2026 CVE Vulnerabilities

66,711 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-33949HIGH8.1Tina is a headless content management system. Prior to version 2.2.2, a path traversal vulnerability in @tinacms/graphql...
CVE-2026-30643CRITICAL9.8An issue was discovered in DedeCMS 5.7.118 allowing attackers to execute code via crafted setup tag values in a module u...
CVE-2026-30273HIGH7.3pandas-ai v3.0.0 was discovered to contain a SQL injection vulnerability via the pandasai.agent.base._execute_sql_query ...
CVE-2026-2265MEDIUM6.5An unauthenticated remote code execution (RCE) vulnerability exists in applications that use the Replicator node package...
CVE-2026-20174MEDIUM4.9A vulnerability in the Metadata update feature of Cisco Nexus Dashboard Insights could allow an authenticated, remote at...
CVE-2026-20160CRITICAL9.8A vulnerability in Cisco Smart Software Manager On-Prem (SSM On-Prem) could allow an unauthenticated, remote attacker to...
CVE-2026-20155HIGH8A vulnerability in the web-based management interface of Cisco Evolved Programmable Network Manager (EPNM) could allow a...
CVE-2026-20151HIGH7.3A vulnerability in the web interface of Cisco Smart Software Manager On-Prem (SSM On-Prem) could allow an authenticated,...
CVE-2026-20097MEDIUM6.5A vulnerability in the web-based management interface of Cisco IMC could allow an authenticated, remote attacker with ad...
CVE-2026-20096MEDIUM6.5A vulnerability in the web-based management interface of Cisco IMC could allow an authenticated, remote attacker with ad...
CVE-2026-20095MEDIUM6.5A vulnerability in the web-based management interface of Cisco IMC could allow an authenticated, remote attacker with ad...
CVE-2026-20094HIGH8.8A vulnerability in the web-based management interface of Cisco IMC could allow an authenticated, remote attacker with re...
CVE-2026-20093CRITICAL9.8A vulnerability in the change password functionality of Cisco Integrated Management Controller (IMC) could allow an unau...
CVE-2026-20090MEDIUM4.8A vulnerability in the web-based management interface of Cisco IMC could allow an authenticated, remote attacker with ad...
CVE-2026-20089MEDIUM4.8A vulnerability in the web-based management interface of Cisco IMC could allow an authenticated, remote attacker with ad...
CVE-2026-20088MEDIUM4.8A vulnerability in the web-based management interface of Cisco IMC could allow an authenticated, remote attacker with ad...
CVE-2026-20087MEDIUM4.8A vulnerability in the web-based management interface of Cisco IMC could allow an authenticated, remote attacker with ad...
CVE-2026-20085MEDIUM6.1A vulnerability in the web-based management interface of Cisco IMC could allow an unauthenticated, remote attacker to co...
CVE-2026-20042MEDIUM6.5A vulnerability in the configuration backup feature of Cisco Nexus Dashboard could allow an attacker who has the encrypt...
CVE-2026-20041MEDIUM6.1A vulnerability in Cisco Nexus Dashboard and Cisco Nexus Dashboard Insights could allow an unauthenticated, remote attac...
CVE-2026-5175MEDIUM5Improper access control in the multi-factor authentication (MFA) management API in Devolutions Server allows an authenti...
CVE-2026-4989MEDIUM4.3Improper input validation in the gateway health check feature in Devolutions Server allows a low-privileged authenticate...
CVE-2026-4927MEDIUM6.5Exposure of sensitive information in the users MFA feature in Devolutions Server allows users with user management privi...
CVE-2026-4925MEDIUM5Improper access control in the users MFA feature in Devolutions Server allows an authenticated user to bypass administra...
CVE-2026-4924HIGH8.2Improper authentication in the two-factor authentication (2FA) feature in Devolutions Server 2026.1.11 and earlier all...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now