2026 CVE Vulnerabilities

67,286 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-4467MEDIUM4.7A vulnerability was found in Comfast CF-AC100 2.6.0.8. This impacts an unknown function of the file /cgi-bin/mbox-config...
CVE-2026-33063HIGH7.5free5GC is an open source 5G core network. free5GC AUSF prior to version 1.4.2 has is an Improper Null Check vulnerabili...
CVE-2026-33062HIGH7.5free5GC is an open source 5G core network. free5GC NRF prior to version 1.4.2 has an Improper Input Validation vulnerabi...
CVE-2026-32937MEDIUM6.5free5GC is an open source 5G core network. free5GC CHF prior to version 1.2.2 has an out-of-bounds slice access vulnerab...
CVE-2026-32935MEDIUM5.9phpseclib is a PHP secure communications library. Projects using versions 0.1.1 through 1.0.26, 2.0.0 through 2.0.51, an...
CVE-2026-32933HIGH7.5AutoMapper is a convention-based object-object mapper in .NET. Versions prior to 15.1.1 and 16.1.1 are vulnerable to a D...
CVE-2026-32891CRITICAL9Anchorr is a Discord bot for requesting movies and TV shows and receiving notifications when items are added to a media ...
CVE-2026-32890CRITICAL9.6Anchorr is a Discord bot for requesting movies and TV shows and receiving notifications when items are added to a media ...
CVE-2026-32889MEDIUM6.5tinytag is a Python library for reading audio file metadata. Version 2.2.0 allows an attacker who can supply MP3 files f...
CVE-2026-32888HIGH8.8Open Source Point of Sale is a web based point-of-sale application written in PHP using CodeIgniter framework. Versions ...
CVE-2026-31869MEDIUM4.3Discourse is an open-source discussion platform. Prior to versions 2026.3.0-latest.1, 2026.2.1, and 2026.1.2, the Compos...
CVE-2026-31805HIGH8.2Discourse is an open-source discussion platform. Prior to versions 2026.3.0-latest.1, 2026.2.1, and 2026.1.2, an authori...
CVE-2026-30891MEDIUM6.5Discourse is an open-source discussion platform. Prior to versions 2026.3.0-latest.1, 2026.2.1, and 2026.1.2, a user cou...
CVE-2026-30889MEDIUM4.9Discourse is an open-source discussion platform. Prior to versions 2026.3.0-latest.1, 2026.2.1, and 2026.1.2, a moderato...
CVE-2026-30888MEDIUM5.5Discourse is an open-source discussion platform. Versions prior to 2026.3.0-latest.1, 2026.2.1, and 2026.1.2 allow a mod...
CVE-2026-21992CRITICAL9.8Vulnerability in the Oracle Identity Manager product of Oracle Fusion Middleware (component: REST WebServices) and Oracl...
CVE-2026-4466MEDIUM4.7A vulnerability has been found in Comfast CF-AC100 2.6.0.8. This affects an unknown function of the file /cgi-bin/mbox-c...
CVE-2026-4465HIGH8.8A flaw has been found in D-Link DIR-513 1.10. The impacted element is an unknown function of the file /goform/formSysCmd...
CVE-2026-4464HIGH8.8Integer overflow in ANGLE in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to potentially exploit heap...
CVE-2026-4463HIGH8.8Heap buffer overflow in WebRTC in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to potentially exploit...
CVE-2026-4462HIGH8.8Out of bounds read in Blink in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to perform an out of boun...
CVE-2026-4461HIGH8.8Inappropriate implementation in V8 in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to potentially exp...
CVE-2026-4460HIGH8.8Out of bounds read in Skia in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to perform an out of bound...
CVE-2026-4459HIGH8.8Out of bounds read and write in WebAudio in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to potential...
CVE-2026-4458HIGH8.8Use after free in Extensions in Google Chrome prior to 146.0.7680.153 allowed an attacker who convinced a user to instal...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now