2026 CVE Vulnerabilities

67,276 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-32701HIGH7.5Qwik is a performance-focused JavaScript framework. Versions prior to 1.19.2 improperly inferred arrays from dotted form...
CVE-2026-2432MEDIUM4.4The CM Custom Reports – Flexible reporting to track what matters most plugin for WordPress is vulnerable to Stored Cross...
CVE-2026-2421MEDIUM6.5The ilGhera Carta Docente for WooCommerce plugin for WordPress is vulnerable to Path Traversal in all versions up to, an...
CVE-2026-27625MEDIUM6.5Stirling-PDF is a locally hosted web application that performs various operations on PDF files. In versions prior to 2.5...
CVE-2026-23278HIGH7.8In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: always walk all pending catch...
CVE-2026-23277MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: net/sched: teql: fix NULL pointer dereference in ip...
CVE-2026-23276MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: net: add xmit recursion limit to tunnel xmit functi...
CVE-2026-23275HIGH7.8In the Linux kernel, the following vulnerability has been resolved: io_uring: ensure ctx->rings is stable for task work...
CVE-2026-23274HIGH7.8In the Linux kernel, the following vulnerability has been resolved: netfilter: xt_IDLETIMER: reject rev0 reuse of ALARM...
CVE-2026-23273HIGH7.8In the Linux kernel, the following vulnerability has been resolved: macvlan: observe an RCU grace period in macvlan_com...
CVE-2026-23272HIGH7.8In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: unconditionally bump set->nel...
CVE-2026-23271HIGH7.8In the Linux kernel, the following vulnerability has been resolved: perf: Fix __perf_event_overflow() vs perf_remove_fr...
CVE-2026-33191HIGH8.6Free5GC is an open-source Linux Foundation project for 5th generation (5G) mobile core networks. Versions prior to 1.4.2...
CVE-2026-33065MEDIUM5.3Free5GC is an open-source Linux Foundation project for 5th generation (5G) mobile core networks. In versions prior to 1....
CVE-2026-33064HIGH7.5Free5GC is an open-source Linux Foundation project for 5th generation (5G) mobile core networks. Versions prior to 1.4.2...
CVE-2026-33061MEDIUM5.4Jexactyl is a customisable game management panel and billing system. Commits after 025e8dbb0daaa04054276bda814d922cf4af5...
CVE-2026-33060MEDIUM5.7CKAN MCP Server is a tool for querying CKAN open data portals. Versions prior to 0.4.85 provide tools including ckan_pac...
CVE-2026-33057CRITICAL9.8Mesop is a Python-based UI framework that allows users to build web applications. In versions 1.2.2 and below, an explic...
CVE-2026-33056MEDIUM6.5tar-rs is a tar archive reading/writing library for Rust. In versions 0.4.44 and below, when unpacking a tar archive, th...
CVE-2026-33022MEDIUM6.5Tekton Pipelines project provides k8s-style resources for declaring CI/CD-style pipelines. Versions 0.60.0 through 1.0.0...
CVE-2026-4478HIGH8.2A vulnerability was identified in Yi Technology YI Home Camera 2 2.1.1_20171024151200. This impacts an unknown function ...
CVE-2026-4477LOW3.1A vulnerability was determined in Yi Technology YI Home Camera 2 2.1.1_20171024151200. This affects an unknown function ...
CVE-2026-4476MEDIUM6.3A vulnerability was found in Yi Technology YI Home Camera 2 2.1.1_20171024151200. The impacted element is an unknown fun...
CVE-2026-4475HIGH8.8A vulnerability has been found in Yi Technology YI Home Camera 2 2.1.1_20171024151200. The affected element is an unknow...
CVE-2026-4474MEDIUM6.1A flaw has been found in itsourcecode University Management System 1.0. Impacted is an unknown function of the file /adm...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now