2026 CVE Vulnerabilities

64,729 CVEs published in 2026.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2026-53625HIGH7.5GLPI is a free asset and IT management software package. From 0.70 until 10.0.26 and 11.0.8, a technician can manipulate...
CVE-2026-53610HIGH7.5GLPI is a free asset and IT management software package. From 11.0.0 until 11.0.8, an attacker can craft a URL for a das...
CVE-2026-49470HIGH7.7GLPI is a free asset and IT management software package. From 11.0.0 until 11.0.8, the time-based one-time password veri...
CVE-2026-47679HIGH8.5GLPI is a free asset and IT management software package. From 10.0.0 until 10.0.26 and 11.0.8, any logged-in GLPI user c...
CVE-2026-97885HIGH7.3A flaw has been found in mathurvishal CloudClassroom-PHP-Project up to 5dadec098bfbbf3300d60c3494db3fb95b66e7be. Affecte...
CVE-2026-97883HIGH7.3A security vulnerability has been detected in mathurvishal CloudClassroom-PHP-Project up to 5dadec098bfbbf3300d60c3494db...
CVE-2026-97882HIGH7.3A weakness has been identified in mathurvishal CloudClassroom-PHP-Project up to 5dadec098bfbbf3300d60c3494db3fb95b66e7be...
CVE-2026-91841HIGH7.8A flaw was found in NetworkManager-vpnc, a VPN plugin for NetworkManager. A local unprivileged user can exploit this vul...
CVE-2026-91840HIGH7.8A flaw was found in NetworkManager-vpnc. This vulnerability allows a local unprivileged user to escalate privileges to r...
CVE-2026-91839HIGH7.8A flaw was found in NetworkManager-fortisslvpn, the FortiSSLVPN plugin for NetworkManager. The nm-fortisslvpn-service im...
CVE-2026-91838HIGH7.8A flaw was found in NetworkManager-sstp, the SSTP VPN plugin for NetworkManager. A local unprivileged user can exploit t...
CVE-2026-84462HIGH8.6Zammad is a web based open source helpdesk/customer support system. Prior to 7.1.2, a security filter that protects Zamm...
CVE-2026-61525HIGH8.8Zammad is a web based open source helpdesk/customer support system. In 7.0.2 and 7.1.0, zammad's session management for ...
CVE-2026-56733HIGH8.7Zammad is a web based open source helpdesk/customer support system. Prior to 7.0.2 and 7.1.0, this issue concerns a lack...
CVE-2026-56731HIGH8.4Zammad is a web based open source helpdesk/customer support system. Prior to 7.0.1, a low-privilege authenticated user m...
CVE-2026-56727HIGH7.1Zammad is a web based open source helpdesk/customer support system. Prior to 7.0.2, summary In Zammad's inbound PGP emai...
CVE-2026-56725HIGH8.7Zammad is a web based open source helpdesk/customer support system. Prior to 7.0.2, summary An unauthenticated request t...
CVE-2026-97878HIGH7.3A vulnerability was identified in zhistaredu StarTraining up to 3.8.1. Impacted is the function anonymous of the file /d...
CVE-2026-97877HIGH7.3A vulnerability was determined in zhistaredu StarTraining up to 3.8.1. This issue affects the function UserLoginService....
CVE-2026-97871HIGH7.3A vulnerability has been found in Zhonglun CloudPos up to 3.0.1.76. This issue affects the function OpenLocalBrowser of ...
CVE-2026-94445HIGH8.8A malicious txtar could escape the intended execution context and force arbitrary writes to the playground host's truste...
CVE-2026-91837HIGH7.8A flaw was found in NetworkManager-iodine, the iodine VPN plugin for NetworkManager. A local unprivileged user can explo...
CVE-2026-89032HIGH7.7BerriAI LiteLLM before 1.101.0-rc.1 contains a tenant isolation bypass vulnerability in the semantic cache layer that al...
CVE-2026-67419HIGH7.1RabbitMQ is a messaging and streaming broker. Prior to 4.3.5, an authenticated user who can bind a queue to a topic exch...
CVE-2026-67410HIGH8.2RabbitMQ is a messaging and streaming broker. From 4.2.0 until 4.3.3 and 4.2.9, OAuth2 Client Secret Exposed via Unauthe...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now