2026 CVE Vulnerabilities
64,772 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-42355 | MEDIUM | 5.5 | 0.1% | May 12, 2026 | NanaZip is an open source file archive. From 5.0.1252.0 to before 6.0.1698.0, an uncontrolled recursion vulnerability ex... |
| CVE-2026-42338 | MEDIUM | 6.1 | 0.5% | May 12, 2026 | ip-address is a library for parsing and manipulating IPv4 and IPv6 addresses in JavaScript. Prior to 10.1.1, Address6.gr... |
| CVE-2026-42191 | HIGH | 7.8 | 0.1% | May 12, 2026 | OpenTelemetry.Exporter.OpenTelemetryProtocol is the OTLP (OpenTelemetry Protocol) exporter implementation. From 1.8.0 to... |
| CVE-2026-34690 | HIGH | 7.8 | 0.5% | May 12, 2026 | After Effects is affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution i... |
| CVE-2026-34688 | MEDIUM | 6.2 | 0.3% | May 12, 2026 | CAI Content Credentials versions c2pa-web@0.7.0, c2pa-v0.78.2 and earlier are affected by an Improper Input Validation v... |
| CVE-2026-34686 | HIGH | 8.7 | 0.4% | May 12, 2026 | Adobe Commerce versions 2.4.9-beta1, 2.4.8-p4, 2.4.7-p9, 2.4.6-p14, 2.4.5-p16, 2.4.4-p17 and earlier are affected by a s... |
| CVE-2026-34685 | LOW | 3.4 | 0.4% | May 12, 2026 | Adobe Commerce versions 2.4.9-beta1, 2.4.8-p4, 2.4.7-p9, 2.4.6-p14, 2.4.5-p16, 2.4.4-p17 and earlier are affected by an ... |
| CVE-2026-34680 | MEDIUM | 6.2 | 0.3% | May 12, 2026 | CAI Content Credentials versions c2pa-web@0.7.0, c2pa-v0.78.2 and earlier are affected by an Integer Overflow or Wraparo... |
| CVE-2026-34679 | MEDIUM | 6.2 | 0.2% | May 12, 2026 | CAI Content Credentials versions c2pa-web@0.7.0, c2pa-v0.78.2 and earlier are affected by an Improper Input Validation v... |
| CVE-2026-34678 | MEDIUM | 6.2 | 0.2% | May 12, 2026 | CAI Content Credentials versions c2pa-web@0.7.0, c2pa-v0.78.2 and earlier are affected by an Uncontrolled Resource Consu... |
| CVE-2026-34677 | MEDIUM | 6.2 | 0.2% | May 12, 2026 | CAI Content Credentials versions c2pa-web@0.7.0, c2pa-v0.78.2 and earlier are affected by an Uncontrolled Resource Consu... |
| CVE-2026-34673 | MEDIUM | 6.2 | 0.2% | May 12, 2026 | CAI Content Credentials versions c2pa-web@0.7.0, c2pa-v0.78.2 and earlier are affected by an Uncontrolled Resource Consu... |
| CVE-2026-34672 | MEDIUM | 6.2 | 0.3% | May 12, 2026 | CAI Content Credentials versions c2pa-web@0.7.0, c2pa-v0.78.2 and earlier are affected by an Integer Underflow (Wrap or ... |
| CVE-2026-34671 | MEDIUM | 6.2 | 0.2% | May 12, 2026 | CAI Content Credentials versions c2pa-web@0.7.0, c2pa-v0.78.2 and earlier are affected by an Integer Overflow or Wraparo... |
| CVE-2026-34670 | MEDIUM | 6.2 | 0.3% | May 12, 2026 | CAI Content Credentials versions c2pa-web@0.7.0, c2pa-v0.78.2 and earlier are affected by an Improper Input Validation v... |
| CVE-2026-34669 | MEDIUM | 6.2 | 0.2% | May 12, 2026 | CAI Content Credentials versions c2pa-web@0.7.0, c2pa-v0.78.2 and earlier are affected by an Improper Input Validation v... |
| CVE-2026-34668 | MEDIUM | 6.2 | 0.2% | May 12, 2026 | CAI Content Credentials versions c2pa-web@0.7.0, c2pa-v0.78.2 and earlier are affected by an Improper Input Validation v... |
| CVE-2026-34667 | MEDIUM | 6.2 | 0.2% | May 12, 2026 | CAI Content Credentials versions c2pa-web@0.7.0, c2pa-v0.78.2 and earlier are affected by an Integer Underflow (Wrap or ... |
| CVE-2026-34666 | MEDIUM | 6.2 | 0.3% | May 12, 2026 | CAI Content Credentials versions c2pa-web@0.7.0, c2pa-v0.78.2 and earlier are affected by an Improper Input Validation v... |
| CVE-2026-34665 | HIGH | 7.5 | 0.8% | May 12, 2026 | CAI Content Credentials versions c2pa-web@0.7.0, c2pa-v0.78.2 and earlier are affected by an Uncontrolled Resource Consu... |
| CVE-2026-34658 | MEDIUM | 4.8 | 0.3% | May 12, 2026 | Adobe Commerce versions 2.4.9-beta1, 2.4.8-p4, 2.4.7-p9, 2.4.6-p14, 2.4.5-p16, 2.4.4-p17 and earlier are affected by a s... |
| CVE-2026-34656 | MEDIUM | 4.3 | 0.4% | May 12, 2026 | Adobe Commerce versions 2.4.9-beta1, 2.4.8-p4, 2.4.7-p9, 2.4.6-p14, 2.4.5-p16, 2.4.4-p17 and earlier are affected by an ... |
| CVE-2026-34655 | MEDIUM | 4.8 | 0.4% | May 12, 2026 | Adobe Commerce versions 2.4.9-beta1, 2.4.8-p4, 2.4.7-p9, 2.4.6-p14, 2.4.5-p16, 2.4.4-p17 and earlier are affected by a s... |
| CVE-2026-34654 | MEDIUM | 5.3 | 0.6% | May 12, 2026 | Adobe Commerce versions 2.4.9-beta1, 2.4.8-p4, 2.4.7-p9, 2.4.6-p14, 2.4.5-p16, 2.4.4-p17 and earlier are affected by a D... |
| CVE-2026-34653 | HIGH | 8.7 | 0.6% | May 12, 2026 | Adobe Commerce versions 2.4.9-beta1, 2.4.8-p4, 2.4.7-p9, 2.4.6-p14, 2.4.5-p16, 2.4.4-p17 and earlier are affected by an ... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now