2026 CVE Vulnerabilities

66,201 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-31067MEDIUM6.8A remote command execution (RCE) vulnerability in the /goform/formReleaseConnect component of UTT Aggressive 520W v3v1.7...
CVE-2026-31066MEDIUM4.5UTT Aggressive HiPER 810G v3v1.7.7-171114 was discovered to contain a buffer overflow in the selDateType parameter of th...
CVE-2026-31065MEDIUM4.5UTT Aggressive 520W v3v1.7.7-180627 was discovered to contain a buffer overflow in the addCommand parameter of the formC...
CVE-2026-31063MEDIUM4.5UTT Aggressive HiPER 1200GW v2.5.3-170306 was discovered to contain a buffer overflow in the pools parameter of the form...
CVE-2026-31062MEDIUM4.5UTT Aggressive 520W v3v1.7.7-180627 was discovered to contain a buffer overflow in the filename parameter of the formFtp...
CVE-2026-31061MEDIUM4.5UTT Aggressive HiPER 810G v3v1.7.7-171114 was discovered to contain a buffer overflow in the timestart parameter of the ...
CVE-2026-31060MEDIUM4.5UTT Aggressive HiPER 810G v3v1.7.7-171114 was discovered to contain a buffer overflow in the notes parameter of the form...
CVE-2026-31059CRITICAL9.8A remote command execution (RCE) vulnerability in the /goform/formDia component of UTT Aggressive HiPER 520W v3v1.7.7-18...
CVE-2026-31058MEDIUM4.5UTT Aggressive HiPER 1200GW v2.5.3-170306 was discovered to contain a buffer overflow in the timeRangeName parameter of ...
CVE-2026-31053MEDIUM6.2A double free vulnerability exists in librz/bin/format/le/le.c in the function le_load_fixup_record(). When processing m...
CVE-2026-29047HIGH8.8GLPI is a free asset and IT management software package. From 10.0.0 to before 10.0.24 and 11.0.6, an authenticated user...
CVE-2026-26263CRITICAL9.8GLPI is a free asset and IT management software package. From 11.0.0 to before 11.0.6, an unauthenticated time-based bli...
CVE-2026-26027MEDIUM6.1GLPI is a free asset and IT management software package. From 11.0.0 to before 11.0.6, an unauthenticated user can store...
CVE-2026-26026HIGH7.2GLPI is a free asset and IT management software package. From 11.0.0 to before 11.0.6, template injection by an administ...
CVE-2026-25932MEDIUM4.8GLPI is a Free Asset and IT Management Software package. From 0.60 to before 10.0.24, an authenticated technician user c...
CVE-2026-5660MEDIUM6.3A vulnerability was determined in itsourcecode Construction Management System 1.0. The impacted element is an unknown fu...
CVE-2026-5659MEDIUM6.3A vulnerability was found in pytries datrie up to 0.8.3. The affected element is the function Trie.load/Trie.read/Trie._...
CVE-2026-30078HIGH7.5OpenAirInterface V2.2.0 AMF crashes when it receives an NGAP message with invalid procedure code or invalid PDU-type. Fo...
CVE-2026-3524HIGH8.8Mattermost Plugin Legal Hold versions <=1.1.4 fail to halt request processing after a failed authorization check in Serv...
CVE-2026-5650MEDIUM5.5A vulnerability was found in code-projects Online Application System for Admission 1.0. Impacted is an unknown function ...
CVE-2026-5649MEDIUM6.3A vulnerability has been found in code-projects Online Application System for Admission 1.0. This issue affects some unk...
CVE-2026-5648HIGH7.3A flaw has been found in code-projects Simple Laundry System 1.0. This vulnerability affects unknown code of the file /u...
CVE-2026-5647LOW2.4A vulnerability was detected in code-projects Online Shoe Store 1.0. This affects an unknown part of the file /admin/adm...
CVE-2026-5646HIGH7.3A security vulnerability has been detected in code-projects Easy Blog Site 1.0. Affected by this issue is some unknown f...
CVE-2026-5645HIGH7.3A weakness has been identified in projectworlds Car Rental System 1.0. Affected by this vulnerability is an unknown func...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now