2026 CVE Vulnerabilities
48,814 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-11522 | HIGH | 8.8 | 0.5% | Jun 8, 2026 | A vulnerability was detected in Tenda W20E 15.11.0.6. This vulnerability affects the function formSetPortMirror of the f... |
| CVE-2026-49235 | HIGH | 7.5 | 0.4% | Jun 8, 2026 | When Routinator encounters a file via RRDP using a specifically crafted Document Type Definition, Routinator crashes. |
| CVE-2026-49234 | HIGH | 7.5 | 0.3% | Jun 8, 2026 | When sending a specifically crafted non-UTF-8 string as select-asn query parameter to the /api/v1/origins endpoint, Rout... |
| CVE-2026-49233 | HIGH | 7.5 | 0.4% | Jun 8, 2026 | Routinator does not properly check the module component of rsync URIs, which are used to create the file system paths fo... |
| CVE-2026-49232 | HIGH | 8.7 | 0.3% | Jun 8, 2026 | Routinator exits on any error when accepting incoming HTTP or RTR connections, including ones it can recover from such a... |
| CVE-2026-43974 | HIGH | 7.5 | 0.4% | Jun 8, 2026 | Unexpected Status Code or Return Value vulnerability in ninenines gun (gun_http module) allows a malicious HTTP server t... |
| CVE-2026-43973 | HIGH | 7.5 | 0.4% | Jun 8, 2026 | Uncontrolled Resource Consumption vulnerability in ninenines gun (gun_http module) allows a malicious server to exhaust ... |
| CVE-2026-43972 | HIGH | 7.2 | 0.2% | Jun 8, 2026 | Origin Validation Error vulnerability in ninenines gun (gun_http2 module) allows cross-origin cookie injection via unval... |
| CVE-2026-36789 | HIGH | 7.5 | 0.5% | Jun 8, 2026 | Shenzhen Tenda Technology Co., Ltd Tenda AC1206 v15.03.06.23 was discovered to contain multiple stack overflows in the f... |
| CVE-2026-11517 | HIGH | 8.8 | 0.6% | Jun 8, 2026 | A vulnerability was determined in UTT HiPER 2610G up to 3.0.0-171107. This impacts the function strcpy of the file /gofo... |
| CVE-2026-50752 | HIGH | 7.4 | 4.9% | Jun 8, 2026 | A weakness in the certificate validation logic of the deprecated IKEv1 key exchange may allow an unauthenticated attacke... |
| CVE-2026-47430 | HIGH | 7.5 | 0.7% | Jun 8, 2026 | ## Summary The iOS implementation of `cordova-plugin-inappbrowser` passes the `id` field from a `WKScriptMessage` body ... |
| CVE-2026-11504 | HIGH | 8.8 | 0.5% | Jun 8, 2026 | A vulnerability was detected in Tenda CX12L 16.03.53.12. The impacted element is the function setSchedWifi of the file /... |
| CVE-2026-9506 | HIGH | 8.7 | 0.5% | Jun 8, 2026 | This vulnerability exists in Bagisto due to improper validation of user-supplied input in the ImageCacheController compo... |
| CVE-2026-11503 | HIGH | 8.8 | 0.5% | Jun 8, 2026 | A security vulnerability has been detected in Tenda CX12L 16.03.53.12. The affected element is the function form_fast_se... |
| CVE-2026-11501 | HIGH | 7.3 | 0.3% | Jun 8, 2026 | A security flaw has been discovered in SourceCodester Hospitals Patient Records Management System 1.0. This issue affect... |
| CVE-2026-41723 | HIGH | 8 | 0.4% | Jun 8, 2026 | VMware Cloud Foundation Operations contains multiple stored cross-site scripting vulnerabilities.A malicious actor with ... |
| CVE-2026-3238 | HIGH | 7.5 | 2.7% | Jun 8, 2026 | A flaw was found in Samba’s WINS server component when running as an Active Directory Domain Controller. The WINS protoc... |
| CVE-2026-11498 | HIGH | 8.8 | 3.8% | Jun 8, 2026 | A vulnerability was found in Tenda HG7HG9 and HG10 300001138_en_xpon. Affected by this issue is the function asp_voip_Ot... |
| CVE-2026-11497 | HIGH | 8.8 | 0.4% | Jun 8, 2026 | A vulnerability has been found in D-Link DCS-5615 1.01.00. Affected by this vulnerability is an unknown functionality of... |
| CVE-2026-11492 | HIGH | 8.8 | 0.5% | Jun 8, 2026 | A security flaw has been discovered in D-Link DIR-823G 1.0.2B05. The affected element is an unknown function of the file... |
| CVE-2026-11490 | HIGH | 7.3 | 0.3% | Jun 8, 2026 | A vulnerability was determined in code-projects Online Music Site 1.0. This issue affects some unknown processing of the... |
| CVE-2026-11489 | HIGH | 7.3 | 0.3% | Jun 8, 2026 | A vulnerability was found in code-projects Online Music Site 1.0. This vulnerability affects unknown code of the file /A... |
| CVE-2026-11488 | HIGH | 7.3 | 0.3% | Jun 8, 2026 | A vulnerability has been found in code-projects Simple Flight Ticket Booking System 1.0. This affects an unknown part of... |
| CVE-2026-11486 | HIGH | 7.3 | 0.3% | Jun 8, 2026 | A vulnerability was detected in SourceCodester Class and Exam Timetabling System 1.0. Affected by this vulnerability is ... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now