2026 CVE Vulnerabilities

69,416 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-1524CRITICAL9.8An edgecase in SSO implementation in Neo4j Enterprise edition versions prior to version 2026.02 can lead to unauthorised...
CVE-2026-1471MEDIUM6.5Excessive caching of authentication context in Neo4j Enterprise edition versions prior to 2026.01.4 leads to authenticat...
CVE-2026-3848MEDIUM5GitLab has remediated an issue in GitLab CE/EE affecting all versions from 8.11 before 18.7.6, 18.8 before 18.8.6, and 1...
CVE-2026-31892HIGH8.1Argo Workflows is an open source container-native workflow engine for orchestrating parallel jobs on Kubernetes. From 2....
CVE-2026-30741CRITICAL9.8A remote code execution (RCE) vulnerability in OpenClaw Agent Platform v2026.2.6 allows attackers to execute arbitrary c...
CVE-2026-30234MEDIUM6.5OpenProject is an open-source, web-based project management software. Prior to 17.2.0, an authenticated project member w...
CVE-2026-29777MEDIUM6.5Traefik is an HTTP reverse proxy and load balancer. Prior to 3.6.10, A tenant with write access to an HTTPRoute resource...
CVE-2026-28803MEDIUM6.5Open Forms allows users create and publish smart forms. Prior to 3.3.13 and 3.4.5, to be able to cosign, the cosigner re...
CVE-2026-28229HIGH7.5Argo Workflows is an open source container-native workflow engine for orchestrating parallel jobs on Kubernetes. Prior t...
CVE-2026-27897HIGH7.1Vociferous provides cross-platform, offline speech-to-text with local AI refinement. Prior to 4.4.2, the vulnerability e...
CVE-2026-22248HIGH8.8GLPI is an open-source asset and IT management software package that provides ITIL Service Desk features, licenses track...
CVE-2026-21888HIGH7.5NanoMQ MQTT Broker (NanoMQ) is an all-around Edge Messaging Platform. MQTT v5 Variable Byte Integer parsing out-of-bound...
CVE-2026-1732MEDIUM4.3GitLab has remediated an issue in GitLab CE/EE affecting all versions from 12.6 before 18.7.6, 18.8 before 18.8.6, and 1...
CVE-2026-1663MEDIUM4.3GitLab has remediated an issue in GitLab CE/EE affecting all versions from 14.4 before 18.7.6, 18.8 before 18.8.6, and 1...
CVE-2026-1497HIGH7.2Incorrect resolving of namespaces in composite databases in Neo4j Enterprise edition prior to versions 2026.02 and 5.26....
CVE-2026-1230MEDIUM6.5GitLab has remediated an issue in GitLab CE/EE affecting all versions from 1.0 before 18.7.6, 18.8 before 18.8.6, and 18...
CVE-2026-1090MEDIUM5.4GitLab has remediated an issue in GitLab CE/EE affecting all versions from 10.6 before 18.7.6, 18.8 before 18.8.6, and 1...
CVE-2026-1069HIGH7.5GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.9 before 18.9.2 that could have allowed an...
CVE-2026-0602MEDIUM4.3GitLab has remediated an issue in GitLab CE/EE affecting all versions from 15.6 before 18.7.6, 18.8 before 18.8.6, and 1...
CVE-2026-3946LOW3.5A vulnerability was detected in PHPEMS 11.0. The affected element is an unknown function of the file /index.php?ask=app-...
CVE-2026-3013HIGH8.7Coppermine Photo Gallery in versions 1.6.09 through 1.6.27 is vulnerable to path traversal. Unauthenticated remote attac...
CVE-2026-32229MEDIUM6.8In JetBrains Hub before 2026.1 possible on sign-in account mismatch with non-SSO auth and 2FA disabled
CVE-2026-30903CRITICAL9.8External Control of File Name or Path in the Mail feature of Zoom Workplace for Windows before 6.6.0 may allow an unauth...
CVE-2026-30902HIGH7.8Improper Privilege Management in certain Zoom Clients for Windows may allow an authenticated user to conduct an escalati...
CVE-2026-30901HIGH7.8Improper Input Validation in Zoom Rooms for Windows before 6.6.5 in Kiosk Mode may allow an authenticated user to conduc...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now