2026 CVE Vulnerabilities
68,112 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-0866 | — | — | — | Mar 18, 2026 | Rejected reason: After the publication of the PoC by the researcher and further analysis, we have determined that this i... |
| CVE-2026-3479 | NONE | 0 | 0.2% | Mar 18, 2026 | DISPUTED: The project has clarified that the documentation was incorrect, and that pkgutil.get_data() has the same secur... |
| CVE-2026-31965 | HIGH | 8.2 | 0.4% | Mar 18, 2026 | HTSlib is a library for reading and writing bioinformatics file formats. CRAM is a compressed format which stores DNA se... |
| CVE-2026-31964 | HIGH | 7.5 | 0.3% | Mar 18, 2026 | HTSlib is a library for reading and writing bioinformatics file formats. CRAM is a compressed format which stores DNA se... |
| CVE-2026-31963 | HIGH | 8.1 | 0.3% | Mar 18, 2026 | HTSlib is a library for reading and writing bioinformatics file formats. CRAM is a compressed format which stores DNA se... |
| CVE-2026-32634 | HIGH | 8.1 | 0.3% | Mar 18, 2026 | Glances is an open-source system cross-platform monitoring tool. Prior to version 4.5.2, in Central Browser mode, Glance... |
| CVE-2026-32633 | CRITICAL | 9.1 | 0.5% | Mar 18, 2026 | Glances is an open-source system cross-platform monitoring tool. Prior to version 4.5.2, in Central Browser mode, the `/... |
| CVE-2026-32632 | MEDIUM | 5.9 | 0.2% | Mar 18, 2026 | Glances is an open-source system cross-platform monitoring tool. Glances recently added DNS rebinding protection for the... |
| CVE-2026-32611 | CRITICAL | 9.1 | 0.3% | Mar 18, 2026 | Glances is an open-source system cross-platform monitoring tool. The GHSA-x46r fix (commit 39161f0) addressed SQL inject... |
| CVE-2026-31962 | HIGH | 8.8 | 0.4% | Mar 18, 2026 | HTSlib is a library for reading and writing bioinformatics file formats. CRAM is a compressed format which stores DNA se... |
| CVE-2026-30704 | CRITICAL | 9.1 | 0.3% | Mar 18, 2026 | The WiFi Extender WDR201A (HW V2.1, FW LFMZX28040922V1.02) exposes an unprotected UART interface through accessible hard... |
| CVE-2026-30703 | CRITICAL | 9.8 | 1.0% | Mar 18, 2026 | A command injection vulnerability exists in the web management interface of the WiFi Extender WDR201A (HW V2.1, FW LFMZX... |
| CVE-2026-30702 | CRITICAL | 9.8 | 0.4% | Mar 18, 2026 | The WiFi Extender WDR201A (HW V2.1, FW LFMZX28040922V1.02) implements a broken authentication mechanism in its web manag... |
| CVE-2026-30701 | CRITICAL | 9.1 | 0.4% | Mar 18, 2026 | The web interface of the WiFi Extender WDR201A (HW V2.1, FW LFMZX28040922V1.02) contains hardcoded credential disclosure... |
| CVE-2026-30048 | MEDIUM | 5.4 | 0.2% | Mar 18, 2026 | A stored cross-site scripting (XSS) vulnerability exists in the NotChatbot WebChat widget thru 1.4.4. User-supplied inpu... |
| CVE-2026-29859 | CRITICAL | 9.8 | 0.5% | Mar 18, 2026 | An arbitrary file upload vulnerability in aaPanel v7.57.0 allows attackers to execute arbitrary code via uploading a cra... |
| CVE-2026-29858 | HIGH | 7.5 | 0.3% | Mar 18, 2026 | A lack of path validation in aaPanel v7.57.0 allows attackers to execute a local file inclusion (LFI), leadingot sensiti... |
| CVE-2026-29856 | HIGH | 7.5 | 0.3% | Mar 18, 2026 | An issue in the VirtualHost configuration handling/parser component of aaPanel v7.57.0 allows attackers to cause a Regul... |
| CVE-2026-27135 | HIGH | 7.5 | 0.8% | Mar 18, 2026 | nghttp2 is an implementation of the Hypertext Transfer Protocol version 2 in C. Prior to version 1.68.1, the nghttp2 lib... |
| CVE-2026-26948 | MEDIUM | 4.9 | 0.3% | Mar 18, 2026 | Dell Integrated Dell Remote Access Controller 9, 14G versions prior to 7.00.00.174, 15G and 16G versions prior to 7.10.9... |
| CVE-2026-26945 | MEDIUM | 5.3 | 0.2% | Mar 18, 2026 | Dell Integrated Dell Remote Access Controller 9, 14G versions prior to 7.00.00.181, 15G and 16G versions prior to 7.20.1... |
| CVE-2026-26740 | HIGH | 8.2 | 0.6% | Mar 18, 2026 | Buffer Overflow vulnerability in giflib v.5.2.2 allows a remote attacker to cause a denial of service via the EGifGCBToE... |
| CVE-2026-23270 | HIGH | 7.8 | 0.1% | Mar 18, 2026 | In the Linux kernel, the following vulnerability has been resolved: net/sched: Only allow act_ct to bind to clsact/ingr... |
| CVE-2026-23269 | HIGH | 7.1 | 0.1% | Mar 18, 2026 | In the Linux kernel, the following vulnerability has been resolved: apparmor: validate DFA start states are in bounds i... |
| CVE-2026-23268 | HIGH | 7.8 | 0.1% | Mar 18, 2026 | In the Linux kernel, the following vulnerability has been resolved: apparmor: fix unprivileged local user can do privil... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now