2026 CVE Vulnerabilities

64,729 CVEs published in 2026.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2026-47116CRITICAL9.8LTSecurity LTK3500SF contains a hard-coded credentials vulnerability where the root and guest account passwords are stor...
CVE-2026-28324CRITICAL9.8SolarWinds Observability Self-Hosted was found to be affected by an unauthenticated remote code execution vulnerability ...
CVE-2026-91130CRITICAL9.3Home Assistant is open source home automation software focused on local control and privacy. Prior to 2026.7.0, the Stat...
CVE-2026-88414CRITICAL9.8MCMS 6.1.1 through 6.2.1 contains a SQL injection vulnerability in the PageAction.verify endpoint (GET /ms/mdiy/page/ver...
CVE-2026-82000CRITICAL9.6Adobe Experience Manager Forms JEE is affected by a Server-Side Request Forgery (SSRF) vulnerability that could result i...
CVE-2026-81995CRITICAL9.1Adobe Experience Manager Forms JEE is affected by an Improper Input Validation vulnerability that could result in arbitr...
CVE-2026-77254CRITICAL9.1MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to 0.22.0, re...
CVE-2026-75745CRITICAL10Adobe Experience Manager Forms JEE is affected by an Incorrect Authorization vulnerability that could result in arbitrar...
CVE-2026-75698CRITICAL9.3Adobe Connect is affected by a reflected Cross-Site Scripting (XSS) vulnerability. An attacker could exploit this vulner...
CVE-2026-75697CRITICAL9.3Adobe Connect is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to in...
CVE-2026-75689CRITICAL9.3Adobe Connect is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to in...
CVE-2026-75686CRITICAL9.3Adobe Connect is affected by an Improper Input Validation vulnerability that could result in arbitrary code execution in...
CVE-2026-75684CRITICAL9.3Adobe Connect is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to in...
CVE-2026-75682CRITICAL9.9Adobe Connect is affected by an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vul...
CVE-2026-57149CRITICAL9.9plone.app.portlets.portlets provides a Plone-specific user interface for plone.portlets, as well as a standard set of po...
CVE-2026-37604CRITICAL9.8pH7Software pH7Builder (pH7 Social Dating CMS) through 18.2.0 resolves the client IP address in _protected/framework/Ip/...
CVE-2026-89276CRITICAL9.9Adobe Campaign Classic (ACC) is affected by an Improper Control of Generation of Code ('Code Injection') vulnerability t...
CVE-2026-89275CRITICAL10Adobe Campaign Classic (ACC) is affected by an Improper Control of Generation of Code ('Code Injection') vulnerability t...
CVE-2026-84412CRITICAL10Adobe Campaign Classic (ACC) is affected by an Improper Control of Generation of Code ('Code Injection') vulnerability t...
CVE-2026-83660CRITICAL10Adobe Campaign Classic (ACC) is affected by a Server-Side Request Forgery (SSRF) vulnerability that could result in priv...
CVE-2026-82443CRITICAL9.9Adobe Campaign Classic (ACC) is affected by a Server-Side Request Forgery (SSRF) vulnerability that could result in priv...
CVE-2026-82013CRITICAL9.9Adobe Campaign Classic (ACC) is affected by a Server-Side Request Forgery (SSRF) vulnerability that could result in priv...
CVE-2026-82011CRITICAL9.1Adobe Campaign Classic (ACC) is affected by an Improper Neutralization of Special Elements used in an SQL Command ('SQL ...
CVE-2026-82010CRITICAL9.9Adobe Campaign Classic (ACC) is affected by an Improper Neutralization of Special Elements used in an SQL Command ('SQL ...
CVE-2026-82009CRITICAL9.1Adobe Campaign Classic (ACC) is affected by an Improper Neutralization of Special Elements used in an SQL Command ('SQL ...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now