2026 CVE Vulnerabilities
69,588 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-30973 | MEDIUM | 6.5 | 0.4% | Mar 10, 2026 | Appium is an automation framework that provides WebDriver-based automation possibilities for a wide range platforms. Pri... |
| CVE-2026-30970 | CRITICAL | 9.1 | 0.3% | Mar 10, 2026 | Coral Server is open collaboration infrastructure that enables communication, coordination, trust and payments for The I... |
| CVE-2026-30969 | CRITICAL | 9.1 | 0.4% | Mar 10, 2026 | Coral Server is open collaboration infrastructure that enables communication, coordination, trust and payments for The I... |
| CVE-2026-30968 | CRITICAL | 9.8 | 0.3% | Mar 10, 2026 | Coral Server is open collaboration infrastructure that enables communication, coordination, trust and payments for The I... |
| CVE-2026-30964 | MEDIUM | 5.4 | 0.2% | Mar 10, 2026 | web-auth/webauthn-lib is an open source set of PHP libraries and a Symfony bundle to allow developers to integrate that ... |
| CVE-2026-30960 | CRITICAL | 9.4 | 0.2% | Mar 10, 2026 | rssn is a scientific computing library for Rust, combining a high-performance symbolic computation engine with numerical... |
| CVE-2026-30959 | MEDIUM | 5 | 0.4% | Mar 10, 2026 | OneUptime is a solution for monitoring and managing online services. The resend-verification-code endpoint allows any au... |
| CVE-2026-30958 | HIGH | 8.6 | 1.2% | Mar 10, 2026 | OneUptime is a solution for monitoring and managing online services. Prior to 10.0.21, an unauthenticated path traversal... |
| CVE-2026-30957 | CRITICAL | 9.9 | 1.1% | Mar 10, 2026 | OneUptime is a solution for monitoring and managing online services. Prior to 10.0.21, OneUptime Synthetic Monitors allo... |
| CVE-2026-30956 | CRITICAL | 9.9 | 0.5% | Mar 10, 2026 | OneUptime is a solution for monitoring and managing online services. Prior to 10.0.21, a low‑privileged user can bypass ... |
| CVE-2026-30945 | HIGH | 7.1 | 0.5% | Mar 10, 2026 | StudioCMS is a server-side-rendered, Astro native, headless content management system. Prior to 0.4.0, the DELETE /studi... |
| CVE-2026-30944 | HIGH | 8.8 | 0.6% | Mar 10, 2026 | StudioCMS is a server-side-rendered, Astro native, headless content management system. Prior to 0.4.0, the /studiocms_ap... |
| CVE-2026-30942 | MEDIUM | 6.5 | 0.6% | Mar 10, 2026 | Flare is a Next.js-based, self-hostable file sharing platform that integrates with screenshot tools. Prior to 1.7.3, an ... |
| CVE-2026-30941 | HIGH | 7.5 | 0.5% | Mar 10, 2026 | Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js. Prior to 8.6.14 ... |
| CVE-2026-30939 | HIGH | 7.5 | 0.5% | Mar 10, 2026 | Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js. Prior to 8.6.13 ... |
| CVE-2026-30938 | MEDIUM | 5.3 | 0.4% | Mar 10, 2026 | Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js. Prior to 8.6.12 ... |
| CVE-2026-30934 | MEDIUM | 5.4 | 0.3% | Mar 10, 2026 | FileBrowser Quantum is a free, self-hosted, web-based file manager. Prior to 1.3.1-beta and 1.2.2-stable, Stored XSS is ... |
| CVE-2026-30933 | HIGH | 7.5 | 0.5% | Mar 10, 2026 | FileBrowser Quantum is a free, self-hosted, web-based file manager. Prior to 1.3.1-beta and 1.2.2-stable, the remediatio... |
| CVE-2026-30930 | CRITICAL | 9.8 | 0.4% | Mar 10, 2026 | Glances is an open-source system cross-platform monitoring tool. Prior to 4.5.1, The TimescaleDB export module construct... |
| CVE-2026-30928 | HIGH | 7.5 | 1.7% | Mar 10, 2026 | Glances is an open-source system cross-platform monitoring tool. Prior to 4.5.1, the /api/4/config REST API endpoint ret... |
| CVE-2026-30897 | MEDIUM | 6.6 | 0.6% | Mar 10, 2026 | A stack-based buffer overflow vulnerability in Fortinet FortiWeb 8.0.0 through 8.0.3, FortiWeb 7.6.0 through 7.6.6, Fort... |
| CVE-2026-2742 | MEDIUM | 5.3 | 0.4% | Mar 10, 2026 | An authentication bypass vulnerability exists in Vaadin 14.0.0 through 14.14.0, 23.0.0 through 23.6.6, 24.0.0 through 24... |
| CVE-2026-2741 | MEDIUM | 6.8 | 0.3% | Mar 10, 2026 | Specially crafted ZIP archives can escape the intended extraction directory during Node.js download and extraction in Va... |
| CVE-2026-2724 | HIGH | 7.2 | 0.3% | Mar 10, 2026 | The Unlimited Elements for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the form entr... |
| CVE-2026-2339 | HIGH | 7.5 | 0.8% | Mar 10, 2026 | Missing Authentication for Critical Function vulnerability in TUBITAK BILGEM Software Technologies Research Institute Li... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now