2026 CVE Vulnerabilities

64,751 CVEs published in 2026.

Filter:LOWClear
CVE IDSeverityCVSSDescription
CVE-2026-23786LOW2.8An issue was discovered in DPU in Samsung Mobile Processor Exynos 1280, 2200, 1380, 1480, 2400, 1580, 2500, 1680, and 26...
CVE-2026-90604LOW3.5A security flaw has been discovered in Totolink A3002MU Hh-B20211125.1046. This affects an unknown part of the component...
CVE-2026-90602LOW3.5A vulnerability was determined in Anil-matcha Open-Generative-AI up to 1.0.11/2.0.0. Affected by this vulnerability is t...
CVE-2026-52297LOW2.9FFmpeg before 9.0 has an out-of-bounds read because there is insufficiently padded extradata in the MOV parsing path in ...
CVE-2026-52296LOW2.9FFmpeg before 9.0 has an out-of-bounds read because of missing required padding in WMA extradata allocation paths in lib...
CVE-2026-35867LOW3.1A Command Injection vulnerability exists in the bs_SetLimitCli_info function within the libshare.so library of the LB-LI...
CVE-2026-38332LOW2.9TinyEXIF before 1.1.0 has a heap-based buffer over-read in EntryParser::Fetch methods reachable via a crafted SubjectAre...
CVE-2026-90576LOW3.3A security vulnerability has been detected in GPAC up to f1219cde. Affected is the function gf_node_list_add_child of th...
CVE-2026-90575LOW3.7A weakness has been identified in PHPGurukul Small CRM 4.0. This impacts the function unserialize of the file /crm/login...
CVE-2026-90573LOW3.3A vulnerability was identified in GPAC up to f1219cde. The impacted element is the function gf_sg_mfurl_del of the file ...
CVE-2026-90570LOW2.4A vulnerability has been found in linlinjava litemall 1.4.0/1.5.0/1.6.0/1.7.0/1.8.0. This issue affects the function Adm...
CVE-2026-90569LOW2.4A flaw has been found in linlinjava litemall 1.5.0/1.6.0/1.7.0/1.8.0. This vulnerability affects the function AdminTopic...
CVE-2026-90568LOW3.5A vulnerability was detected in moxi624 Mogu Blog v2 up to 5.2. This affects the function BlogSortServiceImpl.addBlogSor...
CVE-2026-90567LOW3.5A security vulnerability has been detected in quequnlong shiyi-blog up to 1.2.1. Affected by this issue is the function ...
CVE-2026-90564LOW3.5A vulnerability was identified in quequnlong shiyi-blog 1.0.0-1.2.1. This impacts the function SysChatMsgMapper.getChatM...
CVE-2026-90563LOW3.5A vulnerability was determined in maliangnansheng bbs-springboot 3.0.0. This affects the function utils.toToc of the fil...
CVE-2026-90529LOW3.5A vulnerability has been found in DataEase up to 2.10.25/2.10.26. Affected by this issue is the function buildTooltip of...
CVE-2026-90528LOW3.5A flaw has been found in TDuckApp tduck-platform up to 5.3. Affected by this vulnerability is an unknown functionality o...
CVE-2026-90773LOW3.2procs through 0.14.12 fails to sanitize escape sequences in process command lines before displaying them in the Command ...
CVE-2026-90771LOW3.7joi before versions 17.13.8 and 18.2.9 contains a prototype pollution vulnerability in the messages compilation function...
CVE-2026-90508LOW3.4A security flaw has been discovered in Chengdu Qilu Technology Ludashi 6.1026.4715.714. Affected by this vulnerability i...
CVE-2026-90503LOW2.3A flaw has been found in Chengdu Qilu Technology Ludashi 6.1026.4715.714. The affected element is the function sub_11008...
CVE-2026-90502LOW3.5A vulnerability was detected in stilleshan ServerStatus 1.0/2.0. Impacted is an unknown function of the file server/src/...
CVE-2026-90497LOW3.5A vulnerability was determined in Fengoffice Feng Office up to 3.11.13.11. Affected by this vulnerability is the functio...
CVE-2026-86407LOW3.7The User Registration & Membership WordPress plugin before 5.2.8 does not verify that the visitor requesting its member...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now