2026 CVE Vulnerabilities

69,211 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-31853MEDIUM5.5ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to 7.1.2-16 and 6.9...
CVE-2026-31852CRITICAL9.8Jellyfin is an open-source media system. The code-quality.yml GitHub Actions workflow in jellyfin/jellyfin-ios is vulner...
CVE-2026-31840CRITICAL9.8Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js. Prior to 9.6.0-a...
CVE-2026-31839HIGH7.5Striae is a firearms examiner's comparison companion. A high-severity integrity bypass vulnerability existed in Striae's...
CVE-2026-31813MEDIUM4.8Supabase Auth is a JWT based API for managing users and issuing JWT tokens. Prior to 2.185.0, a vulnerability has been i...
CVE-2026-30868HIGH8.1OPNsense is a FreeBSD based firewall and routing platform. Prior to 26.1.4, multiple OPNsense MVC API endpoints perform ...
CVE-2026-30239HIGH7.1OpenProject is an open-source, web-based project management software. Prior to 17.2.0, when budgets are deleted, the wor...
CVE-2026-30236MEDIUM4.3OpenProject is an open-source, web-based project management software. Prior to 17.2.0, when editing a project budget and...
CVE-2026-30235MEDIUM6.5OpenProject is an open-source, web-based project management software. Prior to 17.2.0, this vulnerability occurs due to ...
CVE-2026-20166MEDIUM5.4In Splunk Enterprise versions below 10.2.1 and 10.0.4, and Splunk Cloud Platform versions below 10.2.2510.5, 10.1.2507.1...
CVE-2026-20165MEDIUM6.5In Splunk Enterprise versions below 10.2.1, 10.0.4, 9.4.9, and 9.3.10, and Splunk Cloud Platform versions below 10.2.251...
CVE-2026-20164MEDIUM6.5In Splunk Enterprise versions below 10.2.0, 10.0.3, 9.4.9, and 9.3.10, and Splunk Cloud Platform versions below 10.2.251...
CVE-2026-20163HIGH7.2In Splunk Enterprise versions below 10.2.0, 10.0.4, 9.4.9, and 9.3.10, and Splunk Cloud Platform versions below 10.2.251...
CVE-2026-20162MEDIUM6.3In Splunk Enterprise versions below 10.2.0, 10.0.3, 9.4.9, and 9.3.9, and Splunk Cloud Platform versions below 10.2.2510...
CVE-2026-20118MEDIUM6.8A vulnerability in the handling of an Egress Packet Network Interface (EPNI) Aligner interrupt in Cisco IOS XR Software ...
CVE-2026-20117MEDIUM6.1A vulnerability in the web-based management interface of Cisco Unified Contact Center Express (Unified CCX) could allow ...
CVE-2026-20116MEDIUM6.1A vulnerability in the web-based management interface of  Cisco Finesse, Cisco Packaged Contact Center Enterprise (...
CVE-2026-20074HIGH7.4A vulnerability in the Intermediate System-to-Intermediate System (IS-IS) multi-instance routing feature of Cisco IOS XR...
CVE-2026-20046HIGH8.8A vulnerability in task group assignment for a specific CLI command in Cisco IOS XR Software could allow an authenticate...
CVE-2026-20040HIGH8.8A vulnerability in the CLI of Cisco IOS XR Software could allow an authenticated, local attacker to execute arbitrary co...
CVE-2026-1524CRITICAL9.8An edgecase in SSO implementation in Neo4j Enterprise edition versions prior to version 2026.02 can lead to unauthorised...
CVE-2026-1471MEDIUM6.5Excessive caching of authentication context in Neo4j Enterprise edition versions prior to 2026.01.4 leads to authenticat...
CVE-2026-3848MEDIUM5GitLab has remediated an issue in GitLab CE/EE affecting all versions from 8.11 before 18.7.6, 18.8 before 18.8.6, and 1...
CVE-2026-31892HIGH8.1Argo Workflows is an open source container-native workflow engine for orchestrating parallel jobs on Kubernetes. From 2....
CVE-2026-30741CRITICAL9.8A remote code execution (RCE) vulnerability in OpenClaw Agent Platform v2026.2.6 allows attackers to execute arbitrary c...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now