2026 CVE Vulnerabilities

65,007 CVEs published in 2026.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2026-75134MEDIUM6.4SEOWriting plugin for WordPress through 1.12.5 contains a stored cross-site scripting vulnerability that allows authenti...
CVE-2026-84840MEDIUM6.5A vulnerability was identified in tsi-coop tsi-dpdp-cms up to 0.5.0. This affects an unknown part of the file Intercepti...
CVE-2026-84839MEDIUM5.3A vulnerability was determined in tsi-coop tsi-dpdp-cms up to 0.5.0. Affected by this issue is some unknown functionalit...
CVE-2026-84833MEDIUM4.3A vulnerability was found in ntegrals openbrowser up to 067fc45d649baa961750da8e2f4a75d87c5c75c8. Affected by this vulne...
CVE-2026-84380MEDIUM5.6HTTPX2 is a next generation HTTP client for Python. Prior to 2.11.0, Request._prepare() in src/httpx2/httpx2/_models.py ...
CVE-2026-84379MEDIUM5.3HTTPX2 is a next generation HTTP client for Python. Prior to 2.11.0, FileField.render_headers() in src/httpx2/httpx2/_mu...
CVE-2026-84378MEDIUM5.9HTTPX2 is a next generation HTTP client for Python. From 2.5.0 until 2.10.0, the HTTPX2 Server-Sent Events parser in src...
CVE-2026-84377MEDIUM6.5LiteLLM is a proxy server (AI Gateway) to call LLM APIs in OpenAI (or native) format. Prior to versions 1.88.6 and 1.96....
CVE-2026-82522MEDIUM5.4libjxl before 0.12 contains an integer underflow vulnerability in the container box parser that allows remote attackers ...
CVE-2026-77123MEDIUM6.5Nexus Repository 3 contains a sensitive information disclosure vulnerability in the capability read API. An account hold...
CVE-2026-77122MEDIUM4.3An authorization flaw in the REST API repository details endpoint (GET /service/rest/v1/repositories/{repositoryName}) i...
CVE-2026-77121MEDIUM5.3A user account with permission to deploy artifacts to a hosted Maven repository could upload a POM file containing an ov...
CVE-2026-55221MEDIUM6.5Boruta is a standalone authorization server that aims to implement OAuth 2.0 and Openid Connect up to decentralized iden...
CVE-2026-49833MEDIUM5.5DSpace open source software is a repository application which provides durable access to digital resources. From version...
CVE-2026-49831MEDIUM5.5DSpace open source software is a repository application which provides durable access to digital resources. Prior to ver...
CVE-2026-49830MEDIUM4.4DSpace open source software is a repository application which provides durable access to digital resources. Prior to ver...
CVE-2026-84811MEDIUM6.5agentverus-scanner fails to analyze compiled Python bytecode files in companion code directories, allowing attackers to ...
CVE-2026-84810MEDIUM6.5claude-skill-antivirus fails to analyze executable files when scanning local skill directories, reading only SKILL.md wh...
CVE-2026-84809MEDIUM6.5Tencent AI-Infra-Guard's skill-scan component excludes compiled Python bytecode files from analysis by hardcoding __pyca...
CVE-2026-84376MEDIUM6.3Astro is a web framework for content-driven websites. Prior to 7.2.4, Astro stripped a configured non-root base path fro...
CVE-2026-55421MEDIUM6.8Open edX Platform enables the authoring and delivery of online learning at any scale. Prior to commit 00b7c3c, the endpo...
CVE-2026-53636MEDIUM4.7Open edX Platform enables the authoring and delivery of online learning at any scale. Prior to commit 3a5ac85, a securit...
CVE-2026-52832MEDIUM4.9Nuclio is a "Serverless" framework for Real-Time Events and Data Processing. Prior to version 1.16.5, Nuclio Dashboard e...
CVE-2026-20355MEDIUM5.9Multiple vulnerabilities in the Secure/Multipurpose Internet Mail Extensions (S/MIME) decryption functionality of Cisco ...
CVE-2026-20354MEDIUM5.9Multiple vulnerabilities in the Secure/Multipurpose Internet Mail Extensions (S/MIME) decryption functionality of Cisco ...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now