2026 CVE Vulnerabilities
67,198 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-4274 | MEDIUM | 5.4 | 0.1% | Mar 26, 2026 | Mattermost versions 11.2.x <= 11.2.2, 10.11.x <= 10.11.10, 11.4.x <= 11.4.0, 11.3.x <= 11.3.1 fail to restrict team-leve... |
| CVE-2026-24068 | HIGH | 8.8 | 0.4% | Mar 26, 2026 | The VSL privileged helper does utilize NSXPC for IPC. The implementation of the "shouldAcceptNewConnection" function, wh... |
| CVE-2026-23398 | MEDIUM | 5.5 | 0.1% | Mar 26, 2026 | In the Linux kernel, the following vulnerability has been resolved: icmp: fix NULL pointer dereference in icmp_tag_vali... |
| CVE-2026-23397 | HIGH | 7.1 | 0.1% | Mar 26, 2026 | In the Linux kernel, the following vulnerability has been resolved: nfnetlink_osf: validate individual option lengths i... |
| CVE-2026-23396 | MEDIUM | 5.5 | 0.1% | Mar 26, 2026 | In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: fix NULL deref in mesh_matches_loca... |
| CVE-2026-4862 | HIGH | 8.8 | 0.5% | Mar 26, 2026 | A security vulnerability has been detected in UTT HiPER 1250GW up to 3.2.7-210907-180535. This issue affects the functio... |
| CVE-2026-4263 | MEDIUM | 6.9 | 0.3% | Mar 26, 2026 | Vulnerability of incorrect authorization in HiJiffy Chatbot allows an attacker to download private messages from other u... |
| CVE-2026-4262 | MEDIUM | 6.9 | 0.2% | Mar 26, 2026 | Vulnerability of incorrect authorization in HiJiffy Chatbot allows an attacker to download private messages from other u... |
| CVE-2026-4861 | HIGH | 8.8 | 0.9% | Mar 26, 2026 | A weakness has been identified in Wavlink WL-NU516U1 260227. This vulnerability affects the function ftext of the file /... |
| CVE-2026-4860 | HIGH | 7.3 | 0.4% | Mar 26, 2026 | A security flaw has been discovered in 648540858 wvp-GB28181-pro up to 2.7.4. This affects the function GenericFastJsonR... |
| CVE-2026-4874 | LOW | 3.1 | 0.3% | Mar 26, 2026 | A flaw was found in Keycloak. An authenticated attacker can perform Server-Side Request Forgery (SSRF) by manipulating t... |
| CVE-2026-4850 | CRITICAL | 9.8 | 0.3% | Mar 26, 2026 | A security flaw has been discovered in code-projects Simple Laundry System 1.0. Affected is an unknown function of the f... |
| CVE-2026-4849 | MEDIUM | 6.1 | 0.3% | Mar 26, 2026 | A vulnerability was identified in code-projects Simple Laundry System 1.0. This impacts an unknown function of the file ... |
| CVE-2026-4848 | MEDIUM | 4.3 | 0.3% | Mar 26, 2026 | A vulnerability was determined in dameng100 muucmf 1.9.5.20260309. This affects an unknown function of the file /admin/e... |
| CVE-2026-4847 | MEDIUM | 4.3 | 0.3% | Mar 26, 2026 | A vulnerability was found in dameng100 muucmf 1.9.5.20260309. The impacted element is an unknown function of the file /a... |
| CVE-2026-4747 | HIGH | 8.8 | 1.9% | Mar 26, 2026 | Each RPCSEC_GSS data packet is validated by a routine which checks a signature in the packet. This routine copies a por... |
| CVE-2026-4652 | HIGH | 7.5 | 0.4% | Mar 26, 2026 | On a system exposing an NVMe/TCP target, a remote client can trigger a kernel panic by sending a CONNECT command for an ... |
| CVE-2026-4247 | HIGH | 7.5 | 1.1% | Mar 26, 2026 | When a challenge ACK is to be sent tcp_respond() constructs and sends the challenge ACK and consumes the mbuf that is pa... |
| CVE-2026-32680 | HIGH | 8.5 | 0.1% | Mar 26, 2026 | The installer of RATOC RAID Monitoring Manager for Windows allows to customize the installation folder. If the installat... |
| CVE-2026-28760 | HIGH | 8.4 | 0.2% | Mar 26, 2026 | The installer of RATOC RAID Monitoring Manager for Windows searches the current directory to load certain DLLs. If a use... |
| CVE-2026-1890 | MEDIUM | 5.3 | 0.2% | Mar 26, 2026 | The LeadConnector WordPress plugin before 3.0.22 does not have authorization in a REST route, allowing unauthenticated u... |
| CVE-2026-1430 | MEDIUM | 4.8 | 0.2% | Mar 26, 2026 | The WP Lightbox 2 WordPress plugin before 3.0.7 does not sanitise and escape some of its settings, which could allow hig... |
| CVE-2026-4846 | MEDIUM | 4.3 | 0.3% | Mar 26, 2026 | A vulnerability has been found in dameng100 muucmf 1.9.5.20260309. The affected element is an unknown function of the fi... |
| CVE-2026-4845 | MEDIUM | 4.3 | 0.3% | Mar 26, 2026 | A flaw has been found in dameng100 muucmf 1.9.5.20260309. Impacted is an unknown function of the file /admin/Member/inde... |
| CVE-2026-1206 | MEDIUM | 4.3 | 0.3% | Mar 26, 2026 | The Elementor Website Builder plugin for WordPress is vulnerable to Incorrect Authorization to Sensitive Information Exp... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now