2026 CVE Vulnerabilities
66,317 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-34935 | CRITICAL | 9.8 | 0.8% | Apr 3, 2026 | PraisonAI is a multi-agent teams system. From version 4.5.15 to before version 4.5.69, the --mcp CLI argument is passed ... |
| CVE-2026-34934 | CRITICAL | 9.8 | 0.5% | Apr 3, 2026 | PraisonAI is a multi-agent teams system. Prior to version 4.5.90, the get_all_user_threads function constructs raw SQL q... |
| CVE-2026-34933 | MEDIUM | 5.5 | 0.2% | Apr 3, 2026 | Avahi is a system which facilitates service discovery on a local network via the mDNS/DNS-SD protocol suite. Prior to ve... |
| CVE-2026-34824 | HIGH | 7.5 | 0.7% | Apr 3, 2026 | Mesop is a Python-based UI framework that allows users to build web applications. From version 1.2.3 to before version 1... |
| CVE-2026-34788 | MEDIUM | 6.5 | 0.3% | Apr 3, 2026 | Emlog is an open source website building system. In versions 2.6.2 and prior, a SQL injection vulnerability exists in in... |
| CVE-2026-34787 | MEDIUM | 6.5 | 0.5% | Apr 3, 2026 | Emlog is an open source website building system. In versions 2.6.2 and prior, a Local File Inclusion (LFI) vulnerability... |
| CVE-2026-34612 | CRITICAL | 9 | 0.7% | Apr 3, 2026 | Kestra is an open-source, event-driven orchestration platform. Prior to version 1.3.7, Kestra (default docker-compose de... |
| CVE-2026-34607 | HIGH | 7.2 | 0.9% | Apr 3, 2026 | Emlog is an open source website building system. In versions 2.6.2 and prior, a path traversal vulnerability exists in t... |
| CVE-2026-34229 | MEDIUM | 6.1 | 0.2% | Apr 3, 2026 | Emlog is an open source website building system. Prior to version 2.6.8, there is a stored cross-site scripting (XSS) vu... |
| CVE-2026-34228 | MEDIUM | 6.5 | 0.2% | Apr 3, 2026 | Emlog is an open source website building system. Prior to version 2.6.8, the backend upgrade interface accepts remote SQ... |
| CVE-2026-34061 | MEDIUM | 6.5 | 0.2% | Apr 3, 2026 | nimiq/core-rs-albatross is a Rust implementation of the Nimiq Proof-of-Stake protocol based on the Albatross consensus a... |
| CVE-2026-34052 | MEDIUM | 5.9 | 0.3% | Apr 3, 2026 | LTI JupyterHub Authenticator is a JupyterHub authenticator for LTI. Prior to version 1.6.3, the LTI 1.1 validator stores... |
| CVE-2026-33184 | HIGH | 7.5 | 0.5% | Apr 3, 2026 | nimiq/core-rs-albatross is a Rust implementation of the Nimiq Proof-of-Stake protocol based on the Albatross consensus a... |
| CVE-2026-34990 | HIGH | 7.8 | 0.3% | Apr 3, 2026 | OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems. In versions 2.4.16 ... |
| CVE-2026-34980 | HIGH | 7.5 | 0.5% | Apr 3, 2026 | OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems. In versions 2.4.16 ... |
| CVE-2026-34979 | MEDIUM | 5.3 | 0.4% | Apr 3, 2026 | OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems. In versions 2.4.16 ... |
| CVE-2026-34978 | MEDIUM | 6.5 | 0.4% | Apr 3, 2026 | OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems. In versions 2.4.16 ... |
| CVE-2026-34947 | MEDIUM | 5.3 | 0.2% | Apr 3, 2026 | Discourse is an open-source discussion platform. From versions 2026.1.0-latest to before 2026.1.3, 2026.2.0-latest to be... |
| CVE-2026-33709 | MEDIUM | 6.1 | 0.2% | Apr 3, 2026 | JupyterHub is software that allows one to create a multi-user server for Jupyter notebooks. Prior to version 5.4.4, an o... |
| CVE-2026-33175 | HIGH | 8.8 | 0.4% | Apr 3, 2026 | OAuthenticator is software that allows OAuth2 identity providers to be plugged in and used with JupyterHub. Prior to ver... |
| CVE-2026-28797 | HIGH | 8.8 | 0.4% | Apr 3, 2026 | RAGFlow is an open-source RAG (Retrieval-Augmented Generation) engine. In versions 0.24.0 and prior, a Server-Side Templ... |
| CVE-2026-27885 | HIGH | 7.2 | 0.4% | Apr 3, 2026 | Piwigo is an open source photo gallery application for the web. Prior to version 16.3.0, a SQL Injection vulnerability w... |
| CVE-2026-27834 | HIGH | 7.2 | 0.4% | Apr 3, 2026 | Piwigo is an open source photo gallery application for the web. Prior to version 16.3.0, a SQL Injection vulnerability e... |
| CVE-2026-27833 | HIGH | 7.5 | 1.6% | Apr 3, 2026 | Piwigo is an open source photo gallery application for the web. Prior to version 16.3.0, the pwg.history.search API meth... |
| CVE-2026-27634 | CRITICAL | 9.8 | 0.7% | Apr 3, 2026 | Piwigo is an open source photo gallery application for the web. Prior to version 16.3.0, the four date filter parameters... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now