2026 CVE Vulnerabilities

69,303 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-30235MEDIUM6.5OpenProject is an open-source, web-based project management software. Prior to 17.2.0, this vulnerability occurs due to ...
CVE-2026-20166MEDIUM5.4In Splunk Enterprise versions below 10.2.1 and 10.0.4, and Splunk Cloud Platform versions below 10.2.2510.5, 10.1.2507.1...
CVE-2026-20165MEDIUM6.5In Splunk Enterprise versions below 10.2.1, 10.0.4, 9.4.9, and 9.3.10, and Splunk Cloud Platform versions below 10.2.251...
CVE-2026-20164MEDIUM6.5In Splunk Enterprise versions below 10.2.0, 10.0.3, 9.4.9, and 9.3.10, and Splunk Cloud Platform versions below 10.2.251...
CVE-2026-20163HIGH7.2In Splunk Enterprise versions below 10.2.0, 10.0.4, 9.4.9, and 9.3.10, and Splunk Cloud Platform versions below 10.2.251...
CVE-2026-20162MEDIUM6.3In Splunk Enterprise versions below 10.2.0, 10.0.3, 9.4.9, and 9.3.9, and Splunk Cloud Platform versions below 10.2.2510...
CVE-2026-20118MEDIUM6.8A vulnerability in the handling of an Egress Packet Network Interface (EPNI) Aligner interrupt in Cisco IOS XR Software ...
CVE-2026-20117MEDIUM6.1A vulnerability in the web-based management interface of Cisco Unified Contact Center Express (Unified CCX) could allow ...
CVE-2026-20116MEDIUM6.1A vulnerability in the web-based management interface of  Cisco Finesse, Cisco Packaged Contact Center Enterprise (...
CVE-2026-20074HIGH7.4A vulnerability in the Intermediate System-to-Intermediate System (IS-IS) multi-instance routing feature of Cisco IOS XR...
CVE-2026-20046HIGH8.8A vulnerability in task group assignment for a specific CLI command in Cisco IOS XR Software could allow an authenticate...
CVE-2026-20040HIGH8.8A vulnerability in the CLI of Cisco IOS XR Software could allow an authenticated, local attacker to execute arbitrary co...
CVE-2026-1524CRITICAL9.8An edgecase in SSO implementation in Neo4j Enterprise edition versions prior to version 2026.02 can lead to unauthorised...
CVE-2026-1471MEDIUM6.5Excessive caching of authentication context in Neo4j Enterprise edition versions prior to 2026.01.4 leads to authenticat...
CVE-2026-3848MEDIUM5GitLab has remediated an issue in GitLab CE/EE affecting all versions from 8.11 before 18.7.6, 18.8 before 18.8.6, and 1...
CVE-2026-31892HIGH8.1Argo Workflows is an open source container-native workflow engine for orchestrating parallel jobs on Kubernetes. From 2....
CVE-2026-30741CRITICAL9.8A remote code execution (RCE) vulnerability in OpenClaw Agent Platform v2026.2.6 allows attackers to execute arbitrary c...
CVE-2026-30234MEDIUM6.5OpenProject is an open-source, web-based project management software. Prior to 17.2.0, an authenticated project member w...
CVE-2026-29777MEDIUM6.5Traefik is an HTTP reverse proxy and load balancer. Prior to 3.6.10, A tenant with write access to an HTTPRoute resource...
CVE-2026-28803MEDIUM6.5Open Forms allows users create and publish smart forms. Prior to 3.3.13 and 3.4.5, to be able to cosign, the cosigner re...
CVE-2026-28229HIGH7.5Argo Workflows is an open source container-native workflow engine for orchestrating parallel jobs on Kubernetes. Prior t...
CVE-2026-27897HIGH7.1Vociferous provides cross-platform, offline speech-to-text with local AI refinement. Prior to 4.4.2, the vulnerability e...
CVE-2026-22248HIGH8.8GLPI is an open-source asset and IT management software package that provides ITIL Service Desk features, licenses track...
CVE-2026-21888HIGH7.5NanoMQ MQTT Broker (NanoMQ) is an all-around Edge Messaging Platform. MQTT v5 Variable Byte Integer parsing out-of-bound...
CVE-2026-1732MEDIUM4.3GitLab has remediated an issue in GitLab CE/EE affecting all versions from 12.6 before 18.7.6, 18.8 before 18.8.6, and 1...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now