57,566 vulnerabilities published in 2026
SAP NetWeaver Application Server Java (Adobe Document Service) uses outdated open source cryptographic and data transfer
Due to an SQL Injection vulnerability in SAP Social intelligence, an authenticated attacker could directly inject an SQL
Due to a Cross-Site Scripting (XSS) vulnerability in SAP NetWeaver Application Server ABAP, an authenticated attacker co
A vulnerability was found in Open5GS up to 2.7.1. This affects the function hss_ogs_diam_s6a_air_cb/hss_ogs_diam_s6a_ulr
A flaw was found in insights-client. When the application receives a non-200 response, it logs the request headers, whic
A flaw was found in insights-client. The setDefault() function logs the value of every environment variable it processes
An authenticated command injection vulnerability was identified in GMS Command-Line Interface (CLI) 9.5.1 (Build 9510.10
A vulnerability was determined in Open5GS up to 2.7.1. This vulnerability affects the function mme_s6a_subscription_data
A vulnerability was identified in Open5GS up to 2.7.1. This issue affects the function pcrf_rx_aar_cb of the file src/pc
A flaw has been found in Open5GS up to 2.7.1. Affected by this vulnerability is an unknown functionality of the componen
The Linkable Loadable Extensions (llext) subsystem mis-handles PLT/RELA relocation entries when linking a relocatable (p
Improper restriction of XML external entity reference vulnerability in Ministry of Justice UYAP Document Editor allows S
IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to bypass security restrictions due to improper
IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to obtain sensitive information and bypass secu
NortheBridge/luminalshine is a Sunshine-compatible game stream host for Moonlight. Prior to version 26.05.0-rc4, a laten
A flaw was found in sblim-sfcb. A local, low-privileged attacker can exploit a race condition during privileged instance
A flaw was found in sblim-cmpi-base. Insecure temporary file creation in the provider registration scripts allows a loca
Unauthenticated Broken Access Control in Anti Spam and list cleaner – AcyChecker <= 2.0.0 versions.
rsync before 3.5.0 contains a time-of-check to time-of-use (TOCTOU) race condition vulnerability in the non-daemon recei
rsync before 3.5.0 contains a symlink race condition vulnerability that allows local attackers to cause rsync to apply a
In Zimbra Collaboration (ZCS) before 10.1.17, weak cryptographic key generation vulnerability exists in the OnlyOffice i
SSRF in restore-repo via unsanitized pull_request.yml Head.CloneURL
A flaw has been found in EnzoVezzaro mcp-dominican-layer up to 39dd373786712650097ad31db27d5c477c8f9c82. The affected el
A vulnerability was found in EnzoVezzaro mcp-dominican-layer up to 39dd373786712650097ad31db27d5c477c8f9c82. This affect
A vulnerability has been found in Dromara lamp-cloud up to 5.10.0. This affects an unknown part of the file DefGenProjec
A security flaw has been discovered in eyaushev swagger-testcase-mcp 5babb27c951fb404bc2b25ec80593616e49054e5. This vuln
A weakness has been identified in itsourcecode Hospital Management System 1.0. This issue affects some unknown processin
A vulnerability has been found in francoisjacquet RosarioSIS up to 12.7.4. This vulnerability affects unknown code of th
A vulnerability was identified in 648540858 wvp-GB28181-pro 2.7.4-20260107. This affects an unknown part of the file Pla
A flaw was found in migration-planner. Insufficient validation of the `AgentStatusUpdate.CredentialUrl` field allows an
Dell Wyse Management Suite (WMS), versions prior to 2605.0.2, contain an Improper Deserialization of Untrusted Data vuln
Dell Wyse Management Suite (WMS), versions prior to 2605.0.2, contain a Use of Hard-coded Credentials vulnerability. A l
IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote authenticated attacker to bypass security restrictions due t
IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote authenticated attacker to execute arbitrary scripts due to c
In OpenStack Ironic before 38.0.1, the autodetect deploy interface may fail to run cleaning immediately after enrollment
A security flaw has been discovered in itsourcecode Hospital Management System 1.0. Affected is an unknown function of t
A flaw has been found in code-projects Online Food Order System 1.0. The impacted element is an unknown function of the
A vulnerability has been found in SpaceX Starlink Router Gen 3 2025.11.14.mr64708.3. This affects the function get_statu
A vulnerability was determined in code-projects Online Shopping System 1.0. Affected is an unknown function of the file
A vulnerability was identified in code-projects Online Shopping System 1.0. Affected by this vulnerability is an unknown
A weakness has been identified in code-projects Online Shopping System 1.0. This affects an unknown part of the file /ch
A vulnerability was found in OpenBoxes up to 0.9.7. The impacted element is the function Upload of the file grails-app/c
A vulnerability was determined in OpenBoxes up to 0.9.7. This affects the function needManager of the file grails-app/co
A vulnerability was identified in OpenBoxes up to 0.9.6. This impacts the function buildZebraTemplate of the file grails
A security flaw has been discovered in Dolibarr up to 23.0.3. Affected is an unknown function of the file htdocs/user/ca
A security flaw has been discovered in DefaultFuction Notice-System-Managent 2.0. This issue affects the function Groovy
A weakness has been identified in DefaultFuction Customer-Relationship-Management-In-C-Project 2.0. Impacted is the func
A vulnerability has been found in itsourcecode Hospital Management System 1.0. This impacts an unknown function of the f
A vulnerability has been found in gomarble-ai facebook-ads-mcp-server 0.1.0. The impacted element is the function fetch_
A vulnerability was identified in graphlit graphlit-mcp-server 1.0.1. This affects the function fetch of the file src/to
Scan for 2026 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started