2026 CVE Vulnerabilities
64,848 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-89321 | MEDIUM | 4.3 | 0.3% | Sep 14, 2026 | Publishing limits the compressed size of a VSIX (ovsx.publishing.max-content-size, 512 MB by default) but nothing limite... |
| CVE-2026-88932 | MEDIUM | 5.3 | 0.3% | Sep 14, 2026 | multer is a Node.js middleware for handling multipart/form-data uploads. In versions 2.2.0 through 2.3.0, when a request... |
| CVE-2026-90688 | MEDIUM | 6.5 | 0.4% | Sep 14, 2026 | A vulnerability was identified in Tenda W20E 15.11.0.61068_1546_841_CN_TDC. This issue affects the function formIPMacBin... |
| CVE-2026-85196 | MEDIUM | 5.3 | 0.3% | Sep 14, 2026 | Joomla Extension - regularlabs.com - Reflected XSS in Articles Anywhere extension for Joomla < 20.0.0, Users Anywhere ex... |
| CVE-2026-85188 | MEDIUM | 6.9 | 0.2% | Sep 14, 2026 | Joomla Extension - regularlabs.com - Database data disclosure in Advanced Module Manager (Free, Pro) < 12.1.0, Condition... |
| CVE-2026-85125 | MEDIUM | 5.1 | 0.2% | Sep 14, 2026 | The Android application "YAMAP -Social Trekking GPS App" contains an improper access control vulnerability in its WebVie... |
| CVE-2026-82796 | MEDIUM | 5.4 | 0.1% | Sep 14, 2026 | SolarView Compact contains a cross-site scripting vulnerability in Image Management. If this vulnerability is exploited,... |
| CVE-2026-82795 | MEDIUM | 5.4 | 0.1% | Sep 14, 2026 | SolarView Compact contains a cross-site scripting vulnerability in Schedule Settings and Mail Send Setting. If this vuln... |
| CVE-2026-82792 | MEDIUM | 5.2 | 0.1% | Sep 14, 2026 | Cross-site scripting vulnerability exists in Contec CAN 2.0B Communication Wireless LAN / USB Converter Unit. If this vu... |
| CVE-2026-82790 | MEDIUM | 5.4 | 0.1% | Sep 14, 2026 | Cross-site scripting vulnerability exists in PC-HELPER Wireless I/O DIO-0404RY-LWF and PC-HELPER Wireless I/O DIO-0404RY... |
| CVE-2026-82788 | MEDIUM | 6.1 | 0.2% | Sep 14, 2026 | Cross-site scripting vulnerability exists in CPSL-08P1EN. If this vulnerability is exploited, an arbitrary script may be... |
| CVE-2026-82786 | MEDIUM | 6.3 | 0.2% | Sep 14, 2026 | Insufficiently protected credentials issue exists in Remote I/O Coupler Unit (Server Type) CPSN-MCB271-*. If this vulner... |
| CVE-2026-82785 | MEDIUM | 4.3 | 0.3% | Sep 14, 2026 | Stack-based buffer overflow vulnerability exists in Remote I/O Coupler Unit (Server Type) CPSN-MCB271-*. Receiving a spe... |
| CVE-2026-82784 | MEDIUM | 6.5 | 0.2% | Sep 14, 2026 | Missing authentication for critical function vulnerability exists in Remote I/O Coupler Unit (Server Type) CPSN-MCB271-*... |
| CVE-2026-82783 | MEDIUM | 4.2 | 0.1% | Sep 14, 2026 | Plaintext storage of a password issue exists in CONPROSYS nano Series . If this vulnerability is exploited, an attacker ... |
| CVE-2026-82782 | MEDIUM | 4.3 | 0.3% | Sep 14, 2026 | Out-of-bounds write vulnerability exists in CONPROSYS nano Series. Receiving a specially crafted request created and sen... |
| CVE-2026-82781 | MEDIUM | 5.4 | 0.1% | Sep 14, 2026 | Cross-site scripting vulnerability exists in CONPROSYS nano Series. If this vulnerability is exploited, an arbitrary scr... |
| CVE-2026-82778 | MEDIUM | 4.3 | 0.3% | Sep 14, 2026 | An exposure of information through directory listing issue exists in CONPROSYS PAC Series. Accessing a specific URL on t... |
| CVE-2026-82776 | MEDIUM | 6.1 | 0.2% | Sep 14, 2026 | Cross-site scripting vulnerability exists in CONPROSYS PAC Series. If this vulnerability is exploited, an arbitrary scri... |
| CVE-2026-82775 | MEDIUM | 4.3 | 0.3% | Sep 14, 2026 | An exposure of information through directory listing issue exists in CONPROSYS M2M Gateway Series and CONPROSYS M2M Cont... |
| CVE-2026-82773 | MEDIUM | 6.1 | 0.2% | Sep 14, 2026 | Cross-site scripting vulnerability exists in CONPROSYS M2M Gateway Series and CONPROSYS M2M Controller Series. If this v... |
| CVE-2026-82771 | MEDIUM | 5.4 | 0.2% | Sep 14, 2026 | Cross-site scripting vulnerability exists in Contec EC1000 series. If this vulnerability is exploited, an arbitrary scri... |
| CVE-2026-82769 | MEDIUM | 5.4 | 0.2% | Sep 14, 2026 | Cross-site scripting vulnerability exists in Contec RP-WAH-SR Series. If this vulnerability is exploited, an arbitrary s... |
| CVE-2026-82767 | MEDIUM | 5.2 | 0.2% | Sep 14, 2026 | Cross-site scripting vulnerability exists in SGA1000. If this vulnerability is exploited, an arbitrary script may be exe... |
| CVE-2026-82764 | MEDIUM | 5.1 | 0.1% | Sep 14, 2026 | Cross-site request forgery vulnerability exists in multiple Contec products. If a user views a specially crafted page wh... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now