2026 CVE Vulnerabilities

47,997 CVEs published in 2026.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2026-42679MEDIUM6.5Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Mamunur Rashid Classifie...
CVE-2026-42676MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in myCred allows Stor...
CVE-2026-42671MEDIUM6.5Missing Authorization vulnerability in Paolo GeoDirectory allows Exploiting Incorrectly Configured Access Control Securi...
CVE-2026-10275MEDIUM5A flaw has been found in OpenSC up to 0.26.1. This affects the function test_kpgen_certwrite of the file src/tools/pkcs1...
CVE-2026-10274MEDIUM6.3A vulnerability was determined in indrasishbanerjee aem-mcp-server up to b5f833aef9b5dfd17a5991b3b18a8a11edbdc583. This ...
CVE-2026-10272MEDIUM6.5A vulnerability has been found in a4m4 Student-Management-System up to f0c5f6842c5e8c431ff02b5260a565ca844df3a0. The imp...
CVE-2026-10271MEDIUM6.3A flaw has been found in a4m4 Student-Management-System up to f0c5f6842c5e8c431ff02b5260a565ca844df3a0. The affected ele...
CVE-2026-10269MEDIUM6.3A security vulnerability has been detected in decolua 9router up to 0.4.0. This issue affects the function isAuthenticat...
CVE-2026-48559MEDIUM5.4Lightweight Music Server (LMS) though 3.76.0 contains a stored cross-site scripting vulnerability that allows attackers ...
CVE-2026-10533MEDIUM5A flaw was found in OpenShift Container Platform. Completed pods with restartPolicy: Never do not count toward ResourceQ...
CVE-2026-10265MEDIUM6.3A vulnerability was identified in itsourcecode Content Management System 1.0. Affected by this issue is some unknown fun...
CVE-2026-9309MEDIUM5.4Firefox for iOS Reader View did not properly escape HTML tags in JSON-LD metadata. A malicious page could inject markup ...
CVE-2026-9308MEDIUM5.4Firefox for iOS Reader View replaced page content in its HTML template before replacing other internal placeholders. A m...
CVE-2026-34193MEDIUM4.3Kernel software installed and running inside a Guest/Host VM may post improper commands to the GPU Firmware to trigger a...
CVE-2026-10258MEDIUM6.3A weakness has been identified in itsourcecode Content Management System 1.0. Impacted is an unknown function of the fil...
CVE-2026-10257MEDIUM6.3A security flaw has been discovered in itsourcecode Content Management System 1.0. This issue affects some unknown proce...
CVE-2026-10256MEDIUM6.3A vulnerability was identified in itsourcecode Content Management System 1.0. This vulnerability affects unknown code of...
CVE-2026-10255MEDIUM5.5A vulnerability has been found in SourceCodester Pharmacy Sales and Inventory System 1.0. Affected by this vulnerability...
CVE-2026-10254MEDIUM5.5A flaw has been found in SourceCodester Pet Grooming Management Software 1.0. Affected is an unknown function of the fil...
CVE-2026-49328MEDIUM5.3Server-Side Request Forgery (SSRF) in the UrlImageConverter component of Apache Fesod (Incubating) fesod-sheet before 2....
CVE-2026-25600MEDIUM6.4The PDBM application relies on a static, hard‑coded secret embedded in the PDBM.exe executable. This secret is used by ...
CVE-2026-25599MEDIUM6.3Missing authentication and clear‑text transmission of data from the heat pumps to the control server, combined with the ...
CVE-2026-10248MEDIUM4.7A vulnerability was determined in SourceCodester Pharmacy Sales and Inventory System up to 1.0. This issue affects the f...
CVE-2026-8474MEDIUM5.3A vulnerability was discovered on Stormshield Network Security  * 4.3.0 to 4.3.41,  * 4.8.0 to 4.8.15,  * ...
CVE-2026-49270MEDIUM5.9Exposure of Sensitive Information Through Metadata vulnerability in Apache ActiveMQ Broker, Apache ActiveMQ, Apache Acti...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now