2026 CVE Vulnerabilities
64,678 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-36189 | MEDIUM | 6.2 | 0.1% | May 21, 2026 | Buffer Overflow vulnerability in Uncrustify Project Affected v.Uncrustify_d-0.82.0-132-bcc41cbdc and Fixed in commit 68e... |
| CVE-2026-1816 | MEDIUM | 6.3 | 0.2% | May 21, 2026 | Improper restriction of excessive authentication attempts vulnerability in Turkiye Electricity Transmission Corporation ... |
| CVE-2026-1815 | MEDIUM | 5.7 | 0.2% | May 21, 2026 | Insufficient session expiration vulnerability in Turkiye Electricity Transmission Corporation (TEİAŞ) Mobile Application... |
| CVE-2026-45208 | HIGH | 7.8 | 0.3% | May 21, 2026 | A time-of-check time-of-use vulnerability in the Apex One/SEP agent could allow a local attacker to escalate privileges ... |
| CVE-2026-45207 | HIGH | 7.8 | 0.2% | May 21, 2026 | An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to escalate privileges on affe... |
| CVE-2026-45206 | HIGH | 7.8 | 0.2% | May 21, 2026 | An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to escalate privileges on affe... |
| CVE-2026-34930 | HIGH | 7.8 | 0.2% | May 21, 2026 | An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to escalate privileges on affe... |
| CVE-2026-34929 | HIGH | 7.8 | 0.2% | May 21, 2026 | An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to escalate privileges on affe... |
| CVE-2026-34928 | HIGH | 7.8 | 0.2% | May 21, 2026 | An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to escalate privileges on affe... |
| CVE-2026-34927 | HIGH | 7.8 | 0.2% | May 21, 2026 | An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to escalate privileges on affe... |
| CVE-2026-34926 | MEDIUM | 6.7 | 12.7% | May 21, 2026 | A directory traversal vulnerability in the Apex One (on-premise) server could allow a pre-authenticated local attacker t... |
| CVE-2026-2740 | HIGH | 8.4 | 1.7% | May 21, 2026 | Zohocorp ManageEngine ADSelfService Plus version before 6525, DataSecurity Plus before 6264 and RecoveryManager Plus bef... |
| CVE-2026-6841 | MEDIUM | 6.1 | 0.2% | May 21, 2026 | Request Tracker is vulnerable to a reflected cross-site scripting (XSS) vulnerability via the "Page" parameter in GET re... |
| CVE-2026-5118 | CRITICAL | 9.8 | 0.5% | May 21, 2026 | The Divi Form Builder plugin for WordPress is vulnerable to privilege escalation in versions up to, and including, 5.1.2... |
| CVE-2026-45760 | HIGH | 8.1 | 0.3% | May 21, 2026 | (Externally Controlled Reference to a Resource in Another Sphere), (Authorization Bypass Through User-Controlled Key) vu... |
| CVE-2026-43502 | HIGH | 7.8 | 0.1% | May 21, 2026 | In the Linux kernel, the following vulnerability has been resolved: net/rds: handle zerocopy send cleanup before the me... |
| CVE-2026-43501 | CRITICAL | 9.8 | 0.6% | May 21, 2026 | In the Linux kernel, the following vulnerability has been resolved: ipv6: rpl: reserve mac_len headroom when recompress... |
| CVE-2026-43499 | HIGH | 7.8 | 0.8% | May 21, 2026 | In the Linux kernel, the following vulnerability has been resolved: rtmutex: Use waiter::task instead of current in rem... |
| CVE-2026-43498 | HIGH | 7.8 | 0.1% | May 21, 2026 | In the Linux kernel, the following vulnerability has been resolved: accel/ivpu: Disallow re-exporting imported GEM obje... |
| CVE-2026-43497 | HIGH | 7.3 | 0.1% | May 21, 2026 | In the Linux kernel, the following vulnerability has been resolved: fbdev: udlfb: add vm_ops to dlfb_ops_mmap to preven... |
| CVE-2026-43496 | MEDIUM | 5.5 | 0.1% | May 21, 2026 | In the Linux kernel, the following vulnerability has been resolved: net/sched: sch_red: Replace direct dequeue call wit... |
| CVE-2026-43495 | HIGH | 8.8 | 0.3% | May 21, 2026 | In the Linux kernel, the following vulnerability has been resolved: net: wwan: t7xx: validate port_count against messag... |
| CVE-2026-43494 | HIGH | 7.8 | 0.3% | May 21, 2026 | In the Linux kernel, the following vulnerability has been resolved: net/rds: reset op_nents when zerocopy page pin fail... |
| CVE-2026-0393 | MEDIUM | 6.5 | 0.2% | May 21, 2026 | The affected product may expose credentials remotely between low privileged visualization users during concurrent login ... |
| CVE-2026-45255 | HIGH | 7.5 | 0.3% | May 21, 2026 | When bsdinstall or bsdconfig are prompted to scan for nearby Wi-Fi networks, they build up a list of network names and u... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now