2026 CVE Vulnerabilities
61,338 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-45358 | MEDIUM | 5.3 | 0.2% | Jun 10, 2026 | ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-... |
| CVE-2026-45031 | MEDIUM | 5.3 | 0.5% | Jun 10, 2026 | ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-... |
| CVE-2026-44692 | HIGH | 7.7 | 0.3% | Jun 10, 2026 | Sharp is a content management framework built for Laravel as a package. Prior to version 9.22.0, Sharp exposes a generic... |
| CVE-2026-42542 | HIGH | 7.5 | 0.5% | Jun 10, 2026 | TDengine is an open source, time-series database optimized for Internet of Things devices. In versions 3.4.0.0 through 3... |
| CVE-2026-42462 | HIGH | 7 | 0.2% | Jun 10, 2026 | Fedify is a TypeScript library for building federated server apps powered by ActivityPub. Prior to versions 1.9.11, 1.10... |
| CVE-2026-42326 | MEDIUM | 5.1 | 0.1% | Jun 10, 2026 | ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-... |
| CVE-2026-2049 | HIGH | 7.8 | 0.6% | Jun 10, 2026 | GIMP HDR File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote a... |
| CVE-2026-11604 | MEDIUM | 6.5 | 0.1% | Jun 10, 2026 | An incorrect buffer size calculation in the epoch key generator in OpenVPN ovpn-dco-win version 2.0.0 through 2.8.3 allo... |
| CVE-2026-10143 | HIGH | 7.5 | 0.5% | Jun 10, 2026 | kafka-python prior to 2.3.2 contains a denial-of-service vulnerability in SCRAM authentication handling that allows a ma... |
| CVE-2026-10142 | HIGH | 8.7 | 0.3% | Jun 10, 2026 | kafka-python prior to 2.3.2 contains a denial-of-service vulnerability in the protocol parser that allows a malicious br... |
| CVE-2026-0274 | CRITICAL | 9.1 | 0.3% | Jun 10, 2026 | An improper validation of credentials vulnerability in the CommvaultSecurityIQ integration for Cortex XSOAR and Cortex X... |
| CVE-2026-0273 | HIGH | 7.2 | 1.4% | Jun 10, 2026 | A command injection vulnerability in Palo Alto Networks PAN-OS® software enables an authenticated administrator to bypas... |
| CVE-2026-0272 | HIGH | 7.2 | 0.3% | Jun 10, 2026 | A privilege escalation vulnerability in Palo Alto Networks PAN-OS® software allows an authenticated administrator with a... |
| CVE-2026-0271 | HIGH | 7.8 | 0.1% | Jun 10, 2026 | A privilege escalation (PE) vulnerability in the Palo Alto Networks Prisma Access Agent app on Linux devices enables a l... |
| CVE-2026-0270 | HIGH | 7.5 | 0.2% | Jun 10, 2026 | A path traversal vulnerability in Palo Alto Networks Cortex XSOAR engine software running on Linux allows an unauthenti... |
| CVE-2026-0269 | MEDIUM | 5.7 | 0.2% | Jun 10, 2026 | A memory corruption vulnerability in the processing of tunnel traffic in Palo Alto Networks PAN-OS® software allows an a... |
| CVE-2026-0268 | MEDIUM | 4.4 | 0.1% | Jun 10, 2026 | A security control bypass vulnerability in Prisma Access Agent for Linux allows a local attacker to route network traffi... |
| CVE-2026-0267 | MEDIUM | 5.5 | 0.1% | Jun 10, 2026 | An information exposure vulnerability in the Palo Alto Networks GlobalProtect app on macOS enables a local user to learn... |
| CVE-2026-0266 | MEDIUM | 4.8 | 0.1% | Jun 10, 2026 | A cross-site scripting (XSS) vulnerability in Palo Alto Networks PAN-OS® software enables a malicious authenticated admi... |
| CVE-2026-6893 | HIGH | 7.5 | 1.3% | Jun 10, 2026 | A flaw was found in dracut. A remote attacker on the adjacent network can exploit this vulnerability by providing specia... |
| CVE-2026-50127 | MEDIUM | 5.9 | 0.3% | Jun 10, 2026 | Weblate is a web based localization tool. From version 5.15 to before version 2026.6, Weblate's VCS_RESTRICT_PRIVATE did... |
| CVE-2026-46683 | MEDIUM | 6.9 | 0.2% | Jun 10, 2026 | Snappy is a PHP library allowing thumbnail, snapshot or PDF generation from a url or a html page. Prior to version 1.7.0... |
| CVE-2026-46643 | HIGH | 7.5 | 0.2% | Jun 10, 2026 | Snappy is a PHP library allowing thumbnail, snapshot or PDF generation from a url or a html page. Prior to version 1.7.1... |
| CVE-2026-46529 | HIGH | 8.4 | 0.5% | Jun 10, 2026 | Atril Document Viewer is the default document reader of the MATE desktop environment for Linux. A single-click remote co... |
| CVE-2026-45106 | MEDIUM | 4.6 | 0.2% | Jun 10, 2026 | Weblate is a web based localization tool. Prior to version 2026.5, Weblate's live search preview renders unit source and... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now