2026 CVE Vulnerabilities
64,617 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-48962 | HIGH | 7.3 | 0.3% | May 27, 2026 | IO::Compress versions before 2.220 for Perl can execute arbitrary code in File::GlobMapper via an attacker-controlled ou... |
| CVE-2026-48961 | HIGH | 7.3 | 0.3% | May 27, 2026 | IO::Compress versions from 2.207 before 2.220 for Perl ship a zipdetails CLI tool that crashes with undefined subroutine... |
| CVE-2026-48959 | HIGH | 7.5 | 0.4% | May 27, 2026 | IO::Uncompress::Unzip versions before 2.220 for Perl allow CPU exhaustion via per-byte read loop in fastForward. fastFo... |
| CVE-2026-2255 | MEDIUM | 4.3 | 0.2% | May 27, 2026 | Hitachi Vantara Pentaho Data Integration & Analytics versions before 10.2.0.6 and 11.0.0.0, including 9.3.x and 8.3.x, e... |
| CVE-2026-2254 | MEDIUM | 6.3 | 0.2% | May 27, 2026 | Hitachi Vantara Pentaho Data Integration & Analytics versions before 10.2.0.6 and 11.0.0.0, including 9.3.x and 8.3.x, d... |
| CVE-2026-2253 | HIGH | 7.7 | 0.2% | May 27, 2026 | Hitachi Vantara Pentaho Data Integration & Analytics versions before 10.2.0.7 and 11.0.0.0, including 9.3.x and 8.3.x, d... |
| CVE-2026-9632 | HIGH | 8.8 | 0.5% | May 27, 2026 | A flaw has been found in UTT HiPER 1250GW up to 3.2.7-210907-180535. Affected by this issue is the function strcpy of th... |
| CVE-2026-9631 | HIGH | 8.8 | 0.4% | May 27, 2026 | A vulnerability was detected in UTT HiPER 1250GW up to 3.2.7-210907-180535. Affected by this vulnerability is the functi... |
| CVE-2026-9628 | HIGH | 8.8 | 0.5% | May 27, 2026 | A weakness has been identified in UTT HiPER 1200GW up to 2.5.3-170306. Affected is an unknown function of the file /gofo... |
| CVE-2026-9627 | HIGH | 8.8 | 0.5% | May 27, 2026 | A security flaw has been discovered in UTT HiPER 1200GW up to 2.5.3-170306. This impacts the function strcpy of the file... |
| CVE-2026-9609 | MEDIUM | 4.7 | 0.2% | May 27, 2026 | A vulnerability was identified in QianFox FoxCMS up to 1.2.6. This affects the function Edit of the file Admin.php. The ... |
| CVE-2026-9608 | LOW | 2.4 | 0.2% | May 27, 2026 | A vulnerability was determined in QianFox FoxCMS up to 1.2.6. The impacted element is an unknown function of the file /T... |
| CVE-2026-9207 | HIGH | 8.8 | 0.4% | May 27, 2026 | Tanium addressed an unauthorized code execution vulnerability in Connect. |
| CVE-2026-9156 | HIGH | 7.5 | 0.2% | May 27, 2026 | Tanium addressed a denial of service vulnerability in Tanium Server. |
| CVE-2026-7493 | MEDIUM | 5.3 | 0.4% | May 27, 2026 | The Appointment Booking Calendar — Simply Schedule Appointments Booking Plugin plugin for WordPress is vulnerable to den... |
| CVE-2026-6565 | MEDIUM | 6.4 | 0.2% | May 27, 2026 | The Style Kits – Advanced Theme Styles for Elementor, Elementor Kits & Elementor Patterns plugin for WordPress is vulner... |
| CVE-2026-49017 | MEDIUM | 6.5 | 0.5% | May 27, 2026 | In OpenStack Swift before 2.36.2 and 2.37.2, s3api middleware enters an infinite loop when processing a truncated aws-ch... |
| CVE-2026-49014 | HIGH | 7.8 | 0.1% | May 27, 2026 | In GDAL 3.1.0 through 3.13.0, scanForGeometryContainers in the netCDF driver allows code execution via a stack-based buf... |
| CVE-2026-9607 | MEDIUM | 6.3 | 0.2% | May 27, 2026 | A vulnerability was found in itsourcecode Courier Management System 1.0. The affected element is an unknown function of ... |
| CVE-2026-9606 | HIGH | 7.3 | 0.3% | May 27, 2026 | A vulnerability has been found in itsourcecode Courier Management System 1.0. Impacted is an unknown function of the fil... |
| CVE-2026-9605 | HIGH | 7.3 | 0.3% | May 27, 2026 | A flaw has been found in GNU libredwg up to 0.13.4.8160. This issue affects the function bit_read_RC of the file bits.c ... |
| CVE-2026-9312 | HIGH | 8.2 | 6.6% | May 27, 2026 | A server-side request forgery (SSRF) vulnerability was identified in GitHub Enterprise Server that allowed an unauthenti... |
| CVE-2026-8606 | MEDIUM | 5.9 | 0.4% | May 27, 2026 | A Server-Side Request Forgery (SSRF) vulnerability was identified in GitHub Enterprise Server that allowed an attacker t... |
| CVE-2026-9604 | MEDIUM | 4.3 | 0.2% | May 26, 2026 | A vulnerability was detected in JeecgBoot up to 3.9.1. This vulnerability affects unknown code of the component AiragMod... |
| CVE-2026-8680 | — | — | — | May 26, 2026 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now