2026 CVE Vulnerabilities

64,751 CVEs published in 2026.

Filter:LOWClear
CVE IDSeverityCVSSDescription
CVE-2026-90489LOW3.5A vulnerability was identified in Xuxueli xxl-job up to 3.5.0. This vulnerability affects unknown code of the file /jobi...
CVE-2026-79300LOW3.5SEP sesam before 5.2.0.24 mishandles User Authorization with MFA. If AD authentication is configured and MFA is enforced...
CVE-2026-84025LOW2.2The BEAR WordPress plugin before 1.2.2 does not perform ownership checks on several handlers that return product data b...
CVE-2026-82851LOW2.7The Masteriyo LMS WordPress plugin before 3.4.1 does not verify ownership of, or restrict the type of, the records a us...
CVE-2026-11765LOW3.3Improper neutralization of argument delimiters in a command ('argument injection') vulnerability in TUBITAK BILGEM Softw...
CVE-2026-86779LOW2.7The Visualizer WordPress plugin before 4.0.6 does not properly authorise chart-deletion requests, performing only a sit...
CVE-2026-89162LOW3.3In PCRE2 before 10.48, pcre2_serialize_encode might disclose two bytes to an adversary, typically in a situation where t...
CVE-2026-89151LOW3.5Forgejo before 16.0.4 allows use of restricted API tokens for unintended access to the "allow maintainer edit" feature.
CVE-2026-78131LOW3.7strongSwan 4.2.0 through 6.0.7 has a missing release of memory after its effective lifetime in the x509 plugin's attribu...
CVE-2026-78127LOW3.7libcharon in strongSwan 4.1.2 through 6.0.7 has a missing release of memory after its effective lifetime in the IKE mess...
CVE-2026-78124LOW3.7strongSwan 5.0.2 through 6.0.7 allows PKCS#7 certificate enumeration in the openssl plugin that leads to a lack of relea...
CVE-2026-45761LOW3.3Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Pr...
CVE-2026-15418LOW2.4In the silabser.sys driver for CP210x devices v11.5.0 and earlier, a local unprivileged user with a malicious device can...
CVE-2026-0303LOW2.4A code execution vulnerability in Palo Alto Networks Checkov by Prisma® Cloud can allow arbitrary code execution when Ch...
CVE-2026-0302LOW1.1An OS command injection vulnerability in Palo Alto Networks Checkov by Prisma® Cloud enables a local user to execute arb...
CVE-2026-0308LOW1.1A stored cross-site scripting (XSS) vulnerability in Palo Alto Networks PAN-OS® software enables a malicious authenticat...
CVE-2026-87876LOW3Two case-insensitive comparisons on request-derived usernames outside the main authorization path in CUPS's scheduler (p...
CVE-2026-46460LOW3.5Dell PowerScale OneFS, versions 9.5.0.0 through 9.7.1.15, versions 9.8.0.0 through 9.13.1.0, and versions prior to 9.15....
CVE-2026-79944LOW3.4Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains ...
CVE-2026-79942LOW3.4Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains ...
CVE-2026-79693LOW3.4Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains ...
CVE-2026-79736LOW3.7Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains ...
CVE-2026-79732LOW3.7Dell Secure Connect Gateway (SCG) 5.0 Appliance, versions prior to 5.36.00.xx, contains an Improper Certificate Validati...
CVE-2026-79729LOW3.7Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains ...
CVE-2026-79690LOW3.7Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains ...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now