2026 CVE Vulnerabilities

48,563 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-20271HIGH8.6As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering t...
CVE-2026-20270HIGH8.6As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering t...
CVE-2026-20269HIGH8.6As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering t...
CVE-2026-20268HIGH8.6As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering t...
CVE-2026-20267CRITICAL9As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering t...
CVE-2026-20263HIGH8.6A vulnerability in the Blocks Extensible Exchange Protocol (BEEP) feature of Cisco IOS XE Software could allow an unauth...
CVE-2026-20200HIGH8.8A vulnerability in the web-based management interface of Cisco IMC could allow an authenticated, remote attacker with lo...
CVE-2026-20198MEDIUM4.8A vulnerability in the web-based management interface of Cisco Integrated Management Controller (IMC) could allow an aut...
CVE-2026-20124HIGH7.7A vulnerability in the Simple Network Management Protocol (SNMP) subsystem of Cisco IOS XE Software could allow an authe...
CVE-2026-20028MEDIUM5A vulnerability in the network driver of Cisco Terminal Service (TS) Agent could allow an authenticated, remote attacker...
CVE-2026-18927MEDIUM6.3A vulnerability was determined in imranrisal-dev Student-Management-System 18ea7904c339e0c7b0234724a79c939ce6191def/a8d4...
CVE-2026-17630HIGH8.8IBM Langflow OSS 1.0.0 through 1.10.3 could allow a remote attacker to execute arbitrary code due to improper validation...
CVE-2026-17626HIGH8.8IBM Langflow OSS 1.0.0 through 1.10.3 Langflow could allow an authenticated attacker to read, modify, or expose sensitiv...
CVE-2026-17623HIGH8.8IBM Langflow OSS 1.0.0 through 1.10.3 could allow a remote authenticated attacker to execute arbitrary commands due to i...
CVE-2026-17617CRITICAL9.8IBM Application Gateway Operator 22.2 through 26.06 is vulnerable to Server-Side Request Forgery (SSRF) due to insuffici...
CVE-2026-14587HIGH7.5Neo4j's Bolt modern handshake decoder treats an overlong capability bit mask the same way it treats a truncated bit mask...
CVE-2026-9203HIGH8.5A server-side request forgery vulnerability in Progress MarkLogic Server before 11.3.6 and 12.0.3 allows an authenticate...
CVE-2026-9195CRITICAL9.3A cross-site scripting vulnerability in the Query Console of Progress MarkLogic Server before 11.3.6 and 12.0.3 allows a...
CVE-2026-9193CRITICAL9.9An improper privilege management vulnerability in the Hadoop integration of Progress MarkLogic Server before 11.3.6 and ...
CVE-2026-9192CRITICAL9.8An authentication bypass vulnerability in the ODBC App Server of Progress MarkLogic Server before 11.3.6 and 12.0.3 allo...
CVE-2026-9190CRITICAL9.1An HTTP request smuggling vulnerability in the HTTP App Server of Progress MarkLogic Server before 11.3.6 and 12.0.3 all...
CVE-2026-8709CRITICAL9.9An improper privilege management vulnerability in the REST API document patch operation of Progress MarkLogic Server bef...
CVE-2026-8400CRITICAL9.8IBM WebSphere Application Server 8.5, and 9.0 and IBM WebSphere Application Server - Liberty Continuous delivery has a f...
CVE-2026-7557CRITICAL9.1An improper verification of cryptographic signature vulnerability in the SAML authentication module of Progress MarkLogi...
CVE-2026-7329CRITICAL9.9An improper privilege management vulnerability in the SQL, SPARQL, and Optic REST query interfaces of Progress MarkLogic...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now