2026 CVE Vulnerabilities
45,307 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-57020 | HIGH | 7.1 | 0.3% | Jul 9, 2026 | An Improper Check for Unusual or Exceptional Conditions vulnerability in the packet forwarding engine (pfe) of Juniper N... |
| CVE-2026-57019 | HIGH | 7.1 | 0.3% | Jul 9, 2026 | An Improper Validation of Specified Quantity in Input vulnerability in the Packet Forwarding Engine (pfe) of Juniper Net... |
| CVE-2026-55689 | HIGH | 8.1 | 0.3% | Jul 9, 2026 | OpenFGA is an authorization/permission engine built for developers. Prior to 1.18.0, OpenFGA's OIDC authenticator skippe... |
| CVE-2026-55604 | HIGH | 8.6 | 0.2% | Jul 9, 2026 | DeepSeek MCP Server is an MCP server for DeepSeek V4. Starting in version 1.4.2 and prior to version 1.7.0, the process-... |
| CVE-2026-49256 | HIGH | 7.5 | 0.4% | Jul 9, 2026 | Discourse is an open-source discussion platform. Prior to 2026.6.0, 2026.5.1, 2026.4.2, and 2026.1.5, restricted tag and... |
| CVE-2026-45788 | HIGH | 7.5 | 0.5% | Jul 9, 2026 | Discourse is an open-source discussion platform. Prior to 2026.6.0, 2026.5.1, 2026.4.2, and 2026.1.5, secure uploads cou... |
| CVE-2026-44787 | HIGH | 7.1 | 0.3% | Jul 9, 2026 | Discourse is an open-source discussion platform. Prior to 2026.6.0, 2026.5.1, 2026.4.2, and 2026.1.5, the signup flow co... |
| CVE-2026-39246 | HIGH | 7.5 | 0.5% | Jul 9, 2026 | decompress before 4.2.2 allows arbitrary symlink creation during archive extraction. When processing symlink entries (ty... |
| CVE-2026-38076 | HIGH | 7.5 | 0.2% | Jul 9, 2026 | An integer overflow in the jbig2_arith_iaid_ctx_new() function of Artifex commit cc37d0 allows attackers to cause a Deni... |
| CVE-2026-15271 | HIGH | 7.7 | 0.4% | Jul 9, 2026 | A security vulnerability has been detected in TOTOLINK A3000RU, A3100R, A950RG, AC1200T10, CP450, CS185R_T10 and EX200 u... |
| CVE-2026-55865 | HIGH | 7.1 | 0.5% | Jul 9, 2026 | Python Liquid is a Python engine for the Liquid template language. Prior to 2.2.1, given a malformed {% case %} tag with... |
| CVE-2026-55212 | HIGH | 7.1 | 0.2% | Jul 9, 2026 | Pimcore is an Open Source Data & Experience Management Platform. Prior to 2025.4.6 and 2026.1.6, the Studio API class de... |
| CVE-2026-55208 | HIGH | 7.7 | 0.2% | Jul 9, 2026 | Pimcore Studio Backend Bundle is the backend bundle for Pimcore Studio. Prior to 2025.4.6 and 2026.1.6, an authenticated... |
| CVE-2026-55207 | HIGH | 8.8 | 0.4% | Jul 9, 2026 | Pimcore is an Open Source Data & Experience Management Platform. Prior to 2025.4.6 and 2026.1.6, an unauthenticated atta... |
| CVE-2026-51926 | HIGH | 7.5 | 0.2% | Jul 9, 2026 | An issue in docuForm GmbH FSM Client v.11.11c allows a remote attacker to obtain sensitive information via the login.php... |
| CVE-2026-51925 | HIGH | 8.1 | 0.3% | Jul 9, 2026 | A Local File Inclusion (LFI) vulnerability exists in docuForm GmbH Client v.11.11c that allows a remote attacker to exec... |
| CVE-2026-51924 | HIGH | 8.1 | 0.2% | Jul 9, 2026 | An issue in docuForm GmbH Client v.11.11c allows a remote attacker to execute arbitrary code via the file upload and rep... |
| CVE-2026-51923 | HIGH | 8.1 | 0.3% | Jul 9, 2026 | An Insecure Direct Object Reference (IDOR) vulnerability exists in docuForm GmbH Client v.11.11c allowing a remote attac... |
| CVE-2026-33801 | HIGH | 7.1 | 0.3% | Jul 9, 2026 | An Improper Check for Unusual or Exceptional Conditions vulnerability in the routing protocol daemon (RPD) of Juniper Ne... |
| CVE-2026-33800 | HIGH | 7.1 | 0.3% | Jul 9, 2026 | An Unchecked Input for Loop Condition vulnerability in the Packet Forwarding Engine (pfe) of Juniper Networks Junos OS o... |
| CVE-2026-33794 | HIGH | 8.2 | 0.4% | Jul 9, 2026 | An Improper Check for Unusual or Exceptional Conditions vulnerability in the advanced forwarding toolkit (evo-aftmand)... |
| CVE-2026-15270 | HIGH | 7.5 | 0.4% | Jul 9, 2026 | A weakness has been identified in D-link DIR-823G 1.0.2B05_20181207. Affected by this vulnerability is an unknown functi... |
| CVE-2026-0278 | HIGH | 7.8 | 0.2% | Jul 9, 2026 | Multiple protection mechanism failures in the Prisma Access Agent Data Loss Prevention (DLP) component for Windows allow... |
| CVE-2026-0276 | HIGH | 7.8 | 0.1% | Jul 9, 2026 | A privilege escalation vulnerability in Palo Alto Networks Cortex® XDR Broker VM enables a locally authenticated user to... |
| CVE-2026-59148 | HIGH | 8.8 | 0.2% | Jul 9, 2026 | Mockoon provides way to design and run mock APIs. Prior to 9.7.0, Mockoon's admin API in commons-server/src/libs/server/... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now