2026 CVE Vulnerabilities

47,837 CVEs published in 2026.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2026-10558MEDIUM6.3A vulnerability was detected in SourceCodester Pizzafy Ecommerce System 1.0. Impacted is an unknown function of the file...
CVE-2026-10550MEDIUM6.3A weakness has been identified in elunez eladmin up to 2.7. This vulnerability affects unknown code of the file App.java...
CVE-2026-10548MEDIUM5.3A security flaw has been discovered in NousResearch hermes-agent up to 2026.4.23. This affects the function _sync_anthro...
CVE-2026-9050MEDIUM4.3The Slider Revolution plugin for WordPress in versions 6.0.0-6.7.55 and 7.0.0-7.0.14 is vulnerable to unauthorized modif...
CVE-2026-9048MEDIUM4.3The Slider Revolution plugin for WordPress is vulnerable to Sensitive Information Exposure in versions 7.0.0 - 7.0.14, v...
CVE-2026-10302MEDIUM6.3A flaw has been found in itsourcecode Fees Management System 1.0. The impacted element is an unknown function of the fil...
CVE-2026-10301MEDIUM4.3A vulnerability was detected in itsourcecode Fees Management System 1.0. The affected element is an unknown function of ...
CVE-2026-28511MEDIUM4.3eLabFTW is an open source electronic lab notebook. Prior to version 5.4.2, in certain cases, an authenticated user perfo...
CVE-2026-24761MEDIUM4.3Kiteworks is a private data network (PDN). Prior to version 9.3.0, an Insecure Direct Object Reference (IDOR) vulnerabil...
CVE-2026-24756MEDIUM4.3Kiteworks is a private data network (PDN). Prior to version 9.3.0, an Insecure Direct Object Reference (IDOR) vulnerabil...
CVE-2026-24755MEDIUM5.4Kiteworks is a private data network (PDN). Prior to version 9.3.0, an Insecure Direct Object Reference (IDOR) vulnerabil...
CVE-2026-24754MEDIUM5.4Kiteworks is a private data network (PDN). Prior to version 9.3.0, a stored XSS vulnerability in Kiteworks Secure Data F...
CVE-2026-24753MEDIUM6.5Kiteworks is a private data network (PDN). Prior to version 9.3.0, an Insecure Direct Object Reference (IDOR) vulnerabil...
CVE-2026-10297MEDIUM6.3A vulnerability was identified in itsourcecode Fees Management System 1.0. This affects an unknown part of the file /man...
CVE-2026-10296MEDIUM6.3A vulnerability was determined in itsourcecode Fees Management System 1.0. Affected by this issue is some unknown functi...
CVE-2026-28581MEDIUM4In fixInitiatingUserIfNecessary of CallIntentProcessor.java, there is a possible way to make an emergency call due to a ...
CVE-2026-28578MEDIUM5.5In multiple functions of DevicePolicyManagerService.java, there is a possible desync from persistence due to improper in...
CVE-2026-10294MEDIUM4.3A vulnerability has been found in PackageKit up to 1.3.5. Affected is the function g_file_test of the file src/pk-transa...
CVE-2026-10291MEDIUM5.3A security vulnerability has been detected in Enderfga claw-orchestrator up to 3.7.0. The impacted element is the functi...
CVE-2026-0086MEDIUM6.8In onCreate of DisableSupervisionActivity.kt, there is a possible way to delete supervision data due to a missing null c...
CVE-2026-0085MEDIUM5.5In applySimpleFieldMaxSize of DataRowHandler.java, there is a possible way to insert a large contact name due to imprope...
CVE-2026-0080MEDIUM6.5In multiple functions of ubsan_throwing_runtime.cpp, there is a possible way to cause a crash due to an integer overflow...
CVE-2026-0079MEDIUM5.5In multiple functions of ubsan_throwing_runtime.cpp, there is a possible persistent denial of service due to an integer ...
CVE-2026-0075MEDIUM5.9In multiple functions, there is a possible way to access the contacts database due to a SQL injection. This could lead t...
CVE-2026-0074MEDIUM5.5In getPreferredSize of LauncherProcessImageListener.kt, there is a possible denial of service due to resource exhaustio...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now