2026 CVE Vulnerabilities
43,261 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-11251 | LOW | 3.1 | 0.2% | Jun 5, 2026 | Insufficient policy enforcement in Password Manager in Google Chrome prior to 149.0.7827.53 allowed a remote attacker wh... |
| CVE-2026-11247 | LOW | 3.1 | 0.2% | Jun 5, 2026 | Insufficient policy enforcement in CustomTabs in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attack... |
| CVE-2026-11244 | LOW | 3.1 | 0.2% | Jun 5, 2026 | Insufficient validation of untrusted input in WebAuthentication in Google Chrome prior to 149.0.7827.53 allowed a remote... |
| CVE-2026-11240 | LOW | 3.1 | 0.2% | Jun 5, 2026 | Insufficient validation of untrusted input in Loader in Google Chrome prior to 149.0.7827.53 allowed a remote attacker w... |
| CVE-2026-50266 | LOW | 2.2 | 0.3% | Jun 4, 2026 | In OpenStack Neutron before 28.0.1, a project manager can create or update a port on a shared network owned by another p... |
| CVE-2026-10813 | LOW | 3.6 | 0.1% | Jun 4, 2026 | A flaw has been found in LMCache up to 0.4.6. This affects the function hex_hash_to_int16 of the file lmcache/integratio... |
| CVE-2026-10812 | LOW | 3.6 | 0.1% | Jun 4, 2026 | A vulnerability was detected in zilliztech GPTCache up to 0.1.44. Affected by this issue is the function BufferedReader.... |
| CVE-2026-10803 | LOW | 3.6 | 0.1% | Jun 4, 2026 | A flaw has been found in MLflow up to 3.10.0. This issue affects the function mlflow.data.digest_utils of the file mlflo... |
| CVE-2026-10801 | LOW | 3.6 | 0.1% | Jun 4, 2026 | A security vulnerability has been detected in modelscope ms-swift up to 4.2.0. This affects the function Template._save_... |
| CVE-2026-10800 | LOW | 3.6 | 0.1% | Jun 4, 2026 | A weakness has been identified in PaddlePaddle FastDeploy up to 2.4.1. Affected by this issue is the function hash_featu... |
| CVE-2026-10783 | LOW | 2.5 | 0.1% | Jun 4, 2026 | A security flaw has been discovered in gradio-app gradio 6.14.0. This affects the function save_audio_to_cache of the co... |
| CVE-2026-10766 | LOW | 3.6 | 0.1% | Jun 3, 2026 | A vulnerability has been found in mlrun up to 1.12.0-rc3. This impacts the function mlrun.utils.helpers.calculate_datafr... |
| CVE-2026-7666 | LOW | 3.1 | 0.1% | Jun 3, 2026 | An issue was discovered in Django 6.0 before 6.0.6 and 5.2 before 5.2.15. `django.core.mail.backends.smtp.EmailBackend` ... |
| CVE-2026-35193 | LOW | 3.1 | 0.4% | Jun 3, 2026 | An issue was discovered in Django 5.2 before 5.2.15 and 6.0 before 6.0.6. `django.middleware.cache.UpdateCacheMiddleware... |
| CVE-2026-10729 | LOW | 1.2 | 0.2% | Jun 3, 2026 | An HTML injection vulnerability in the notification email for "Slow Redirect" and "Cloned Website" Canarytokens exists i... |
| CVE-2026-50052 | LOW | 2.3 | 0.3% | Jun 3, 2026 | In Vinyl Cache before 9.0.1 and Varnish Cache before 9.0.3, a deficiency in HTTP/2 request parsing can be exploited to l... |
| CVE-2026-10705 | LOW | 3.1 | 0.3% | Jun 3, 2026 | A flaw has been found in dask up to 3.0. Affected by this issue is the function nunique_approx of the file dask/datafram... |
| CVE-2026-10719 | LOW | 1.8 | 0.1% | Jun 2, 2026 | Out of bounds write in openSeaChest’s --showSupportedFormats in Seagate’s openSeaChest v25.05.3 on all supported platfor... |
| CVE-2026-10717 | LOW | 1.8 | 0.1% | Jun 2, 2026 | Out of bounds write and reads in openSeaChest’s --showSCSIDefects in Seagate’s openSeaChest v25.05.3 on all supported pl... |
| CVE-2026-48598 | LOW | 2.1 | 0.1% | Jun 2, 2026 | Improper Encoding or Escaping of Output vulnerability in elixir-tesla tesla allows multipart part header injection via u... |
| CVE-2026-48596 | LOW | 2.1 | 0.2% | Jun 2, 2026 | Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Request/Response Splitting') vulnerability in elixir-te... |
| CVE-2026-35202 | LOW | 2.3 | 0.2% | Jun 2, 2026 | Pterodactyl is a free, open-source game server management panel. Prior to version 1.12.3, the Pterodactyl Client API has... |
| CVE-2026-48861 | LOW | 2.1 | 0.2% | Jun 2, 2026 | Improper Neutralization of CRLF Sequences ('CRLF Injection') vulnerability in elixir-mint Mint allows HTTP Request Split... |
| CVE-2026-45683 | LOW | 3.8 | 0.2% | Jun 2, 2026 | OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the OpenTelemetry standard. Prior to version 0... |
| CVE-2026-44367 | LOW | 2.7 | 0.2% | Jun 2, 2026 | Klaw is a self-service Apache Kafka Topic Management/Governance tool/portal. Prior to version 2.10.4, a vulnerability ex... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now