2026 CVE Vulnerabilities
70,490 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-27832 | HIGH | 8.8 | 0.2% | Feb 27, 2026 | Group-Office is an enterprise customer relationship management and groupware tool. Versions prior to 26.0.8, 25.0.87, an... |
| CVE-2026-27824 | MEDIUM | 5.3 | 0.1% | Feb 27, 2026 | calibre is a cross-platform e-book manager for viewing, converting, editing, and cataloging e-books. Prior to version 9.... |
| CVE-2026-27810 | MEDIUM | 6.4 | 0.2% | Feb 27, 2026 | calibre is a cross-platform e-book manager for viewing, converting, editing, and cataloging e-books. Prior to version 9.... |
| CVE-2026-27793 | MEDIUM | 6.5 | 0.2% | Feb 27, 2026 | Seerr is an open-source media request and discovery manager for Jellyfin, Plex, and Emby. Prior to version 3.1.0, the `G... |
| CVE-2026-27792 | MEDIUM | 5.4 | 0.2% | Feb 27, 2026 | Seerr is an open-source media request and discovery manager for Jellyfin, Plex, and Emby. A missing authorization vulner... |
| CVE-2026-27734 | MEDIUM | 6.5 | 0.5% | Feb 27, 2026 | Beszel is a server monitoring platform. Prior to version 0.18.2, the hub's authenticated API endpoints GET /api/beszel/c... |
| CVE-2026-27707 | CRITICAL | 9.8 | 0.5% | Feb 27, 2026 | Seerr is an open-source media request and discovery manager for Jellyfin, Plex, and Emby. Starting in version 2.0.0 and ... |
| CVE-2026-27583 | — | — | — | Feb 27, 2026 | Rejected reason: Further research determined the situation described is not a vulnerability. |
| CVE-2026-27582 | — | — | — | Feb 27, 2026 | Rejected reason: Further research determined the situation described is not a vulnerability. |
| CVE-2026-27581 | — | — | — | Feb 27, 2026 | Rejected reason: Further research determined the situation described is not a vulnerability. |
| CVE-2026-27580 | — | — | — | Feb 27, 2026 | Rejected reason: Further research determined the situation described is not a vulnerability. |
| CVE-2026-27573 | — | — | — | Feb 27, 2026 | Rejected reason: Further research determined the situation described is not a vulnerability. |
| CVE-2026-27501 | — | — | — | Feb 27, 2026 | Rejected reason: Further research determined the situation described is not a vulnerability. |
| CVE-2026-27500 | — | — | — | Feb 27, 2026 | Rejected reason: Further research determined the situation described is not a vulnerability. |
| CVE-2026-27201 | — | — | — | Feb 27, 2026 | Rejected reason: Further research determined the situation described is not a vulnerability. |
| CVE-2026-27200 | — | — | — | Feb 27, 2026 | Rejected reason: Further research determined the situation described is not a vulnerability. |
| CVE-2026-26997 | MEDIUM | 5.4 | 0.2% | Feb 27, 2026 | ClipBucket v5 is an open source video sharing platform. Prior to version 5.5.3 #59, a normal authenticated user can stor... |
| CVE-2026-22717 | LOW | 2.7 | 0.2% | Feb 27, 2026 | Out-of-bound read vulnerability in VMware Workstation 25H1 and below on any platform allows an actor with non-administra... |
| CVE-2026-2880 | CRITICAL | 9.1 | 0.4% | Feb 27, 2026 | A vulnerability in @fastify/middie versions < 9.2.0 can result in authentication/authorization bypass when using path-sc... |
| CVE-2026-27758 | MEDIUM | 6.5 | 0.1% | Feb 27, 2026 | SODOLA SL902-SWTGW124AS firmware versions through 200.1.20 contain a cross-site request forgery vulnerability in its man... |
| CVE-2026-27757 | HIGH | 7.2 | 0.3% | Feb 27, 2026 | SODOLA SL902-SWTGW124AS firmware versions through 200.1.20 contain an authentication vulnerability that allows authentic... |
| CVE-2026-27756 | MEDIUM | 6.1 | 0.2% | Feb 27, 2026 | SODOLA SL902-SWTGW124AS firmware versions through 200.1.20 contain a reflected cross-site scripting vulnerability in the... |
| CVE-2026-27755 | CRITICAL | 9.8 | 0.4% | Feb 27, 2026 | SODOLA SL902-SWTGW124AS firmware versions through 200.1.20 contain a weak session identifier generation vulnerability th... |
| CVE-2026-27754 | MEDIUM | 6.9 | 0.1% | Feb 27, 2026 | SODOLA SL902-SWTGW124AS firmware versions through 200.1.20 use the cryptographically broken MD5 hash function for sessio... |
| CVE-2026-22716 | MEDIUM | 5 | 0.2% | Feb 27, 2026 | Out-of-bound write vulnerability in VMware Workstation 25H1 and below on any platform allows an actor with non-administr... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now