2026 CVE Vulnerabilities

64,772 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-34652HIGH7.5Adobe Commerce versions 2.4.9-beta1, 2.4.8-p4, 2.4.7-p9, 2.4.6-p14, 2.4.5-p16, 2.4.4-p17 and earlier are affected by a D...
CVE-2026-34651HIGH7.5Adobe Commerce versions 2.4.9-beta1, 2.4.8-p4, 2.4.7-p9, 2.4.6-p14, 2.4.5-p16, 2.4.4-p17 and earlier are affected by an ...
CVE-2026-34650HIGH7.5Adobe Commerce versions 2.4.9-beta1, 2.4.8-p4, 2.4.7-p9, 2.4.6-p14, 2.4.5-p16, 2.4.4-p17 and earlier are affected by an ...
CVE-2026-34649HIGH7.5Adobe Commerce versions 2.4.9-beta1, 2.4.8-p4, 2.4.7-p9, 2.4.6-p14, 2.4.5-p16, 2.4.4-p17 and earlier are affected by an ...
CVE-2026-34648HIGH7.5Adobe Commerce versions 2.4.9-beta1, 2.4.8-p4, 2.4.7-p9, 2.4.6-p14, 2.4.5-p16, 2.4.4-p17 and earlier are affected by an ...
CVE-2026-34647HIGH7.4Adobe Commerce versions 2.4.9-beta1, 2.4.8-p4, 2.4.7-p9, 2.4.6-p14, 2.4.5-p16, 2.4.4-p17 and earlier are affected by a S...
CVE-2026-34646HIGH7.5Adobe Commerce versions 2.4.9-beta1, 2.4.8-p4, 2.4.7-p9, 2.4.6-p14, 2.4.5-p16, 2.4.4-p17 and earlier are affected by an ...
CVE-2026-34645HIGH7.5Adobe Commerce versions 2.4.9-beta1, 2.4.8-p4, 2.4.7-p9, 2.4.6-p14, 2.4.5-p16, 2.4.4-p17 and earlier are affected by an ...
CVE-2026-23827HIGH7.5A heap-based buffer overflow vulnerability exists in a Network management service of AOS-8 and AOS-10 that could allow a...
CVE-2026-23826HIGH7.5A vulnerability in a network management service of AOS-8 Operating System could allow an unauthenticated remote attacker...
CVE-2026-23825HIGH7.5Vulnerabilities exist in a protocol-handling component of AOS-8 and AOS-10 Operating Systems. An unauthenticated attacke...
CVE-2026-23824HIGH7.5Vulnerabilities exist in a protocol-handling component of AOS-8 and AOS-10 Operating Systems. An unauthenticated attacke...
CVE-2026-8431HIGH7.2An administrative user with access to configure webhooks can execute arbitrary commands by configuring and then triggeri...
CVE-2026-8430CRITICAL9.2SPIP versions prior to 4.4.14 contain a remote code execution vulnerability in the public space that is limited to certa...
CVE-2026-8429HIGH8.8SPIP versions prior to 4.4.14 contain a remote code execution vulnerability in the private space that allows attackers t...
CVE-2026-34684HIGH7.8Substance3D - Designer versions 15.1.0 and earlier are affected by an out-of-bounds write vulnerability that could resul...
CVE-2026-34683HIGH7.8Substance3D - Designer versions 15.1.0 and earlier are affected by an out-of-bounds write vulnerability that could resul...
CVE-2026-34682HIGH7.8Substance3D - Designer versions 15.1.0 and earlier are affected by an out-of-bounds write vulnerability that could resul...
CVE-2026-34681HIGH7.8Substance3D - Designer versions 15.1.0 and earlier are affected by an out-of-bounds write vulnerability that could resul...
CVE-2026-34664MEDIUM6.3Substance3D - Designer versions 15.1.0 and earlier are affected by an Improper Limitation of a Pathname to a Restricted ...
CVE-2026-34660CRITICAL9.3Adobe Connect versions 2025.9.15, 2025.8.157 and earlier are affected by an Incorrect Authorization vulnerability that c...
CVE-2026-34659CRITICAL9.6Adobe Connect versions 2025.9.15, 2025.8.157 and earlier are affected by a Deserialization of Untrusted Data vulnerabili...
CVE-2026-23823HIGH7.2A vulnerability in the command line interface of Access Points running AOS-10 could allow an authenticated remote attack...
CVE-2026-23822MEDIUM5.3A vulnerability in the XML handling component of AOS-8 DHCP services could allow an unauthenticated remote attacker to t...
CVE-2026-23821HIGH7.2A vulnerability in the configuration processing logic of Access Points running AOS-10 could allow an authenticated remot...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now