2026 CVE Vulnerabilities

43,246 CVEs published in 2026.

Filter:LOWClear
CVE IDSeverityCVSSDescription
CVE-2026-0142LOW3.3In iavb_parse_key_data of avb_rsa.c, there is a possible out of bounds read due to improper input validation. This could...
CVE-2026-0134LOW3.3In PostWipeData of recovery_ui.cpp, there is a possible data persistence issue after a factory reset due to a logic erro...
CVE-2026-0130LOW3.5In RtcpChunk::decodeRtcpChunk, there is a possible out of bounds read due to a heap buffer overflow. This could lead to ...
CVE-2026-0129LOW3.5In RtcpByePacket::decodeByePacket, there is a possible due to a missing bounds check. This could lead to remote informa...
CVE-2026-10636LOW3.7In Zephyr's IPv4 IGMP implementation, igmp_send() in subsys/net/ip/igmp.c read the network interface back out of the pac...
CVE-2026-48709LOW3.7OliveTin gives access to predefined shell commands from a web interface. In versions 3000.0.0 and prior, The ValidateArg...
CVE-2026-12211LOW2.7A flaw has been found in Intelbras iNVU 7016 FT 3.004.00IB000.0.T Build 2025-09-26. This impacts an unknown function of ...
CVE-2026-12202LOW2.4A vulnerability has been found in Intelliants Subrion CMS up to 4.0.3. Affected by this issue is some unknown functional...
CVE-2026-9062LOW3.4The Store Locator WordPress plugin before 1.6.9 does not validate a parameter before using it in a file path, allowing h...
CVE-2026-9061LOW3.5The Store Locator WordPress plugin before 1.6.9 does not sanitize and escape store logo metadata before storing it and o...
CVE-2026-53607LOW3.7ApostropheCMS is an open-source Node.js content management system. In versions up to and including 4.30.0, when `prettyU...
CVE-2026-12130LOW3.5A security flaw has been discovered in CodeAstro Human Resource Management System 1.0. This affects an unknown part of t...
CVE-2026-12129LOW3.5A vulnerability was identified in CodeAstro Human Resource Management System 1.0. Affected by this issue is some unknown...
CVE-2026-53724LOW2.1Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js. Prior to version...
CVE-2026-12065LOW1.8A vulnerability was identified in Groww Stock, Mutual Fund, Gold App up to 20260805 on Android. This affects an unknown ...
CVE-2026-48485LOW2.1Quest Bot is an opensource Discord Bot. Prior to version 1.1.6, the latest release suppresses mentions when creating, un...
CVE-2026-9269LOW3.5The Secure Copy Content Protection and Content Locking WordPress plugin before 5.1.5 does not sanitise and escape some o...
CVE-2026-12032LOW3.1Inappropriate implementation in Passwords in Google Chrome on Android prior to 149.0.7827.115 allowed a remote attacker ...
CVE-2026-12017LOW3.1Inappropriate implementation in Extensions in Google Chrome prior to 149.0.7827.115 allowed a remote attacker who had co...
CVE-2026-47188LOW2.3Quest Bot is an opensource modern Discord Bot built for moderation, utilities and support. Prior to version 1.0.5, the l...
CVE-2026-47175LOW2.3Quest Bot is an opensource modern Discord Bot built for moderation, utilities and support. Prior to version 1.0.4, sever...
CVE-2026-6976LOW3.7GitLab has remediated an issue in GitLab CE/EE affecting all versions from 15.9 before 18.10.8, 18.11 before 18.11.5, an...
CVE-2026-3553LOW3.1GitLab has remediated an issue in GitLab CE/EE affecting all versions from 12.0 before 18.10.8, 18.11 before 18.11.5, an...
CVE-2026-41000LOW3.7Wss4jSecurityInterceptor did not consistently wire Apache WSS4J ReplayCache instances into RequestData for validation-ti...
CVE-2026-47712LOW3.3Dulwich is a pure-Python implementation of the Git file formats and protocols. Starting in version 0.24.0 and prior to v...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now