2026 CVE Vulnerabilities
47,106 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-11340 | HIGH | 8.3 | — | Jul 7, 2026 | Missing Authorization vulnerability in HAVELSAN Inc. Liman MYS allows Accessing Functionality Not Properly Constrained b... |
| CVE-2026-14476 | HIGH | 8 | 0.7% | Jul 7, 2026 | A path traversal flaw was found in SSSD's AD GPO provider. The ad_gpo_extract_smb_components() function does not sanitiz... |
| CVE-2026-14474 | HIGH | 8.8 | 0.6% | Jul 7, 2026 | A flaw was found in SSSD's LDAP sudo provider. When the ldap_sudo_search_base option is not explicitly configured, SSSD ... |
| CVE-2026-11610 | HIGH | 8.8 | 0.6% | Jul 7, 2026 | A heap buffer overflow flaw was found in the SASL I/O layer of 389 Directory Server (389-ds-base). After a successful SA... |
| CVE-2026-58384 | HIGH | 7.8 | 0.2% | Jul 7, 2026 | A flaw was found in GIMP's PSD parser. An integer overflow in read_RLE_channel() can cause an undersized heap allocation... |
| CVE-2026-8377 | HIGH | 8.2 | 0.2% | Jul 7, 2026 | Missing Authorization vulnerability in Armiya Information Technologies Ltd. Co. Access Control System (GKS) allows Colle... |
| CVE-2026-5799 | HIGH | 7.5 | 0.2% | Jul 7, 2026 | Authorization bypass through User-Controlled key vulnerability in Idvlabs Software and Consulting Services Inc. Ontime a... |
| CVE-2026-5730 | HIGH | 7.5 | 0.2% | Jul 7, 2026 | Authorization bypass through User-Controlled key vulnerability in Idvlabs Software and Consulting Services Inc. Ontime a... |
| CVE-2026-57871 | HIGH | 7.1 | 0.4% | Jul 7, 2026 | Relative path traversal vulnerability in MicroRealEstate file upload functionality allows attackers to potentially overw... |
| CVE-2026-57869 | HIGH | 7.1 | 0.2% | Jul 7, 2026 | Broken object-level access controls and the use of a deterministic pattern during random ID generation in MicroRealEstat... |
| CVE-2026-57868 | HIGH | 7.1 | 0.2% | Jul 7, 2026 | MicroRealEstate is affected by broken object-level access controls in PDF generator functionality. This issue affects M... |
| CVE-2026-57867 | HIGH | 8.8 | 0.3% | Jul 7, 2026 | MicroRealEstate allows adversaries to bypass authentication due to a lack of token state management. This would permit a... |
| CVE-2026-12277 | HIGH | 8.7 | 0.1% | Jul 7, 2026 | The Frontend File Manager Plugin WordPress plugin through 23.6 does not validate a file path derived from user input bef... |
| CVE-2026-34158 | HIGH | 8.8 | 0.4% | Jul 7, 2026 | Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to 4.0.0-beta.... |
| CVE-2026-42200 | HIGH | 8.8 | — | Jul 7, 2026 | Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to 4.0.0-beta.... |
| CVE-2026-42143 | HIGH | 8.8 | 0.4% | Jul 7, 2026 | Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to 4.0.0-beta.... |
| CVE-2026-34171 | HIGH | 8 | — | Jul 7, 2026 | Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to 4.0.0-beta.... |
| CVE-2026-34168 | HIGH | 8.8 | 0.4% | Jul 7, 2026 | Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to 4.0.0-beta.... |
| CVE-2026-34152 | HIGH | 8.8 | 0.4% | Jul 7, 2026 | Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to 4.0.0-beta.... |
| CVE-2026-34058 | HIGH | 8.8 | 0.4% | Jul 7, 2026 | Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to 4.0.0-beta.... |
| CVE-2026-34057 | HIGH | 8.8 | 0.3% | Jul 7, 2026 | Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to 4.0.0-beta.... |
| CVE-2026-34044 | HIGH | 7.7 | 0.2% | Jul 7, 2026 | Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to 4.0.0-beta.... |
| CVE-2026-34035 | HIGH | 8.8 | 0.3% | Jul 7, 2026 | Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to 4.0.0-beta.... |
| CVE-2026-34034 | HIGH | 8.8 | — | Jul 7, 2026 | Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to 4.0.0-beta.... |
| CVE-2026-53646 | HIGH | 7.7 | 0.2% | Jul 6, 2026 | FOSSBilling is a free, open-source billing and client management system. In versions 0.5.6 through 0.7.2, when a `Client... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now