2026 CVE Vulnerabilities

64,858 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-7595MEDIUM6.3A flaw has been found in nextlevelbuilder ui-ux-pro-max-skill up to 2.5.0. Affected by this vulnerability is the functio...
CVE-2026-7594HIGH7.3A vulnerability was detected in Flux159 mcp-game-asset-gen 0.1.0. Affected is the function image_to_3d_async of the file...
CVE-2026-7593HIGH7.3A security vulnerability has been detected in Sunwood-ai-labs command-executor-mcp-server up to 0.1.0. This impacts the ...
CVE-2026-42788MEDIUM6.9Allocation of Resources Without Limits or Throttling vulnerability in mtrudel bandit allows unauthenticated memory exhau...
CVE-2026-42786HIGH8.7Allocation of Resources Without Limits or Throttling vulnerability in mtrudel bandit allows unauthenticated remote denia...
CVE-2026-39807MEDIUM6.3Reliance on Untrusted Inputs in a Security Decision vulnerability in mtrudel bandit allows unauthenticated transport-sta...
CVE-2026-39805MEDIUM6.3Inconsistent Interpretation of HTTP Requests vulnerability in mtrudel bandit allows HTTP request smuggling via duplicate...
CVE-2026-39804HIGH8.2Allocation of Resources Without Limits or Throttling vulnerability in mtrudel bandit allows unauthenticated remote denia...
CVE-2026-7592HIGH7.3A weakness has been identified in itsourcecode Courier Management System 1.0. This affects an unknown function of the fi...
CVE-2026-7591MEDIUM6.3A security flaw has been discovered in TimBroddin astro-mcp-server up to 1.1.1. The impacted element is an unknown funct...
CVE-2026-7590HIGH7.3A vulnerability was identified in eyal-gor p_69_branch_monkey_mcp up to 69bc71874ce40050ef45fde5a435855f18af3373. The af...
CVE-2026-7589MEDIUM5.5A vulnerability was determined in ghantakiran splunk-mcp-integration up to 0b86b09d5e5adf0433acd43c975951224613a1a6. Imp...
CVE-2026-30363HIGH8.4flipperzero-firmware commit ad2a80 was discovered to contain a stack overflow in the "Main" function.
CVE-2026-7588MEDIUM5.5A vulnerability was found in ggerve coding-standards-mcp. This issue affects the function get_style_guide/get_best_pract...
CVE-2026-37457HIGH7.5An off-by-one out-of-bounds write vulnerability in the bgp_flowspec_op_decode() function (bgpd/bgp_flowspec_util.c) of F...
CVE-2026-35233MEDIUM4.4An unprivileged attacker can craft a user-space process with a malicious ELF binary containing an out-of-range sh_link f...
CVE-2026-26461MEDIUM6.5A Command Injection vulnerability in the web management interface in Aver PTC320UV2 0.1.0000.65 allows an unauthenticate...
CVE-2026-21996MEDIUM5.5An unprivileged attacker can reliably trigger a crash of the dtrace process with a malicious ELF binary due to an intege...
CVE-2026-7587MEDIUM4.3A vulnerability has been found in Open5GS up to 2.7.7. This vulnerability affects the function amf_nsmf_pdusession_handl...
CVE-2026-42485HIGH7.5AGL agl-service-can-low-level contains a stack buffer overflow in the uds-c library. The send_diagnostic_request functio...
CVE-2026-42469HIGH8.6Buffer overflow vulnerability in Open Vehicle Monitoring System 3 (OVMS3) 3.3.005. In canformat_canswitch.cpp the parser...
CVE-2026-42468HIGH8.8Buffer overflow vulnerability in Open Vehicle Monitoring System 3 (OVMS3) 3.3.005. In canformat_pcap.cpp , the parser's ...
CVE-2026-42467HIGH7.5An issue was discovered in Open-SAE-J1939 thru commit b6caf884df46435e539b1ecbf92b6c29b345bdfe (2025-11-30) in SAE_J1939...
CVE-2026-37541CRITICAL10Buffer overflow vulnerability in Open Vehicle Monitoring System 3 (OVMS3) 3.3.005. In canformat_gvret.cpp, the length fi...
CVE-2026-37540CRITICAL9.8OpenAMP v2025.10.0 ELF loader contains an integer overflow vulnerability in firmware image parsing. In elf_loader.c, it ...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now