2026 CVE Vulnerabilities

44,809 CVEs published in 2026.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2026-58203MEDIUM5.3pydantic-settings provides settings management using Pydantic. From 2.12.0 until 2.14.2, NestedSecretsSettingsSource rea...
CVE-2026-13122MEDIUM5.3OpenVPN version 2.6.0 through 2.6.20 and 2.7_alpha1 through 2.7.4 allows remote attackers to cause a denial of service v...
CVE-2026-7185MEDIUM6A validation vulnerability has been identified in certain web features related to file management or upload in several p...
CVE-2026-44936MEDIUM5Missing filtering when the helmRepoURLRegex field isn't set on a GitRepo resource in SUSE Rancher Fleet's bundle reader ...
CVE-2026-56139MEDIUM5.3Generation of Error Message Containing Sensitive Information vulnerability in Apache Camel Undertow Component. The came...
CVE-2026-49365MEDIUM5.3Generation of Error Message Containing Sensitive Information vulnerability in Apache Camel Netty HTTP component. The ca...
CVE-2026-49099MEDIUM5.3Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection'), Authorization Bypass...
CVE-2026-49098MEDIUM5.3Improper Input Validation, Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Inject...
CVE-2026-49097MEDIUM6.5Improper Input Validation, Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Inject...
CVE-2026-49086MEDIUM6.5Improper Input Validation, Unintended Proxy or Intermediary ('Confused Deputy') vulnerability in Apache Camel DAPR compo...
CVE-2026-48206MEDIUM5.3Improper Input Validation, Authorization Bypass Through User-Controlled Key vulnerability in Apache Camel JIRA component...
CVE-2026-46453MEDIUM5.3Improper Input Validation, Authorization Bypass Through User-Controlled Key vulnerability in Apache Camel ElasticSearch ...
CVE-2026-1433MEDIUM4.8uniFLOW Universal Login Manager (ULM) Standalone contains an information disclosure vulnerability that may allow an auth...
CVE-2026-14801MEDIUM4.8A security vulnerability has been detected in GPAC 26.03-DEV-rev342-g80071f700-master. The impacted element is the funct...
CVE-2026-14800MEDIUM4.3A weakness has been identified in imhamzaazam ecommerceFlask up to cb7d9e24c30a99379651b7493b32048126ef402b. The affecte...
CVE-2026-14799MEDIUM6.3A security flaw has been discovered in CodeAstro Ecommerce Website 1.0. Impacted is an unknown function of the file /cus...
CVE-2026-14798MEDIUM6.3A vulnerability was identified in CodeAstro Apartment Visitor Management System 1.0. This issue affects some unknown pro...
CVE-2026-14797MEDIUM6.3A vulnerability was determined in CodeAstro Apartment Visitor Management System 1.0. This vulnerability affects unknown ...
CVE-2026-14796MEDIUM6.3A vulnerability was found in CodeAstro Apartment Visitor Management System 1.0. This affects an unknown part of the file...
CVE-2026-14795MEDIUM6.3A vulnerability has been found in CodeAstro Apartment Visitor Management System 1.0. Affected by this issue is some unkn...
CVE-2026-14794MEDIUM5.3A flaw has been found in Craft CMS up to 4.18.0.1. Affected by this vulnerability is the function actionGetNewUsersData ...
CVE-2026-14793MEDIUM5.3A vulnerability was detected in Craft CMS up to 4.18.0.1. Affected is the function actionReorderSets of the file src/con...
CVE-2026-14792MEDIUM6.9A security vulnerability has been detected in Formbricks 5.0.0. This impacts an unknown function of the file apps/web/mo...
CVE-2026-14803MEDIUM6.5Mojo::JSON versions before 9.47 for Perl allow memory exhaustion via unbounded recursion in the pure-Perl decoder. The ...
CVE-2026-14786MEDIUM5.5A security flaw has been discovered in radareorg radare2 up to 6.1.6. This impacts the function r_str_word_get0set of th...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now