2026 CVE Vulnerabilities
66,711 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-33949 | HIGH | 8.1 | 0.4% | Apr 1, 2026 | Tina is a headless content management system. Prior to version 2.2.2, a path traversal vulnerability in @tinacms/graphql... |
| CVE-2026-30643 | CRITICAL | 9.8 | 0.6% | Apr 1, 2026 | An issue was discovered in DedeCMS 5.7.118 allowing attackers to execute code via crafted setup tag values in a module u... |
| CVE-2026-30273 | HIGH | 7.3 | 0.2% | Apr 1, 2026 | pandas-ai v3.0.0 was discovered to contain a SQL injection vulnerability via the pandasai.agent.base._execute_sql_query ... |
| CVE-2026-2265 | MEDIUM | 6.5 | 0.4% | Apr 1, 2026 | An unauthenticated remote code execution (RCE) vulnerability exists in applications that use the Replicator node package... |
| CVE-2026-20174 | MEDIUM | 4.9 | 0.5% | Apr 1, 2026 | A vulnerability in the Metadata update feature of Cisco Nexus Dashboard Insights could allow an authenticated, remote at... |
| CVE-2026-20160 | CRITICAL | 9.8 | 0.9% | Apr 1, 2026 | A vulnerability in Cisco Smart Software Manager On-Prem (SSM On-Prem) could allow an unauthenticated, remote attacker to... |
| CVE-2026-20155 | HIGH | 8 | 0.3% | Apr 1, 2026 | A vulnerability in the web-based management interface of Cisco Evolved Programmable Network Manager (EPNM) could allow a... |
| CVE-2026-20151 | HIGH | 7.3 | 0.3% | Apr 1, 2026 | A vulnerability in the web interface of Cisco Smart Software Manager On-Prem (SSM On-Prem) could allow an authenticated,... |
| CVE-2026-20097 | MEDIUM | 6.5 | 0.5% | Apr 1, 2026 | A vulnerability in the web-based management interface of Cisco IMC could allow an authenticated, remote attacker with ad... |
| CVE-2026-20096 | MEDIUM | 6.5 | 0.7% | Apr 1, 2026 | A vulnerability in the web-based management interface of Cisco IMC could allow an authenticated, remote attacker with ad... |
| CVE-2026-20095 | MEDIUM | 6.5 | 0.9% | Apr 1, 2026 | A vulnerability in the web-based management interface of Cisco IMC could allow an authenticated, remote attacker with ad... |
| CVE-2026-20094 | HIGH | 8.8 | 1.1% | Apr 1, 2026 | A vulnerability in the web-based management interface of Cisco IMC could allow an authenticated, remote attacker with re... |
| CVE-2026-20093 | CRITICAL | 9.8 | 1.0% | Apr 1, 2026 | A vulnerability in the change password functionality of Cisco Integrated Management Controller (IMC) could allow an unau... |
| CVE-2026-20090 | MEDIUM | 4.8 | 0.2% | Apr 1, 2026 | A vulnerability in the web-based management interface of Cisco IMC could allow an authenticated, remote attacker with ad... |
| CVE-2026-20089 | MEDIUM | 4.8 | 0.2% | Apr 1, 2026 | A vulnerability in the web-based management interface of Cisco IMC could allow an authenticated, remote attacker with ad... |
| CVE-2026-20088 | MEDIUM | 4.8 | 0.2% | Apr 1, 2026 | A vulnerability in the web-based management interface of Cisco IMC could allow an authenticated, remote attacker with ad... |
| CVE-2026-20087 | MEDIUM | 4.8 | 0.2% | Apr 1, 2026 | A vulnerability in the web-based management interface of Cisco IMC could allow an authenticated, remote attacker with ad... |
| CVE-2026-20085 | MEDIUM | 6.1 | 0.2% | Apr 1, 2026 | A vulnerability in the web-based management interface of Cisco IMC could allow an unauthenticated, remote attacker to co... |
| CVE-2026-20042 | MEDIUM | 6.5 | 0.3% | Apr 1, 2026 | A vulnerability in the configuration backup feature of Cisco Nexus Dashboard could allow an attacker who has the encrypt... |
| CVE-2026-20041 | MEDIUM | 6.1 | 0.2% | Apr 1, 2026 | A vulnerability in Cisco Nexus Dashboard and Cisco Nexus Dashboard Insights could allow an unauthenticated, remote attac... |
| CVE-2026-5175 | MEDIUM | 5 | 0.3% | Apr 1, 2026 | Improper access control in the multi-factor authentication (MFA) management API in Devolutions Server allows an authenti... |
| CVE-2026-4989 | MEDIUM | 4.3 | 0.2% | Apr 1, 2026 | Improper input validation in the gateway health check feature in Devolutions Server allows a low-privileged authenticate... |
| CVE-2026-4927 | MEDIUM | 6.5 | 0.2% | Apr 1, 2026 | Exposure of sensitive information in the users MFA feature in Devolutions Server allows users with user management privi... |
| CVE-2026-4925 | MEDIUM | 5 | 0.2% | Apr 1, 2026 | Improper access control in the users MFA feature in Devolutions Server allows an authenticated user to bypass administra... |
| CVE-2026-4924 | HIGH | 8.2 | 0.3% | Apr 1, 2026 | Improper authentication in the two-factor authentication (2FA) feature in Devolutions Server 2026.1.11 and earlier all... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now