2026 CVE Vulnerabilities

65,063 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-25125MEDIUM4.9October is a Content Management System (CMS) and web platform. Versions prior to 3.7.14 and 4.1.10 contain a server-side...
CVE-2026-24893HIGH8.8openITCOCKPIT is an open source monitoring tool built for different monitoring engines. openITCOCKPIT Community Edition ...
CVE-2026-40683HIGH7.7In OpenStack Keystone before 28.0.1, the LDAP identity backend does not convert the user enabled attribute to a boolean ...
CVE-2026-34630HIGH7.8Bridge versions 16.0.2, 15.1.4 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result ...
CVE-2026-34618HIGH7.8Illustrator versions 30.2, 29.8.5 and earlier are affected by an out-of-bounds write vulnerability that could result in ...
CVE-2026-27313HIGH7.8Bridge versions 16.0.2, 15.1.4 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result ...
CVE-2026-27312HIGH7.8Bridge versions 16.0.2, 15.1.4 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result ...
CVE-2026-27311HIGH7.8Bridge versions 16.0.2, 15.1.4 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result ...
CVE-2026-27310HIGH7.8Bridge versions 16.0.2, 15.1.4 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result ...
CVE-2026-27289HIGH7.8Photoshop Desktop versions 27.4 and earlier are affected by an out-of-bounds read vulnerability when parsing a crafted f...
CVE-2026-27222MEDIUM5.4Adobe Experience Manager is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-...
CVE-2026-34625MEDIUM5.4Adobe Experience Manager versions 6.5.24, FP11.7 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vuln...
CVE-2026-34624MEDIUM5.4Adobe Experience Manager versions 6.5.24, FP11.7 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vuln...
CVE-2026-34623MEDIUM5.4Adobe Experience Manager versions 6.5.24, FP11.7 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vuln...
CVE-2026-5756HIGH7.5Unauthenticated Configuration File Modification Vulnerability in DRC Central Office Services (COS) allows an attacker to...
CVE-2026-5754MEDIUM6.1Reflected Cross-Site Scripting (XSS) Vulnerability in Radware Alteon 34.5.4.0 vADC load-balancer allows an attacker to i...
CVE-2026-5752CRITICAL9.3Sandbox Escape Vulnerability in Terrarium allows arbitrary code execution with root privileges on a host process via Jav...
CVE-2026-34629HIGH7.8InDesign Desktop versions 20.5.2, 21.2 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could...
CVE-2026-34628HIGH7.8InDesign Desktop versions 20.5.2, 21.2 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could...
CVE-2026-34627HIGH7.8InDesign Desktop versions 20.5.2, 21.2 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could...
CVE-2026-34617HIGH8.7Adobe Connect versions 2025.3, 12.10 and earlier are affected by a Cross-Site Scripting (XSS) vulnerability that could r...
CVE-2026-34615CRITICAL9.3Adobe Connect versions 2025.3, 12.10 and earlier are affected by a Deserialization of Untrusted Data vulnerability that ...
CVE-2026-34614MEDIUM6.1Adobe Connect versions 2025.3, 12.10 and earlier are affected by a reflected Cross-Site Scripting (XSS) vulnerability. I...
CVE-2026-33829MEDIUM4.3Exposure of sensitive information to an unauthorized actor in Windows Snipping Tool allows an unauthorized attacker to p...
CVE-2026-33827HIGH8.1Concurrent execution using shared resource with improper synchronization ('race condition') in Windows TCP/IP allows an ...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now