2026 CVE Vulnerabilities
61,208 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-35279 | HIGH | 8.1 | 0.4% | Jun 17, 2026 | Vulnerability in the PeopleSoft Enterprise PT PeopleTools product of Oracle PeopleSoft (component: Performance Monitor).... |
| CVE-2026-35278 | CRITICAL | 9.8 | 0.6% | Jun 17, 2026 | Vulnerability in the PeopleSoft Enterprise PT PeopleTools product of Oracle PeopleSoft (component: Performance Monitor).... |
| CVE-2026-35276 | HIGH | 8.1 | 0.4% | Jun 17, 2026 | Vulnerability in the PeopleSoft Enterprise PT PeopleTools product of Oracle PeopleSoft (component: Application Server). ... |
| CVE-2026-35275 | HIGH | 7.5 | 0.1% | Jun 17, 2026 | Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Shared Folders). The supported ... |
| CVE-2026-35274 | HIGH | 8.2 | 0.4% | Jun 17, 2026 | Vulnerability in the PeopleSoft Enterprise PT PeopleTools product of Oracle PeopleSoft (component: Deployment Package). ... |
| CVE-2026-35272 | HIGH | 8.4 | 0.2% | Jun 17, 2026 | Vulnerability in the PeopleSoft Enterprise PT PeopleTools product of Oracle PeopleSoft (component: Deployment Package). ... |
| CVE-2026-35271 | HIGH | 8.7 | 0.3% | Jun 17, 2026 | Vulnerability in the PeopleSoft Enterprise PT PeopleTools product of Oracle PeopleSoft (component: Weblogic). Supported... |
| CVE-2026-35270 | CRITICAL | 9.1 | 0.5% | Jun 17, 2026 | Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Content Server). Supporte... |
| CVE-2026-35269 | HIGH | 7.5 | 0.4% | Jun 17, 2026 | Vulnerability in the Identity Manager product of Oracle Fusion Middleware (component: REST WebServices). Supported vers... |
| CVE-2026-35268 | CRITICAL | 9.9 | 0.4% | Jun 17, 2026 | Vulnerability in the Identity Manager product of Oracle Fusion Middleware (component: Core). Supported versions that ar... |
| CVE-2026-35267 | HIGH | 8.8 | 0.4% | Jun 17, 2026 | Vulnerability in the Identity Manager product of Oracle Fusion Middleware (component: REST WebServices). Supported vers... |
| CVE-2026-35265 | HIGH | 8.8 | 0.4% | Jun 17, 2026 | Vulnerability in the Identity Manager product of Oracle Fusion Middleware (component: Security). Supported versions tha... |
| CVE-2026-35263 | CRITICAL | 9.9 | 0.3% | Jun 17, 2026 | Vulnerability in the WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions that are... |
| CVE-2026-35262 | HIGH | 8.3 | 0.4% | Jun 17, 2026 | Vulnerability in the Oracle Data Integrator product of Oracle Fusion Middleware (component: Market Place). Supported ve... |
| CVE-2026-35261 | MEDIUM | 6.5 | 0.3% | Jun 17, 2026 | Vulnerability in the Oracle Access Manager product of Oracle Fusion Middleware (component: Authentication Engine). Supp... |
| CVE-2026-35259 | HIGH | 8.8 | 0.4% | Jun 17, 2026 | Vulnerability in the WebLogic Server product of Oracle Fusion Middleware (component: Console). Supported versions that ... |
| CVE-2026-35258 | HIGH | 8.7 | 0.3% | Jun 17, 2026 | Vulnerability in the WebLogic Server product of Oracle Fusion Middleware (component: Console). Supported versions that ... |
| CVE-2026-12348 | HIGH | 7.4 | 0.3% | Jun 17, 2026 | Address bar spoofing in Arc Search for Android allows a remote attacker to display a trusted domain in the address bar w... |
| CVE-2026-48777 | CRITICAL | 9.3 | 0.4% | Jun 16, 2026 | FileBrowser Quantum is a free, self-hosted, web-based file manager. Versions prior to 1.3.2-stable, 1.4.0-beta and 1.4.1... |
| CVE-2026-47750 | HIGH | 7.8 | 0.2% | Jun 16, 2026 | stable-diffusion.cpp is a pure C/C++ library for running diffusion model (Stable Diffusion, Flux, Wan, Qwen Image, Z-Ima... |
| CVE-2026-47747 | HIGH | 7.8 | 0.2% | Jun 16, 2026 | stable-diffusion.cpp is a pure C/C++ library for running diffusion model (Stable Diffusion, Flux, Wan, Qwen Image, Z-Ima... |
| CVE-2026-46448 | HIGH | 8.5 | 0.3% | Jun 16, 2026 | In OpenStack Nova before 33.0.2, the server create API does not strip certain hint data. The resulting instance has no P... |
| CVE-2026-22313 | CRITICAL | 9.1 | 0.9% | Jun 16, 2026 | The device has a webserver that exposes a REST API authenticated with a token on the management network. By exploiting a... |
| CVE-2026-22312 | HIGH | 8.6 | 0.2% | Jun 16, 2026 | The device has a webserver that exposes a REST API authenticated with a constant token. The unauthenticated API can be u... |
| CVE-2026-12425 | MEDIUM | 6.1 | 0.3% | Jun 16, 2026 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in PowerSchool... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now