2026 CVE Vulnerabilities
45,125 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-47376 | MEDIUM | 5.1 | 0.3% | Jun 23, 2026 | NocoDB is software for building databases as spreadsheets. Prior to 2026.04.1, the password-reset page rendered the URL ... |
| CVE-2026-47375 | MEDIUM | 6 | 0.2% | Jun 23, 2026 | NocoDB is software for building databases as spreadsheets. Prior to 2026.04.1, an authenticated user with columnAdd perm... |
| CVE-2026-47279 | MEDIUM | 6.9 | 0.2% | Jun 23, 2026 | NocoDB is software for building databases as spreadsheets. Prior to 2026.05.1, the public shared-view relation endpoints... |
| CVE-2026-46552 | MEDIUM | 5.8 | 0.3% | Jun 23, 2026 | NocoDB is software for building databases as spreadsheets. Prior to 2026.04.1, shared-base sessions were granted the sam... |
| CVE-2026-46551 | MEDIUM | 6.5 | 0.2% | Jun 23, 2026 | NocoDB is software for building databases as spreadsheets. Prior to 2026.04.4, the uploadViaURL path in the v1/v2 attach... |
| CVE-2026-46550 | MEDIUM | 5.4 | 0.1% | Jun 23, 2026 | NocoDB is software for building databases as spreadsheets. Prior to 2026.04.1, the refresh-token cookie was set with htt... |
| CVE-2026-46548 | MEDIUM | 4.3 | 0.2% | Jun 23, 2026 | NocoDB is software for building databases as spreadsheets. Prior to 2026.04.1, the request-filtering-agent SSRF protecti... |
| CVE-2026-46547 | MEDIUM | 6.1 | 0.1% | Jun 23, 2026 | NocoDB is software for building databases as spreadsheets. Prior to 2026.04.1, a reflected XSS vulnerability exists in t... |
| CVE-2026-12892 | MEDIUM | 4.4 | 0.1% | Jun 23, 2026 | A flaw was found in GStreamer's gst-plugins-bad package. When processing a specially crafted H.264 video file containing... |
| CVE-2026-12891 | MEDIUM | 4.3 | 0.3% | Jun 23, 2026 | A flaw was found in the GStreamer gst-plugins-bad package. When processing a malformed H.266/VVC video stream with a cra... |
| CVE-2026-11820 | MEDIUM | 6.5 | 0.3% | Jun 23, 2026 | A flaw was found in the community.general Ansible collection's nexmo module. The module constructs HTTP requests to the ... |
| CVE-2026-11819 | MEDIUM | 5.5 | 0.1% | Jun 23, 2026 | Module: plugins/modules/keyring_info.py CVSS 3.1: 5.5 MEDIUM — AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N Issue: The module... |
| CVE-2026-54325 | MEDIUM | 4.4 | 0.1% | Jun 23, 2026 | Pi is a minimal terminal coding harness. Pi before 0.79.0 loaded project-local configuration and resources from a reposi... |
| CVE-2026-45792 | MEDIUM | 5.5 | 0.1% | Jun 23, 2026 | rtk filters and compresses command outputs before they reach your LLM context. Prior to 0.32.0, RTK (Rust Token Killer) ... |
| CVE-2026-55736 | MEDIUM | 5.9 | 0.2% | Jun 23, 2026 | Improperly Controlled Modification of Dynamically-Determined Object Attributes vulnerability in ash-project ash allows a... |
| CVE-2026-54319 | MEDIUM | 4.2 | 0.2% | Jun 23, 2026 | Daytona is a secure and elastic infrastructure runtime for AI-generated code execution and agent workflows. Prior to 0.1... |
| CVE-2026-55517 | MEDIUM | 4.3 | 0.2% | Jun 23, 2026 | Deno is a JavaScript, TypeScript, and WebAssembly runtime. Prior to 2.7.5, a Deno program that opens a client WebSocket ... |
| CVE-2026-54324 | MEDIUM | 6.5 | 0.3% | Jun 23, 2026 | Daytona is a secure and elastic infrastructure runtime for AI-generated code execution and agent workflows. Prior to 0.1... |
| CVE-2026-54323 | MEDIUM | 5.9 | 0.1% | Jun 23, 2026 | Daytona is a secure and elastic infrastructure runtime for AI-generated code execution and agent workflows. Prior to 0.1... |
| CVE-2026-54022 | MEDIUM | 5.3 | 0.3% | Jun 23, 2026 | Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.8.11, the ... |
| CVE-2026-54021 | MEDIUM | 6.3 | 0.2% | Jun 23, 2026 | Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.9.6, sever... |
| CVE-2026-54019 | MEDIUM | 6.5 | 0.3% | Jun 23, 2026 | Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.9.6, Open ... |
| CVE-2026-54016 | MEDIUM | 4.3 | 0.2% | Jun 23, 2026 | Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.9.6, Open ... |
| CVE-2026-54015 | MEDIUM | 6.4 | 0.2% | Jun 23, 2026 | Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.9.6, Open ... |
| CVE-2026-54014 | MEDIUM | 4.3 | 0.2% | Jun 23, 2026 | Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.9.6, a pat... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now