2026 CVE Vulnerabilities
64,760 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-73956 | CRITICAL | 9.8 | 0.5% | Sep 15, 2026 | Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware (component: Composer). Supported versi... |
| CVE-2026-73953 | CRITICAL | 9.8 | 0.4% | Sep 15, 2026 | Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware (component: Portlet Services). Support... |
| CVE-2026-73952 | CRITICAL | 9.1 | 0.3% | Sep 15, 2026 | Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware (component: Portlet Services). Support... |
| CVE-2026-73950 | CRITICAL | 9.8 | 0.4% | Sep 15, 2026 | Vulnerability in the Oracle Access Manager product of Oracle Fusion Middleware (component: Authentication Engine). Supp... |
| CVE-2026-73948 | CRITICAL | 9.9 | 0.4% | Sep 15, 2026 | Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware (component: Composer). Supported versi... |
| CVE-2026-73947 | CRITICAL | 9.8 | 0.3% | Sep 15, 2026 | Vulnerability in the Oracle Access Manager product of Oracle Fusion Middleware (component: Authentication Engine). Supp... |
| CVE-2026-73946 | CRITICAL | 9.1 | 0.3% | Sep 15, 2026 | Vulnerability in the Oracle Access Manager product of Oracle Fusion Middleware (component: Authentication Engine). Supp... |
| CVE-2026-73945 | CRITICAL | 9.9 | 0.3% | Sep 15, 2026 | Vulnerability in the Oracle Access Manager product of Oracle Fusion Middleware (component: Authentication Engine). Supp... |
| CVE-2026-73944 | CRITICAL | 9.1 | 0.3% | Sep 15, 2026 | Vulnerability in the Oracle Access Manager product of Oracle Fusion Middleware (component: Authentication Engine). Supp... |
| CVE-2026-73940 | CRITICAL | 9.8 | 0.4% | Sep 15, 2026 | Vulnerability in the Oracle Access Manager product of Oracle Fusion Middleware (component: Authentication Engine). Supp... |
| CVE-2026-71163 | CRITICAL | 9.9 | 0.3% | Sep 15, 2026 | Vulnerability in the Oracle Access Manager product of Oracle Fusion Middleware (component: Authentication Engine). Supp... |
| CVE-2026-71133 | CRITICAL | 10 | 0.3% | Sep 15, 2026 | Vulnerability in the Oracle Access Manager product of Oracle Fusion Middleware (component: Authentication Engine). Supp... |
| CVE-2026-70913 | CRITICAL | 9.8 | 0.3% | Sep 15, 2026 | Vulnerability in the Oracle Identity Manager product of Oracle Fusion Middleware (component: Core). Supported versions ... |
| CVE-2026-70757 | CRITICAL | 9.8 | 0.3% | Sep 15, 2026 | Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions t... |
| CVE-2026-70756 | CRITICAL | 9.8 | 0.4% | Sep 15, 2026 | Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions t... |
| CVE-2026-70748 | CRITICAL | 9.8 | 0.3% | Sep 15, 2026 | Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions t... |
| CVE-2026-69204 | CRITICAL | 9.2 | 0.3% | Sep 15, 2026 | Http4s is a Scala interface for HTTP services. Prior to 0.23.35 and 1.0.0-M47, Ember HTTP/1.1 does not reject messages c... |
| CVE-2026-56960 | CRITICAL | 9.8 | 0.3% | Sep 15, 2026 | In multiple locations, there is a possible use-after-free due to a logic error in the code. This could lead to remote es... |
| CVE-2026-55366 | CRITICAL | 9.8 | 0.4% | Sep 15, 2026 | In IP Multimedia Subsystem, there is a possible authentication bypass due to a logic error in the code. This could lead ... |
| CVE-2026-19773 | CRITICAL | 9.8 | 0.6% | Sep 15, 2026 | libwebsockets HTTP/2 HPACK Path Header Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerabili... |
| CVE-2026-81240 | CRITICAL | 9.8 | 0.4% | Sep 15, 2026 | Dell Wyse Management Suite, versions prior to 2605.0.3.683, contain an Unrestricted Upload of File with Dangerous Type v... |
| CVE-2026-81239 | CRITICAL | 9.8 | 0.4% | Sep 15, 2026 | Dell Wyse Management Suite, versions prior to 2605.0.3.683, contain an Unrestricted Upload of File with Dangerous Type v... |
| CVE-2026-81238 | CRITICAL | 9.1 | 0.3% | Sep 15, 2026 | Dell Wyse Management Suite, versions prior to 2605.0.3.683, contain a Missing Authentication for Critical Function vulne... |
| CVE-2026-81236 | CRITICAL | 9.8 | 0.4% | Sep 15, 2026 | Dell Wyse Management Suite, versions prior to 2605.0.3.683, contain an Unrestricted Upload of File with Dangerous Type v... |
| CVE-2026-61667 | CRITICAL | 9.9 | — | Sep 15, 2026 | DIRAC is an interware, meaning a software framework for distributed computing. Prior to versions 8.0.79, 9.0.22, and 9.1... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now