2026 CVE Vulnerabilities
43,246 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-0142 | LOW | 3.3 | 0.1% | Jun 16, 2026 | In iavb_parse_key_data of avb_rsa.c, there is a possible out of bounds read due to improper input validation. This could... |
| CVE-2026-0134 | LOW | 3.3 | 0.1% | Jun 16, 2026 | In PostWipeData of recovery_ui.cpp, there is a possible data persistence issue after a factory reset due to a logic erro... |
| CVE-2026-0130 | LOW | 3.5 | 0.2% | Jun 16, 2026 | In RtcpChunk::decodeRtcpChunk, there is a possible out of bounds read due to a heap buffer overflow. This could lead to ... |
| CVE-2026-0129 | LOW | 3.5 | 0.2% | Jun 16, 2026 | In RtcpByePacket::decodeByePacket, there is a possible due to a missing bounds check. This could lead to remote informa... |
| CVE-2026-10636 | LOW | 3.7 | 0.3% | Jun 16, 2026 | In Zephyr's IPv4 IGMP implementation, igmp_send() in subsys/net/ip/igmp.c read the network interface back out of the pac... |
| CVE-2026-48709 | LOW | 3.7 | 0.3% | Jun 15, 2026 | OliveTin gives access to predefined shell commands from a web interface. In versions 3000.0.0 and prior, The ValidateArg... |
| CVE-2026-12211 | LOW | 2.7 | 0.4% | Jun 15, 2026 | A flaw has been found in Intelbras iNVU 7016 FT 3.004.00IB000.0.T Build 2025-09-26. This impacts an unknown function of ... |
| CVE-2026-12202 | LOW | 2.4 | 0.2% | Jun 15, 2026 | A vulnerability has been found in Intelliants Subrion CMS up to 4.0.3. Affected by this issue is some unknown functional... |
| CVE-2026-9062 | LOW | 3.4 | 0.2% | Jun 13, 2026 | The Store Locator WordPress plugin before 1.6.9 does not validate a parameter before using it in a file path, allowing h... |
| CVE-2026-9061 | LOW | 3.5 | 0.1% | Jun 13, 2026 | The Store Locator WordPress plugin before 1.6.9 does not sanitize and escape store logo metadata before storing it and o... |
| CVE-2026-53607 | LOW | 3.7 | 0.2% | Jun 12, 2026 | ApostropheCMS is an open-source Node.js content management system. In versions up to and including 4.30.0, when `prettyU... |
| CVE-2026-12130 | LOW | 3.5 | 0.2% | Jun 12, 2026 | A security flaw has been discovered in CodeAstro Human Resource Management System 1.0. This affects an unknown part of t... |
| CVE-2026-12129 | LOW | 3.5 | 0.2% | Jun 12, 2026 | A vulnerability was identified in CodeAstro Human Resource Management System 1.0. Affected by this issue is some unknown... |
| CVE-2026-53724 | LOW | 2.1 | 0.3% | Jun 12, 2026 | Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js. Prior to version... |
| CVE-2026-12065 | LOW | 1.8 | 0.1% | Jun 12, 2026 | A vulnerability was identified in Groww Stock, Mutual Fund, Gold App up to 20260805 on Android. This affects an unknown ... |
| CVE-2026-48485 | LOW | 2.1 | 0.3% | Jun 12, 2026 | Quest Bot is an opensource Discord Bot. Prior to version 1.1.6, the latest release suppresses mentions when creating, un... |
| CVE-2026-9269 | LOW | 3.5 | 0.1% | Jun 12, 2026 | The Secure Copy Content Protection and Content Locking WordPress plugin before 5.1.5 does not sanitise and escape some o... |
| CVE-2026-12032 | LOW | 3.1 | 0.2% | Jun 11, 2026 | Inappropriate implementation in Passwords in Google Chrome on Android prior to 149.0.7827.115 allowed a remote attacker ... |
| CVE-2026-12017 | LOW | 3.1 | 0.2% | Jun 11, 2026 | Inappropriate implementation in Extensions in Google Chrome prior to 149.0.7827.115 allowed a remote attacker who had co... |
| CVE-2026-47188 | LOW | 2.3 | 0.2% | Jun 11, 2026 | Quest Bot is an opensource modern Discord Bot built for moderation, utilities and support. Prior to version 1.0.5, the l... |
| CVE-2026-47175 | LOW | 2.3 | 0.2% | Jun 11, 2026 | Quest Bot is an opensource modern Discord Bot built for moderation, utilities and support. Prior to version 1.0.4, sever... |
| CVE-2026-6976 | LOW | 3.7 | 0.2% | Jun 11, 2026 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 15.9 before 18.10.8, 18.11 before 18.11.5, an... |
| CVE-2026-3553 | LOW | 3.1 | 0.2% | Jun 11, 2026 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 12.0 before 18.10.8, 18.11 before 18.11.5, an... |
| CVE-2026-41000 | LOW | 3.7 | 0.2% | Jun 11, 2026 | Wss4jSecurityInterceptor did not consistently wire Apache WSS4J ReplayCache instances into RequestData for validation-ti... |
| CVE-2026-47712 | LOW | 3.3 | 0.1% | Jun 10, 2026 | Dulwich is a pure-Python implementation of the Git file formats and protocols. Starting in version 0.24.0 and prior to v... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now