2026 CVE Vulnerabilities

67,338 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-82885HIGH8.8IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to gain elevated privileges due to missing...
CVE-2026-82832CRITICAL9.6IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to execute arbitrary code due to improper ...
CVE-2026-82340CRITICAL9.8IBM Guardium Data Protection 12.2 is vulnerable to unauthenticated insecure deserialization and attacker-controlled refl...
CVE-2026-81937HIGH7.2IBM Guardium Data Protection 12.2 is vulnerable to a command injection vulnerability in the import remotelog_config file...
CVE-2026-81933HIGH8.8IBM Guardium Data Protection 12.2 is vulnerable to a SQL injection vulnerability in the Analytic Grid Service Handler. A...
CVE-2026-81669HIGH7.2IBM Guardium Data Protection 12.2 is vulnerable to a command injection vulnerability in the create csr wildcard CLI comm...
CVE-2026-81657CRITICAL9.8IBM Guardium Data Protection 12.2 could allow a remote unauthenticated attacker to execute arbitrary code on the system ...
CVE-2026-81656HIGH8.8IBM Guardium Data Protection 12.2 is vulnerable to a SQL injection vulnerability in the New Query Builder REST Processor...
CVE-2026-81626HIGH8.6IBM Guardium Data Protection 12.2 is vulnerable to a SQL injection vulnerability in the Load Balancer Groups component. ...
CVE-2026-81623MEDIUM6.3IBM Guardium Data Protection 12.2 could allow an authenticated user to execute arbitrary commands with low user privileg...
CVE-2026-80442CRITICAL9.9IBM Guardium Data Protection 12.2 is vulnerable to an authenticated OS command injection vulnerability in the exportCert...
CVE-2026-80441CRITICAL9.8IBM Guardium Data Protection 12.2 is vulnerable to an unauthenticated second-order SQL injection vulnerability in the ge...
CVE-2026-77528MEDIUM5.3Autobahn Python is a WebSocket and WAMP implementation for Python that supports Twisted and asyncio. Prior to 26.7.1, We...
CVE-2026-76902MEDIUM5CordysCRM is an open source AI-powered customer relationship management system that supports private deployment. Prior t...
CVE-2026-76901MEDIUM5.8CordysCRM is an open source AI-powered customer relationship management system that supports private deployment. Prior t...
CVE-2026-76900MEDIUM6.8CordysCRM is an open source AI-powered customer relationship management system that supports private deployment. In vers...
CVE-2026-76899MEDIUM5.7CordysCRM is an open source AI-powered customer relationship management system that supports private deployment. From 1....
CVE-2026-75895HIGH7.5In libsmpp35 from 0.1.0 through 1.8.0 out of bound read issue was found in the at smpp34_unpack() function via attacker ...
CVE-2026-75878CRITICAL9.1IBM Sterling File Gateway could allow a remote attacker to bypass authentication and obtain a fully authenticated sessio...
CVE-2026-63647CRITICAL9.3CordysCRM is an open source AI-powered customer relationship management system that supports private deployment. Prior t...
CVE-2026-63646MEDIUM6.9CordysCRM is an open source AI-powered customer relationship management system that supports private deployment. Prior t...
CVE-2026-61822MEDIUM6.5pg_partman is a PostgreSQL extension that manages partitioned tables by time or ID. Prior to 5.5.0, run_maintenance() ha...
CVE-2026-61821HIGH8.5pg_partman is a PostgreSQL extension that manages partitioned tables by time or ID. Prior to 5.5.0, drop_partition_id() ...
CVE-2026-61820HIGH8.5pg_partman is a PostgreSQL extension that manages partitioned tables by time or ID. Prior to 5.5.0, inherit_template_pro...
CVE-2026-61819HIGH8.5pg_partman is a PostgreSQL extension that manages partitioned tables by time or ID. Prior to 5.5.0, when pg_jobmon is in...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now