2026 CVE Vulnerabilities

45,125 CVEs published in 2026.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2026-48493MEDIUM5.5Snipe-IT is an IT asset/license management system. In versions prior to 8.6.0, a user with only users.edit can send a PA...
CVE-2026-47693MEDIUM6.9Poweradmin is a web-based DNS administration tool for PowerDNS server. Versions prior to 4.2.4 and 4.3.3 are vulnerable ...
CVE-2026-12164MEDIUM4.4Fortra File Integrity Monitoring (FIM), formerly Tripwire Enterprise, versions prior to 9.4.0 may assign incorrect or el...
CVE-2026-12163MEDIUM4.8Fortra File Integrity Monitoring (FIM), formerly Tripwire Enterprise, versions prior to 9.4.0.1 contain a stored cross-s...
CVE-2026-54518MEDIUM6.5jackson-databind contains the general-purpose data-binding functionality and tree-model for Jackson Data Processor. From...
CVE-2026-9073MEDIUM6.2A flaw was found in foreman-mcp-server. This component utilizes two distinct logging mechanisms that can expose sensitiv...
CVE-2026-54517MEDIUM5.3jackson-databind contains the general-purpose data-binding functionality and tree-model for Jackson Data Processor. From...
CVE-2026-54516MEDIUM5.3jackson-databind contains the general-purpose data-binding functionality and tree-model for Jackson Data Processor. From...
CVE-2026-54515MEDIUM5.3jackson-databind contains the general-purpose data-binding functionality and tree-model for Jackson Data Processor. From...
CVE-2026-54514MEDIUM5.3jackson-databind contains the general-purpose data-binding functionality and tree-model for Jackson Data Processor. From...
CVE-2026-53931MEDIUM6.9NocoDB is software for building databases as spreadsheets. Prior to 2026.05.1, the spreadsheet-import endpoint axiosRequ...
CVE-2026-53930MEDIUM5.1NocoDB is software for building databases as spreadsheets. Prior to 2026.05.1, the base-migration endpoint accepted a ca...
CVE-2026-53929MEDIUM5.1NocoDB is software for building databases as spreadsheets. Prior to 2026.05.1, with NC_SECURE_ATTACHMENTS=true, an authe...
CVE-2026-53928MEDIUM6.3NocoDB is software for building databases as spreadsheets. Prior to 2026.05.1, a stolen refresh token survived a passwor...
CVE-2026-53927MEDIUM5.1NocoDB is software for building databases as spreadsheets. Prior to 2026.05.1, the spreadsheet-fetch endpoint (axiosRequ...
CVE-2026-53926MEDIUM6.3NocoDB is software for building databases as spreadsheets. Prior to 2026.05.1, revokeAllOAuthTokensByUser in the users s...
CVE-2026-47386MEDIUM6.3NocoDB is software for building databases as spreadsheets. Prior to 2026.05.1, two concurrent token-exchange requests us...
CVE-2026-47385MEDIUM5.3NocoDB is software for building databases as spreadsheets. Prior to 2026.05.1, an authenticated user with base-create pe...
CVE-2026-47384MEDIUM5.3NocoDB is software for building databases as spreadsheets. Prior to 2026.05.1, an authenticated user with column-create ...
CVE-2026-47382MEDIUM5.3NocoDB is software for building databases as spreadsheets. Prior to 2026.05.1, the connection-test endpoint opened a raw...
CVE-2026-47381MEDIUM6.9NocoDB is software for building databases as spreadsheets. Prior to 2026.05.1, a user in one workspace could exercise an...
CVE-2026-47380MEDIUM6.3NocoDB is software for building databases as spreadsheets. Prior to 2026.04.1, sign-in response timing differed between ...
CVE-2026-47379MEDIUM6.9NocoDB is software for building databases as spreadsheets. Prior to 2026.05.1, the shared-view password check fell back ...
CVE-2026-47378MEDIUM6.9NocoDB is software for building databases as spreadsheets. Prior to 2026.04.1, Public shared-view endpoints exposed valu...
CVE-2026-47377MEDIUM5.1NocoDB is software for building databases as spreadsheets. Prior to 2026.04.1, the client-side hashRedirect plugin calle...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now