2026 CVE Vulnerabilities
64,729 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-82008 | CRITICAL | 9.9 | 1.2% | Sep 22, 2026 | Adobe Campaign Classic (ACC) is affected by an Improper Input Validation vulnerability that could result in arbitrary co... |
| CVE-2026-7866 | CRITICAL | 10 | — | Sep 22, 2026 | Stack-based Buffer Overflow vulnerability in RTI Connext Professional (Core Libraries) allows Overflow Buffers. This iss... |
| CVE-2026-77244 | CRITICAL | 10 | 0.5% | Sep 22, 2026 | MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to 0.22.0, th... |
| CVE-2026-75728 | CRITICAL | 9.1 | 1.0% | Sep 22, 2026 | Adobe Campaign Classic (ACC) is affected by an Incorrect Authorization vulnerability that could result in arbitrary code... |
| CVE-2026-75723 | CRITICAL | 10 | 1.2% | Sep 22, 2026 | Adobe Campaign Classic (ACC) is affected by an Incorrect Authorization vulnerability that could result in arbitrary code... |
| CVE-2026-75721 | CRITICAL | 10 | 1.2% | Sep 22, 2026 | Adobe Campaign Classic (ACC) is affected by an Improper Control of Generation of Code ('Code Injection') vulnerability t... |
| CVE-2026-75703 | CRITICAL | 10 | 1.2% | Sep 22, 2026 | Adobe Campaign Classic (ACC) is affected by an Improper Control of Generation of Code ('Code Injection') vulnerability t... |
| CVE-2026-75699 | CRITICAL | 10 | 1.2% | Sep 22, 2026 | Adobe Campaign Classic (ACC) is affected by an Improper Control of Generation of Code ('Code Injection') vulnerability t... |
| CVE-2026-73369 | CRITICAL | 10 | 1.2% | Sep 22, 2026 | Adobe Campaign Classic (ACC) is affected by an Improper Control of Generation of Code ('Code Injection') vulnerability t... |
| CVE-2026-43641 | CRITICAL | 9.8 | 3.0% | Sep 22, 2026 | Softaculous Virtualizor before 3.2.9 (Patch 9) and 3.0.0 contains an OS command injection vulnerability in the billing m... |
| CVE-2026-18461 | CRITICAL | 9.2 | — | Sep 22, 2026 | Use of Externally-Controlled Format String vulnerability in RTI Connext Professional (Core Libraries) allows Format Stri... |
| CVE-2026-94456 | CRITICAL | 9.1 | — | Sep 22, 2026 | Postiz generates security-sensitive credentials using `Math.random()` instead of a cryptographically secure source. The ... |
| CVE-2026-86059 | CRITICAL | 9.6 | — | Sep 22, 2026 | Dokploy is a free, self-hostable Platform as a Service (PaaS). Prior to 0.29.13, Dokploy organization members without Gi... |
| CVE-2026-85734 | CRITICAL | 9.1 | — | Sep 22, 2026 | LightRAG provides simple and fast retrieval-augmented generation. Prior to 1.5.5, the POST /login endpoint in lightrag/a... |
| CVE-2026-80156 | CRITICAL | 9.1 | 1.0% | Sep 22, 2026 | Lantronix SLC8000 before firmware v9.7.0.5, SLC9000 before firmware v9.7.0.2, EMG8500/EMG7500 before firmware v9.7.0.1, ... |
| CVE-2026-80155 | CRITICAL | 10 | 1.6% | Sep 22, 2026 | Lantronix SLC8000 before firmware v9.7.0.5, SLC9000 before firmware v9.7.0.2, EMG8500/EMG7500 before firmware v9.7.0.1, ... |
| CVE-2026-80154 | CRITICAL | 9.6 | 0.6% | Sep 22, 2026 | All firmware versions of Lantronix SLC8000, SLC9000, EMG8500, EMG7500, SLB882, SLCx-03, and SLCx-02 contain an authentic... |
| CVE-2026-80152 | CRITICAL | 9.1 | 2.7% | Sep 22, 2026 | Lantronix SLC8000 before firmware v9.7.0.3, SLC9000 before firmware v9.7.0.2, EMG8500/EMG7500 before firmware v9.7.0.1, ... |
| CVE-2026-80151 | CRITICAL | 9.1 | 2.7% | Sep 22, 2026 | Lantronix SLC8000 before firmware v9.7.0.3, SLC9000 before firmware v9.7.0.2, EMG8500/EMG7500 before firmware v9.7.0.1, ... |
| CVE-2026-80147 | CRITICAL | 9.9 | 0.8% | Sep 22, 2026 | Lantronix SLC8000/SLC9000 before firmware v9.7.0.2, EMG8500/EMG7500 before firmware v9.7.0.1, and all firmware versions ... |
| CVE-2026-80146 | CRITICAL | 9.9 | 0.8% | Sep 22, 2026 | Lantronix SLC8000/SLC9000 before firmware v9.7.0.2, EMG8500/EMG7500 before firmware v9.7.0.1, and all firmware versions ... |
| CVE-2026-80145 | CRITICAL | 9.1 | 2.5% | Sep 22, 2026 | Lantronix SLC8000/SLC9000 before firmware v9.7.0.2, EMG8500/EMG7500 before firmware v9.7.0.1, and all firmware versions ... |
| CVE-2026-80144 | CRITICAL | 9.9 | 2.8% | Sep 22, 2026 | Lantronix SLC8000/SLC9000 before firmware v9.7.0.2, EMG8500/EMG7500 before firmware v9.7.0.1, and all firmware versions ... |
| CVE-2026-80143 | CRITICAL | 9.9 | 2.8% | Sep 22, 2026 | Lantronix SLC8000/SLC9000 before firmware v9.7.0.2, EMG8500/EMG7500 before firmware v9.7.0.1, and all firmware versions ... |
| CVE-2026-77621 | CRITICAL | 9.3 | 1.1% | Sep 22, 2026 | Vector is a high-performance observability data pipeline. From 0.10.0 until 0.57.0, the file sink renders its templated ... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now