2026 CVE Vulnerabilities
44,056 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-44342 | MEDIUM | 5.3 | 0.2% | Jul 9, 2026 | New API is a large language mode (LLM) gateway and artificial intelligence (AI) asset management system. Prior to 0.12.0... |
| CVE-2026-59828 | MEDIUM | 5.3 | 0.3% | Jul 9, 2026 | Discourse is an open-source discussion platform. Prior to 2026.6.0, 2026.5.1, 2026.4.2, and 2026.1.5, post revisions tha... |
| CVE-2026-58144 | MEDIUM | 5.4 | 0.1% | Jul 9, 2026 | Cotonti Siena 0.9.26 and earlier contains a stored cross-site scripting vulnerability that allows authenticated users wi... |
| CVE-2026-57054 | MEDIUM | 6.9 | 0.3% | Jul 9, 2026 | A Use of Incorrectly-Resolved Name or Reference vulnerability in the URL filtering plugin of Juniper Networks Junos OS o... |
| CVE-2026-57031 | MEDIUM | 5.3 | 0.2% | Jul 9, 2026 | An Improper Check for Unusual or Exceptional Conditions vulnerability in the packet forwarding engine (PFE) of Juniper N... |
| CVE-2026-57029 | MEDIUM | 6 | 0.2% | Jul 9, 2026 | A Missing Synchronization vulnerability in the flow collector handler of Juniper Networks Junos OS Evolved on QFX Series... |
| CVE-2026-57025 | MEDIUM | 6.8 | 0.1% | Jul 9, 2026 | A Return of Pointer Value Outside of Expected Range vulnerability in the fileio library of Juniper Networks Junos OS and... |
| CVE-2026-57024 | MEDIUM | 6.9 | 0.4% | Jul 9, 2026 | A Use of Multiple Resources with Duplicate Identifier vulnerability in the IKE daemon (iked) of Juniper Networks Junos O... |
| CVE-2026-57021 | MEDIUM | 6.9 | 0.5% | Jul 9, 2026 | An Out-of-bounds Write vulnerability in the http-gatekeeper (http-gk) of Juniper Networks Junos OS on SRX Series allows ... |
| CVE-2026-55605 | MEDIUM | 5.3 | 0.4% | Jul 9, 2026 | DeepSeek MCP Server is an MCP server for DeepSeek V4. Starting in version 1.4.2 and prior to version 1.8.0, the self-hos... |
| CVE-2026-55424 | MEDIUM | 5.4 | 0.5% | Jul 9, 2026 | Discourse is an open-source discussion platform. Prior to 2026.6.0, 2026.5.1, 2026.4.2, and 2026.1.5, a topic "featured ... |
| CVE-2026-55170 | MEDIUM | 5.4 | 0.3% | Jul 9, 2026 | OpenFGA is an authorization/permission engine built for developers. Prior to 1.18.0, when MySQL is being used as the dat... |
| CVE-2026-53962 | MEDIUM | 5.4 | 0.3% | Jul 9, 2026 | Discourse is an open-source discussion platform. Prior to 2026.6.0, 2026.5.1, 2026.4.2, and 2026.1.5, insufficient SVG s... |
| CVE-2026-53961 | MEDIUM | 6.5 | 0.2% | Jul 9, 2026 | Discourse is an open-source discussion platform. Prior to 2026.6.0, 2026.5.1, 2026.4.2, and 2026.1.5, the AWS SES bounce... |
| CVE-2026-46413 | MEDIUM | 6.5 | 0.4% | Jul 9, 2026 | Discourse is an open-source discussion platform. Prior to 2026.6.0, 2026.5.1, 2026.4.2, and 2026.1.5, regular users coul... |
| CVE-2026-45780 | MEDIUM | 4.3 | 0.4% | Jul 9, 2026 | Discourse is an open-source discussion platform. Prior to 2026.6.0, 2026.5.1, 2026.4.2, and 2026.1.5, EventSerializer co... |
| CVE-2026-39245 | MEDIUM | 6.2 | 0.3% | Jul 9, 2026 | decompress before 4.2.2 contains an improper path containment check that enables directory traversal and arbitrary file ... |
| CVE-2026-39243 | MEDIUM | 5.5 | 0.2% | Jul 9, 2026 | decompress before 4.2.2 allows arbitrary hardlink creation during archive extraction, enabling file read disclosure and ... |
| CVE-2026-33803 | MEDIUM | 6.9 | 0.4% | Jul 9, 2026 | An Improper Restriction of Communication Channel to Intended Endpoints vulnerability in Juniper Networks Junos OS Evolve... |
| CVE-2026-33802 | MEDIUM | 6.8 | 0.1% | Jul 9, 2026 | A Missing Authorization vulnerability in the CLI of Juniper Networks Junos OS on EX Series allows a local, authenticated... |
| CVE-2026-60120 | MEDIUM | 5.4 | 0.2% | Jul 9, 2026 | Bagisto before 2.4.4 contains a stored cross-site scripting vulnerability via client-side template injection that allows... |
| CVE-2026-33799 | MEDIUM | 5.3 | 0.4% | Jul 9, 2026 | An Out-of-bounds Write vulnerability in the SNMP daemon (snmpd) of Juniper Networks Junos OS and Junos OS Evolved allows... |
| CVE-2026-31267 | MEDIUM | 5.7 | 0.2% | Jul 9, 2026 | Mercusys MW302R MW302R(EU)_V1_1.4.10 Build 231023 is vulnerable to Buffer Overflow in the administrative web interface. ... |
| CVE-2026-21901 | MEDIUM | 6.7 | 0.2% | Jul 9, 2026 | A NULL Pointer Dereference vulnerability in the management daemon (mgd) of Juniper Networks Junos OS and Junos OS Evolve... |
| CVE-2026-0277 | MEDIUM | 5.9 | 0.1% | Jul 9, 2026 | An improper certificate validation vulnerability in the Prisma® Access Agent for iOS enables an attacker to perform a ma... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now