2026 CVE Vulnerabilities
57,052 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-55207 | HIGH | 8.8 | 0.4% | Jul 9, 2026 | Pimcore is an Open Source Data & Experience Management Platform. Prior to 2025.4.6 and 2026.1.6, an unauthenticated atta... |
| CVE-2026-51926 | HIGH | 7.5 | 0.2% | Jul 9, 2026 | An issue in docuForm GmbH FSM Client v.11.11c allows a remote attacker to obtain sensitive information via the login.php... |
| CVE-2026-51925 | HIGH | 8.1 | 0.3% | Jul 9, 2026 | A Local File Inclusion (LFI) vulnerability exists in docuForm GmbH Client v.11.11c that allows a remote attacker to exec... |
| CVE-2026-51924 | HIGH | 8.1 | 0.2% | Jul 9, 2026 | An issue in docuForm GmbH Client v.11.11c allows a remote attacker to execute arbitrary code via the file upload and rep... |
| CVE-2026-51923 | HIGH | 8.1 | 0.3% | Jul 9, 2026 | An Insecure Direct Object Reference (IDOR) vulnerability exists in docuForm GmbH Client v.11.11c allowing a remote attac... |
| CVE-2026-33801 | HIGH | 7.1 | 0.3% | Jul 9, 2026 | An Improper Check for Unusual or Exceptional Conditions vulnerability in the routing protocol daemon (RPD) of Juniper Ne... |
| CVE-2026-33800 | MEDIUM | 6.5 | 0.3% | Jul 9, 2026 | An Unchecked Input for Loop Condition vulnerability in the Packet Forwarding Engine (pfe) of Juniper Networks Junos OS o... |
| CVE-2026-33799 | MEDIUM | 5.3 | 0.4% | Jul 9, 2026 | An Out-of-bounds Write vulnerability in the SNMP daemon (snmpd) of Juniper Networks Junos OS and Junos OS Evolved allows... |
| CVE-2026-33794 | HIGH | 8.2 | 0.4% | Jul 9, 2026 | An Improper Check for Unusual or Exceptional Conditions vulnerability in the advanced forwarding toolkit (evo-aftmand)... |
| CVE-2026-31267 | MEDIUM | 5.7 | 0.2% | Jul 9, 2026 | Mercusys MW302R MW302R(EU)_V1_1.4.10 Build 231023 is vulnerable to Buffer Overflow in the administrative web interface. ... |
| CVE-2026-21901 | MEDIUM | 4.4 | 0.2% | Jul 9, 2026 | A NULL Pointer Dereference vulnerability in the management daemon (mgd) of Juniper Networks Junos OS and Junos OS Evolve... |
| CVE-2026-15270 | HIGH | 7.5 | 0.9% | Jul 9, 2026 | A weakness has been identified in D-link DIR-823G 1.0.2B05_20181207. Affected by this vulnerability is an unknown functi... |
| CVE-2026-0278 | HIGH | 7.8 | 0.2% | Jul 9, 2026 | Multiple protection mechanism failures in the Prisma Access Agent Data Loss Prevention (DLP) component for Windows allow... |
| CVE-2026-0277 | MEDIUM | 5.9 | 0.1% | Jul 9, 2026 | An improper certificate validation vulnerability in the Prisma® Access Agent for iOS enables an attacker to perform a ma... |
| CVE-2026-0276 | HIGH | 7.8 | 0.1% | Jul 9, 2026 | A privilege escalation vulnerability in Palo Alto Networks Cortex® XDR Broker VM enables a locally authenticated user to... |
| CVE-2026-0275 | MEDIUM | 6.7 | 0.1% | Jul 9, 2026 | A local privilege escalation vulnerability in Palo Alto Networks Prisma® Browser allows a locally authenticated administ... |
| CVE-2026-59149 | MEDIUM | 6.5 | 0.3% | Jul 9, 2026 | Mockoon provides way to design and run mock APIs. Prior to 9.7.0, a FILE response whose filePath embeds request data is ... |
| CVE-2026-59148 | HIGH | 8.8 | 0.2% | Jul 9, 2026 | Mockoon provides way to design and run mock APIs. Prior to 9.7.0, Mockoon's admin API in commons-server/src/libs/server/... |
| CVE-2026-58198 | MEDIUM | 5.5 | — | Jul 9, 2026 | ChatterBot is a machine learning, conversational dialog engine for creating chat bots. Prior to 1.2.14, UbuntuCorpusTrai... |
| CVE-2026-55590 | MEDIUM | 6.1 | 0.6% | Jul 9, 2026 | CakePHP Authentication is an authentication plugin for CakePHP that can also be used in PSR-7 based applications. Prior ... |
| CVE-2026-54695 | MEDIUM | 6.5 | 0.3% | Jul 9, 2026 | Pipecat is an open-source Python framework for building real-time voice and multimodal conversational agents. Prior to 1... |
| CVE-2026-54005 | HIGH | 7.1 | 0.3% | Jul 9, 2026 | Kirby is an open-source content management system. Prior to 4.9.4 and 5.4.4, Kirby sites where a role has the pages.acce... |
| CVE-2026-54004 | MEDIUM | 6.3 | 0.3% | Jul 9, 2026 | Kirby is an open-source content management system. Prior to 4.9.4 and 5.4.4, Kirby sites with content.fileRedirects enab... |
| CVE-2026-54003 | CRITICAL | 9.1 | 0.5% | Jul 9, 2026 | Kirby is an open-source content management system. Prior to 4.9.4 and from 5.4.4, Kirby sites with no configured user ac... |
| CVE-2026-54002 | HIGH | 8.5 | 0.4% | Jul 9, 2026 | Kirby is an open-source content management system. Prior to 4.9.4 and 5.4.4, Kirby sites and plugins that use the writer... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now