2026 CVE Vulnerabilities
47,201 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-42862 | MEDIUM | 5 | 0.2% | Jun 8, 2026 | Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, a mass ... |
| CVE-2026-29170 | MEDIUM | 6.1 | 0.5% | Jun 8, 2026 | A cross-site scripting vulnerability exists in mod_proxy_ftp's HTML directory list generation in Apache HTTP Server 2.4.... |
| CVE-2026-11529 | MEDIUM | 6.3 | 0.2% | Jun 8, 2026 | A vulnerability was determined in designcomputer mysql-mcp-server up to 0.2.2. The impacted element is the function read... |
| CVE-2026-25558 | MEDIUM | 4.8 | 0.2% | Jun 8, 2026 | QloApps through 1.7.0 contains a stored cross-site scripting vulnerability in the admin file manager that allows authent... |
| CVE-2026-11521 | MEDIUM | 6.3 | 0.3% | Jun 8, 2026 | A security vulnerability has been detected in Mohammed-eid35 bank-management-system-springboot up to 7b9bcc65ad7df3db29a... |
| CVE-2026-11519 | MEDIUM | 6.3 | 0.3% | Jun 8, 2026 | A security flaw has been discovered in SourceCodester Inventory System 1.0. Affected by this vulnerability is an unknown... |
| CVE-2026-11518 | MEDIUM | 4.3 | 0.4% | Jun 8, 2026 | A vulnerability was identified in SourceCodester Inventory System 1.0. Affected is an unknown function of the file /user... |
| CVE-2026-11516 | MEDIUM | 5.5 | 0.4% | Jun 8, 2026 | A vulnerability was found in UTT HiPER 2610G up to 3.0.0-171107. This affects the function strcpy of the file /goform/fo... |
| CVE-2026-9549 | MEDIUM | 4.8 | 0.1% | Jun 8, 2026 | Stored cross-site scripting in the service discovery active check output in Checkmk <2.5.0p5, <2.4.0p31, <2.3.0p48, and ... |
| CVE-2026-8833 | MEDIUM | 5.4 | 0.1% | Jun 8, 2026 | Improper neutralization of HTML-encoded characters in the URL validation function in Checkmk <2.5.0p5, <2.4.0p31, <2.3.0... |
| CVE-2026-8078 | MEDIUM | 4.8 | 0.1% | Jun 8, 2026 | Stored cross-site scripting in the global settings change log in Checkmk <2.5.0p5, <2.4.0p31, <2.3.0p48, and all 2.2.0 v... |
| CVE-2026-7765 | MEDIUM | 5.3 | 0.2% | Jun 8, 2026 | Incorrect authorization in the User Messages dashboard widget in Checkmk <2.5.0p5 causes the message-fetching endpoints ... |
| CVE-2026-7186 | MEDIUM | 5.4 | 0.1% | Jun 8, 2026 | Stored cross-site scripting in the URL dashboard widget in Checkmk <2.5.0p5, <2.4.0p31, <2.3.0p48, and all 2.2.0 version... |
| CVE-2026-11515 | MEDIUM | 5.5 | 0.3% | Jun 8, 2026 | A vulnerability has been found in SourceCodester Barangay Resident Profiling and Information Management System 1.0. The ... |
| CVE-2026-11514 | MEDIUM | 6.3 | 0.2% | Jun 8, 2026 | A flaw has been found in itsourcecode Hospital Management System 1.0. The affected element is an unknown function of the... |
| CVE-2026-11513 | MEDIUM | 6.3 | 0.2% | Jun 8, 2026 | A vulnerability was detected in itsourcecode Hospital Management System 1.0. Impacted is an unknown function of the file... |
| CVE-2026-11512 | MEDIUM | 4.3 | 0.3% | Jun 8, 2026 | A security vulnerability has been detected in itsourcecode Hospital Management System 1.0. This issue affects some unkno... |
| CVE-2026-3011 | MEDIUM | 6.4 | 0.2% | Jun 8, 2026 | The Recipe Card Blocks Lite plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the recipe block's 'su... |
| CVE-2026-11569 | MEDIUM | 5.4 | 0.1% | Jun 8, 2026 | A flaw was found in Quay. The filedrop endpoint accepts any mime type without validation, allowing an authenticated user... |
| CVE-2026-11510 | MEDIUM | 6.3 | 0.2% | Jun 8, 2026 | A security flaw has been discovered in CodeAstro Leave Management System 1.0. This affects an unknown part of the file /... |
| CVE-2026-11509 | MEDIUM | 6.3 | 0.2% | Jun 8, 2026 | A vulnerability was identified in CodeAstro Leave Management System 1.0. Affected by this issue is some unknown function... |
| CVE-2026-11508 | MEDIUM | 6.3 | 0.2% | Jun 8, 2026 | A vulnerability was determined in CodeAstro Leave Management System 1.0. Affected by this vulnerability is an unknown fu... |
| CVE-2026-11507 | MEDIUM | 6.3 | 0.2% | Jun 8, 2026 | A vulnerability was found in CodeAstro Leave Management System 1.0. Affected is an unknown function of the file /admin/d... |
| CVE-2026-11506 | MEDIUM | 6.3 | 0.2% | Jun 8, 2026 | A vulnerability has been found in CodeAstro Leave Management System 1.0. This impacts an unknown function of the file /a... |
| CVE-2026-11505 | MEDIUM | 5 | 0.2% | Jun 8, 2026 | A flaw has been found in GL.iNet A1300, AX1800, AXT1800, MT2500, MT3000, MT6000, X3000 and XE3000 4.8.x. This affects an... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now