2026 CVE Vulnerabilities

61,293 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-54056HIGH7.1Kitty is a cross-platform GPU based terminal. In versions 0.47.0 and 0.47.1, `kitten dnd` can allow a malicious remote d...
CVE-2026-53607LOW3.7ApostropheCMS is an open-source Node.js content management system. In versions up to and including 4.30.0, when `prettyU...
CVE-2026-53606MEDIUM5.4ApostropheCMS is an open-source Node.js content management system, and sanitize-html provides a simple HTML sanitizer wi...
CVE-2026-4870HIGH7.5IBM Qiskit SDK 0.43.0 through 2.5.0 could allow an attacker to trigger a segmentation fault leading to a denial of servi...
CVE-2026-47264MEDIUM5.3Discourse is an open-source discussion platform. From versions 2026.1.0-latest to before 2026.1.4, 2026.3.0-latest to be...
CVE-2026-47263MEDIUM4.3Discourse is an open-source discussion platform. From versions 2026.1.0-latest to before 2026.1.4, 2026.3.0-latest to be...
CVE-2026-45775MEDIUM6.8Discourse is an open-source discussion platform. From versions 2026.1.0-latest to before 2026.1.4, 2026.3.0-latest to be...
CVE-2026-45085MEDIUM5.3Discourse is an open-source discussion platform. From versions 2026.1.0-latest to before 2026.1.4, 2026.3.0-latest to be...
CVE-2026-45014MEDIUM5.3ApostropheCMS is an open-source Node.js content management system. Versions up to and including 4.29.0 are vulnerable to...
CVE-2026-45013HIGH8.1ApostropheCMS is an open-source Node.js content management system. Versions up to and including 4.29.0 have a password r...
CVE-2026-45012HIGH7.6ApostropheCMS is an open-source Node.js content management system. Versions up to and including 4.29.0 contain an authen...
CVE-2026-45011HIGH7.3ApostropheCMS is an open-source Node.js content management system. Version 4.29.0 has a stored cross-site scripting vuln...
CVE-2026-44990CRITICAL9.3ApostropheCMS is an open-source Node.js content management system, and sanitize-html provides a simple HTML sanitizer wi...
CVE-2026-44786HIGH7.5Discourse is an open-source discussion platform. From versions 2026.1.0-latest to before 2026.1.4, 2026.3.0-latest to be...
CVE-2026-44785MEDIUM4.3Discourse is an open-source discussion platform. From versions 2026.1.0-latest to before 2026.1.4, 2026.3.0-latest to be...
CVE-2026-44784MEDIUM6.5Discourse is an open-source discussion platform. From versions 2026.1.0-latest to before 2026.1.4, 2026.3.0-latest to be...
CVE-2026-44783MEDIUM5.4Discourse is an open-source discussion platform. From versions 2026.1.0-latest to before 2026.1.4, 2026.3.0-latest to be...
CVE-2026-44782MEDIUM4.3Discourse is an open-source discussion platform. From versions 2026.1.0-latest to before 2026.1.4, 2026.3.0-latest to be...
CVE-2026-44780MEDIUM4.3Discourse is an open-source discussion platform. From versions 2026.1.0-latest to before 2026.1.4, 2026.3.0-latest to be...
CVE-2026-44779MEDIUM4.3Discourse is an open-source discussion platform. From versions 2026.1.0-latest to before 2026.1.4, 2026.3.0-latest to be...
CVE-2026-42853MEDIUM6.5ApostropheCMS is an open-source Node.js content management system. Versions of the @apostrophecms/cli package up to and ...
CVE-2026-24618MEDIUM4.3Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in HashThemes Hash Elements all...
CVE-2026-12130LOW3.5A security flaw has been discovered in CodeAstro Human Resource Management System 1.0. This affects an unknown part of t...
CVE-2026-12129LOW3.5A vulnerability was identified in CodeAstro Human Resource Management System 1.0. Affected by this issue is some unknown...
CVE-2026-54361HIGH8.8MISP contained multiple mass assignment vulnerabilities in the handling of collections, tag collections, event delegatio...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now