2026 CVE Vulnerabilities
64,858 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-7595 | MEDIUM | 6.3 | 0.2% | May 1, 2026 | A flaw has been found in nextlevelbuilder ui-ux-pro-max-skill up to 2.5.0. Affected by this vulnerability is the functio... |
| CVE-2026-7594 | HIGH | 7.3 | 0.4% | May 1, 2026 | A vulnerability was detected in Flux159 mcp-game-asset-gen 0.1.0. Affected is the function image_to_3d_async of the file... |
| CVE-2026-7593 | HIGH | 7.3 | 1.4% | May 1, 2026 | A security vulnerability has been detected in Sunwood-ai-labs command-executor-mcp-server up to 0.1.0. This impacts the ... |
| CVE-2026-42788 | MEDIUM | 6.9 | 0.5% | May 1, 2026 | Allocation of Resources Without Limits or Throttling vulnerability in mtrudel bandit allows unauthenticated memory exhau... |
| CVE-2026-42786 | HIGH | 8.7 | 0.5% | May 1, 2026 | Allocation of Resources Without Limits or Throttling vulnerability in mtrudel bandit allows unauthenticated remote denia... |
| CVE-2026-39807 | MEDIUM | 6.3 | 0.5% | May 1, 2026 | Reliance on Untrusted Inputs in a Security Decision vulnerability in mtrudel bandit allows unauthenticated transport-sta... |
| CVE-2026-39805 | MEDIUM | 6.3 | 0.5% | May 1, 2026 | Inconsistent Interpretation of HTTP Requests vulnerability in mtrudel bandit allows HTTP request smuggling via duplicate... |
| CVE-2026-39804 | HIGH | 8.2 | 0.6% | May 1, 2026 | Allocation of Resources Without Limits or Throttling vulnerability in mtrudel bandit allows unauthenticated remote denia... |
| CVE-2026-7592 | HIGH | 7.3 | 0.3% | May 1, 2026 | A weakness has been identified in itsourcecode Courier Management System 1.0. This affects an unknown function of the fi... |
| CVE-2026-7591 | MEDIUM | 6.3 | 0.2% | May 1, 2026 | A security flaw has been discovered in TimBroddin astro-mcp-server up to 1.1.1. The impacted element is an unknown funct... |
| CVE-2026-7590 | HIGH | 7.3 | 1.4% | May 1, 2026 | A vulnerability was identified in eyal-gor p_69_branch_monkey_mcp up to 69bc71874ce40050ef45fde5a435855f18af3373. The af... |
| CVE-2026-7589 | MEDIUM | 5.5 | 0.4% | May 1, 2026 | A vulnerability was determined in ghantakiran splunk-mcp-integration up to 0b86b09d5e5adf0433acd43c975951224613a1a6. Imp... |
| CVE-2026-30363 | HIGH | 8.4 | 0.1% | May 1, 2026 | flipperzero-firmware commit ad2a80 was discovered to contain a stack overflow in the "Main" function. |
| CVE-2026-7588 | MEDIUM | 5.5 | 0.4% | May 1, 2026 | A vulnerability was found in ggerve coding-standards-mcp. This issue affects the function get_style_guide/get_best_pract... |
| CVE-2026-37457 | HIGH | 7.5 | 0.4% | May 1, 2026 | An off-by-one out-of-bounds write vulnerability in the bgp_flowspec_op_decode() function (bgpd/bgp_flowspec_util.c) of F... |
| CVE-2026-35233 | MEDIUM | 4.4 | 0.1% | May 1, 2026 | An unprivileged attacker can craft a user-space process with a malicious ELF binary containing an out-of-range sh_link f... |
| CVE-2026-26461 | MEDIUM | 6.5 | 0.8% | May 1, 2026 | A Command Injection vulnerability in the web management interface in Aver PTC320UV2 0.1.0000.65 allows an unauthenticate... |
| CVE-2026-21996 | MEDIUM | 5.5 | 0.1% | May 1, 2026 | An unprivileged attacker can reliably trigger a crash of the dtrace process with a malicious ELF binary due to an intege... |
| CVE-2026-7587 | MEDIUM | 4.3 | 0.3% | May 1, 2026 | A vulnerability has been found in Open5GS up to 2.7.7. This vulnerability affects the function amf_nsmf_pdusession_handl... |
| CVE-2026-42485 | HIGH | 7.5 | 0.3% | May 1, 2026 | AGL agl-service-can-low-level contains a stack buffer overflow in the uds-c library. The send_diagnostic_request functio... |
| CVE-2026-42469 | HIGH | 8.6 | 0.4% | May 1, 2026 | Buffer overflow vulnerability in Open Vehicle Monitoring System 3 (OVMS3) 3.3.005. In canformat_canswitch.cpp the parser... |
| CVE-2026-42468 | HIGH | 8.8 | 0.4% | May 1, 2026 | Buffer overflow vulnerability in Open Vehicle Monitoring System 3 (OVMS3) 3.3.005. In canformat_pcap.cpp , the parser's ... |
| CVE-2026-42467 | HIGH | 7.5 | 0.3% | May 1, 2026 | An issue was discovered in Open-SAE-J1939 thru commit b6caf884df46435e539b1ecbf92b6c29b345bdfe (2025-11-30) in SAE_J1939... |
| CVE-2026-37541 | CRITICAL | 10 | 0.7% | May 1, 2026 | Buffer overflow vulnerability in Open Vehicle Monitoring System 3 (OVMS3) 3.3.005. In canformat_gvret.cpp, the length fi... |
| CVE-2026-37540 | CRITICAL | 9.8 | 0.3% | May 1, 2026 | OpenAMP v2025.10.0 ELF loader contains an integer overflow vulnerability in firmware image parsing. In elf_loader.c, it ... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now