2026 CVE Vulnerabilities
65,328 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-31420 | MEDIUM | 5.5 | 0.1% | Apr 13, 2026 | In the Linux kernel, the following vulnerability has been resolved: bridge: mrp: reject zero test interval to avoid OOM... |
| CVE-2026-31419 | HIGH | 7.8 | 0.1% | Apr 13, 2026 | In the Linux kernel, the following vulnerability has been resolved: net: bonding: fix use-after-free in bond_xmit_broad... |
| CVE-2026-31418 | MEDIUM | 5.5 | 0.1% | Apr 13, 2026 | In the Linux kernel, the following vulnerability has been resolved: netfilter: ipset: drop logically empty buckets in m... |
| CVE-2026-31417 | HIGH | 7.5 | 0.4% | Apr 13, 2026 | In the Linux kernel, the following vulnerability has been resolved: net/x25: Fix overflow when accumulating packets Ad... |
| CVE-2026-31416 | MEDIUM | 5.5 | 0.1% | Apr 13, 2026 | In the Linux kernel, the following vulnerability has been resolved: netfilter: nfnetlink_log: account for netlink heade... |
| CVE-2026-31415 | MEDIUM | 5.5 | 0.1% | Apr 13, 2026 | In the Linux kernel, the following vulnerability has been resolved: ipv6: avoid overflows in ip6_datagram_send_ctl() Y... |
| CVE-2026-31414 | CRITICAL | 9.8 | 0.4% | Apr 13, 2026 | In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_conntrack_expect: use expect->helper ... |
| CVE-2026-36923 | LOW | 2.7 | 0.2% | Apr 13, 2026 | Sourcecodester Cab Management System 1.0 is vulnerable to SQL Injection in the file /cms/admin/bookings/view_booking.php... |
| CVE-2026-36922 | LOW | 2.7 | 0.2% | Apr 13, 2026 | Sourcecodester Cab Management System v1.0 is vulnerable to SQL injection in the file /cms/admin/categories/view_category... |
| CVE-2026-36920 | LOW | 2.7 | 0.2% | Apr 13, 2026 | Sourcecodester Online Reviewer System v1.0 is vulnerable to SQL Injection in the file /system/system/admins/assessments/... |
| CVE-2026-36919 | LOW | 2.7 | 0.2% | Apr 13, 2026 | Sourcecodester Online Reviewer System v1.0 is vulnerale to SQL Injection in the file /system/system/admins/assessments/e... |
| CVE-2026-36874 | LOW | 2.7 | 0.2% | Apr 13, 2026 | Sourcecodester Basic Library System v1.0 is vulnerable to SQL Injection in /librarysystem/load_student.php. |
| CVE-2026-36873 | LOW | 2.7 | 0.2% | Apr 13, 2026 | Sourcecodester Basic Library System v1.0 is vulnerable to SQL Injection in /librarysystem/load_admin.php. |
| CVE-2026-36872 | LOW | 2.7 | 0.2% | Apr 13, 2026 | Sourcecodester Basic Library System v1.0 is vulnerable to SQL Injection in /librarysystem/load_book.php. |
| CVE-2026-34476 | HIGH | 7.1 | 0.3% | Apr 13, 2026 | Server-Side Request Forgery via SW-URL Header vulnerability in Apache SkyWalking MCP. This issue affects Apache SkyWalk... |
| CVE-2026-6204 | HIGH | 7.2 | 7.5% | Apr 13, 2026 | LibreNMS versions before 26.3.0 are affected by an authenticated remote code execution vulnerability by abusing the Bina... |
| CVE-2026-2728 | MEDIUM | 4.8 | 0.2% | Apr 13, 2026 | LibreNMS versions before 26.3.0 are affected by an authenticated Cross-site Scripting vulnerability on the showconfig pa... |
| CVE-2026-35565 | MEDIUM | 5.4 | 0.5% | Apr 13, 2026 | Stored Cross-Site Scripting (XSS) via Unsanitized Topology Metadata in Apache Storm UI Versions Affected: before 2.8.6... |
| CVE-2026-35337 | HIGH | 8.8 | 1.0% | Apr 13, 2026 | Deserialization of Untrusted Data vulnerability in Apache Storm. Versions Affected: before 2.8.6. Description: When p... |
| CVE-2026-4810 | CRITICAL | 9.3 | 1.8% | Apr 13, 2026 | A Code Injection and Missing Authentication vulnerability in Google Agent Development Kit (ADK) versions 1.7.0 (and 2.0.... |
| CVE-2026-0234 | CRITICAL | 9.1 | 0.2% | Apr 13, 2026 | An improper verification of cryptographic signature vulnerability exists in Cortex XSOAR and Cortex XSIAM platforms duri... |
| CVE-2026-0233 | HIGH | 8.8 | 0.2% | Apr 13, 2026 | A certificate validation vulnerability in Palo Alto Networks Autonomous Digital Experience Manager on Windows allows an ... |
| CVE-2026-0232 | MEDIUM | 4.4 | 0.2% | Apr 13, 2026 | A problem with a protection mechanism in the Palo Alto Networks Cortex XDR agent on Windows allows a local Windows admin... |
| CVE-2026-6168 | HIGH | 8.8 | 0.6% | Apr 13, 2026 | A flaw has been found in TOTOLINK A7000R up to 9.1.0u.6115. The affected element is the function setWiFiEasyGuestCfg of ... |
| CVE-2026-6167 | HIGH | 7.3 | 0.3% | Apr 13, 2026 | A vulnerability was detected in code-projects Faculty Management System 1.0. Impacted is an unknown function of the file... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now