2026 CVE Vulnerabilities

65,279 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-33414HIGH7.8Podman is a tool for managing OCI containers and pods. Versions 4.8.0 through 5.8.1 contain a command injection vulnerab...
CVE-2026-33023HIGH7.8libsixel is a SIXEL encoder/decoder implementation derived from kmiya's sixel. In versions 1.8.7 and prior, when built w...
CVE-2026-33021HIGH7.3libsixel is a SIXEL encoder/decoder implementation derived from kmiya's sixel. Versions 1.8.7 and prior contain a use-af...
CVE-2026-27301MEDIUM5.5Adobe Framemaker versions 2022.8 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could lead ...
CVE-2026-27300MEDIUM5.5Adobe Framemaker versions 2022.8 and earlier are affected by an Access of Uninitialized Pointer vulnerability that could...
CVE-2026-27299MEDIUM6.3Adobe Framemaker versions 2022.8 and earlier are affected by an Improper Input Validation vulnerability that could lead ...
CVE-2026-27298HIGH7.8Adobe Framemaker versions 2022.8 and earlier are affected by an Access of Resource Using Incompatible Type ('Type Confus...
CVE-2026-27297HIGH7.8Adobe Framemaker versions 2022.8 and earlier are affected by an Integer Underflow (Wrap or Wraparound) vulnerability tha...
CVE-2026-27296HIGH7.8Adobe Framemaker versions 2022.8 and earlier are affected by an Integer Underflow (Wrap or Wraparound) vulnerability tha...
CVE-2026-27295HIGH7.8Adobe Framemaker versions 2022.8 and earlier are affected by an out-of-bounds write vulnerability that could result in a...
CVE-2026-27294HIGH7.8Adobe Framemaker versions 2022.8 and earlier are affected by an out-of-bounds read vulnerability when parsing a crafted ...
CVE-2026-27293HIGH7.8Adobe Framemaker versions 2022.8 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could resul...
CVE-2026-27292HIGH7.8Adobe Framemaker versions 2022.8 and earlier are affected by a Use After Free vulnerability that could result in arbitra...
CVE-2026-27290HIGH8.6Adobe Framemaker versions 2022.8 and earlier are affected by an Untrusted Search Path vulnerability that might allow att...
CVE-2026-40291HIGH8.8Chamilo LMS is an open-source learning management system. In versions prior to 2.0.0-RC.3, an insecure direct object mod...
CVE-2026-39907CRITICAL10Unisys WebPerfect Image Suite versions 3.0.3960.22810 and 3.0.3960.22604 expose an unauthenticated WCF SOAP endpoint on ...
CVE-2026-39906CRITICAL10Unisys WebPerfect Image Suite versions 3.0.3960.22810 and 3.0.3960.22604 expose a deprecated .NET Remoting TCP channel t...
CVE-2026-35196HIGH8.8Chamilo LMS is an open-source learning management system. In versions prior to 2.0.0-RC.3, an OS Command Injection vulne...
CVE-2026-34631HIGH7.8InCopy versions 20.5.2, 21.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbit...
CVE-2026-34619HIGH7.7ColdFusion versions 2023.18, 2025.6 and earlier are affected by an Improper Limitation of a Pathname to a Restricted Dir...
CVE-2026-34602HIGH7.1Chamilo LMS is an open-source learning management system. In versions prior to 2.0.0-RC.3, the /api/course_rel_users end...
CVE-2026-34370MEDIUM6.5Chamilo LMS is an open-source learning management system. In versions prior to 2.0.0-RC.3, the notebook module contains ...
CVE-2026-34213MEDIUM5.4Docmost is open-source collaborative wiki and documentation software. Starting in version 0.3.0 and prior to version 0.7...
CVE-2026-34212MEDIUM5.4Docmost is open-source collaborative wiki and documentation software. In versions prior to 0.71.0, improper neutralizati...
CVE-2026-33193MEDIUM4.6Docmost is open-source collaborative wiki and documentation software. Versions prior to 0.70.0 are vulnerable to a store...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now