2026 CVE Vulnerabilities
65,524 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-35628 | MEDIUM | 6.5 | 0.3% | Apr 9, 2026 | OpenClaw before 2026.3.25 contains a missing rate limiting vulnerability in Telegram webhook authentication that allows ... |
| CVE-2026-35627 | HIGH | 8.2 | 0.5% | Apr 9, 2026 | OpenClaw before 2026.3.22 performs cryptographic and dispatch operations on inbound Nostr direct messages before enforci... |
| CVE-2026-35626 | MEDIUM | 6.9 | 0.5% | Apr 9, 2026 | OpenClaw before 2026.3.22 contains an unauthenticated resource exhaustion vulnerability in voice call webhook handling t... |
| CVE-2026-35625 | HIGH | 8.5 | 0.2% | Apr 9, 2026 | OpenClaw before 2026.3.25 contains a privilege escalation vulnerability where silent local shared-auth reconnects auto-a... |
| CVE-2026-35624 | MEDIUM | 5.4 | 0.2% | Apr 9, 2026 | OpenClaw before 2026.3.22 contains a policy confusion vulnerability in room authorization that matches colliding room na... |
| CVE-2026-35623 | MEDIUM | 6.5 | 0.4% | Apr 9, 2026 | OpenClaw before 2026.3.25 contains a missing rate limiting vulnerability in webhook authentication that allows attackers... |
| CVE-2026-35622 | HIGH | 7.1 | 0.3% | Apr 9, 2026 | OpenClaw before 2026.3.22 contains an improper authentication verification vulnerability in Google Chat app-url webhook ... |
| CVE-2026-35618 | HIGH | 8.3 | 0.3% | Apr 9, 2026 | OpenClaw before 2026.3.23 contains a replay identity vulnerability in Plivo V2 signature verification that allows attack... |
| CVE-2026-35617 | MEDIUM | 5.4 | 0.2% | Apr 9, 2026 | OpenClaw before 2026.3.25 contains an authorization bypass vulnerability in Google Chat group policy enforcement that re... |
| CVE-2026-34512 | HIGH | 8.1 | 0.3% | Apr 9, 2026 | OpenClaw before 2026.3.25 contains an improper access control vulnerability in the HTTP /sessions/:sessionKey/kill route... |
| CVE-2026-33797 | HIGH | 7.4 | 0.2% | Apr 9, 2026 | An Improper Input Validation vulnerability in Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated, ... |
| CVE-2026-33793 | HIGH | 8.5 | 0.2% | Apr 9, 2026 | An Execution with Unnecessary Privileges vulnerability in the User Interface (UI) of Juniper Networks Junos OS and Junos... |
| CVE-2026-33791 | HIGH | 8.4 | 0.7% | Apr 9, 2026 | An OS Command Injection vulnerability in the CLI processing of Juniper Networks Junos OS and Junos OS Evolved allows a l... |
| CVE-2026-33790 | HIGH | 8.7 | 0.3% | Apr 9, 2026 | An Improper Check for Unusual or Exceptional Conditions vulnerability in the flow daemon (flowd) of Juniper Networks Jun... |
| CVE-2026-33788 | HIGH | 8.5 | 0.1% | Apr 9, 2026 | A Missing Authentication for Critical Function vulnerability in the Flexible PIC Concentrators (FPCs) of Juniper Network... |
| CVE-2026-33787 | MEDIUM | 6.8 | 0.1% | Apr 9, 2026 | An Improper Check for Unusual or Exceptional Conditions vulnerability in the chassis control daemon (chassisd) of Junipe... |
| CVE-2026-33786 | MEDIUM | 6.8 | 0.1% | Apr 9, 2026 | An Improper Check for Unusual or Exceptional Conditions vulnerability in the chassis control daemon (chassisd) of Junipe... |
| CVE-2026-33785 | HIGH | 8.8 | 0.1% | Apr 9, 2026 | A Missing Authorization vulnerability in the CLI of Juniper Networks Junos OS on MX Series allows a local, authenticated... |
| CVE-2026-33784 | CRITICAL | 9.8 | 0.5% | Apr 9, 2026 | A Use of Default Password vulnerability in the Juniper Networks Support Insights (JSI) Virtual Lightweight Collector... |
| CVE-2026-33783 | HIGH | 7.1 | 0.2% | Apr 9, 2026 | A Function Call With Incorrect Argument Type vulnerability in the sensor interface of Juniper Networks Junos OS Evolved ... |
| CVE-2026-33782 | HIGH | 8.7 | 0.3% | Apr 9, 2026 | A Missing Release of Memory after Effective Lifetime vulnerability in the DHCP daemon (jdhcpd) of Juniper Networks Junos... |
| CVE-2026-33781 | HIGH | 7.1 | 0.2% | Apr 9, 2026 | An Improper Check for Unusual or Exceptional Conditions vulnerability in the packet forwarding engine (pfe) of Juniper N... |
| CVE-2026-33780 | HIGH | 7.1 | 0.2% | Apr 9, 2026 | A Missing Release of Memory after Effective Lifetime vulnerability in the Layer 2 Address Learning Daemon (l2ald) of Jun... |
| CVE-2026-33779 | HIGH | 8.3 | 0.1% | Apr 9, 2026 | An Improper Following of a Certificate's Chain of Trust vulnerability in J-Web of Juniper Networks Junos OS on SRX Serie... |
| CVE-2026-33778 | HIGH | 8.7 | 0.3% | Apr 9, 2026 | An Improper Validation of Syntactic Correctness of Input vulnerability in the IPsec library used by kmd and iked of Jun... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now