2026 CVE Vulnerabilities

61,293 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-53523MEDIUM6.8Nezha Monitoring is a self-hostable, lightweight, servers and websites monitoring and O&M tool. From version 1.0.0 to be...
CVE-2026-53522MEDIUM6.5Nezha Monitoring is a self-hostable, lightweight, servers and websites monitoring and O&M tool. From version 1.0.0 to be...
CVE-2026-53521MEDIUM6.4Nezha Monitoring is a self-hostable, lightweight, servers and websites monitoring and O&M tool. From version 2.0.14 to b...
CVE-2026-53520MEDIUM6.5Nezha Monitoring is a self-hostable, lightweight, servers and websites monitoring and O&M tool. From version 2.0.14 to b...
CVE-2026-53519CRITICAL9.1Nezha Monitoring is a self-hostable, lightweight, servers and websites monitoring and O&M tool. Prior to version 2.0.13,...
CVE-2026-49397MEDIUM5.3Nezha Monitoring is a self-hostable, lightweight, servers and websites monitoring and O&M tool. From version 2.0.0 to be...
CVE-2026-49396HIGH7.1Nezha Monitoring is a self-hostable, lightweight, servers and websites monitoring and O&M tool. From version 1.0.0 to be...
CVE-2026-48119HIGH7.1Nezha Monitoring is a self-hostable, lightweight, servers and websites monitoring and O&M tool. From version 0.20.0 to b...
CVE-2026-47268MEDIUM6.4Nezha Monitoring is a self-hostable, lightweight, servers and websites monitoring and O&M tool. From version 0.20.0 to b...
CVE-2026-47124MEDIUM6.5Nezha Monitoring is a self-hostable, lightweight, servers and websites monitoring and O&M tool. From version 1.4.0 to be...
CVE-2026-47120HIGH7.1Nezha Monitoring is a self-hostable, lightweight, servers and websites monitoring and O&M tool. From version 1.4.0 to be...
CVE-2026-46717HIGH7.7Nezha Monitoring is a self-hostable, lightweight, servers and websites monitoring and O&M tool. From version 1.4.0 to be...
CVE-2026-46716CRITICAL9.9Nezha Monitoring is a self-hostable, lightweight, servers and websites monitoring and O&M tool. From version 1.4.0 to be...
CVE-2026-41158HIGH7.8Software installed and run as a non-privileged user may conduct GPU system calls to write to arbitrary freed physical pa...
CVE-2026-41157CRITICAL9.8A web page that contains unusual WebGPU content loaded into the GPU GLES render process and can trigger an out-of-bound ...
CVE-2026-41155MEDIUM5.5An attacker could cooperatively pass data from one secure GPU process to another secure GPU process through shared secur...
CVE-2026-34195HIGH8.8Software installed and run as a non-privileged user may conduct intentional GPU sparse memory API calls to cause out of ...
CVE-2026-12131MEDIUM6.3A weakness has been identified in CodeAstro Human Resource Management System 1.0. This vulnerability affects the functio...
CVE-2026-54397MEDIUM6.1A vulnerability in MISP’s non-REST event editing path allowed an authenticated user with event edit permissions to manip...
CVE-2026-54396MEDIUM5.3An information disclosure vulnerability exists in the MISP AuthKey edit functionality. When a validation error occurs du...
CVE-2026-54395MEDIUM5.3MISP contains a reflected cross-site scripting vulnerability in the UiBeta event index view. The urlparams value is inse...
CVE-2026-54394MEDIUM5.3MISP contains a path traversal vulnerability in OrganisationsController::getOrgLogo. The vulnerable code builds organisa...
CVE-2026-54393MEDIUM5.1A stored cross-site scripting vulnerability exists in MISP when the Overmind theme is used. The setHomePage endpoint pre...
CVE-2026-54362MEDIUM5.3An incorrect visibility condition in the MISP event template builder allowed authenticated non-site-admin users to view ...
CVE-2026-54057HIGH7.8Kitty is a cross-platform GPU based terminal. In versions prior to 0.47.3, kitty's OSC 21 (color-control) query reply re...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now