0.1.6. The impacted element is an unknown function of the fi...
CVE-2026-6620MEDIUM6.3A vulnerability was found in SonicCloudOrg sonic-server up to 2.0.0. The affected element is the function Upload of the ...
CVE-2026-6619LOW3.5A vulnerability has been found in langgenius dify up to 1.13.3. Impacted is the function openInNewTab of the file web/ap...
CVE-2026-6618MEDIUM6.3A flaw has been found in langgenius dify up to 1.13.3. This issue affects the function parse_openai_plugin_json_to_tool_...
CVE-2026-5967HIGH8.8ThreatSonar Anti-Ransomware developed by TeamT5 has an Privilege Escalation vulnerability. Authenticated remote attacker...
CVE-2026-39454HIGH8.5SKYSEA Client View and SKYMEC IT Manager provided by Sky Co.,LTD. configure the installation folder with improper file a...
CVE-2026-6617MEDIUM6.3A vulnerability was detected in langgenius dify up to 0.6.9. This vulnerability affects the function get_api_tool_provid...
CVE-2026-6616MEDIUM6.3A security vulnerability has been detected in TransformerOptimus SuperAGI up to 0.0.14. This affects the function extrac...
CVE-2026-6615HIGH7.3A weakness has been identified in TransformerOptimus SuperAGI up to 0.0.14. Affected by this issue is the function Uploa...
CVE-2026-5966HIGH8.1ThreatSonar Anti-Ransomware developed by TeamT5 has an Arbitrary File Deletion vulnerability. Authenticated remote attac...
CVE-2026-5964CRITICAL9.8EasyFlow .NET developed by Digiwin has a SQL Injection vulnerability, allowing unauthenticated remote attackers to injec...
CVE-2026-5963CRITICAL9.8EasyFlow .NET developed by Digiwin has a SQL Injection vulnerability, allowing unauthenticated remote attackers to injec...
CVE-2026-41282HIGH7.5ProjectDiscovery Nuclei 3 before 3.8.0 allows DSL expression injection. This affects use of -env-vars for multi-step tem...
CVE-2026-6644CRITICAL9.1A command injection vulnerability was found in the PPTP VPN Clients on the ADM. The vulnerability allows an administrati...
CVE-2026-6643CRITICAL9.9A stack-based buffer overflow vulnerability was found in the VPN Clients on the ADM. The issue stems from the use of unb...
CVE-2026-6614MEDIUM6.3A security flaw has been discovered in TransformerOptimus SuperAGI up to 0.0.14. Affected by this vulnerability is the f...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now