57,566 vulnerabilities published in 2026
NetPCLinker 1.0.0.0 contains a buffer overflow vulnerability in the Clients Control Panel DNS/IP field that allows attac
Sickbeard alpha contains a remote command injection vulnerability that allows unauthenticated attackers to execute arbit
10-Strike Bandwidth Monitor 3.9 contains a buffer overflow vulnerability that allows attackers to bypass SafeSEH, ASLR,
Quick Player 1.3 contains a buffer overflow vulnerability that allows attackers to execute arbitrary code by crafting a
AirControl 1.4.2 contains a pre-authentication remote code execution vulnerability that allows unauthenticated attackers
Crystal Shard http-protection 0.2.0 contains an IP spoofing vulnerability that allows attackers to bypass protection mid
A vulnerability in MagicInfo9 Server allows authorized users to upload HTML files without authentication, leading to Sto
The database account and password are hardcoded, allowing login with the account to manipulate the database in MagicInfo
The User Profile Builder WordPress plugin before 3.15.2 does not have a proper password reset process, allowing a few u
In Thread, there is a possible out of bounds write due to a missing bounds check. This could lead to remote escalation o
An unauthenticated remote attacker can gain full access on the affected devices as they are shipped without a password b
Wildfire IM is an instant messaging and real-time audio/video solution. Prior to 1.4.3, a critical vulnerability exists
vLLM is an inference and serving engine for large language models (LLMs). From 0.8.3 to before 0.14.1, when an invalid i
Vulnerability in Wikimedia Foundation MediaWiki. This vulnerability is associated with program files includes/Api/ApiFor
When a specific function is enabled while joining a AD Domain from ADM, an improper input parameters validation vulnerab
Stack-based buffer overflow vulnerability exists in ELECOM wireless LAN access point devices. A crafted packet may lead
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Emit Informatics a
YouDataSum CPAS Audit Management System <=v4.9 is vulnerable to SQL Injection in /cpasList/findArchiveReportByDah due to
An issue was discovered in MediaCrush thru 1.0.1 allowing remote unauthenticated attackers to upload arbitrary files of
SQL Injection vulnerability in Shandong Kede Electronics Co., Ltd IoT smart water meter monitoring platform v.1.0 allows
TOTOLINK A950RG V4.1.2cu.5204_B20210112 contains a buffer overflow vulnerability in the setUrlFilterRules interface of /
A stack-based buffer overflow vulnerability was identified in TOTOLINK A950RG V4.1.2cu.5204_B20210112. The flaw exists i
A buffer overflow vulnerability exists in TOTOLINK A950RG V4.1.2cu.5204_B20210112. The issue resides in the setRadvdCfg
FUXA v1.2.7 contains a hard-coded credential vulnerability in server/api/jwt-helper.js. The application uses a hard-code
FUXA v1.2.7 contains an Unrestricted File Upload vulnerability in the `/api/upload` API endpoint. The endpoint lacks aut
FUXA v1.2.7 allows Remote Code Execution (RCE) via the project import functionality. The application does not properly s
PEAR is a framework and distribution system for reusable PHP components. Prior to version 1.33.0, a SQL injection vulner
PEAR is a framework and distribution system for reusable PHP components. Prior to version 1.33.0, a SQL injection risk e
PEAR is a framework and distribution system for reusable PHP components. Prior to version 1.33.0, use of preg_replace()
PEAR is a framework and distribution system for reusable PHP components. Prior to version 1.33.0, a SQL injection vulner
PEAR is a framework and distribution system for reusable PHP components. Prior to version 1.33.0, a SQL injection vulner
PEAR is a framework and distribution system for reusable PHP components. Prior to version 1.33.0, an unauthenticated SQL
Fast DDS is a C++ implementation of the DDS (Data Distribution Service) standard of the OMG (Object Management Group ).
StreamRipper32 version 2.6 contains a buffer overflow vulnerability in the Station/Song Section that allows attackers to
GoldWave 5.70 contains a buffer overflow vulnerability that allows attackers to execute arbitrary code by crafting malic
Filetto 1.0 FTP server contains a denial of service vulnerability in the FEAT command processing that allows attackers t
Konica Minolta FTP Utility 1.0 contains a buffer overflow vulnerability in the LIST command that allows attackers to ove
Konica Minolta FTP Utility 1.0 contains a buffer overflow vulnerability in the NLST command that allows attackers to ove
CloudMe 1.11.2 contains a buffer overflow vulnerability that allows remote attackers to execute arbitrary code through c
CraftCMS 3 vCard Plugin 1.0.0 contains a deserialization vulnerability that allows unauthenticated attackers to execute
Remote Desktop Audit 2.3.0.157 contains a buffer overflow vulnerability that allows attackers to execute arbitrary code
LanSend 3.2 contains a buffer overflow vulnerability in the Add Computers Wizard file import functionality that allows r
webTareas 2.0.p8 contains a file deletion vulnerability in the print_layout.php administration component that allows aut
webERP 4.15.1 contains an unauthenticated file access vulnerability that allows remote attackers to download database ba
School ERP Pro 1.0 contains a file upload vulnerability that allows students to upload arbitrary PHP files to the messag
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Martcode Software
The unstructured library provides open-source components for ingesting and pre-processing images and text documents, suc
Bambuddy is a self-hosted print archive and management system for Bambu Lab 3D printers. Prior to version 0.1.7, a hardc
IBM Common Cryptographic Architecture (CCA) 7.5.52 and 8.4.82 could allow an unauthenticated user to execute arbitrary c
JinJava is a Java-based template engine based on django template syntax, adapted to render jinja templates. Prior to ver
Scan for 2026 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started