57,566 vulnerabilities published in 2026
A vulnerability was determined in PHPGurukul Hospital Management System 4.0. This impacts an unknown function of the fil
A security flaw has been discovered in code-projects Online Music Site 1.0. Affected by this issue is some unknown funct
A vulnerability has been found in DouPHP up to 1.9. This issue affects some unknown processing of the file /admin/file.p
A vulnerability was found in D-Link DCS-931L up to 1.13.0. Impacted is the function doSystem of the file /setSystemAdmin
Improper buffer restrictions in the firmware for the TDX Module may allow an escalation of privilege. System software ad
Improper conditions check in some firmware for some Intel(R) NPU Drivers within Ring 1: Device Drivers may allow a denia
Improper link resolution before file access ('link following') in Windows App for Mac allows an authorized attacker to e
Roundcube Webmail before 1.5.13 and 1.6 before 1.6.13 allows Cascading Style Sheets (CSS) injection, e.g., because comme
In the Linux kernel, the following vulnerability has been resolved: serial: Fix not set tty->port race condition Rever
In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix data-race warning and potential load/sto
In the Linux kernel, the following vulnerability has been resolved: netdevsim: fix a race issue related to the operatio
In the Linux kernel, the following vulnerability has been resolved: firewire: core: fix race condition against transact
In the Linux kernel, the following vulnerability has been resolved: nfc: nci: Fix race between rfkill and nci_unregiste
In the Linux kernel, the following vulnerability has been resolved: spi: tegra210-quad: Protect curr_xfer check in IRQ
In the Linux kernel, the following vulnerability has been resolved: ice: Fix PTP NULL pointer dereference during VSI re
A vulnerability was identified in Comfast CF-E4 2.6.0.1. This impacts an unknown function of the file /cgi-bin/mbox-conf
Dell Avamar, versions prior to 19.12 with patch 338905, contains an Improper Limitation of a Pathname to a Restricted Di
The URL Shortify plugin for WordPress is vulnerable to Open Redirect in all versions up to, and including, 1.12.1 due to
In the Linux kernel, the following vulnerability has been resolved: bonding: annotate data-races around slave->last_rx
A flaw has been found in mingSoft MCMS 6.1.1. The affected element is an unknown function of the file /ms/file/uploadTem
Dell PowerProtect Data Manager, version(s) prior to 19.22, contain(s) an Improper Verification of Source of a Communicat
URL Redirection to Untrusted Site ('Open Redirect') vulnerability in KaizenCoders Update URLs – Quick and Easy way to se
Dell PowerProtect Data Manager, version(s) prior to 19.22, contain(s) an Improper Verification of Source of a Communicat
An Open Redirect vulnerability in the go-chi/chi >=5.2.2 RedirectSlashes function allows remote attackers to redirect vi
Tanium addressed a use-after-free vulnerability in the Cloud Workloads Enforce client extension.
Lettermint Node.js SDK is the official Node.js SDK for Lettermint. In versions 1.5.0 and below, email properties (such a
A flaw has been found in datapizza-labs datapizza-ai 0.0.2. Affected is the function ChatPromptTemplate of the file data
A vulnerability was identified in DrayTek Vigor 300B up to 1.5.1.6. This affects the function cgiGetFile of the file /cg
Information Exposure Vulnerability in Hitachi Ops Center API Configuration Manager, Hitachi Configuration Manager.This i
USB HID protocol dissector memory exhaustion in Wireshark 4.6.0 to 4.6.3 and 4.4.0 to 4.4.13 allows denial of service
NTS-KE protocol dissector crash in Wireshark 4.6.0 to 4.6.3 allows denial of service
IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.2 IBM WebSphere Application Server Liberty could prov
A vulnerability has been found in itsourcecode College Management System 1.0. This vulnerability affects unknown code of
A vulnerability was found in itsourcecode College Management System 1.0. This issue affects some unknown processing of t
IDC SFX2100 Satalite Recievers set the `/etc/resolv.conf` file to be world-writable by any local user, allowing DNS reso
Race condition vulnerability in the device security management module. Impact: Successful exploitation of this vulnerabi
URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Kings Plugins B2BKing Premium allows Phishing.This
A flaw has been found in Wavlink WL-NU516U1 240425. This affects the function ota_new_upgrade of the file /cgi-bin/adm.c
A vulnerability has been found in Wavlink WL-NU516U1 240425. This vulnerability affects the function usb_p910 of the fil
A vulnerability has been found in Wavlink NU516U1 251208. This vulnerability affects the function sub_405B2C of the file
A security vulnerability has been detected in code-projects Simple Flight Ticket Booking System 1.0. This impacts an unk
A vulnerability was detected in code-projects Simple Flight Ticket Booking System 1.0. Affected is an unknown function o
A vulnerability has been found in OpenCart 4.0.2.3. Affected by this issue is the function Save of the file admin/contro
A security vulnerability has been detected in ContiNew Admin up to 4.2.0. This issue affects the function URI.create of
A vulnerability was detected in SourceCodester Employee Task Management System 1.0. Impacted is an unknown function of t
A flaw has been found in SourceCodester Employee Task Management System up to 1.0. The affected element is an unknown fu
A vulnerability was detected in Comfast CF-AC100 2.6.0.8. This affects the function sub_44AC14 of the file /cgi-bin/mbox
Adobe Commerce versions 2.4.9-alpha3, 2.4.8-p3, 2.4.7-p8, 2.4.6-p13, 2.4.5-p15, 2.4.4-p16 and earlier are affected by an
Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js. Prior to 9.6.0-a
StudioCMS is a server-side-rendered, Astro native, headless content management system. Prior to 0.4.3, the REST API crea
Scan for 2026 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started