2026 CVE Vulnerabilities

53,146 CVEs published in 2026.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2026-39342HIGH8.8ChurchCRM is an open-source church management system. Prior to 7.1.0, the searchwhat parameter via QueryView.php with th...
CVE-2026-39341HIGH8.1ChurchCRM is an open-source church management system. Prior to 7.1.0, the application is vulnerable to time-based SQL in...
CVE-2026-39340HIGH8.1ChurchCRM is an open-source church management system. Prior to 7.1.0, a SQL injection vulnerability exists in PropertyTy...
CVE-2026-39334HIGH8.8ChurchCRM is an open-source church management system. Prior to 7.1.0, an SQL injection vulnerability was found in the en...
CVE-2026-39333HIGH8.7ChurchCRM is an open-source church management system. Prior to 7.1.0, he FindFundRaiser.php endpoint reflects user-suppl...
CVE-2026-39332HIGH8.7ChurchCRM is an open-source church management system. Prior to 7.1.0, a reflected Cross-Site Scripting (XSS) vulnerabili...
CVE-2026-39331HIGH8.1ChurchCRM is an open-source church management system. Prior to 7.1.0, an authenticated API user can modify any family re...
CVE-2026-39330HIGH8.8ChurchCRM is an open-source church management system. Prior to 7.1.0, an SQL injection vulnerability was found in the en...
CVE-2026-39329HIGH8.8ChurchCRM is an open-source church management system. Prior to 7.1.0, an SQL injection vulnerability was identified in /...
CVE-2026-39328HIGH8.9ChurchCRM is an open-source church management system. Prior to 7.1.0, a stored cross-site scripting vulnerability exists...
CVE-2026-39327HIGH8.8ChurchCRM is an open-source church management system. Prior to 7.1.0, an SQL injection vulnerability was found in the en...
CVE-2026-39326HIGH8.8ChurchCRM is an open-source church management system. Prior to 7.1.0, an SQL injection vulnerability was found in the en...
CVE-2026-39325HIGH7.2ChurchCRM is an open-source church management system. Prior to 7.1.0, an SQL injection vulnerability was found in the en...
CVE-2026-39319HIGH8.8ChurchCRM is an open-source church management system. Prior to 7.1.0, a second order SQL injection vulnerability was fou...
CVE-2026-39318HIGH8.8ChurchCRM is an open-source church management system. Versions prior to 7.1.0 have an SQL injection vulnerability in the...
CVE-2026-35576HIGH8.7ChurchCRM is an open-source church management system. Prior to 7.0.0, a stored cross-site scripting (XSS) vulnerability ...
CVE-2026-35575HIGH8ChurchCRM is an open-source church management system. Prior to 6.5.3, a Stored Cross-Site Scripting (Stored XSS) vulnera...
CVE-2026-24175HIGH7.5NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause a server crash by sending a malfor...
CVE-2026-24174HIGH7.5NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause a server crash by sending a malfor...
CVE-2026-24173HIGH7.5NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause a server crash by sending a malfor...
CVE-2026-24156HIGH7.3NVIDIA DALI contains a vulnerability where an attacker could cause a deserialization of untrusted data. A successful exp...
CVE-2026-24146HIGH7.5NVIDIA Triton Inference Server contains a vulnerability where insufficient input validation and a large number of output...
CVE-2026-22682HIGH8.4OpenHarness prior to commit 166fcfe contains an improper access control vulnerability in built-in file tools due to inco...
CVE-2026-39384HIGH7.6FreeScout is a free help desk and shared inbox built with PHP's Laravel framework. Prior to 1.8.212, FreeScout does not ...
CVE-2026-39312HIGH7.5SoftEtherVPN is a an open-source cross-platform multi-protocol VPN Program. In 5.2.5188 and earlier, a pre-authenticatio...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now