2026 CVE Vulnerabilities
45,453 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-59194 | HIGH | 7.1 | 0.2% | Jul 6, 2026 | pnpm is a package manager. Prior to 10.34.4 and 11.7.0, a crafted patch entry could resolve outside the configured patch... |
| CVE-2026-58380 | HIGH | 7.8 | 0.2% | Jul 6, 2026 | A flaw was found in GIMP's PNM file format parser. When parsing a specially crafted PNM file, the pnmscanner_gettoken() ... |
| CVE-2026-13698 | HIGH | 7.5 | 0.5% | Jul 6, 2026 | A memory leak in OpenVPN version 2.5.0 through 2.5.11, 2.6.0 through 2.6.20 and 2.7_alpha1 through 2.7.4 allows remote a... |
| CVE-2026-13708 | HIGH | 7.5 | — | Jul 6, 2026 | Imager::File::JPEG versions before 1.003 for Perl leak heap memory when reading a JPEG with repeated APP13 markers in i_... |
| CVE-2026-13705 | HIGH | 7.1 | — | Jul 6, 2026 | Imager versions before 1.032 for Perl have a heap out-of-bounds read in the bundled Imager::File::SGI reader via a 16-bi... |
| CVE-2026-6901 | HIGH | 8.4 | — | Jul 6, 2026 | Untrusted Search Path vulnerability in B&R Industrial Automation GmbH APROL. This issue affects APROL: before R 4.4-01P... |
| CVE-2026-58226 | HIGH | 8.7 | — | Jul 6, 2026 | Inefficient Algorithmic Complexity vulnerability in elixir-mint hpax allows unauthenticated denial-of-service via unboun... |
| CVE-2026-56810 | HIGH | 8.7 | — | Jul 6, 2026 | Allocation of Resources Without Limits or Throttling vulnerability in elixir-mint mint (Mint.HTTP1 module) allows a deni... |
| CVE-2026-4249 | HIGH | 8.6 | 0.3% | Jul 6, 2026 | The throttling event handling mechanism in multiple WSO2 products accepts user-supplied JSON payloads without sufficient... |
| CVE-2026-49297 | HIGH | 8.1 | 0.6% | Jul 6, 2026 | Apache Airflow's Google provider operators `GCSToSFTPOperator` and `GCSTimeSpanFileTransformOperator` joined GCS object ... |
| CVE-2026-49042 | HIGH | 7.3 | 0.2% | Jul 6, 2026 | Improper Input Validation vulnerability in Apache Camel. This issue affects Apache Camel: from 4.8.0 through 4.18.2, fr... |
| CVE-2026-46588 | HIGH | 7.3 | 0.2% | Jul 6, 2026 | Improper Input Validation vulnerability in Apache Camel. This issue affects Apache Camel: through 4.14.7, from 4.15.0 t... |
| CVE-2026-46587 | HIGH | 7.3 | 0.2% | Jul 6, 2026 | Improper Input Validation vulnerability in Apache Camel. This issue affects Apache Camel: through 4.14.7, from 4.15.0 t... |
| CVE-2026-44937 | HIGH | 8.2 | 0.5% | Jul 6, 2026 | Potential forgery of webhook requests when using a unauthenticated webhook in SUSE Rancher Fleet 0.15 before 0.15.2, 0.1... |
| CVE-2026-9165 | HIGH | 7.7 | 0.3% | Jul 6, 2026 | A flaw was found in Red Hat Advanced Cluster Security for Kubernetes (RHACS). Central does not limit the depth of GraphQ... |
| CVE-2026-55994 | HIGH | 7.5 | 0.3% | Jul 6, 2026 | Improper Input Validation, Exposure of Sensitive Information to an Unauthorized Actor, Server-Side Request Forgery (SSRF... |
| CVE-2026-55993 | HIGH | 7.5 | 0.4% | Jul 6, 2026 | Improper Input Validation, Exposure of Sensitive Information to an Unauthorized Actor, Server-Side Request Forgery (SSRF... |
| CVE-2026-46726 | HIGH | 7.5 | 0.4% | Jul 6, 2026 | Improper Input Validation, Exposure of Sensitive Information to an Unauthorized Actor, Server-Side Request Forgery (SSRF... |
| CVE-2026-46592 | HIGH | 7.5 | 0.3% | Jul 6, 2026 | Improper Input Validation, Unintended Proxy or Intermediary ('Confused Deputy') vulnerability in Apache Camel CXF SOAP c... |
| CVE-2026-46591 | HIGH | 8.2 | 0.2% | Jul 6, 2026 | Improper Neutralization of Special Elements in Data Query Logic vulnerability in Apache Camel Neo4J component. The came... |
| CVE-2026-46590 | HIGH | 8.8 | 0.4% | Jul 6, 2026 | Deserialization of Untrusted Data vulnerability in Apache Camel PQC component. The camel-pqc component persists post-qu... |
| CVE-2026-46585 | HIGH | 7.5 | 0.3% | Jul 6, 2026 | Improper Input Validation, Authorization Bypass Through User-Controlled Key vulnerability in Apache Camel Lucene Compone... |
| CVE-2026-46457 | HIGH | 7.5 | 0.3% | Jul 6, 2026 | Improper Input Validation vulnerability in Apache Camel NATS component. The camel-nats component maps inbound NATS mess... |
| CVE-2026-44934 | HIGH | 7 | 0.1% | Jul 6, 2026 | A information disclosure when DEBUG loglevel is set in SUSE Rancher AI Agent 1.0 before 1.0.2 could leak API keys or LLM... |
| CVE-2026-43866 | HIGH | 7.3 | 0.2% | Jul 6, 2026 | Deserialization of Untrusted Data vulnerability in Apache Camel, Apache Camel JMS component. JmsBinding.extractBodyFrom... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now