2026 CVE Vulnerabilities
43,253 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-11684 | LOW | 3.1 | 0.2% | Jun 9, 2026 | Insufficient policy enforcement in Network in Google Chrome prior to 149.0.7827.103 allowed a remote attacker who had co... |
| CVE-2026-11675 | LOW | 3.1 | 0.2% | Jun 9, 2026 | Out of bounds read in Skia in Google Chrome prior to 149.0.7827.103 allowed a remote attacker who had compromised the re... |
| CVE-2026-47344 | LOW | 2.1 | 0.3% | Jun 8, 2026 | When ALLOW_INSECURE_RAW_TEXT is enabled, whitespace-variant closing tags (e.g., </style\t>) are not recognized by the sa... |
| CVE-2026-11534 | LOW | 3.5 | 0.2% | Jun 8, 2026 | A vulnerability was detected in imvks786 student_management_system up to 9599b560ad3c3b83e75d328b76bedcd489ef1f46. Affec... |
| CVE-2026-49756 | LOW | 2.1 | 0.2% | Jun 8, 2026 | Improper Neutralization of CRLF Sequences ('CRLF Injection') vulnerability in wojtekmach Req allows multipart parameter ... |
| CVE-2026-48488 | LOW | 2.7 | 0.2% | Jun 8, 2026 | phpMyFAQ is an open source FAQ web application. Prior to version 4.1.4, attachment passwords are hashed using SHA-1, a c... |
| CVE-2026-11520 | LOW | 3.5 | 0.2% | Jun 8, 2026 | A weakness has been identified in SourceCodester Inventory System 1.0. Affected by this issue is some unknown functional... |
| CVE-2026-11511 | LOW | 3.5 | 0.2% | Jun 8, 2026 | A weakness has been identified in Bolt CMS up to 3.7.5. This vulnerability affects unknown code of the file src/Storage/... |
| CVE-2026-11502 | LOW | 3.1 | 0.3% | Jun 8, 2026 | A weakness has been identified in JeecgBoot up to 3.9.2. Impacted is the function HttpServletResponse.sendRedirect of th... |
| CVE-2026-11491 | LOW | 2.4 | 0.2% | Jun 8, 2026 | A vulnerability was identified in CodeAstro Human Resource Management System 1.0. Impacted is an unknown function of the... |
| CVE-2026-11481 | LOW | 2.5 | 0.1% | Jun 8, 2026 | A vulnerability was determined in yoanbernabeu grepai up to 0.35.0. The affected element is the function PostgresStore.L... |
| CVE-2026-11478 | LOW | 3.3 | 0.1% | Jun 8, 2026 | A flaw has been found in kokke tiny-regex-c up to f2632c6d9ed25272987471cdb8b70395c2460bdb. This vulnerability affects t... |
| CVE-2026-11468 | LOW | 2.4 | 0.2% | Jun 8, 2026 | A vulnerability was detected in SourceCodester Hospitals Patient Records Management System 1.0. This issue affects some ... |
| CVE-2026-11465 | LOW | 3.1 | 0.2% | Jun 7, 2026 | A security flaw has been discovered in songquanpeng one-api up to 0.6.11-preview.7. Affected by this issue is the functi... |
| CVE-2026-11464 | LOW | 3.1 | 0.2% | Jun 7, 2026 | A vulnerability was identified in JeecgBoot up to 3.9.2. Affected by this vulnerability is the function queryPageList of... |
| CVE-2026-11459 | LOW | 3.3 | 0.1% | Jun 7, 2026 | A security vulnerability has been detected in SecureAge CatchPulse up to 10.9.3. Impacted is an unknown function in the ... |
| CVE-2026-11434 | LOW | 2.4 | 0.3% | Jun 6, 2026 | A weakness has been identified in FluentCMS 0.0.5. The impacted element is an unknown function of the file /admin/blocks... |
| CVE-2026-11338 | LOW | 2.4 | 0.2% | Jun 5, 2026 | A security vulnerability has been detected in SourceCodester Ship Ferry Ticket Reservation System 1.0. Impacted is an un... |
| CVE-2026-11330 | LOW | 3.6 | 0.1% | Jun 5, 2026 | A weakness has been identified in thedotmack claude-mem up to 11.0.1. The affected element is the function computeObserv... |
| CVE-2026-11329 | LOW | 3.6 | 0.1% | Jun 5, 2026 | A vulnerability has been found in onnx onnx-mlir up to 0.5.0.0. Affected by this issue is the function generate_hash_key... |
| CVE-2026-21034 | LOW | 3.3 | 0.1% | Jun 5, 2026 | Improper export of android application components in Samsung Auto prior to version 3.1.2.61 in Android 15 and 3.2.0.38 i... |
| CVE-2026-21027 | LOW | 3.3 | 0.1% | Jun 5, 2026 | Improper export of android application components in ImsSettings prior to SMR Jun-2026 Release 1 allows local attackers ... |
| CVE-2026-9088 | LOW | 2.7 | 0.3% | Jun 5, 2026 | A flaw was found in org.keycloak.services. An administrator with delegated access to read group memberships and users ca... |
| CVE-2026-11312 | LOW | 3.3 | 0.1% | Jun 5, 2026 | A vulnerability was found in bytedance InfiniStore up to 0.2.33. The impacted element is the function purge_kv_map in th... |
| CVE-2026-11251 | LOW | 3.1 | 0.2% | Jun 5, 2026 | Insufficient policy enforcement in Password Manager in Google Chrome prior to 149.0.7827.53 allowed a remote attacker wh... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now