2026 CVE Vulnerabilities

65,524 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-33776MEDIUM6.8A Missing Authorization vulnerability in the CLI of Juniper Networks Junos OS and Junos OS Evolved allows a local user w...
CVE-2026-33775HIGH7.1A Missing Release of Memory after Effective Lifetime vulnerability in the BroadBand Edge subscriber management daemon (b...
CVE-2026-33774MEDIUM5.3An Improper Check for Unusual or Exceptional Conditions vulnerability in the packet forwarding engine (pfe) of Juniper N...
CVE-2026-33773MEDIUM6.9An Incorrect Initialization of Resource vulnerability in the packet forwarding engine (pfe) of Juniper Networks Junos OS...
CVE-2026-33771HIGH8.1A Weak Password Requirements vulnerability in the password management function of Juniper Networks CTP OS might allow an...
CVE-2026-21919HIGH7.1An Incorrect Synchronization vulnerability in the management daemon (mgd) of Juniper Networks Junos OS and Junos OS Evol...
CVE-2026-21916HIGH7.3A UNIX Symbolic Link (Symlink) Following vulnerability in the CLI of Juniper Networks Junos OS allows a local, authentic...
CVE-2026-21915HIGH8.4A Permissive List of Allowed Input vulnerability in the CLI of Juniper Networks Support Insights (JSI) Virtual Lightweig...
CVE-2026-21904MEDIUM6.1An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Juniper Network...
CVE-2026-5980HIGH8.8A flaw has been found in D-Link DIR-605L 2.13B01. Affected by this issue is the function formSetMACFilter of the file /g...
CVE-2026-5979HIGH8.8A vulnerability was detected in D-Link DIR-605L 2.13B01. Affected by this vulnerability is the function formVirtualServ ...
CVE-2026-5978CRITICAL9.8A security vulnerability has been detected in Totolink A7100RU 7.4cu.2313_b20191024. Affected is the function setWiFiAcl...
CVE-2026-5977CRITICAL9.8A weakness has been identified in Totolink A7100RU 7.4cu.2313_b20191024. This impacts the function setWiFiBasicCfg of th...
CVE-2026-5447HIGH7.5Heap buffer overflow in CertFromX509 via AuthorityKeyIdentifier size confusion. A heap buffer overflow occurs when conve...
CVE-2026-5446HIGH7.1In wolfSSL, ARIA-GCM cipher suites used in TLS 1.2 and DTLS 1.2 reuse an identical 12-byte GCM nonce for every applicati...
CVE-2026-40109LOW3.1Flux notification-controller is the event forwarder and notification dispatcher for the GitOps Toolkit controllers. Prio...
CVE-2026-40107MEDIUM6.5SiYuan is a personal knowledge management system. Prior to 3.6.4, SiYuan configures Mermaid.js with securityLevel: "loos...
CVE-2026-40093HIGH8.1nimiq-blockchain provides persistent block storage for Nimiq's Rust implementation. In 1.3.0 and earlier, block timestam...
CVE-2026-35206MEDIUM4.4Helm is a package manager for Charts for Kubernetes. In Helm versions <=3.20.1 and <=4.1.3, a specially crafted Chart wi...
CVE-2026-5976CRITICAL9.8A security flaw has been discovered in Totolink A7100RU 7.4cu.2313_b20191024. This affects the function setStorageCfg of...
CVE-2026-5975CRITICAL9.8A vulnerability was identified in Totolink A7100RU 7.4cu.2313_b20191024. The impacted element is the function setDmzCfg ...
CVE-2026-5974CRITICAL9.8A vulnerability was determined in FoundationAgents MetaGPT up to 0.8.1. The affected element is the function Bash.run in...
CVE-2026-5973CRITICAL9.8A vulnerability was found in FoundationAgents MetaGPT up to 0.8.1. Impacted is the function get_mime_type of the file me...
CVE-2026-5972CRITICAL9.8A vulnerability has been found in FoundationAgents MetaGPT up to 0.8.1. This issue affects the function Terminal.run_com...
CVE-2026-5194CRITICAL9.1Missing hash/digest size and OID checks allow digests smaller than allowed when verifying ECDSA certificates, or smaller...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now