57,566 vulnerabilities published in 2026
A vulnerability was identified in EFM ipTIME A8004T 14.18.2. Affected by this vulnerability is the function commit_vpncl
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Wikimedia F
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Wikimedia F
The Open eClass platform (formerly known as GUnet eClass) is a complete course management system. Prior to version 4.2,
Blesta 3.x through 5.x before 5.13.3 mishandles input validation, aka CORE-5665.
In the Linux kernel, the following vulnerability has been resolved: regmap: Fix race condition in hwspinlock irqsave ro
In the Linux kernel, the following vulnerability has been resolved: leds: led-class: Only Add LED to leds_list when it
In the Linux kernel, the following vulnerability has been resolved: scsi: core: Wake up the error handler when final co
A weakness has been identified in ZenTao up to 21.7.6-85642. The impacted element is the function fetchHook of the file
web2py versions 2.27.1-stable+timestamp.2023.11.16.08.03.57 and prior contain an open redirect vulnerability. If this vu
A vulnerability was identified in iomad up to 5.0. Affected is an unknown function of the component Company Admin Block.
A vulnerability was found in DCN DCME-320 up to 20260121. Impacted is the function apply_config of the file /function/sy
A vulnerability was determined in D-Link DIR-823X 250416. Affected by this issue is the function sub_424D20 of the file
A security flaw has been discovered in D-Link DIR-823X 250416. This vulnerability affects unknown code of the file /gofo
A vulnerability was determined in D-Link DIR-823X 250416. The affected element is an unknown function of the file /gofor
A vulnerability was identified in D-Link DIR-823X 250416. The impacted element is an unknown function of the file /gofor
A security vulnerability has been detected in PHPGurukul Hospital Management System 4.0. The affected element is an unkn
A vulnerability was determined in itsourcecode News Portal Project 1.0. This affects an unknown part of the file /admin/
A vulnerability was identified in D-Link DIR-600 up to 2.15WWb02. This vulnerability affects unknown code of the file ss
A vulnerability was determined in PHPGurukul Hospital Management System 4.0. This impacts an unknown function of the fil
A security flaw has been discovered in code-projects Online Music Site 1.0. Affected by this issue is some unknown funct
A vulnerability has been found in DouPHP up to 1.9. This issue affects some unknown processing of the file /admin/file.p
A vulnerability was found in D-Link DCS-931L up to 1.13.0. Impacted is the function doSystem of the file /setSystemAdmin
Improper buffer restrictions in the firmware for the TDX Module may allow an escalation of privilege. System software ad
Improper conditions check in some firmware for some Intel(R) NPU Drivers within Ring 1: Device Drivers may allow a denia
Improper link resolution before file access ('link following') in Windows App for Mac allows an authorized attacker to e
Roundcube Webmail before 1.5.13 and 1.6 before 1.6.13 allows Cascading Style Sheets (CSS) injection, e.g., because comme
In the Linux kernel, the following vulnerability has been resolved: serial: Fix not set tty->port race condition Rever
In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix data-race warning and potential load/sto
In the Linux kernel, the following vulnerability has been resolved: netdevsim: fix a race issue related to the operatio
In the Linux kernel, the following vulnerability has been resolved: firewire: core: fix race condition against transact
In the Linux kernel, the following vulnerability has been resolved: nfc: nci: Fix race between rfkill and nci_unregiste
In the Linux kernel, the following vulnerability has been resolved: spi: tegra210-quad: Protect curr_xfer check in IRQ
In the Linux kernel, the following vulnerability has been resolved: ice: Fix PTP NULL pointer dereference during VSI re
A vulnerability was identified in Comfast CF-E4 2.6.0.1. This impacts an unknown function of the file /cgi-bin/mbox-conf
Dell Avamar, versions prior to 19.12 with patch 338905, contains an Improper Limitation of a Pathname to a Restricted Di
The URL Shortify plugin for WordPress is vulnerable to Open Redirect in all versions up to, and including, 1.12.1 due to
In the Linux kernel, the following vulnerability has been resolved: bonding: annotate data-races around slave->last_rx
A flaw has been found in mingSoft MCMS 6.1.1. The affected element is an unknown function of the file /ms/file/uploadTem
Dell PowerProtect Data Manager, version(s) prior to 19.22, contain(s) an Improper Verification of Source of a Communicat
URL Redirection to Untrusted Site ('Open Redirect') vulnerability in KaizenCoders Update URLs – Quick and Easy way to se
Dell PowerProtect Data Manager, version(s) prior to 19.22, contain(s) an Improper Verification of Source of a Communicat
An Open Redirect vulnerability in the go-chi/chi >=5.2.2 RedirectSlashes function allows remote attackers to redirect vi
Tanium addressed a use-after-free vulnerability in the Cloud Workloads Enforce client extension.
Lettermint Node.js SDK is the official Node.js SDK for Lettermint. In versions 1.5.0 and below, email properties (such a
A flaw has been found in datapizza-labs datapizza-ai 0.0.2. Affected is the function ChatPromptTemplate of the file data
A vulnerability was identified in DrayTek Vigor 300B up to 1.5.1.6. This affects the function cgiGetFile of the file /cg
Information Exposure Vulnerability in Hitachi Ops Center API Configuration Manager, Hitachi Configuration Manager.This i
USB HID protocol dissector memory exhaustion in Wireshark 4.6.0 to 4.6.3 and 4.4.0 to 4.4.13 allows denial of service
NTS-KE protocol dissector crash in Wireshark 4.6.0 to 4.6.3 allows denial of service
Scan for 2026 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started