2026 CVE Vulnerabilities
44,067 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-70638 | HIGH | 8.5 | 0.1% | Aug 6, 2026 | llama.cpp builds b1886 through b7445 contain an integer overflow vulnerability in the LLaMA-Android JNI wrapper where th... |
| CVE-2026-70636 | HIGH | 8.7 | 0.3% | Aug 6, 2026 | Flowise through 3.1.4 contains an authentication bypass vulnerability that allows unauthenticated attackers to access th... |
| CVE-2026-70635 | HIGH | 7.1 | 0.3% | Aug 6, 2026 | TimescaleDB through 2.29.1, fixed in commit 517c13e, contains an out-of-bounds read vulnerability that allows authentica... |
| CVE-2026-70634 | HIGH | 8.1 | 0.4% | Aug 6, 2026 | TimescaleDB through 2.29.1, fixed in commit 517c13e, contains an out-of-bounds read in the Dictionary compression revers... |
| CVE-2026-70633 | HIGH | 7.1 | 0.4% | Aug 6, 2026 | TimescaleDB through 2.29.1, fixed in commit 517c13e, contains an out-of-bounds read vulnerability in the Gorilla compres... |
| CVE-2026-70632 | HIGH | 8.5 | 0.2% | Aug 6, 2026 | FFmpeg versions from 4.4 up to, but not including, 9.0 contain an out-of-bounds heap write vulnerability in the native G... |
| CVE-2026-70631 | MEDIUM | 6.8 | 0.1% | Aug 6, 2026 | FFmpeg versions from 0.5 up to, but not including, 9.0 contain an uninitialized heap memory disclosure vulnerability in ... |
| CVE-2026-70630 | MEDIUM | 6.8 | 0.1% | Aug 6, 2026 | FFmpeg versions from 3.0 up to, but not including, 9.0 contain an uninitialized heap memory read vulnerability in the na... |
| CVE-2026-70629 | MEDIUM | 6.8 | 0.1% | Aug 6, 2026 | FFmpeg versions from 3.0 up to, but not including, 9.0 contain an uninitialized heap memory read vulnerability in the na... |
| CVE-2026-70628 | HIGH | 8.5 | 0.1% | Aug 6, 2026 | FFmpeg versions from 0.5 up to, but not including, 9.0 contain a signed integer overflow vulnerability in the DVB subtit... |
| CVE-2026-70559 | HIGH | 8.7 | 0.3% | Aug 6, 2026 | Dinky's SysConfigController.getAll() handler for GET /api/sysConfig/getAll carries a method-level @SaIgnore annotation t... |
| CVE-2026-70558 | CRITICAL | 9.8 | 0.6% | Aug 6, 2026 | Dinky's POST /download/uploadFromRsByLocal handler passes the caller-supplied path parameter directly to new File(path) ... |
| CVE-2026-70557 | HIGH | 7.1 | 0.3% | Aug 6, 2026 | diboot-core's POST /common/load-related-data endpoint resolves caller-supplied field names to any @TableField column of ... |
| CVE-2026-69125 | — | — | — | Aug 6, 2026 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-67321. Reason: This candidate is a ... |
| CVE-2026-69124 | — | — | — | Aug 6, 2026 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-67320. Reason: This candidate is a ... |
| CVE-2026-69123 | — | — | — | Aug 6, 2026 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-67319. Reason: This candidate is a ... |
| CVE-2026-68948 | — | — | — | Aug 6, 2026 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-67318. Reason: This candidate is a ... |
| CVE-2026-68947 | — | — | — | Aug 6, 2026 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-67317. Reason: This candidate is a ... |
| CVE-2026-68946 | — | — | — | Aug 6, 2026 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-67315. Reason: This candidate is a ... |
| CVE-2026-68944 | — | — | — | Aug 6, 2026 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-67316. Reason: This candidate is a ... |
| CVE-2026-68943 | — | — | — | Aug 6, 2026 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-67314. Reason: This candidate is a ... |
| CVE-2026-68942 | — | — | — | Aug 6, 2026 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-67313. Reason: This candidate is a ... |
| CVE-2026-68941 | — | — | — | Aug 6, 2026 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-67312. Reason: This candidate is a ... |
| CVE-2026-68480 | — | — | 0.2% | Aug 6, 2026 | In the Linux kernel, the following vulnerability has been resolved: x86/bugs: Make Safe-RET robust against interrupt in... |
| CVE-2026-67689 | CRITICAL | 9.8 | 0.4% | Aug 6, 2026 | SQL Injection vulnerability in FineAdmin V1.0 allows a remote attacker to execute arbitrary code via the `field` and `or... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now