2026 CVE Vulnerabilities

61,772 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-34077HIGH7.5React Router is a router for React. In versions 7.7.0 through 7.13.1, when using React Router's unstable React Server Co...
CVE-2026-33553MEDIUM6.1Northern.tech CFEngine Enterprise 3.24.3 before 3.24.4 and 3.27.0 before 3.27.1 allows XSS.
CVE-2026-33245MEDIUM4.7React Router is a router for React. In versions 7.7.0 through 7.13.1, when using React Router's unstable React Server Co...
CVE-2026-30586MEDIUM6.1Cross Site Scripting vulnerability in usememos Memos v.0.26.0 allows a remote attacker to obtain sensitive information v...
CVE-2026-28299HIGH7.5SolarWinds Web Help Desk is found to be affected by a denial-of-service vulnerability, which when exploited, could cause...
CVE-2026-1829HIGH8.8The Content Visibility for Divi Builder plugin for WordPress is vulnerable to Remote Code Execution in all versions up t...
CVE-2026-10702MEDIUM4.3JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 151.0.3.
CVE-2026-10701HIGH7.5Incorrect boundary conditions in the Graphics: Text component. This vulnerability was fixed in Firefox 151.0.3.
CVE-2026-10617HIGH7.3A security vulnerability has been detected in nextlevelbuilder GoClaw up to 3.11.3. This affects the function resolveAut...
CVE-2026-10616MEDIUM4.3A weakness has been identified in nextlevelbuilder GoClaw up to 3.11.3. The impacted element is the function TeamTasksTo...
CVE-2026-10608HIGH7.3A security flaw has been discovered in DedeCMS 5.7.88. This affects the function RemoveXSS of the file /plus/carbuyactio...
CVE-2026-10607HIGH7.3A vulnerability was identified in DedeCMS 5.7.88. The impacted element is the function dede_htmlspecialchars of the file...
CVE-2026-10584HIGH8.2Proxy server in Graph Explorer before 3.0.1 falls back to HTTP when certificate files are missing, which might allow rem...
CVE-2026-49943MEDIUM6.3CZ.NIC BIRD Internet Routing Daemon through 2.19.0 contains a stack-based buffer overflow in the BGP AS_PATH mask matchi...
CVE-2026-42074CRITICAL9.8OpenClaude is an open-source coding-agent command line interface for cloud and local model providers. Prior to version 0...
CVE-2026-42073MEDIUM6.5OpenClaude is an open-source coding-agent command line interface for cloud and local model providers. Prior to version 0...
CVE-2026-40715HIGH7.8Dell ThinOS 10, versions prior to ThinOS10 2602_10.0765, contain an Improper Access Control vulnerability. A low privile...
CVE-2026-40713MEDIUM6.1Dell ThinOS 10, versions prior to ThinOS10 2602_10.0765, contain an Improper Access control vulnerability. An unauthenti...
CVE-2026-40571MEDIUM5.3NamelessMC is website software for Minecraft servers. In version 2.2.4, `core/classes/Misc/ProfilePostReactionContext.ph...
CVE-2026-40314MEDIUM6.9NamelessMC is website software for Minecraft servers. In version 2.2.4,`core/classes/Misc/ProfilePostReactionContext.php...
CVE-2026-35447MEDIUM5.3NamelessMC is website software for Minecraft servers. In version 2.2.4, the profile page (modules/Core/pages/profile.php...
CVE-2026-35443MEDIUM5.3NamelessMC is website software for Minecraft servers. In version 2.2.4, `modules/Forum/classes/ForumPostReactionContext....
CVE-2026-33244MEDIUM5.4React Router is a router for React. In versions 7.5.1 through 7.13.1, when using Framework Mode with pre-rendering enabl...
CVE-2026-24237HIGH7.8NVIDIA NVTabular contains a vulnerability where an attacker could cause improper deserialization of untrusted data. A su...
CVE-2026-24221HIGH7.8NVIDIA NVTabular contains a vulnerability where an attacker could cause improper deserialization of untrusted data. A su...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now