2026 CVE Vulnerabilities

65,293 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-27672MEDIUM4.3The Material Master application does not enforce authorization checks for authenticated users when executing reports, re...
CVE-2026-24318MEDIUM4.2Due to an Insecure session management vulnerability in SAP Business Objects Business Intelligence Platform, an unauthent...
CVE-2026-0512MEDIUM6.1Due to a Cross-Site Scripting (XSS) vulnerability in the SAP Supplier Relationship Management (SICF Handler in SRM Catal...
CVE-2026-6203MEDIUM6.1The User Registration & Membership plugin for WordPress is vulnerable to Open Redirect in versions up to and including 5...
CVE-2026-5086HIGH7.5Crypt::SecretBuffer versions before 0.019 for Perl is suseceptible to timing attacks. For example, if Crypt::SecretBuff...
CVE-2026-39979MEDIUM6.5jq is a command-line JSON processor. In commits before 2f09060afab23fe9390cce7cb860b10416e1bf5f, the jv_parse_sized() AP...
CVE-2026-39956MEDIUM6.1jq is a command-line JSON processor. Prior to version 1.8.2, the _strindices builtin in jq's src/builtin.c passes its ar...
CVE-2026-6224HIGH7.3A security flaw has been discovered in nocobase plugin-workflow-javascript up to 2.0.23. This issue affects the function...
CVE-2026-6220MEDIUM4.7A vulnerability was identified in HummerRisk up to 1.5.0. This vulnerability affects the function ServerService.addServe...
CVE-2026-4786HIGH7.1Mitgation of CVE-2026-4519 was incomplete. If the URL contained "%action" the mitigation could be bypassed for certain b...
CVE-2026-40312MEDIUM5.5ImageMagick is free and open-source software used for editing and manipulating digital images. In versions below 7.1.2-1...
CVE-2026-40311MEDIUM5.5ImageMagick is free and open-source software used for editing and manipulating digital images. Versions below 7.1.2-19 a...
CVE-2026-40310MEDIUM5.5ImageMagick is free and open-source software used for editing and manipulating digital images. Versions below both 7.1.2...
CVE-2026-40183MEDIUM5.5ImageMagick is free and open-source software used for editing and manipulating digital images. In versions below 7.1.2-1...
CVE-2026-40169MEDIUM5.5ImageMagick is free and open-source software used for editing and manipulating digital images. In versions below 7.1.2-1...
CVE-2026-34238MEDIUM5.5ImageMagick is free and open-source software used for editing and manipulating digital images. In versions below both 7....
CVE-2026-33947MEDIUM5.5jq is a command-line JSON processor. In versions 1.8.1 and below, functions jv_setpath(), jv_getpath(), and delpaths_sor...
CVE-2026-33908HIGH7.5ImageMagick is free and open-source software used for editing and manipulating digital images. In versions below both 7....
CVE-2026-33905HIGH7.1ImageMagick is free and open-source software used for editing and manipulating digital images. In versions below both 7....
CVE-2026-33902MEDIUM5.5ImageMagick is free and open-source software used for editing and manipulating digital images. In versions below both 7....
CVE-2026-22566HIGH7.5An Improper Access Control vulnerability could allow a malicious actor with access to the UniFi Play network to obtain U...
CVE-2026-22565HIGH7.5An Improper Input Validation vulnerability could allow a malicious actor with access to the UniFi Play network to cause ...
CVE-2026-22564CRITICAL9.8An Improper Access Control vulnerability could allow a malicious actor with access to the UniFi Play network to enable S...
CVE-2026-22563CRITICAL9.8A series of Improper Input Validation vulnerabilities could allow a Command Injection by a malicious actor with access t...
CVE-2026-22562CRITICAL9.8A malicious actor with access to the UniFi Play network could exploit a Path Traversal vulnerability found in the device...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now