2026 CVE Vulnerabilities

45,449 CVEs published in 2026.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2026-47268MEDIUM6.4Nezha Monitoring is a self-hostable, lightweight, servers and websites monitoring and O&M tool. From version 0.20.0 to b...
CVE-2026-47124MEDIUM6.5Nezha Monitoring is a self-hostable, lightweight, servers and websites monitoring and O&M tool. From version 1.4.0 to be...
CVE-2026-41155MEDIUM5.5An attacker could cooperatively pass data from one secure GPU process to another secure GPU process through shared secur...
CVE-2026-12131MEDIUM6.3A weakness has been identified in CodeAstro Human Resource Management System 1.0. This vulnerability affects the functio...
CVE-2026-54397MEDIUM6.1A vulnerability in MISP’s non-REST event editing path allowed an authenticated user with event edit permissions to manip...
CVE-2026-54396MEDIUM5.3An information disclosure vulnerability exists in the MISP AuthKey edit functionality. When a validation error occurs du...
CVE-2026-54395MEDIUM5.3MISP contains a reflected cross-site scripting vulnerability in the UiBeta event index view. The urlparams value is inse...
CVE-2026-54394MEDIUM5.3MISP contains a path traversal vulnerability in OrganisationsController::getOrgLogo. The vulnerable code builds organisa...
CVE-2026-54393MEDIUM5.1A stored cross-site scripting vulnerability exists in MISP when the Overmind theme is used. The setHomePage endpoint pre...
CVE-2026-54362MEDIUM5.3An incorrect visibility condition in the MISP event template builder allowed authenticated non-site-admin users to view ...
CVE-2026-53606MEDIUM5.4ApostropheCMS is an open-source Node.js content management system, and sanitize-html provides a simple HTML sanitizer wi...
CVE-2026-47264MEDIUM5.3Discourse is an open-source discussion platform. From versions 2026.1.0-latest to before 2026.1.4, 2026.3.0-latest to be...
CVE-2026-47263MEDIUM4.3Discourse is an open-source discussion platform. From versions 2026.1.0-latest to before 2026.1.4, 2026.3.0-latest to be...
CVE-2026-45775MEDIUM6.8Discourse is an open-source discussion platform. From versions 2026.1.0-latest to before 2026.1.4, 2026.3.0-latest to be...
CVE-2026-45085MEDIUM5.3Discourse is an open-source discussion platform. From versions 2026.1.0-latest to before 2026.1.4, 2026.3.0-latest to be...
CVE-2026-45014MEDIUM5.3ApostropheCMS is an open-source Node.js content management system. Versions up to and including 4.29.0 are vulnerable to...
CVE-2026-44785MEDIUM4.3Discourse is an open-source discussion platform. From versions 2026.1.0-latest to before 2026.1.4, 2026.3.0-latest to be...
CVE-2026-44784MEDIUM6.5Discourse is an open-source discussion platform. From versions 2026.1.0-latest to before 2026.1.4, 2026.3.0-latest to be...
CVE-2026-44783MEDIUM5.4Discourse is an open-source discussion platform. From versions 2026.1.0-latest to before 2026.1.4, 2026.3.0-latest to be...
CVE-2026-44782MEDIUM4.3Discourse is an open-source discussion platform. From versions 2026.1.0-latest to before 2026.1.4, 2026.3.0-latest to be...
CVE-2026-44780MEDIUM4.3Discourse is an open-source discussion platform. From versions 2026.1.0-latest to before 2026.1.4, 2026.3.0-latest to be...
CVE-2026-44779MEDIUM4.3Discourse is an open-source discussion platform. From versions 2026.1.0-latest to before 2026.1.4, 2026.3.0-latest to be...
CVE-2026-42853MEDIUM6.5ApostropheCMS is an open-source Node.js content management system. Versions of the @apostrophecms/cli package up to and ...
CVE-2026-24618MEDIUM4.3Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in HashThemes Hash Elements all...
CVE-2026-54357MEDIUM5.1An improper authorization vulnerability in MISP allowed an authenticated organization administrator to access or modify ...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now