2026 CVE Vulnerabilities
63,076 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-10276 | MEDIUM | 6.3 | 0.3% | Jun 1, 2026 | A vulnerability has been found in hekmon8 Jenkins-server-mcp 0.1.0. This vulnerability affects the function jobPath of t... |
| CVE-2026-0072 | HIGH | 7.8 | 0.1% | Jun 1, 2026 | In addInputMethodListener of com.android.server.inputmethod.InputMethodManagerService, there is a missing permission che... |
| CVE-2026-8643 | MEDIUM | 5.5 | 0.3% | Jun 1, 2026 | pip would treat console_scripts and gui_scripts as paths instead of file names without sanitizing the resolved absolute ... |
| CVE-2026-8501 | HIGH | 7.8 | 0.2% | Jun 1, 2026 | Improper access control in the PCTCore64.sys Windows kernel driver from PC Tools Internet Security allows user-mode proc... |
| CVE-2026-46243 | HIGH | 7.1 | 0.4% | Jun 1, 2026 | In the Linux kernel, the following vulnerability has been resolved: smb: client: reject userspace cifs.spnego descripti... |
| CVE-2026-45701 | MEDIUM | 6.9 | 0.2% | Jun 1, 2026 | Sulu is an open-source PHP content management system based on the Symfony framework. Prior to versions 2.6.23 and 3.0.6,... |
| CVE-2026-45267 | MEDIUM | 6.5 | 0.3% | Jun 1, 2026 | Nextcloud is an open source content collaboration platform. Prior to version 5.2.6, a missing permissions check allowed ... |
| CVE-2026-45266 | LOW | 3.5 | 0.2% | Jun 1, 2026 | Nextcloud is an open source content collaboration platform. Prior to versions 21.1.10, 22.0.11, and 23.0.3, a low-privil... |
| CVE-2026-45264 | MEDIUM | 4.3 | 0.2% | Jun 1, 2026 | Nextcloud is an open source content collaboration platform. From versions 17.0.0 to before 17.0.15, 18.0.0 to before 18.... |
| CVE-2026-45159 | LOW | 3.5 | 0.2% | Jun 1, 2026 | Nextcloud is an open source content collaboration platform. From versions 1.15.0 to before 1.15.4, 1.16.0 to before 1.16... |
| CVE-2026-45157 | MEDIUM | 6.3 | 0.2% | Jun 1, 2026 | Nextcloud is an open source content collaboration platform. In Nextcloud Server from versions 32.0.0 to before 32.0.9, a... |
| CVE-2026-45156 | HIGH | 8.1 | 0.3% | Jun 1, 2026 | Nextcloud is an open source content collaboration platform. From versions 0.3.0 to before 3.1.0, 5.0.0 to before 5.1.0, ... |
| CVE-2026-45155 | LOW | 2.6 | 0.2% | Jun 1, 2026 | Nextcloud is an open source content collaboration platform. In Nextcloud Server from versions 32.0.0 to before 32.0.7 an... |
| CVE-2026-45154 | LOW | 2.6 | 0.2% | Jun 1, 2026 | Nextcloud is an open source content collaboration platform. From version 2.6.0 to before version 4.3.0, when a previous ... |
| CVE-2026-45153 | MEDIUM | 4.6 | 0.2% | Jun 1, 2026 | Nextcloud is an open source content collaboration platform. From version 33.0.0 to before version 33.1.0, after unlockin... |
| CVE-2026-45132 | CRITICAL | 10 | 0.3% | Jun 1, 2026 | CloudPirates Open Source Helm Charts is a collection of Helm charts. Prior to commit fcf9302, a GitHub Actions workflow ... |
| CVE-2026-45131 | CRITICAL | 10 | 0.3% | Jun 1, 2026 | CloudPirates Open Source Helm Charts is a collection of Helm charts. Prior to commit fcf9302, a GitHub Actions workflow ... |
| CVE-2026-44740 | MEDIUM | 6.5 | 0.3% | Jun 1, 2026 | Billy is an interface filesystem abstraction for Go. Prior to versions 5.9.0 and 6.0.0-alpha.1, multiple components may ... |
| CVE-2026-44211 | CRITICAL | 9.6 | 0.2% | Jun 1, 2026 | Cline is an autonomous coding agent as an SDK, IDE extension, or CLI assistant. In versions 2.13.0 and prior, there is a... |
| CVE-2026-42679 | MEDIUM | 6.5 | 0.3% | Jun 1, 2026 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Mamunur Rashid Classifie... |
| CVE-2026-42678 | HIGH | 7.1 | 0.2% | Jun 1, 2026 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Liquid Web / Stell... |
| CVE-2026-42677 | HIGH | 7.5 | 0.2% | Jun 1, 2026 | Missing Authorization vulnerability in Ben Balter WP Document Revisions allows Exploiting Incorrectly Configured Access ... |
| CVE-2026-42676 | MEDIUM | 6.5 | 0.1% | Jun 1, 2026 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in myCred allows Stor... |
| CVE-2026-42675 | HIGH | 7.3 | 0.2% | Jun 1, 2026 | Missing Authorization vulnerability in Themefic Hydra Booking allows Exploiting Incorrectly Configured Access Control Se... |
| CVE-2026-42674 | HIGH | 7.5 | 0.4% | Jun 1, 2026 | Authentication Bypass by Spoofing vulnerability in AAM Plugin Advanced Access Manager allows URL Encoding. This issue a... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now