2026 CVE Vulnerabilities

64,760 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-39052MEDIUM6.5Oinone Pamirs 7.0.0 contains a code execution vulnerability via ScriptRunner. The method ScriptRunner.run(String express...
CVE-2026-38728HIGH7.5An issue in Nodemailer smtp_server before v.3.18.3 allows a remote attacker to cause a denial of service via the SMTPStr...
CVE-2026-34253HIGH8.2A buffer underflow vulnerability has been identified in the ogg123 utility from the vorbis-tools 1.4.3 package in functi...
CVE-2026-46333HIGH7.1In the Linux kernel, the following vulnerability has been resolved: ptrace: slightly saner 'get_dumpable()' logic The ...
CVE-2026-7182CRITICAL9.2Diagram's export module is vulnerable to Path Traversal in src attribute due to lack of HTML sanitization. An unauthenti...
CVE-2026-41553CRITICAL10PDF Export Module used in DHTMLX's products Gantt and Scheduler is vulnerable to Remote Code Execution due to lack of "d...
CVE-2026-41552HIGH7.5PDF Export Module used in DHTMLX's products Gantt and Scheduler is vulnerable to Path Traversal due to lack of HTML sani...
CVE-2026-8503MEDIUM6.5Apache::Session::Generate::SHA256 versions before 1.3.19 for Perl create insecure session ids. Apache::Session::Generat...
CVE-2026-8454MEDIUM5.3Imager::File::GIF versions through 1.002 for Perl allow a heap out of bounds (OOB) write on crafted multi-frame GIF file...
CVE-2026-41971MEDIUM5.5Permission control vulnerability in the security control module. Impact: Successful exploitation of this vulnerability m...
CVE-2026-41970MEDIUM6.8Out-of-bounds write vulnerability in the distributed file system module. Impact: Successful exploitation of this vulnera...
CVE-2026-41969MEDIUM6.2Permission control vulnerability in the projection module. Impact: Successful exploitation of this vulnerability may aff...
CVE-2026-41968MEDIUM5.9Permission control vulnerability in the manufacturability design module. Impact: Successful exploitation of this vulnera...
CVE-2026-41967MEDIUM5.9Permission control vulnerability in the manufacturability design module. Impact: Successful exploitation of this vulnera...
CVE-2026-41966MEDIUM5.6Permission control vulnerability in the smart sensing service. Impact: Successful exploitation of this vulnerability may...
CVE-2026-41965MEDIUM5.6Use-After-Free (UAF) vulnerability in the web. Impact: Successful exploitation of this vulnerability may affect availabi...
CVE-2026-41964HIGH8.4Permission control vulnerability in the web. Impact: Successful exploitation of this vulnerability may affect availabili...
CVE-2026-41963LOW2.8Stack overflow vulnerability in the media platform. Impact: Successful exploitation of this vulnerability may affect ava...
CVE-2026-41962LOW3.6Permission control vulnerability in the app management and control module. Impact: Successful exploitation of this vulne...
CVE-2026-41961MEDIUM5.9Permission control vulnerability in contacts. Impact: Successful exploitation of this vulnerability may affect availabil...
CVE-2026-41960MEDIUM5.8Permission control vulnerability in calls. Impact: Successful exploitation of this vulnerability may affect availability...
CVE-2026-8425MEDIUM4.3The Notify Odoo plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1...
CVE-2026-8398CRITICAL9.8A supply chain attack compromised the official installation packages of DAEMON Tools Lite (Windows versions 12.5.0.2421 ...
CVE-2026-7563MEDIUM4.3The Classified Listing – AI-Powered Classified ads & Business Directory Plugin plugin for WordPress is vulnerable to una...
CVE-2026-7046MEDIUM4.9The NEX-Forms – Ultimate Forms Plugin for WordPress plugin for WordPress is vulnerable to time-based blind SQL Injection...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now