2026 CVE Vulnerabilities
47,997 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-42679 | MEDIUM | 6.5 | 0.3% | Jun 1, 2026 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Mamunur Rashid Classifie... |
| CVE-2026-42676 | MEDIUM | 6.5 | 0.1% | Jun 1, 2026 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in myCred allows Stor... |
| CVE-2026-42671 | MEDIUM | 6.5 | 0.2% | Jun 1, 2026 | Missing Authorization vulnerability in Paolo GeoDirectory allows Exploiting Incorrectly Configured Access Control Securi... |
| CVE-2026-10275 | MEDIUM | 5 | 0.3% | Jun 1, 2026 | A flaw has been found in OpenSC up to 0.26.1. This affects the function test_kpgen_certwrite of the file src/tools/pkcs1... |
| CVE-2026-10274 | MEDIUM | 6.3 | 0.2% | Jun 1, 2026 | A vulnerability was determined in indrasishbanerjee aem-mcp-server up to b5f833aef9b5dfd17a5991b3b18a8a11edbdc583. This ... |
| CVE-2026-10272 | MEDIUM | 6.5 | 0.3% | Jun 1, 2026 | A vulnerability has been found in a4m4 Student-Management-System up to f0c5f6842c5e8c431ff02b5260a565ca844df3a0. The imp... |
| CVE-2026-10271 | MEDIUM | 6.3 | 0.3% | Jun 1, 2026 | A flaw has been found in a4m4 Student-Management-System up to f0c5f6842c5e8c431ff02b5260a565ca844df3a0. The affected ele... |
| CVE-2026-10269 | MEDIUM | 6.3 | 0.3% | Jun 1, 2026 | A security vulnerability has been detected in decolua 9router up to 0.4.0. This issue affects the function isAuthenticat... |
| CVE-2026-48559 | MEDIUM | 5.4 | 0.2% | Jun 1, 2026 | Lightweight Music Server (LMS) though 3.76.0 contains a stored cross-site scripting vulnerability that allows attackers ... |
| CVE-2026-10533 | MEDIUM | 5 | 0.2% | Jun 1, 2026 | A flaw was found in OpenShift Container Platform. Completed pods with restartPolicy: Never do not count toward ResourceQ... |
| CVE-2026-10265 | MEDIUM | 6.3 | 0.2% | Jun 1, 2026 | A vulnerability was identified in itsourcecode Content Management System 1.0. Affected by this issue is some unknown fun... |
| CVE-2026-9309 | MEDIUM | 5.4 | 0.2% | Jun 1, 2026 | Firefox for iOS Reader View did not properly escape HTML tags in JSON-LD metadata. A malicious page could inject markup ... |
| CVE-2026-9308 | MEDIUM | 5.4 | 0.2% | Jun 1, 2026 | Firefox for iOS Reader View replaced page content in its HTML template before replacing other internal placeholders. A m... |
| CVE-2026-34193 | MEDIUM | 4.3 | 0.1% | Jun 1, 2026 | Kernel software installed and running inside a Guest/Host VM may post improper commands to the GPU Firmware to trigger a... |
| CVE-2026-10258 | MEDIUM | 6.3 | 0.2% | Jun 1, 2026 | A weakness has been identified in itsourcecode Content Management System 1.0. Impacted is an unknown function of the fil... |
| CVE-2026-10257 | MEDIUM | 6.3 | 0.2% | Jun 1, 2026 | A security flaw has been discovered in itsourcecode Content Management System 1.0. This issue affects some unknown proce... |
| CVE-2026-10256 | MEDIUM | 6.3 | 0.2% | Jun 1, 2026 | A vulnerability was identified in itsourcecode Content Management System 1.0. This vulnerability affects unknown code of... |
| CVE-2026-10255 | MEDIUM | 5.5 | 0.3% | Jun 1, 2026 | A vulnerability has been found in SourceCodester Pharmacy Sales and Inventory System 1.0. Affected by this vulnerability... |
| CVE-2026-10254 | MEDIUM | 5.5 | 0.3% | Jun 1, 2026 | A flaw has been found in SourceCodester Pet Grooming Management Software 1.0. Affected is an unknown function of the fil... |
| CVE-2026-49328 | MEDIUM | 5.3 | 0.5% | Jun 1, 2026 | Server-Side Request Forgery (SSRF) in the UrlImageConverter component of Apache Fesod (Incubating) fesod-sheet before 2.... |
| CVE-2026-25600 | MEDIUM | 6.4 | 0.1% | Jun 1, 2026 | The PDBM application relies on a static, hard‑coded secret embedded in the PDBM.exe executable. This secret is used by ... |
| CVE-2026-25599 | MEDIUM | 6.3 | 0.1% | Jun 1, 2026 | Missing authentication and clear‑text transmission of data from the heat pumps to the control server, combined with the ... |
| CVE-2026-10248 | MEDIUM | 4.7 | 0.2% | Jun 1, 2026 | A vulnerability was determined in SourceCodester Pharmacy Sales and Inventory System up to 1.0. This issue affects the f... |
| CVE-2026-8474 | MEDIUM | 5.3 | 0.2% | Jun 1, 2026 | A vulnerability was discovered on Stormshield Network Security * 4.3.0 to 4.3.41, * 4.8.0 to 4.8.15, * ... |
| CVE-2026-49270 | MEDIUM | 5.9 | 0.3% | Jun 1, 2026 | Exposure of Sensitive Information Through Metadata vulnerability in Apache ActiveMQ Broker, Apache ActiveMQ, Apache Acti... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now