2026 CVE Vulnerabilities

57,083 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-49297HIGH8.1Apache Airflow's Google provider operators `GCSToSFTPOperator` and `GCSTimeSpanFileTransformOperator` joined GCS object ...
CVE-2026-49042HIGH7.3Improper Input Validation vulnerability in Apache Camel. This issue affects Apache Camel: from 4.8.0 through 4.18.2, fr...
CVE-2026-46588HIGH7.3Improper Input Validation vulnerability in Apache Camel. This issue affects Apache Camel: through 4.14.7, from 4.15.0 t...
CVE-2026-46587HIGH7.3Improper Input Validation vulnerability in Apache Camel. This issue affects Apache Camel: through 4.14.7, from 4.15.0 t...
CVE-2026-44937HIGH8.2Potential forgery of webhook requests when using a unauthenticated webhook in SUSE Rancher Fleet 0.15 before 0.15.2, 0.1...
CVE-2026-44936MEDIUM5Missing filtering when the helmRepoURLRegex field isn't set on a GitRepo resource in SUSE Rancher Fleet's bundle reader ...
CVE-2026-12686CRITICAL9.3An authenticated user could manipulate a company ID parameter in a POST request to the backend to gain unauthorised acce...
CVE-2026-9165HIGH7.7A flaw was found in Red Hat Advanced Cluster Security for Kubernetes (RHACS). Central does not limit the depth of GraphQ...
CVE-2026-56140CRITICAL9.8Improper Input Validation vulnerability in Apache Camel AWS SNS component. The camel-aws2-sns component filters Camel ...
CVE-2026-56139MEDIUM5.3Generation of Error Message Containing Sensitive Information vulnerability in Apache Camel Undertow Component. The came...
CVE-2026-55994HIGH7.5Improper Input Validation, Exposure of Sensitive Information to an Unauthorized Actor, Server-Side Request Forgery (SSRF...
CVE-2026-55993HIGH7.5Improper Input Validation, Exposure of Sensitive Information to an Unauthorized Actor, Server-Side Request Forgery (SSRF...
CVE-2026-53913CRITICAL9.8Improper Authentication, Missing Authentication for Critical Function, Not Failing Securely ('Failing Open') vulnerabili...
CVE-2026-49365MEDIUM5.3Generation of Error Message Containing Sensitive Information vulnerability in Apache Camel Netty HTTP component. The ca...
CVE-2026-49099MEDIUM5.3Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection'), Authorization Bypass...
CVE-2026-49098MEDIUM5.3Improper Input Validation, Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Inject...
CVE-2026-49097MEDIUM6.5Improper Input Validation, Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Inject...
CVE-2026-49086MEDIUM6.5Improper Input Validation, Unintended Proxy or Intermediary ('Confused Deputy') vulnerability in Apache Camel DAPR compo...
CVE-2026-48206MEDIUM5.3Improper Input Validation, Authorization Bypass Through User-Controlled Key vulnerability in Apache Camel JIRA component...
CVE-2026-48205CRITICAL9.1Improper Input Validation, Server-Side Request Forgery (SSRF) vulnerability in Apache Camel DNS component. The camel-dn...
CVE-2026-48204CRITICAL9.8Improper Input Validation, Improper Access Control vulnerability in Apache Camel in Camel Mongodb Gridfs component. The...
CVE-2026-48203CRITICAL9.1Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection'), Improper Input Valid...
CVE-2026-46726HIGH7.5Improper Input Validation, Exposure of Sensitive Information to an Unauthorized Actor, Server-Side Request Forgery (SSRF...
CVE-2026-46592HIGH7.5Improper Input Validation, Unintended Proxy or Intermediary ('Confused Deputy') vulnerability in Apache Camel CXF SOAP c...
CVE-2026-46591HIGH8.2Improper Neutralization of Special Elements in Data Query Logic vulnerability in Apache Camel Neo4J component. The came...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now