57,566 vulnerabilities published in 2026
Handlebars provides the power necessary to let users build semantic templates. In versions 4.0.0 through 4.7.8, `resolve
A vulnerability was identified in code-projects Chamber of Commerce Membership Management System 1.0. Impacted is the fu
A weakness has been identified in YunaiV yudao-cloud up to 2026.01. This vulnerability affects unknown code of the file
CI4MS is a CodeIgniter 4-based CMS skeleton that delivers a production-ready, modular architecture with RBAC authorizati
A vulnerability was found in CMS Made Simple up to 2.2.22. This impacts the function _copyFilesToFolder in the library m
The application allows PDF JavaScript and document/print actions (such as WillPrint/DidPrint) to update form fields, ann
Dell Secure Connect Gateway (SCG) 5.0 Appliance and Application version(s) 5.28.00.xx to 5.32.00.xx, contain(s) an Impro
The login mechanism of Sage DPW 2025_06_004 displays distinct responses for valid and invalid usernames, allowing enumer
Open Neural Network Exchange (ONNX) is an open standard for machine learning interoperability. Prior to version 1.21.0,
CI4MS is a CodeIgniter 4-based CMS skeleton that delivers a production-ready, modular architecture with RBAC authorizati
CI4MS is a CodeIgniter 4-based CMS skeleton that delivers a production-ready, modular architecture with RBAC authorizati
A vulnerability was determined in OpenCart 4.1.0.3. This affects an unknown part of the file installer.php of the compon
A security vulnerability has been detected in Tenda G103 1.0.0.5. The affected element is the function action_set_system
A vulnerability was detected in Tenda G103 1.0.0.5. The impacted element is the function action_set_net_settings of the
A vulnerability was determined in Dataease SQLbot up to 1.6.0. This issue affects the function get_es_data_by_http of th
hoppscotch is an open source API development ecosystem. Prior to version 2026.3.0, the /enter page contains a DOM-based
A weakness has been identified in Casdoor 2.356.0. This vulnerability affects unknown code of the component Webhook URL
In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: Prevent concurrent access to IPSec ASO c
In the Linux kernel, the following vulnerability has been resolved: PM: runtime: Fix a race condition related to device
In the Linux kernel, the following vulnerability has been resolved: soc: fsl: qbman: fix race condition in qman_destroy
In the Linux kernel, the following vulnerability has been resolved: drm/imagination: Synchronize interrupts before susp
util-linux is a random collection of Linux utilities. Prior to version 2.41.4, a TOCTOU (Time-of-Check-Time-of-Use) vuln
Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to version
A flaw has been found in SourceCodester/jkev Record Management System 1.0. Affected by this issue is some unknown functi
Open edX Platform enables the authoring and delivery of online learning at any scale. The view_survey endpoint accepts a
The Gravity Forms plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the `form_ids` parameter in t
URL Redirection to Untrusted Site ('Open Redirect') vulnerability in John Darrel Hide My WP Ghost hide-my-wp allows Phis
A vulnerability was determined in PHPGurukul News Portal Project 4.1. This vulnerability affects unknown code of the fil
A vulnerability was identified in PHPGurukul News Portal Project 4.1. This issue affects some unknown processing of the
A security flaw has been discovered in PHPGurukul News Portal Project 4.1. Impacted is an unknown function of the file /
A vulnerability was found in jeecgboot JimuReport up to 2.3.0. The affected element is the function DriverManager.getCon
A security vulnerability has been detected in Sanluan PublicCMS up to 6.202506.d. This affects the function AbstractFree
In systemd 258 before 260, a local unprivileged user can trigger an assert when a Delegate=yes and User=<unset> unit exi
Chamilo LMS is a learning management system. Prior to 1.11.38 and 2.0.0-RC.3, an Open Redirect vulnerability in the sess
UAF vulnerability in the communication module. Impact: Successful exploitation of this vulnerability may affect availabi
A vulnerability was identified in HummerRisk up to 1.5.0. This vulnerability affects the function ServerService.addServe
MaxKB is an open-source AI assistant for enterprise. In versions 2.7.1 and below, the chat export feature is vulnerable
A vulnerability in the web-based management interface of Cisco Unity Connection could allow an unauthenticated, remote a
SourceCodester Payroll Management and Information System v1.0 is vulnerable to SQL Injection in the file /payroll/view_a
DOMSanitizer is a DOM/SVG/MathML Sanitizer for PHP 7.3+. Prior to version 1.0.10, DOMSanitizer::sanitize() allows <style
A vulnerability was detected in EyouCMS up to 1.7.1. This issue affects the function edit_adminlogo of the file applicat
A vulnerability was identified in Z-BlogPHP 1.7.5. This affects the function App::UnPack of the file /zb_users/plugin/Ap
A weakness has been identified in Pagekit CMS up to 1.0.18. This issue affects the function evaluate of the file app/mod
Cryptographic algorithm downgrade in the caching layer of Amazon AWS Encryption SDK for Python before version 3.3.1 and
The wpDataTables – WordPress Data Table, Dynamic Tables & Table Charts Plugin plugin for WordPress is vulnerable to Stor
Vulnerability in the Oracle Applications Framework product of Oracle E-Business Suite (component: Personalization). Sup
In the Linux kernel, the following vulnerability has been resolved: mm/pagewalk: fix race between concurrent split and
In the Linux kernel, the following vulnerability has been resolved: mm/huge_memory: fix folio isn't locked in softleaf_
In the Linux kernel, the following vulnerability has been resolved: nvme-pci: ensure we're polling a polled queue A us
A Time-of-Check to Time-of-Use (TOCTOU) vulnerability exists in the mv utility of uutils coreutils during cross-device m
Scan for 2026 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started