57,566 vulnerabilities published in 2026
A flaw was found in gimp. This buffer overflow vulnerability in the GIF image loading component's `ReadJeffsImage` funct
Dell Storage Manager - Replay Manager for Microsoft Servers, version(s) 8.0, contain(s) an Improper Privilege Management
SourceCodester Simple Music Cloud Community System v1.0 is vulnerable to SQL Injection in the file /music/view_music.php
SourceCodester Simple Music Cloud Community System v1.0 is vulnerable to SQL Injection in the file /music/view_playlist.
In OCaml opam before 2.5.1, a .install field containing a destination filepath can use ../ to reach a parent directory.
A weakness has been identified in QueryMine sms up to 7ab5a9ea196209611134525ffc18de25c57d9593. Impacted is an unknown f
Software installed and run as a non-privileged user may conduct improper GPU system calls to gain write permission to re
Claude Code is an agentic coding tool. In versions prior to 2.1.75 on Windows, Claude Code loaded the system-wide defaul
A flaw has been found in dameng100 muucmf 1.9.5.20260309. Impacted is the function getListByPage of the file /index/Sear
A vulnerability was determined in kodcloud KodExplorer up to 4.52. This affects the function share.class.php::initShareO
A vulnerability was identified in kodcloud KodExplorer up to 4.52. This impacts the function fileGet of the file /app/co
A vulnerability has been found in osuuu LightPicture up to 1.2.2. This issue affects some unknown processing of the file
A vulnerability was identified in liangliangyy DjangoBlog up to 2.1.0.0. The impacted element is an unknown function of
A security vulnerability has been detected in liangliangyy DjangoBlog up to 2.1.0.0. Affected is an unknown function of
A flaw has been found in TransformerOptimus SuperAGI up to 0.0.14. Affected by this issue is the function get_vector_db_
A vulnerability was determined in brikcss merge up to 1.3.0. This affects an unknown part. Executing a manipulation of t
A vulnerability was identified in ProjectsAndPrograms School Management System up to 6b6fae5426044f89c08d0dd101c7fa71f90
A security flaw has been discovered in langflow-ai langflow up to 1.1.0. This issue affects the function create_upload_f
A vulnerability was found in rickxy Hospital Management System up to 88a4290d957dc5bdde8a56e5ad451ad14f7f90f4. Affected
A vulnerability was determined in modelscope agentscope up to 1.0.18. Affected by this vulnerability is the function exe
A vulnerability was identified in modelscope agentscope up to 1.0.18. Affected by this issue is the function _parse_url/
A security flaw has been discovered in modelscope agentscope up to 1.0.18. This affects the function _get_bytes_from_web
A weakness has been identified in modelscope agentscope up to 1.0.18. This vulnerability affects the function _process_a
A weakness has been identified in TransformerOptimus SuperAGI up to 0.0.14. Affected by this issue is the function Uploa
A vulnerability was determined in 1024bit extend-deep up to 0.1.6. The impacted element is an unknown function of the fi
A security vulnerability has been detected in moxi624 Mogu Blog v2 up to 5.2. Affected by this vulnerability is the func
A vulnerability has been found in Metasoft 美特软件 MetaCRM up to 6.4.0. This vulnerability affects the function Statement.e
A security vulnerability has been detected in rowboatlabs rowboat up to 0.1.67. This impacts the function tool_call of t
A vulnerability was found in ericc-ch copilot-api up to 0.7.0. The impacted element is the function cors of the file src
Uninitialized memory in the Audio/Video: Web Codecs component. This vulnerability was fixed in Firefox 150, Firefox ESR
Incorrect boundary conditions in the WebRTC component. This vulnerability was fixed in Firefox 150, Firefox ESR 115.35,
Incorrect boundary conditions in the WebRTC component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10,
The login limit is not enforced on the SFTP service of Fortra's GoAnywhere MFT prior to 7.10.0 if the Web User attemptin
Tenda W30E V2.0 V16.01.0.21 was found to contain a command injection vulnerability in the do_ping_action function via th
Missing critical step in authentication in Apache HttpClient 5.6 allows an attacker to cause the client to accept SCRAM-
A vulnerability in the chmod utility of uutils coreutils allows users to bypass the --preserve-root safety mechanism. Th
IBM Total Storage Service Console (TSSC) / TS4500 IMC 9.2, 9.3, 9.4, 9.5, 9.6 TSSC/IMC could allow an unauthenticated us
IP Setting Software contains an issue with the DLL search path, which may lead to insecurely loading Dynamic Link Librar
Yadea T5 Electric Bicycles (models manufactured in/after 2024) have a weak authentication mechanism in their keyless ent
OpenClaw before 2026.3.28 contains an authentication bypass vulnerability in the remote onboarding component that persis
OpenClaw before 2026.3.28 contains an arbitrary code execution vulnerability in mirror mode that converts untrusted sand
In the Linux kernel, the following vulnerability has been resolved: LoongArch: KVM: Handle the case that EIOINTC's core
A security vulnerability has been detected in vanna-ai vanna up to 2.0.2. The affected element is an unknown function of
A vulnerability has been found in Divyanshu-hash GitPilot-MCP up to 9ed9f153ba4158a2ad230ee4871b25130da29ffd. This impac
A vulnerability was detected in PicoClaw up to 0.2.4. Impacted is an unknown function of the file /api/gateway/restart o
A vulnerability was determined in KLiK SocialMediaWebsite up to 1.0.1. This vulnerability affects unknown code of the fi
A security vulnerability has been detected in SmythOS sre up to 0.0.15. Affected is the function AgentRuntime of the fil
A vulnerability was found in Typecho up to 1.3.0. This vulnerability affects the function Service::sendPingHandle of the
A vulnerability was identified in Tenda i9 1.0.0.5(2204). This vulnerability affects the function R7WebsSecurityHandlerf
A flaw has been found in 666ghj MiroFish up to 0.1.2. This affects the function create_app of the file backend/app/__ini
Scan for 2026 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started