2026 CVE Vulnerabilities

68,730 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-24063HIGH8.2When a plugin is installed using the Arturia Software Center (MacOS), it also installs an uninstall.sh bash script in a ...
CVE-2026-24062HIGH7.8The "Privileged Helper" component of the Arturia Software Center (MacOS) does not perform sufficient client code signatu...
CVE-2026-32609HIGH7.5Glances is an open-source system cross-platform monitoring tool. The GHSA-gh4x fix (commit 5d3de60) addressed unauthenti...
CVE-2026-3278MEDIUM6.1Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in OpenText™ ZENworks...
CVE-2026-32694MEDIUM6.6In Juju from version 3.0.0 through 3.6.18, when a secret owner grants permissions to a secret to a grantee, the secret o...
CVE-2026-25449CRITICAL9.8Deserialization of Untrusted Data vulnerability in shinetheme Traveler traveler allows Object Injection.This issue affec...
CVE-2026-32693HIGH8.8In Juju from version 3.0.0 through 3.6.18, the authorization of the "secret-set" tool is not performed correctly, which ...
CVE-2026-32692MEDIUM6.5An authorization bypass vulnerability in the Vault secrets back-end implementation of Juju versions 3.1.6 through 3.6.18...
CVE-2026-32691MEDIUM5.3A race condition in the secrets management subsystem of Juju versions 3.0.0 through 3.6.18 allows an authenticated unit ...
CVE-2026-33265CRITICAL9In LibreChat 0.8.1-rc2, a logged-in user obtains a JWT for both the LibreChat API and the RAG API.
CVE-2026-23248HIGH7.8In the Linux kernel, the following vulnerability has been resolved: perf/core: Fix refcount bug and potential UAF in pe...
CVE-2026-23247MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: tcp: secure_seq: add back ports to TS offset This ...
CVE-2026-23246HIGH8.8In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: bounds-check link_id in ieee80211_m...
CVE-2026-23245HIGH7.8In the Linux kernel, the following vulnerability has been resolved: net/sched: act_gate: snapshot parameters with RCU o...
CVE-2026-23244HIGH7.1In the Linux kernel, the following vulnerability has been resolved: nvme: fix memory allocation in nvme_pr_read_keys() ...
CVE-2026-23243HIGH7.8In the Linux kernel, the following vulnerability has been resolved: RDMA/umad: Reject negative data_len in ib_umad_writ...
CVE-2026-23242HIGH7.5In the Linux kernel, the following vulnerability has been resolved: RDMA/siw: Fix potential NULL pointer dereference in...
CVE-2026-32565MEDIUM5.3Missing Authorization vulnerability in Ajay Contextual Related Posts contextual-related-posts allows Exploiting Incorrec...
CVE-2026-1217MEDIUM5.4The Yoast Duplicate Post plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capabi...
CVE-2026-22730HIGH8.8A critical SQL injection vulnerability in Spring AI's MariaDBFilterExpressionConverter allows attackers to bypass metada...
CVE-2026-22729HIGH8.6A JSONPath injection vulnerability in Spring AI's AbstractFilterExpressionConverter allows authenticated users to bypass...
CVE-2026-22323HIGH7.1A CSRF vulnerability in the Link Aggregation configuration interface allows an unauthenticated remote attacker to trick ...
CVE-2026-22322HIGH7.1A stored cross‑site scripting (XSS) vulnerability in the Link Aggregation configuration interface allows an unauthentica...
CVE-2026-22321MEDIUM5.3A stack-based buffer overflow in the device's Telnet/SSH CLI login routine occurs when a unauthenticated attacker send a...
CVE-2026-22320MEDIUM6.5A stack-based buffer overflow in the CLI's TFTP file‑transfer command handling allows a low-privileged attacker with Tel...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now