2026 CVE Vulnerabilities
44,809 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-58203 | MEDIUM | 5.3 | 0.2% | Jul 6, 2026 | pydantic-settings provides settings management using Pydantic. From 2.12.0 until 2.14.2, NestedSecretsSettingsSource rea... |
| CVE-2026-13122 | MEDIUM | 5.3 | 0.5% | Jul 6, 2026 | OpenVPN version 2.6.0 through 2.6.20 and 2.7_alpha1 through 2.7.4 allows remote attackers to cause a denial of service v... |
| CVE-2026-7185 | MEDIUM | 6 | — | Jul 6, 2026 | A validation vulnerability has been identified in certain web features related to file management or upload in several p... |
| CVE-2026-44936 | MEDIUM | 5 | 0.4% | Jul 6, 2026 | Missing filtering when the helmRepoURLRegex field isn't set on a GitRepo resource in SUSE Rancher Fleet's bundle reader ... |
| CVE-2026-56139 | MEDIUM | 5.3 | 0.2% | Jul 6, 2026 | Generation of Error Message Containing Sensitive Information vulnerability in Apache Camel Undertow Component. The came... |
| CVE-2026-49365 | MEDIUM | 5.3 | 0.2% | Jul 6, 2026 | Generation of Error Message Containing Sensitive Information vulnerability in Apache Camel Netty HTTP component. The ca... |
| CVE-2026-49099 | MEDIUM | 5.3 | 0.2% | Jul 6, 2026 | Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection'), Authorization Bypass... |
| CVE-2026-49098 | MEDIUM | 5.3 | 0.2% | Jul 6, 2026 | Improper Input Validation, Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Inject... |
| CVE-2026-49097 | MEDIUM | 6.5 | 0.2% | Jul 6, 2026 | Improper Input Validation, Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Inject... |
| CVE-2026-49086 | MEDIUM | 6.5 | 0.2% | Jul 6, 2026 | Improper Input Validation, Unintended Proxy or Intermediary ('Confused Deputy') vulnerability in Apache Camel DAPR compo... |
| CVE-2026-48206 | MEDIUM | 5.3 | 0.2% | Jul 6, 2026 | Improper Input Validation, Authorization Bypass Through User-Controlled Key vulnerability in Apache Camel JIRA component... |
| CVE-2026-46453 | MEDIUM | 5.3 | 0.2% | Jul 6, 2026 | Improper Input Validation, Authorization Bypass Through User-Controlled Key vulnerability in Apache Camel ElasticSearch ... |
| CVE-2026-1433 | MEDIUM | 4.8 | 0.2% | Jul 6, 2026 | uniFLOW Universal Login Manager (ULM) Standalone contains an information disclosure vulnerability that may allow an auth... |
| CVE-2026-14801 | MEDIUM | 4.8 | 0.1% | Jul 6, 2026 | A security vulnerability has been detected in GPAC 26.03-DEV-rev342-g80071f700-master. The impacted element is the funct... |
| CVE-2026-14800 | MEDIUM | 4.3 | 0.2% | Jul 6, 2026 | A weakness has been identified in imhamzaazam ecommerceFlask up to cb7d9e24c30a99379651b7493b32048126ef402b. The affecte... |
| CVE-2026-14799 | MEDIUM | 6.3 | 0.2% | Jul 6, 2026 | A security flaw has been discovered in CodeAstro Ecommerce Website 1.0. Impacted is an unknown function of the file /cus... |
| CVE-2026-14798 | MEDIUM | 6.3 | 0.2% | Jul 6, 2026 | A vulnerability was identified in CodeAstro Apartment Visitor Management System 1.0. This issue affects some unknown pro... |
| CVE-2026-14797 | MEDIUM | 6.3 | 0.2% | Jul 6, 2026 | A vulnerability was determined in CodeAstro Apartment Visitor Management System 1.0. This vulnerability affects unknown ... |
| CVE-2026-14796 | MEDIUM | 6.3 | 0.2% | Jul 6, 2026 | A vulnerability was found in CodeAstro Apartment Visitor Management System 1.0. This affects an unknown part of the file... |
| CVE-2026-14795 | MEDIUM | 6.3 | 0.2% | Jul 6, 2026 | A vulnerability has been found in CodeAstro Apartment Visitor Management System 1.0. Affected by this issue is some unkn... |
| CVE-2026-14794 | MEDIUM | 5.3 | 0.2% | Jul 6, 2026 | A flaw has been found in Craft CMS up to 4.18.0.1. Affected by this vulnerability is the function actionGetNewUsersData ... |
| CVE-2026-14793 | MEDIUM | 5.3 | 0.2% | Jul 6, 2026 | A vulnerability was detected in Craft CMS up to 4.18.0.1. Affected is the function actionReorderSets of the file src/con... |
| CVE-2026-14792 | MEDIUM | 6.9 | 0.4% | Jul 6, 2026 | A security vulnerability has been detected in Formbricks 5.0.0. This impacts an unknown function of the file apps/web/mo... |
| CVE-2026-14803 | MEDIUM | 6.5 | 0.2% | Jul 6, 2026 | Mojo::JSON versions before 9.47 for Perl allow memory exhaustion via unbounded recursion in the pure-Perl decoder. The ... |
| CVE-2026-14786 | MEDIUM | 5.5 | 0.1% | Jul 6, 2026 | A security flaw has been discovered in radareorg radare2 up to 6.1.6. This impacts the function r_str_word_get0set of th... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now