2026 CVE Vulnerabilities

48,814 CVEs published in 2026.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2026-11522HIGH8.8A vulnerability was detected in Tenda W20E 15.11.0.6. This vulnerability affects the function formSetPortMirror of the f...
CVE-2026-49235HIGH7.5When Routinator encounters a file via RRDP using a specifically crafted Document Type Definition, Routinator crashes.
CVE-2026-49234HIGH7.5When sending a specifically crafted non-UTF-8 string as select-asn query parameter to the /api/v1/origins endpoint, Rout...
CVE-2026-49233HIGH7.5Routinator does not properly check the module component of rsync URIs, which are used to create the file system paths fo...
CVE-2026-49232HIGH8.7Routinator exits on any error when accepting incoming HTTP or RTR connections, including ones it can recover from such a...
CVE-2026-43974HIGH7.5Unexpected Status Code or Return Value vulnerability in ninenines gun (gun_http module) allows a malicious HTTP server t...
CVE-2026-43973HIGH7.5Uncontrolled Resource Consumption vulnerability in ninenines gun (gun_http module) allows a malicious server to exhaust ...
CVE-2026-43972HIGH7.2Origin Validation Error vulnerability in ninenines gun (gun_http2 module) allows cross-origin cookie injection via unval...
CVE-2026-36789HIGH7.5Shenzhen Tenda Technology Co., Ltd Tenda AC1206 v15.03.06.23 was discovered to contain multiple stack overflows in the f...
CVE-2026-11517HIGH8.8A vulnerability was determined in UTT HiPER 2610G up to 3.0.0-171107. This impacts the function strcpy of the file /gofo...
CVE-2026-50752HIGH7.4A weakness in the certificate validation logic of the deprecated IKEv1 key exchange may allow an unauthenticated attacke...
CVE-2026-47430HIGH7.5## Summary The iOS implementation of `cordova-plugin-inappbrowser` passes the `id` field from a `WKScriptMessage` body ...
CVE-2026-11504HIGH8.8A vulnerability was detected in Tenda CX12L 16.03.53.12. The impacted element is the function setSchedWifi of the file /...
CVE-2026-9506HIGH8.7This vulnerability exists in Bagisto due to improper validation of user-supplied input in the ImageCacheController compo...
CVE-2026-11503HIGH8.8A security vulnerability has been detected in Tenda CX12L 16.03.53.12. The affected element is the function form_fast_se...
CVE-2026-11501HIGH7.3A security flaw has been discovered in SourceCodester Hospitals Patient Records Management System 1.0. This issue affect...
CVE-2026-41723HIGH8VMware Cloud Foundation Operations contains multiple stored cross-site scripting vulnerabilities.A malicious actor with ...
CVE-2026-3238HIGH7.5A flaw was found in Samba’s WINS server component when running as an Active Directory Domain Controller. The WINS protoc...
CVE-2026-11498HIGH8.8A vulnerability was found in Tenda HG7HG9 and HG10 300001138_en_xpon. Affected by this issue is the function asp_voip_Ot...
CVE-2026-11497HIGH8.8A vulnerability has been found in D-Link DCS-5615 1.01.00. Affected by this vulnerability is an unknown functionality of...
CVE-2026-11492HIGH8.8A security flaw has been discovered in D-Link DIR-823G 1.0.2B05. The affected element is an unknown function of the file...
CVE-2026-11490HIGH7.3A vulnerability was determined in code-projects Online Music Site 1.0. This issue affects some unknown processing of the...
CVE-2026-11489HIGH7.3A vulnerability was found in code-projects Online Music Site 1.0. This vulnerability affects unknown code of the file /A...
CVE-2026-11488HIGH7.3A vulnerability has been found in code-projects Simple Flight Ticket Booking System 1.0. This affects an unknown part of...
CVE-2026-11486HIGH7.3A vulnerability was detected in SourceCodester Class and Exam Timetabling System 1.0. Affected by this vulnerability is ...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now