2026 CVE Vulnerabilities
67,338 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-82885 | HIGH | 8.8 | 0.3% | Sep 18, 2026 | IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to gain elevated privileges due to missing... |
| CVE-2026-82832 | CRITICAL | 9.6 | 0.4% | Sep 18, 2026 | IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to execute arbitrary code due to improper ... |
| CVE-2026-82340 | CRITICAL | 9.8 | 0.5% | Sep 18, 2026 | IBM Guardium Data Protection 12.2 is vulnerable to unauthenticated insecure deserialization and attacker-controlled refl... |
| CVE-2026-81937 | HIGH | 7.2 | 1.5% | Sep 18, 2026 | IBM Guardium Data Protection 12.2 is vulnerable to a command injection vulnerability in the import remotelog_config file... |
| CVE-2026-81933 | HIGH | 8.8 | 0.3% | Sep 18, 2026 | IBM Guardium Data Protection 12.2 is vulnerable to a SQL injection vulnerability in the Analytic Grid Service Handler. A... |
| CVE-2026-81669 | HIGH | 7.2 | 1.3% | Sep 18, 2026 | IBM Guardium Data Protection 12.2 is vulnerable to a command injection vulnerability in the create csr wildcard CLI comm... |
| CVE-2026-81657 | CRITICAL | 9.8 | 0.6% | Sep 18, 2026 | IBM Guardium Data Protection 12.2 could allow a remote unauthenticated attacker to execute arbitrary code on the system ... |
| CVE-2026-81656 | HIGH | 8.8 | 0.3% | Sep 18, 2026 | IBM Guardium Data Protection 12.2 is vulnerable to a SQL injection vulnerability in the New Query Builder REST Processor... |
| CVE-2026-81626 | HIGH | 8.6 | 0.3% | Sep 18, 2026 | IBM Guardium Data Protection 12.2 is vulnerable to a SQL injection vulnerability in the Load Balancer Groups component. ... |
| CVE-2026-81623 | MEDIUM | 6.3 | 0.3% | Sep 18, 2026 | IBM Guardium Data Protection 12.2 could allow an authenticated user to execute arbitrary commands with low user privileg... |
| CVE-2026-80442 | CRITICAL | 9.9 | 0.6% | Sep 18, 2026 | IBM Guardium Data Protection 12.2 is vulnerable to an authenticated OS command injection vulnerability in the exportCert... |
| CVE-2026-80441 | CRITICAL | 9.8 | 0.4% | Sep 18, 2026 | IBM Guardium Data Protection 12.2 is vulnerable to an unauthenticated second-order SQL injection vulnerability in the ge... |
| CVE-2026-77528 | MEDIUM | 5.3 | 0.5% | Sep 18, 2026 | Autobahn Python is a WebSocket and WAMP implementation for Python that supports Twisted and asyncio. Prior to 26.7.1, We... |
| CVE-2026-76902 | MEDIUM | 5 | 0.3% | Sep 18, 2026 | CordysCRM is an open source AI-powered customer relationship management system that supports private deployment. Prior t... |
| CVE-2026-76901 | MEDIUM | 5.8 | 0.4% | Sep 18, 2026 | CordysCRM is an open source AI-powered customer relationship management system that supports private deployment. Prior t... |
| CVE-2026-76900 | MEDIUM | 6.8 | 0.5% | Sep 18, 2026 | CordysCRM is an open source AI-powered customer relationship management system that supports private deployment. In vers... |
| CVE-2026-76899 | MEDIUM | 5.7 | 0.4% | Sep 18, 2026 | CordysCRM is an open source AI-powered customer relationship management system that supports private deployment. From 1.... |
| CVE-2026-75895 | HIGH | 7.5 | 0.4% | Sep 18, 2026 | In libsmpp35 from 0.1.0 through 1.8.0 out of bound read issue was found in the at smpp34_unpack() function via attacker ... |
| CVE-2026-75878 | CRITICAL | 9.1 | 0.5% | Sep 18, 2026 | IBM Sterling File Gateway could allow a remote attacker to bypass authentication and obtain a fully authenticated sessio... |
| CVE-2026-63647 | CRITICAL | 9.3 | 0.5% | Sep 18, 2026 | CordysCRM is an open source AI-powered customer relationship management system that supports private deployment. Prior t... |
| CVE-2026-63646 | MEDIUM | 6.9 | 0.7% | Sep 18, 2026 | CordysCRM is an open source AI-powered customer relationship management system that supports private deployment. Prior t... |
| CVE-2026-61822 | MEDIUM | 6.5 | 0.5% | Sep 18, 2026 | pg_partman is a PostgreSQL extension that manages partitioned tables by time or ID. Prior to 5.5.0, run_maintenance() ha... |
| CVE-2026-61821 | HIGH | 8.5 | 0.4% | Sep 18, 2026 | pg_partman is a PostgreSQL extension that manages partitioned tables by time or ID. Prior to 5.5.0, drop_partition_id() ... |
| CVE-2026-61820 | HIGH | 8.5 | 0.6% | Sep 18, 2026 | pg_partman is a PostgreSQL extension that manages partitioned tables by time or ID. Prior to 5.5.0, inherit_template_pro... |
| CVE-2026-61819 | HIGH | 8.5 | 0.6% | Sep 18, 2026 | pg_partman is a PostgreSQL extension that manages partitioned tables by time or ID. Prior to 5.5.0, when pg_jobmon is in... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now