2026 CVE Vulnerabilities
69,870 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-27139 | LOW | 2.5 | 0.2% | Mar 6, 2026 | On Unix platforms, when listing the contents of a directory using File.ReadDir or File.Readdir the returned FileInfo cou... |
| CVE-2026-27138 | MEDIUM | 5.9 | 0.4% | Mar 6, 2026 | Certificate verification can panic when a certificate in the chain has an empty DNS name and another certificate in the ... |
| CVE-2026-27137 | HIGH | 7.5 | 0.6% | Mar 6, 2026 | When verifying a certificate chain which contains a certificate containing multiple email address constraints which shar... |
| CVE-2026-25679 | HIGH | 7.5 | 0.7% | Mar 6, 2026 | url.Parse insufficiently validated the host/authority component and accepted some invalid URLs. |
| CVE-2026-30835 | MEDIUM | 5.3 | 0.3% | Mar 6, 2026 | Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js. Prior to version... |
| CVE-2026-30233 | MEDIUM | 4.3 | 0.4% | Mar 6, 2026 | OliveTin gives access to predefined shell commands from a web interface. Prior to version 3000.11.1, an authorization fl... |
| CVE-2026-30231 | MEDIUM | 5.3 | 0.3% | Mar 6, 2026 | Flare is a Next.js-based, self-hostable file sharing platform that integrates with screenshot tools. Prior to version 1.... |
| CVE-2026-30230 | HIGH | 7.5 | 0.4% | Mar 6, 2026 | Flare is a Next.js-based, self-hostable file sharing platform that integrates with screenshot tools. Prior to version 1.... |
| CVE-2026-30229 | HIGH | 7.2 | 0.4% | Mar 6, 2026 | Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js. Prior to version... |
| CVE-2026-30228 | MEDIUM | 4.9 | 0.3% | Mar 6, 2026 | Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js. Prior to version... |
| CVE-2026-30227 | MEDIUM | 5.3 | 1.1% | Mar 6, 2026 | MimeKit is a C# library which may be used for the creation and parsing of messages using the Multipurpose Internet Mail ... |
| CVE-2026-30225 | MEDIUM | 4.3 | 0.4% | Mar 6, 2026 | OliveTin gives access to predefined shell commands from a web interface. Prior to version 3000.11.1, an authentication c... |
| CVE-2026-30224 | MEDIUM | 5.4 | 0.3% | Mar 6, 2026 | OliveTin gives access to predefined shell commands from a web interface. Prior to version 3000.11.1, OliveTin does not r... |
| CVE-2026-30223 | HIGH | 8.8 | 0.3% | Mar 6, 2026 | OliveTin gives access to predefined shell commands from a web interface. Prior to version 3000.11.1, when JWT authentica... |
| CVE-2026-29795 | HIGH | 7.5 | 0.2% | Mar 6, 2026 | stellar-xdr is a library and CLI containing types and functionality for working with Stellar XDR. Prior to version 25.0.... |
| CVE-2026-29791 | MEDIUM | 6.5 | 0.1% | Mar 6, 2026 | Agentgateway is an open source data plane for agentic AI connectivity within or across any agent framework or environmen... |
| CVE-2026-29790 | MEDIUM | 5.3 | 0.3% | Mar 6, 2026 | dbt-common is the shared common utilities for dbt-core and adapter implementations use. Prior to versions 1.34.2 and 1.3... |
| CVE-2026-29789 | HIGH | 8.8 | 0.4% | Mar 6, 2026 | Vito is a self-hosted web application that helps manage servers and deploy PHP applications into production servers. Pri... |
| CVE-2026-29788 | HIGH | 7.5 | 0.3% | Mar 6, 2026 | TSPortal is the WikiTide Foundation’s in-house platform used by the Trust and Safety team to manage reports, investigati... |
| CVE-2026-29182 | HIGH | 7.2 | 0.4% | Mar 6, 2026 | Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js. Prior to version... |
| CVE-2026-30847 | MEDIUM | 6.5 | 0.2% | Mar 6, 2026 | Wekan is an open source kanban tool built with Meteor. In versions 8.31.0 through 8.33, the notificationUsers publicatio... |
| CVE-2026-30846 | HIGH | 7.5 | 0.3% | Mar 6, 2026 | Wekan is an open source kanban tool built with Meteor. In versions 8.31.0 through 8.33, the globalwebhooks publication e... |
| CVE-2026-30845 | HIGH | 8.2 | 0.3% | Mar 6, 2026 | Wekan is an open source kanban tool built with Meteor. In versions 8.31.0 through 8.33, the board composite publication ... |
| CVE-2026-30844 | HIGH | 8.1 | 0.2% | Mar 6, 2026 | Wekan is an open source kanban tool built with Meteor. Versions 8.32 and 8.33 are vulnerable to Server-Side Request Forg... |
| CVE-2026-30843 | MEDIUM | 6.5 | 0.2% | Mar 6, 2026 | Wekan is an open source kanban tool built with Meteor. Versions 8.32 and 8.33 have a critical Insecure Direct Object Ref... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now