2026 CVE Vulnerabilities

53,163 CVEs published in 2026.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2026-21372HIGH7.8Memory Corruption when sending IOCTL requests with invalid buffer sizes during memcpy operations.
CVE-2026-21371HIGH7.8Memory Corruption when retrieving output buffer with insufficient size validation.
CVE-2026-21367HIGH7.5Transient DOS when processing nonstandard FILS Discovery Frames with out-of-range action sizes during initial scans.
CVE-2026-34885HIGH8.5Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in David Lingren Medi...
CVE-2026-33540HIGH7.5Distribution is a toolkit to pack, ship, store, and deliver container content. Prior to 3.1.0, in pull-through cache mod...
CVE-2026-33510HIGH8.8Homarr is an open-source dashboard. Prior to 1.57.0, a DOM-based Cross-Site Scripting (XSS) vulnerability has been disco...
CVE-2026-29047HIGH8.8GLPI is a free asset and IT management software package. From 10.0.0 to before 10.0.24 and 11.0.6, an authenticated user...
CVE-2026-26026HIGH7.2GLPI is a free asset and IT management software package. From 11.0.0 to before 11.0.6, template injection by an administ...
CVE-2026-30078HIGH7.5OpenAirInterface V2.2.0 AMF crashes when it receives an NGAP message with invalid procedure code or invalid PDU-type. Fo...
CVE-2026-3524HIGH8.8Mattermost Plugin Legal Hold versions <=1.1.4 fail to halt request processing after a failed authorization check in Serv...
CVE-2026-5648HIGH7.3A flaw has been found in code-projects Simple Laundry System 1.0. This vulnerability affects unknown code of the file /u...
CVE-2026-5646HIGH7.3A security vulnerability has been detected in code-projects Easy Blog Site 1.0. Affected by this issue is some unknown f...
CVE-2026-5645HIGH7.3A weakness has been identified in projectworlds Car Rental System 1.0. Affected by this vulnerability is an unknown func...
CVE-2026-5673HIGH7.1A flaw was found in libtheora. This heap-based out-of-bounds read vulnerability exists within the AVI (Audio Video Inter...
CVE-2026-5642HIGH7.3A vulnerability was determined in Cyber-III Student-Management-System up to 1a938fa61e9f735078e9b291d2e6215b4942af3f. Th...
CVE-2026-5637HIGH7.3A security vulnerability has been detected in projectworlds Car Rental System 1.0. This vulnerability affects unknown co...
CVE-2026-5634HIGH7.3A vulnerability was identified in projectworlds Car Rental Project 1.0. Affected by this vulnerability is an unknown fun...
CVE-2026-5633HIGH7.3A vulnerability was determined in assafelovic gpt-researcher up to 3.4.3. Affected is an unknown function of the compone...
CVE-2026-31409HIGH8.8In the Linux kernel, the following vulnerability has been resolved: ksmbd: unset conn->binding on failed binding reques...
CVE-2026-31408HIGH8.8In the Linux kernel, the following vulnerability has been resolved: Bluetooth: SCO: Fix use-after-free in sco_recv_fram...
CVE-2026-31407HIGH7.1In the Linux kernel, the following vulnerability has been resolved: netfilter: conntrack: add missing netlink policy va...
CVE-2026-31406HIGH7.8In the Linux kernel, the following vulnerability has been resolved: xfrm: Fix work re-schedule after cancel in xfrm_nat...
CVE-2026-5632HIGH7.3A vulnerability was found in assafelovic gpt-researcher up to 3.4.3. This impacts an unknown function of the component H...
CVE-2026-5631HIGH7.3A vulnerability has been found in assafelovic gpt-researcher up to 3.4.3. This affects the function extract_command_data...
CVE-2026-5629HIGH8.8A vulnerability was detected in Belkin F9K1015 1.00.10. The affected element is the function formSetFirewall of the file...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now