2026 CVE Vulnerabilities
64,868 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-71802 | MEDIUM | 5.4 | 0.1% | Sep 9, 2026 | A stored Cross-Site Scripting (XSS) vulnerability exists in the announcement preview component of REBUILD 4.4.3. Althoug... |
| CVE-2026-53956 | MEDIUM | 5.4 | 0.2% | Sep 9, 2026 | Rattler is a library that provides common functionality used within the conda ecosystem. `rattler_cache` prior to versio... |
| CVE-2026-73789 | MEDIUM | 5.3 | 0.2% | Sep 9, 2026 | A vulnerability in the web-based management interface of CPPM guest account management services could allow an unauthent... |
| CVE-2026-73788 | MEDIUM | 6.5 | 0.2% | Sep 9, 2026 | A vulnerability in the ClearPass OnGuard agent could allow an authenticated remote attacker to elevate their own privile... |
| CVE-2026-71616 | MEDIUM | 6.2 | 0.1% | Sep 9, 2026 | An issue in GPAC c2dee3aff638cd96f9617ac5b17dc2868cd90ef3 allows an attacker to cause a denial of service via the functi... |
| CVE-2026-61911 | MEDIUM | 4.3 | 0.2% | Sep 9, 2026 | An issue was discovered in Cyrus IMAP before 3.12.4. There is a Sieve mailbox existence oracle. An authenticated user co... |
| CVE-2026-61910 | MEDIUM | 5 | 0.2% | Sep 9, 2026 | An issue was discovered in Cyrus IMAP before 3.12.4. Mailbox/set let a sharee change a special-use role on shared mailbo... |
| CVE-2026-61909 | MEDIUM | 4.3 | 0.2% | Sep 9, 2026 | An issue was discovered in Cyrus IMAP before 3.12.4. CalDAV/CardDAV multiget bypasses a per-href ACL. An authenticated D... |
| CVE-2026-61908 | MEDIUM | 6.5 | 0.2% | Sep 9, 2026 | An issue was discovered in Cyrus IMAP before 3.12.4. A JMAP email-header blob ID can reference an out-of-bounds index. A... |
| CVE-2026-38998 | MEDIUM | 6.5 | 0.2% | Sep 9, 2026 | A use-after-free in the SocketDescriptor::tcpReadHandler1 function (liveMedia/RTPInterface.cpp) of LIVE555 Streaming Med... |
| CVE-2026-61907 | MEDIUM | 4.3 | 0.4% | Sep 9, 2026 | An issue was discovered in Cyrus IMAP before 3.12.4. JMAP snooze bypasses the destination-mailbox ACL. An authenticated ... |
| CVE-2026-39020 | MEDIUM | 5.5 | — | Sep 9, 2026 | An issue in WIngs3D v.2.4.1 allows a local attacker to cause a denial of service via a crafted Wavefront OBJ file |
| CVE-2026-87928 | MEDIUM | 5.4 | 0.2% | Sep 9, 2026 | MaxSite CMS versions 0.94 through 109.6 contain a cross-site scripting vulnerability in the admin_page upload handler th... |
| CVE-2026-87875 | MEDIUM | 4.3 | 0.3% | Sep 9, 2026 | The cupsUTF32ToUTF8() function in CUPS's cups/transcode.c lacks a source-length bound and can read past the end of the s... |
| CVE-2026-87872 | MEDIUM | 6.8 | 0.1% | Sep 9, 2026 | A flaw was found in the OCAPI modules (ocapi_command, ocapi_info) of the community.general Ansible collection. The share... |
| CVE-2026-85788 | MEDIUM | 5.5 | — | Sep 9, 2026 | Incomplete list of disallowed inputs in the mutable SQL detector component in Amazon awslabs mysql-mcp-server might allo... |
| CVE-2026-70425 | MEDIUM | 6.7 | 0.4% | Sep 9, 2026 | Dell PowerScale OneFS, Versions 9.5.0.0 through 9.7.1.0, Versions 9.8.0.0 through 9.10.1.0, and Versions 9.11.0.0 throug... |
| CVE-2026-40635 | MEDIUM | 5.4 | 0.2% | Sep 9, 2026 | Dell PowerScale OneFS versions 9.12.0.0 through 9.13.1.0 contain an Insecure Temporary File vulnerability. A low privile... |
| CVE-2026-81330 | MEDIUM | 6.5 | 0.1% | Sep 9, 2026 | The C6 ear camera transmits live video to the EarVision Android application over unencrypted UDP streams. The applicatio... |
| CVE-2026-79947 | MEDIUM | 5.5 | — | Sep 9, 2026 | Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains ... |
| CVE-2026-79946 | MEDIUM | 5.3 | 0.2% | Sep 9, 2026 | Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains ... |
| CVE-2026-79945 | MEDIUM | 5.5 | 1.7% | Sep 9, 2026 | Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains ... |
| CVE-2026-79741 | MEDIUM | 5.3 | 1.5% | Sep 9, 2026 | Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains ... |
| CVE-2026-79735 | MEDIUM | 4.4 | — | Sep 9, 2026 | Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains ... |
| CVE-2026-83530 | MEDIUM | 4.3 | 0.2% | Sep 9, 2026 | A user could provide an expression whose string length is longer than the ParserExpressionSizeLimit() configured on the ... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now