2026 CVE Vulnerabilities
68,809 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-3838 | HIGH | 8.8 | 0.8% | Mar 16, 2026 | Unraid Update Request Path Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to ... |
| CVE-2026-3562 | HIGH | 8.8 | 0.3% | Mar 16, 2026 | Philips Hue Bridge hk_hap Ed25519 Signature Verification Authentication Bypass Vulnerability. This vulnerability allows ... |
| CVE-2026-3561 | HIGH | 8 | 0.5% | Mar 16, 2026 | Philips Hue Bridge hk_hap characteristics Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerabi... |
| CVE-2026-3560 | HIGH | 8.8 | 0.5% | Mar 16, 2026 | Philips Hue Bridge HomeKit hk_hap_pair_storage_put Heap-based Buffer Overflow Remote Code Execution Vulnerability. This ... |
| CVE-2026-3559 | HIGH | 8.1 | 0.4% | Mar 16, 2026 | Philips Hue Bridge HomeKit Accessory Protocol Static Nonce Authentication Bypass Vulnerability. This vulnerability allow... |
| CVE-2026-3558 | HIGH | 8.1 | 0.4% | Mar 16, 2026 | Philips Hue Bridge HomeKit Accessory Protocol Transient Pairing Mode Authentication Bypass Vulnerability. This vulnerabi... |
| CVE-2026-3557 | HIGH | 8 | 0.5% | Mar 16, 2026 | Philips Hue Bridge hap_pair_verify_handler Sub-TLV Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerabilit... |
| CVE-2026-3556 | HIGH | 8.8 | 0.5% | Mar 16, 2026 | Philips Hue Bridge HomeKit Pair-Setup Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability... |
| CVE-2026-3555 | HIGH | 8 | 0.4% | Mar 16, 2026 | Philips Hue Bridge Zigbee Stack Custom Command Handler Heap-based Buffer Overflow Remote Code Execution Vulnerability. T... |
| CVE-2026-3476 | HIGH | 7.8 | 0.2% | Mar 16, 2026 | A Code Injection vulnerability affecting SOLIDWORKS Desktop from Release 2025 through Release 2026 could allow an attack... |
| CVE-2026-3442 | HIGH | 7.1 | 0.3% | Mar 16, 2026 | A flaw was found in GNU Binutils. This vulnerability, a heap-based buffer overflow, specifically an out-of-bounds read, ... |
| CVE-2026-3441 | HIGH | 7.1 | 0.2% | Mar 16, 2026 | A flaw was found in GNU Binutils. This heap-based buffer overflow vulnerability, specifically an out-of-bounds read in t... |
| CVE-2026-3227 | MEDIUM | 6.8 | 1.1% | Mar 16, 2026 | A command injection vulnerability was identified in TP-Link TL-WR802N v4, TL-WR841N v14, and TL-WR840N v6 due to imprope... |
| CVE-2026-3111 | MEDIUM | 6.9 | 0.3% | Mar 16, 2026 | Insecure Direct Object Reference (IDOR) vulnerability in Campus Educativa specifically at the endpoint '/archivos/usuari... |
| CVE-2026-3110 | HIGH | 8.7 | 0.2% | Mar 16, 2026 | Insecure Direct Object Reference (IDOR) vulnerability in Campus Educativa specifically at the endpoint '/administracion/... |
| CVE-2026-3086 | HIGH | 7.8 | 0.4% | Mar 16, 2026 | GStreamer H.266 Codec Parser Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote a... |
| CVE-2026-3085 | HIGH | 8.8 | 0.8% | Mar 16, 2026 | GStreamer rtpqdm2depay Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote ... |
| CVE-2026-3084 | HIGH | 7.8 | 0.4% | Mar 16, 2026 | GStreamer H.266 Codec Parser Integer Underflow Remote Code Execution Vulnerability. This vulnerability allows remote att... |
| CVE-2026-3083 | HIGH | 8.8 | 0.8% | Mar 16, 2026 | GStreamer rtpqdm2depay Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attacke... |
| CVE-2026-3082 | HIGH | 7.8 | 0.8% | Mar 16, 2026 | GStreamer JPEG Parser Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote a... |
| CVE-2026-3081 | HIGH | 7.8 | 0.4% | Mar 16, 2026 | GStreamer H.266 Codec Parser Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows ... |
| CVE-2026-3024 | MEDIUM | 5.4 | 0.1% | Mar 16, 2026 | Stored Cross-Site Scripting (XSS) vulnerability in the Wakyma web application, specifically in the endpoint 'vets.wakyma... |
| CVE-2026-3023 | HIGH | 8.8 | 0.3% | Mar 16, 2026 | Non-relational SQL injection vulnerability (NoSQLi) in the Wakyma web application, specifically in the endpoint 'vets.wa... |
| CVE-2026-3022 | MEDIUM | 6.5 | 0.2% | Mar 16, 2026 | Non-relational SQL injection vulnerability (NoSQLi) in the Wakyma web application, specifically in the endpoint 'vets.wa... |
| CVE-2026-3021 | MEDIUM | 6.5 | 0.2% | Mar 16, 2026 | Non-relational SQL injection vulnerability (NoSQLi) in the Wakyma web application, specifically in the endpoint 'vets.wa... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now