2026 CVE Vulnerabilities
57,083 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-46590 | HIGH | 8.8 | 0.4% | Jul 6, 2026 | Deserialization of Untrusted Data vulnerability in Apache Camel PQC component. The camel-pqc component persists post-qu... |
| CVE-2026-46585 | HIGH | 7.5 | 0.3% | Jul 6, 2026 | Improper Input Validation, Authorization Bypass Through User-Controlled Key vulnerability in Apache Camel Lucene Compone... |
| CVE-2026-46584 | LOW | 3.7 | 0.2% | Jul 6, 2026 | Improper Input Validation, Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apache Camel Mail... |
| CVE-2026-46457 | HIGH | 7.5 | 0.3% | Jul 6, 2026 | Improper Input Validation vulnerability in Apache Camel NATS component. The camel-nats component maps inbound NATS mess... |
| CVE-2026-46456 | CRITICAL | 9.8 | 0.3% | Jul 6, 2026 | Improper Input Validation vulnerability in Apache Camel AWS2-SQS Component. The camel-aws2-sqs component map inbound m... |
| CVE-2026-46455 | CRITICAL | 9.8 | 0.3% | Jul 6, 2026 | Insufficient Session Expiration vulnerability in Apache Camel Keycloak Component. The camel-keycloak security helper Ke... |
| CVE-2026-46454 | CRITICAL | 9.8 | 0.4% | Jul 6, 2026 | Improper Input Validation vulnerability in Apache Camel Cometd Component. The camel-cometd component maps inbound Bayeu... |
| CVE-2026-46453 | MEDIUM | 5.3 | 0.2% | Jul 6, 2026 | Improper Input Validation, Authorization Bypass Through User-Controlled Key vulnerability in Apache Camel ElasticSearch ... |
| CVE-2026-44934 | HIGH | 7 | 0.1% | Jul 6, 2026 | A information disclosure when DEBUG loglevel is set in SUSE Rancher AI Agent 1.0 before 1.0.2 could leak API keys or LLM... |
| CVE-2026-43867 | CRITICAL | 9.8 | 0.2% | Jul 6, 2026 | Deserialization of Untrusted Data vulnerability in Apache Camel PQC Component. The camel-pqc component persists post-qu... |
| CVE-2026-43866 | HIGH | 7.3 | 0.2% | Jul 6, 2026 | Deserialization of Untrusted Data vulnerability in Apache Camel, Apache Camel JMS component. JmsBinding.extractBodyFrom... |
| CVE-2026-43865 | HIGH | 8.1 | 0.5% | Jul 6, 2026 | Deserialization of Untrusted Data vulnerability in Apache Camel Hazelcast component. The camel-hazelcast component crea... |
| CVE-2026-42527 | HIGH | 8.1 | 0.3% | Jul 6, 2026 | Deserialization of Untrusted Data vulnerability in Apache Camel. The default ObjectInputFilter pattern shipped with sev... |
| CVE-2026-40859 | HIGH | 8.1 | 0.5% | Jul 6, 2026 | Deserialization of Untrusted Data vulnerability in Apache Camel. The camel-vertx-http component deserializes HTTP respo... |
| CVE-2026-40047 | CRITICAL | 9.1 | 1.3% | Jul 6, 2026 | Improper Neutralization of Argument Delimiters in a Command ('Argument Injection') vulnerability in Apache Camel Docling... |
| CVE-2026-24014 | CRITICAL | 9.8 | 0.4% | Jul 6, 2026 | Apache IoTDB DataNode’s internal RPC interface for creating Trigger instances uses the uploaded Trigger JAR name to buil... |
| CVE-2026-24013 | CRITICAL | 9.1 | 0.4% | Jul 6, 2026 | Authentication Bypass by Spoofing vulnerability in Apache IoTDB. Certain Thrift RPC query handlers lack strict validatio... |
| CVE-2026-24012 | HIGH | 7.5 | 0.4% | Jul 6, 2026 | Uncontrolled Resource Consumption vulnerability in Apache IoTDB. Some interface fails to impose reasonable limits on t... |
| CVE-2026-1433 | MEDIUM | 4.8 | 0.2% | Jul 6, 2026 | uniFLOW Universal Login Manager (ULM) Standalone contains an information disclosure vulnerability that may allow an auth... |
| CVE-2026-14809 | HIGH | 8.7 | 0.4% | Jul 6, 2026 | Prog Management System developed by PROG MIS has a SQL Injection vulnerability, allowing unauthenticated remote attacker... |
| CVE-2026-6382 | CRITICAL | 9.1 | 0.5% | Jul 6, 2026 | The FileOrganizer WordPress plugin before 1.1.9, Advanced File Manager WordPress plugin before 5.4.12, File Manager Pr... |
| CVE-2026-14808 | CRITICAL | 9.8 | 0.5% | Jul 6, 2026 | Prog Management System developed by PROG MIS has a Exposure of Sensitive Information vulnerability, allowing unauthe... |
| CVE-2026-14807 | CRITICAL | 9.8 | 0.5% | Jul 6, 2026 | ERP App developed by PROG MIS has a Use of Hard-coded Credentials vulnerability, allowing unauthenticated remote attacke... |
| CVE-2026-14802 | HIGH | 7.3 | 1.3% | Jul 6, 2026 | A vulnerability was detected in react create-react-app up to 5.0.1 on macOS. This affects the function startBrowserProce... |
| CVE-2026-14801 | MEDIUM | 4.8 | 0.1% | Jul 6, 2026 | A security vulnerability has been detected in GPAC 26.03-DEV-rev342-g80071f700-master. The impacted element is the funct... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now