2026 CVE Vulnerabilities
57,083 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-49297 | HIGH | 8.1 | 0.6% | Jul 6, 2026 | Apache Airflow's Google provider operators `GCSToSFTPOperator` and `GCSTimeSpanFileTransformOperator` joined GCS object ... |
| CVE-2026-49042 | HIGH | 7.3 | 0.2% | Jul 6, 2026 | Improper Input Validation vulnerability in Apache Camel. This issue affects Apache Camel: from 4.8.0 through 4.18.2, fr... |
| CVE-2026-46588 | HIGH | 7.3 | 0.2% | Jul 6, 2026 | Improper Input Validation vulnerability in Apache Camel. This issue affects Apache Camel: through 4.14.7, from 4.15.0 t... |
| CVE-2026-46587 | HIGH | 7.3 | 0.2% | Jul 6, 2026 | Improper Input Validation vulnerability in Apache Camel. This issue affects Apache Camel: through 4.14.7, from 4.15.0 t... |
| CVE-2026-44937 | HIGH | 8.2 | 0.5% | Jul 6, 2026 | Potential forgery of webhook requests when using a unauthenticated webhook in SUSE Rancher Fleet 0.15 before 0.15.2, 0.1... |
| CVE-2026-44936 | MEDIUM | 5 | 0.4% | Jul 6, 2026 | Missing filtering when the helmRepoURLRegex field isn't set on a GitRepo resource in SUSE Rancher Fleet's bundle reader ... |
| CVE-2026-12686 | CRITICAL | 9.3 | — | Jul 6, 2026 | An authenticated user could manipulate a company ID parameter in a POST request to the backend to gain unauthorised acce... |
| CVE-2026-9165 | HIGH | 7.7 | 0.5% | Jul 6, 2026 | A flaw was found in Red Hat Advanced Cluster Security for Kubernetes (RHACS). Central does not limit the depth of GraphQ... |
| CVE-2026-56140 | CRITICAL | 9.8 | 0.3% | Jul 6, 2026 | Improper Input Validation vulnerability in Apache Camel AWS SNS component. The camel-aws2-sns component filters Camel ... |
| CVE-2026-56139 | MEDIUM | 5.3 | 0.2% | Jul 6, 2026 | Generation of Error Message Containing Sensitive Information vulnerability in Apache Camel Undertow Component. The came... |
| CVE-2026-55994 | HIGH | 7.5 | 0.3% | Jul 6, 2026 | Improper Input Validation, Exposure of Sensitive Information to an Unauthorized Actor, Server-Side Request Forgery (SSRF... |
| CVE-2026-55993 | HIGH | 7.5 | 0.4% | Jul 6, 2026 | Improper Input Validation, Exposure of Sensitive Information to an Unauthorized Actor, Server-Side Request Forgery (SSRF... |
| CVE-2026-53913 | CRITICAL | 9.8 | 0.6% | Jul 6, 2026 | Improper Authentication, Missing Authentication for Critical Function, Not Failing Securely ('Failing Open') vulnerabili... |
| CVE-2026-49365 | MEDIUM | 5.3 | 0.2% | Jul 6, 2026 | Generation of Error Message Containing Sensitive Information vulnerability in Apache Camel Netty HTTP component. The ca... |
| CVE-2026-49099 | MEDIUM | 5.3 | 0.2% | Jul 6, 2026 | Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection'), Authorization Bypass... |
| CVE-2026-49098 | MEDIUM | 5.3 | 0.2% | Jul 6, 2026 | Improper Input Validation, Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Inject... |
| CVE-2026-49097 | MEDIUM | 6.5 | 0.2% | Jul 6, 2026 | Improper Input Validation, Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Inject... |
| CVE-2026-49086 | MEDIUM | 6.5 | 0.2% | Jul 6, 2026 | Improper Input Validation, Unintended Proxy or Intermediary ('Confused Deputy') vulnerability in Apache Camel DAPR compo... |
| CVE-2026-48206 | MEDIUM | 5.3 | 0.2% | Jul 6, 2026 | Improper Input Validation, Authorization Bypass Through User-Controlled Key vulnerability in Apache Camel JIRA component... |
| CVE-2026-48205 | CRITICAL | 9.1 | 0.3% | Jul 6, 2026 | Improper Input Validation, Server-Side Request Forgery (SSRF) vulnerability in Apache Camel DNS component. The camel-dn... |
| CVE-2026-48204 | CRITICAL | 9.8 | 0.3% | Jul 6, 2026 | Improper Input Validation, Improper Access Control vulnerability in Apache Camel in Camel Mongodb Gridfs component. The... |
| CVE-2026-48203 | CRITICAL | 9.1 | 0.3% | Jul 6, 2026 | Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection'), Improper Input Valid... |
| CVE-2026-46726 | HIGH | 7.5 | 0.4% | Jul 6, 2026 | Improper Input Validation, Exposure of Sensitive Information to an Unauthorized Actor, Server-Side Request Forgery (SSRF... |
| CVE-2026-46592 | HIGH | 7.5 | 0.3% | Jul 6, 2026 | Improper Input Validation, Unintended Proxy or Intermediary ('Confused Deputy') vulnerability in Apache Camel CXF SOAP c... |
| CVE-2026-46591 | HIGH | 8.2 | 0.2% | Jul 6, 2026 | Improper Neutralization of Special Elements in Data Query Logic vulnerability in Apache Camel Neo4J component. The came... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now