2026 CVE Vulnerabilities
45,428 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-10836 | MEDIUM | 5.1 | 0.3% | Jun 17, 2026 | Improper handling of HTTP headers that allows a remote attacker to manipulate the value of the Host header using special... |
| CVE-2026-0064 | MEDIUM | 5.5 | 0.1% | Jun 17, 2026 | In multiple places, there is a possible persistent denial of service due to resource exhaustion. This could lead to loca... |
| CVE-2026-46979 | MEDIUM | 6.5 | 0.3% | Jun 17, 2026 | Vulnerability in the PeopleSoft Enterprise CS Campus Community product of Oracle PeopleSoft (component: Integration and ... |
| CVE-2026-46877 | MEDIUM | 6 | 0.2% | Jun 17, 2026 | Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: VMSVGA device). The supported v... |
| CVE-2026-46871 | MEDIUM | 6.5 | 0.3% | Jun 17, 2026 | Vulnerability in the MySQL Shell product of Oracle MySQL (component: Shell for VS Code). The supported version that is... |
| CVE-2026-46869 | MEDIUM | 6.5 | 0.2% | Jun 17, 2026 | Vulnerability in the MySQL Shell product of Oracle MySQL (component: Shell: Dump and Load). Supported versions that are... |
| CVE-2026-46825 | MEDIUM | 6 | 0.2% | Jun 17, 2026 | Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: VMSVGA device). The supported v... |
| CVE-2026-46812 | MEDIUM | 6.1 | 0.2% | Jun 17, 2026 | Vulnerability in the Oracle Access Manager product of Oracle Fusion Middleware (component: Authentication Engine). Supp... |
| CVE-2026-46810 | MEDIUM | 6.5 | 0.3% | Jun 17, 2026 | Vulnerability in the Identity Manager product of Oracle Fusion Middleware (component: End User Self Service). Supported... |
| CVE-2026-46790 | MEDIUM | 5.3 | 0.3% | Jun 17, 2026 | Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Content Server). The sup... |
| CVE-2026-46772 | MEDIUM | 4.7 | 0.1% | Jun 17, 2026 | Vulnerability in the Oracle Application Development Framework (ADF) product of Oracle Fusion Middleware (component: ADF ... |
| CVE-2026-46771 | MEDIUM | 4.1 | 0.1% | Jun 17, 2026 | Vulnerability in the Oracle Application Development Framework (ADF) product of Oracle Fusion Middleware (component: Java... |
| CVE-2026-46770 | MEDIUM | 6.1 | 0.2% | Jun 17, 2026 | Vulnerability in the Oracle Application Development Framework (ADF) product of Oracle Fusion Middleware (component: Secu... |
| CVE-2026-46768 | MEDIUM | 6 | 0.1% | Jun 17, 2026 | Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: VMSVGA device). The supported v... |
| CVE-2026-35291 | MEDIUM | 6.6 | 0.4% | Jun 17, 2026 | Vulnerability in the WebLogic Server product of Oracle Fusion Middleware (component: Console). Supported versions that ... |
| CVE-2026-35261 | MEDIUM | 6.5 | 0.3% | Jun 17, 2026 | Vulnerability in the Oracle Access Manager product of Oracle Fusion Middleware (component: Authentication Engine). Supp... |
| CVE-2026-12425 | MEDIUM | 6.1 | 0.3% | Jun 16, 2026 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in PowerSchool... |
| CVE-2026-12117 | MEDIUM | 4.3 | 0.2% | Jun 16, 2026 | Improper access control in the social login connection endpoint in Devolutions Server 2026.2.5 allows an authenticated ... |
| CVE-2026-12105 | MEDIUM | 6.5 | 0.2% | Jun 16, 2026 | Improper access control in Devolutions Server 2026.2.5, 2026.1.21 allows an authenticated user to access attachments vi... |
| CVE-2026-11890 | MEDIUM | 4.3 | 0.2% | Jun 16, 2026 | Improper access control in PAM account discovery results in Devolutions Server 2026.2.5, 2026.1.21 allows an authentica... |
| CVE-2026-0165 | MEDIUM | 5.7 | 0.2% | Jun 16, 2026 | In several functions of the RTCP packet decoder, there is a possible out-of-bounds read due to a missing bounds check. T... |
| CVE-2026-0157 | MEDIUM | 4.3 | 0.2% | Jun 16, 2026 | In RtcpHeader::decodeRtcpHeader, there is a possible OOB read due to a missing bounds check. This could lead to remote i... |
| CVE-2026-0155 | MEDIUM | 4.3 | 0.2% | Jun 16, 2026 | In ImsMediaBitReader::ReadByteBuffer, there is a possible OOB read due to a missing bounds check. This could lead to rem... |
| CVE-2026-0144 | MEDIUM | 6.5 | 0.3% | Jun 16, 2026 | In writeAocCommand of AocAudioCodec.cpp, there is a possible memory safety issue due to a missing bounds check. This cou... |
| CVE-2026-0141 | MEDIUM | 4.3 | 0.2% | Jun 16, 2026 | In decodeAppPacket of RtcpAppPacket.cpp, there is a possible OOB read due to a missing bounds check. This could lead to ... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now