2026 CVE Vulnerabilities

64,239 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-44849HIGH8.8Portainer Community Edition is a lightweight service delivery platform for containerized applications that can be used t...
CVE-2026-44848HIGH8.8Portainer Community Edition is a lightweight service delivery platform for containerized applications that can be used t...
CVE-2026-39929HIGH8.7Lakeside SysTrack Agent versions prior to 11.2.1.28, 11.3.0.38, 11.4.0.24, 11.5.0.15 contain an out-of-bounds read vulne...
CVE-2026-10044HIGH8.2Usagi-org ai-goofish-monitor contains an unauthenticated arbitrary file read vulnerability in the GET /api/prompts/{file...
CVE-2026-9646MEDIUM6.1A reflected cross-site scripting issue exists in URL handling.
CVE-2026-9645CRITICAL9.9Exposed methods allow authenticated users to create and execute arbitrary JavaScript code on the server. The scripts exe...
CVE-2026-49095MEDIUM6.5Improper Input Validation (CWE-20) in the Kibana Fleet agent policy management feature can lead to privilege escalation....
CVE-2026-49094MEDIUM6.5Uncontrolled Resource Consumption (CWE-400) in Kibana can lead to denial of service via Excessive Allocation (CAPEC-130)...
CVE-2026-49093HIGH7.7Server-Side Request Forgery (CWE-918) in Kibana can allow an authenticated user with connector management privileges to ...
CVE-2026-46843MEDIUM5.3Vulnerability in Oracle REST Data Services (component: Core). Supported versions that are affected are 24.2.0-26.1.0. E...
CVE-2026-46842MEDIUM5.3Vulnerability in Oracle REST Data Services (component: Core). Supported versions that are affected are 24.2.0-26.1.0. E...
CVE-2026-46841MEDIUM5.3Vulnerability in Oracle REST Data Services (component: General). Supported versions that are affected are 24.2.0-26.1.0...
CVE-2026-46840CRITICAL10Vulnerability in Oracle REST Data Services (component: Backend-as-a-Service). Supported versions that are affected are ...
CVE-2026-46839CRITICAL9.9Vulnerability in Oracle REST Data Services (component: Core). Supported versions that are affected are 24.2.0-26.1.0. E...
CVE-2026-46837HIGH8.8Vulnerability in the Oracle Flow Manufacturing product of Oracle E-Business Suite (component: Security). Supported vers...
CVE-2026-46835HIGH7.5Vulnerability in the Net Service component of Oracle Database Server. Supported versions that are affected are 23.4.0-2...
CVE-2026-46834HIGH7.5Vulnerability in the Net Service component of Oracle Database Server. Supported versions that are affected are 23.4.0-2...
CVE-2026-46833CRITICAL9Vulnerability in the Net Service component of Oracle Database Server. Supported versions that are affected are 23.4.0-2...
CVE-2026-46830MEDIUM5.3Vulnerability in Oracle REST Data Services (component: Mongoapi). Supported versions that are affected are 24.2.0-26.1....
CVE-2026-46829HIGH7.5Vulnerability in Oracle REST Data Services (component: Mongoapi). Supported versions that are affected are 24.2.0-26.1....
CVE-2026-46828HIGH8.1Vulnerability in the Oracle Payroll product of Oracle E-Business Suite (component: Internal Operations). Supported vers...
CVE-2026-46827HIGH8.8Vulnerability in the Oracle Payroll product of Oracle E-Business Suite (component: Self Service Manager). Supported ver...
CVE-2026-46826HIGH8.8Vulnerability in the Oracle Payroll product of Oracle E-Business Suite (component: Internal Operations). Supported vers...
CVE-2026-46824CRITICAL9.9Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business Suite (component: Work Provider Site Level...
CVE-2026-46823HIGH7.7Vulnerability in the Oracle Public Sector Financials (International) product of Oracle E-Business Suite (component: Auth...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now