2026 CVE Vulnerabilities
43,347 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-50063 | HIGH | 7.8 | — | Aug 11, 2026 | A vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 15), Solid Edge SE2026 (All versi... |
| CVE-2026-50062 | HIGH | 7.8 | 0.1% | Aug 11, 2026 | A vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 15), Solid Edge SE2026 (All versi... |
| CVE-2026-50061 | HIGH | 7.8 | — | Aug 11, 2026 | A vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 15), Solid Edge SE2026 (All versi... |
| CVE-2026-50060 | HIGH | 7.8 | 0.1% | Aug 11, 2026 | A vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 15), Solid Edge SE2026 (All versi... |
| CVE-2026-50059 | HIGH | 7.8 | — | Aug 11, 2026 | A vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 15), Solid Edge SE2026 (All versi... |
| CVE-2026-50058 | HIGH | 7.8 | — | Aug 11, 2026 | A vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 15), Solid Edge SE2026 (All versi... |
| CVE-2026-18972 | CRITICAL | 9.6 | — | Aug 11, 2026 | An authenticated attacker can spoof another GUI user's identity by sending their request with the custom header \"Grpc-M... |
| CVE-2026-72610 | MEDIUM | 4.3 | — | Aug 11, 2026 | A stored SQL injection vulnerability in Koha through 24.11.17, 25.05.12, 25.11.06, and 26.05.01 allows authenticated sta... |
| CVE-2026-72609 | HIGH | 7.1 | — | Aug 11, 2026 | An SQL injection vulnerability in Koha through 24.11.17, 25.05.12, 25.11.06, and 26.05.01 allows authenticated staff wit... |
| CVE-2026-72608 | MEDIUM | 6.5 | — | Aug 11, 2026 | A stored SQL injection vulnerability in Koha through 24.11.17, 25.05.12, 25.11.06, and 26.05.01 allows authenticated sta... |
| CVE-2026-72607 | HIGH | 7.1 | — | Aug 11, 2026 | A stored SQL injection vulnerability in Koha through 24.11.17, 25.05.12, 25.11.06, and 26.05.01 allows authenticated sta... |
| CVE-2026-72606 | HIGH | 7.5 | — | Aug 11, 2026 | A server-side request forgery vulnerability in Pinry through 2.1.13 allows unauthenticated remote attackers to make the ... |
| CVE-2026-72605 | HIGH | 7.5 | — | Aug 11, 2026 | A missing authentication vulnerability in Swing Music 3.0.0 allows unauthenticated remote attackers to create arbitrary ... |
| CVE-2026-72604 | MEDIUM | 6.5 | — | Aug 11, 2026 | A path traversal vulnerability in Intelliants Subrion CMS through 4.2.1 allows authenticated administrators to delete ar... |
| CVE-2026-72603 | CRITICAL | 9.9 | — | Aug 11, 2026 | An OS command injection vulnerability in wg-easy 15.3.0 allows users with the clients.create permission to execute arbit... |
| CVE-2026-72602 | HIGH | 7.5 | — | Aug 11, 2026 | A path traversal vulnerability in AsyncFuncAI deepwiki-open through commit 16f35a0 allows unauthenticated remote attacke... |
| CVE-2026-72601 | HIGH | 7.5 | — | Aug 11, 2026 | A broken access control vulnerability in CSZ CMS 1.3.2 allows unauthenticated remote attackers to read all form submissi... |
| CVE-2026-72600 | HIGH | 7.5 | — | Aug 11, 2026 | A broken access control vulnerability in Idurar IDURAR ERP CRM 4.1.0 allows unauthenticated remote attackers to download... |
| CVE-2026-72599 | CRITICAL | 9.8 | — | Aug 11, 2026 | An SQL injection vulnerability in e107 2.4.0 allows unauthenticated remote attackers to execute arbitrary SQL via the ne... |
| CVE-2026-72598 | MEDIUM | 6.5 | — | Aug 11, 2026 | A server-side request forgery vulnerability in Apioo Fusio 8.8.3 allows authenticated consumer-role users to make the se... |
| CVE-2026-72597 | MEDIUM | 6.5 | — | Aug 11, 2026 | A server-side request forgery vulnerability in Friendica through the 2026.08-dev branch allows authenticated users with ... |
| CVE-2026-72596 | HIGH | 8.1 | — | Aug 11, 2026 | A broken access control vulnerability in Ghost Foundation Ghost 5.x allows authenticated Author-role users to delete pos... |
| CVE-2026-72595 | HIGH | 8.1 | — | Aug 11, 2026 | A broken access control vulnerability in BadChoice Handesk as of 2026-07-10 allows any authenticated agent to update tic... |
| CVE-2026-72563 | HIGH | 8.1 | — | Aug 11, 2026 | A broken access control vulnerability in BadChoice Handesk as of 2026-07-10 allows any authenticated agent to overwrite ... |
| CVE-2026-72562 | HIGH | 8.8 | — | Aug 11, 2026 | An SQL injection vulnerability in Pimcore admin-ui-classic-bundle through version 2.3 allows authenticated backend users... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now