2026 CVE Vulnerabilities
64,751 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-90489 | LOW | 3.5 | 0.2% | Sep 13, 2026 | A vulnerability was identified in Xuxueli xxl-job up to 3.5.0. This vulnerability affects unknown code of the file /jobi... |
| CVE-2026-79300 | LOW | 3.5 | 0.2% | Sep 12, 2026 | SEP sesam before 5.2.0.24 mishandles User Authorization with MFA. If AD authentication is configured and MFA is enforced... |
| CVE-2026-84025 | LOW | 2.2 | 0.2% | Sep 12, 2026 | The BEAR WordPress plugin before 1.2.2 does not perform ownership checks on several handlers that return product data b... |
| CVE-2026-82851 | LOW | 2.7 | 0.2% | Sep 12, 2026 | The Masteriyo LMS WordPress plugin before 3.4.1 does not verify ownership of, or restrict the type of, the records a us... |
| CVE-2026-11765 | LOW | 3.3 | — | Sep 11, 2026 | Improper neutralization of argument delimiters in a command ('argument injection') vulnerability in TUBITAK BILGEM Softw... |
| CVE-2026-86779 | LOW | 2.7 | 0.1% | Sep 11, 2026 | The Visualizer WordPress plugin before 4.0.6 does not properly authorise chart-deletion requests, performing only a sit... |
| CVE-2026-89162 | LOW | 3.3 | 0.1% | Sep 11, 2026 | In PCRE2 before 10.48, pcre2_serialize_encode might disclose two bytes to an adversary, typically in a situation where t... |
| CVE-2026-89151 | LOW | 3.5 | 0.1% | Sep 11, 2026 | Forgejo before 16.0.4 allows use of restricted API tokens for unintended access to the "allow maintainer edit" feature. |
| CVE-2026-78131 | LOW | 3.7 | 0.2% | Sep 11, 2026 | strongSwan 4.2.0 through 6.0.7 has a missing release of memory after its effective lifetime in the x509 plugin's attribu... |
| CVE-2026-78127 | LOW | 3.7 | 0.4% | Sep 11, 2026 | libcharon in strongSwan 4.1.2 through 6.0.7 has a missing release of memory after its effective lifetime in the IKE mess... |
| CVE-2026-78124 | LOW | 3.7 | 0.2% | Sep 11, 2026 | strongSwan 5.0.2 through 6.0.7 allows PKCS#7 certificate enumeration in the openssl plugin that leads to a lack of relea... |
| CVE-2026-45761 | LOW | 3.3 | 0.1% | Sep 10, 2026 | Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Pr... |
| CVE-2026-15418 | LOW | 2.4 | — | Sep 10, 2026 | In the silabser.sys driver for CP210x devices v11.5.0 and earlier, a local unprivileged user with a malicious device can... |
| CVE-2026-0303 | LOW | 2.4 | 0.1% | Sep 10, 2026 | A code execution vulnerability in Palo Alto Networks Checkov by Prisma® Cloud can allow arbitrary code execution when Ch... |
| CVE-2026-0302 | LOW | 1.1 | 0.8% | Sep 10, 2026 | An OS command injection vulnerability in Palo Alto Networks Checkov by Prisma® Cloud enables a local user to execute arb... |
| CVE-2026-0308 | LOW | 1.1 | 0.3% | Sep 10, 2026 | A stored cross-site scripting (XSS) vulnerability in Palo Alto Networks PAN-OS® software enables a malicious authenticat... |
| CVE-2026-87876 | LOW | 3 | 0.4% | Sep 9, 2026 | Two case-insensitive comparisons on request-derived usernames outside the main authorization path in CUPS's scheduler (p... |
| CVE-2026-46460 | LOW | 3.5 | 0.1% | Sep 9, 2026 | Dell PowerScale OneFS, versions 9.5.0.0 through 9.7.1.15, versions 9.8.0.0 through 9.13.1.0, and versions prior to 9.15.... |
| CVE-2026-79944 | LOW | 3.4 | — | Sep 9, 2026 | Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains ... |
| CVE-2026-79942 | LOW | 3.4 | — | Sep 9, 2026 | Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains ... |
| CVE-2026-79693 | LOW | 3.4 | 0.1% | Sep 9, 2026 | Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains ... |
| CVE-2026-79736 | LOW | 3.7 | — | Sep 9, 2026 | Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains ... |
| CVE-2026-79732 | LOW | 3.7 | — | Sep 9, 2026 | Dell Secure Connect Gateway (SCG) 5.0 Appliance, versions prior to 5.36.00.xx, contains an Improper Certificate Validati... |
| CVE-2026-79729 | LOW | 3.7 | 0.1% | Sep 9, 2026 | Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains ... |
| CVE-2026-79690 | LOW | 3.7 | — | Sep 9, 2026 | Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains ... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now