2026 CVE Vulnerabilities
66,671 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-5312 | MEDIUM | 5.5 | 0.5% | Apr 1, 2026 | A weakness has been identified in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, D... |
| CVE-2026-4820 | MEDIUM | 4.3 | 0.1% | Apr 1, 2026 | IBM Maximo Application Suite 9.1, 9.0, 8.11, and 8.10 does not set the secure attribute on authorization tokens or sessi... |
| CVE-2026-4364 | MEDIUM | 5.4 | 0.1% | Apr 1, 2026 | IBM Verify Identity Access Container 11.0 through 11.0.2 and IBM Security Verify Access Container 10.0 through 10.0.9.1 ... |
| CVE-2026-4101 | CRITICAL | 9.8 | 0.4% | Apr 1, 2026 | IBM Verify Identity Access Container 11.0 through 11.0.2 and IBM Security Verify Access Container 10.0 through 10.0.9.1 ... |
| CVE-2026-34873 | CRITICAL | 9.1 | 0.2% | Apr 1, 2026 | An issue was discovered in Mbed TLS 3.5.0 through 4.0.0. Client impersonation can occur while resuming a TLS 1.3 session... |
| CVE-2026-34545 | HIGH | 7.3 | 0.6% | Apr 1, 2026 | OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the ... |
| CVE-2026-34544 | HIGH | 7.3 | 0.2% | Apr 1, 2026 | OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the ... |
| CVE-2026-34543 | HIGH | 7.5 | 0.5% | Apr 1, 2026 | OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the ... |
| CVE-2026-34531 | HIGH | 8.2 | 0.3% | Apr 1, 2026 | Flask-HTTPAuth provides Basic, Digest and Token HTTP authentication for Flask routes. Prior to version 4.8.1, in a situa... |
| CVE-2026-34530 | MEDIUM | 6.9 | 0.4% | Apr 1, 2026 | File Browser is a file managing interface for uploading, deleting, previewing, renaming, and editing files within a spec... |
| CVE-2026-34529 | CRITICAL | 9 | 0.3% | Apr 1, 2026 | File Browser is a file managing interface for uploading, deleting, previewing, renaming, and editing files within a spec... |
| CVE-2026-34528 | CRITICAL | 9.8 | 0.7% | Apr 1, 2026 | File Browser is a file managing interface for uploading, deleting, previewing, renaming, and editing files within a spec... |
| CVE-2026-34525 | MEDIUM | 5.3 | 0.3% | Apr 1, 2026 | AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to version 3.13.4, multiple Host h... |
| CVE-2026-34520 | CRITICAL | 9.1 | 0.5% | Apr 1, 2026 | AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to version 3.13.4, the C parser (t... |
| CVE-2026-34519 | MEDIUM | 5.3 | 0.3% | Apr 1, 2026 | AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to version 3.13.4, an attacker who... |
| CVE-2026-34518 | MEDIUM | 5.3 | 0.3% | Apr 1, 2026 | AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to version 3.13.4, when following ... |
| CVE-2026-34517 | MEDIUM | 5.3 | 0.4% | Apr 1, 2026 | AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to version 3.13.4, for some multip... |
| CVE-2026-34516 | HIGH | 7.5 | 0.4% | Apr 1, 2026 | AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to version 3.13.4, a response with... |
| CVE-2026-34515 | HIGH | 7.5 | 0.4% | Apr 1, 2026 | AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to version 3.13.4, on Windows the ... |
| CVE-2026-34514 | MEDIUM | 5.3 | 0.3% | Apr 1, 2026 | AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to version 3.13.4, an attacker who... |
| CVE-2026-34513 | HIGH | 7.5 | 0.4% | Apr 1, 2026 | AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to version 3.13.4, an unbounded DN... |
| CVE-2026-2862 | MEDIUM | 5.3 | 0.4% | Apr 1, 2026 | IBM Verify Identity Access Container 11.0 through 11.0.2 and IBM Security Verify Access Container 10.0 through 10.0.9.1 ... |
| CVE-2026-2475 | MEDIUM | 4.7 | 0.3% | Apr 1, 2026 | IBM Verify Identity Access Container 11.0 through 11.0.2 and IBM Security Verify Access Container 10.0 through 10.0.9.1 ... |
| CVE-2026-22815 | HIGH | 7.5 | 0.4% | Apr 1, 2026 | AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to version 3.13.4, insufficient re... |
| CVE-2026-1491 | MEDIUM | 5.3 | 0.4% | Apr 1, 2026 | IBM Verify Identity Access Container 11.0 through 11.0.2 and IBM Security Verify Access Container 10.0 through 10.0.9.1 ... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now