2026 CVE Vulnerabilities
70,287 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-29000 | CRITICAL | 9.1 | 0.5% | Mar 4, 2026 | pac4j-jwt versions prior to 4.5.9, 5.7.9, and 6.3.3 contain an authentication bypass vulnerability in JwtAuthenticator w... |
| CVE-2026-27898 | MEDIUM | 5.4 | 0.2% | Mar 4, 2026 | Vaultwarden is an unofficial Bitwarden compatible server written in Rust, formerly known as bitwarden_rs. Prior to versi... |
| CVE-2026-27803 | HIGH | 8.3 | 0.3% | Mar 4, 2026 | Vaultwarden is an unofficial Bitwarden compatible server written in Rust, formerly known as bitwarden_rs. Prior to versi... |
| CVE-2026-27802 | HIGH | 8.3 | 0.3% | Mar 4, 2026 | Vaultwarden is an unofficial Bitwarden compatible server written in Rust, formerly known as bitwarden_rs. Prior to versi... |
| CVE-2026-27801 | MEDIUM | 5.9 | 0.3% | Mar 4, 2026 | Vaultwarden is an unofficial Bitwarden compatible server written in Rust, formerly known as bitwarden_rs. Vaultwarden ve... |
| CVE-2026-25750 | HIGH | 8.1 | 0.3% | Mar 4, 2026 | Langchain Helm Charts are Helm charts for deploying Langchain applications on Kubernetes. Prior to langchain-ai/helm ver... |
| CVE-2026-22040 | MEDIUM | 5.3 | 0.2% | Mar 4, 2026 | NanoMQ MQTT Broker (NanoMQ) is an all-around Edge Messaging Platform. In version 0.24.6, by generating a combined traffi... |
| CVE-2026-3545 | CRITICAL | 9.6 | 0.3% | Mar 4, 2026 | Insufficient data validation in Navigation in Google Chrome prior to 145.0.7632.159 allowed a remote attacker to potenti... |
| CVE-2026-3544 | HIGH | 8.8 | 0.3% | Mar 4, 2026 | Heap buffer overflow in WebCodecs in Google Chrome prior to 145.0.7632.159 allowed a remote attacker to perform an out o... |
| CVE-2026-3543 | HIGH | 8.8 | 0.3% | Mar 4, 2026 | Inappropriate implementation in V8 in Google Chrome prior to 145.0.7632.159 allowed a remote attacker to potentially per... |
| CVE-2026-3542 | HIGH | 8.8 | 0.3% | Mar 4, 2026 | Inappropriate implementation in WebAssembly in Google Chrome prior to 145.0.7632.159 allowed a remote attacker to perfor... |
| CVE-2026-3541 | HIGH | 8.8 | 0.3% | Mar 4, 2026 | Inappropriate implementation in CSS in Google Chrome prior to 145.0.7632.159 allowed a remote attacker to perform an out... |
| CVE-2026-3540 | HIGH | 8.8 | 0.3% | Mar 4, 2026 | Inappropriate implementation in WebAudio in Google Chrome prior to 145.0.7632.159 allowed a remote attacker to perform o... |
| CVE-2026-3539 | — | — | — | Mar 4, 2026 | Rejected reason: Determined a bug and not a vulnerability |
| CVE-2026-3538 | HIGH | 8.8 | 0.4% | Mar 4, 2026 | Integer overflow in Skia in Google Chrome prior to 145.0.7632.159 allowed a remote attacker to potentially perform out o... |
| CVE-2026-3537 | HIGH | 8.8 | 0.4% | Mar 4, 2026 | Object lifecycle issue in PowerVR in Google Chrome on Android prior to 145.0.7632.159 allowed a remote attacker to poten... |
| CVE-2026-3536 | HIGH | 8.8 | 0.5% | Mar 4, 2026 | Integer overflow in ANGLE in Google Chrome prior to 145.0.7632.159 allowed a remote attacker to potentially perform out ... |
| CVE-2026-28435 | HIGH | 7.5 | 0.4% | Mar 4, 2026 | cpp-httplib is a C++11 single-file header-only cross platform HTTP/HTTPS library. Prior to 0.35.0, cpp-httplib (httplib.... |
| CVE-2026-28434 | MEDIUM | 5.3 | 0.3% | Mar 4, 2026 | cpp-httplib is a C++11 single-file header-only cross platform HTTP/HTTPS library. Prior to 0.35.0, when a request handle... |
| CVE-2026-28427 | HIGH | 7.5 | 0.4% | Mar 4, 2026 | OpenDeck is Linux software for your Elgato Stream Deck. Prior to 2.8.1, the service listening on port 57118 serves stati... |
| CVE-2026-3125 | MEDIUM | 6.5 | 0.4% | Mar 4, 2026 | A Server-Side Request Forgery (SSRF) vulnerability was identified in the @opennextjs/cloudflare package, resulting from ... |
| CVE-2026-20064 | MEDIUM | 6.5 | 0.1% | Mar 4, 2026 | A vulnerability in of Cisco Secure Firewall Threat Defense (FTD) Software could allow an authenticated, local attacker t... |
| CVE-2026-20025 | MEDIUM | 6.8 | 0.2% | Mar 4, 2026 | A vulnerability in the OSPF protocol of Cisco Secure Firewall ASA Software and Cisco Secure FTD Software could allow an ... |
| CVE-2026-20024 | MEDIUM | 5.7 | 0.2% | Mar 4, 2026 | A vulnerability in the OSPF protocol of Cisco Secure Firewall ASA Software and Cisco Secure FTD Software could allow an ... |
| CVE-2026-20023 | MEDIUM | 6.5 | 0.2% | Mar 4, 2026 | A vulnerability in the OSPF protocol of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secur... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now