2026 CVE Vulnerabilities

47,166 CVEs published in 2026.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2026-34058HIGH8.8Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to 4.0.0-beta....
CVE-2026-34057HIGH8.8Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to 4.0.0-beta....
CVE-2026-34044HIGH7.7Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to 4.0.0-beta....
CVE-2026-34035HIGH8.8Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to 4.0.0-beta....
CVE-2026-34034HIGH8.8Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to 4.0.0-beta....
CVE-2026-53646HIGH7.7FOSSBilling is a free, open-source billing and client management system. In versions 0.5.6 through 0.7.2, when a `Client...
CVE-2026-53645HIGH8.5FOSSBilling is a free, open-source billing and client management system. Versions prior to 0.8.0 allow a low-privileged ...
CVE-2026-53644HIGH8.6FOSSBilling is a free, open-source billing and client management system. Versions 0.5.3 through 0.7.2 allow authenticate...
CVE-2026-53643HIGH8.7FOSSBilling is a free, open-source billing and client management system. Versions prior to 0.8.0 allow low-privileged st...
CVE-2026-43921HIGH8.9FOSSBilling is a free, open-source billing and client management system. Versions 0.6.10 through 0.7.2 have a PHP code i...
CVE-2026-43918HIGH8.7FOSSBilling is a free, open-source billing and client management system. Prior to version 0.8.0, when a client or staff/...
CVE-2026-42204HIGH8.8Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. From 4.0.0-beta.471 ...
CVE-2026-42153HIGH8.8Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to 4.0.0-beta....
CVE-2026-38976HIGH7.5mrubyc through 3.4.1 was found to contain a NULL pointer dereference in src/vm.c in op_super() / OP_SUPER due to a missi...
CVE-2026-34599HIGH8.8Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to 4.0.0-beta....
CVE-2026-34153HIGH8.8Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to 4.0.0-beta....
CVE-2026-59713HIGH8.6Leantime contains an OIDC login CSRF vulnerability in the verifyState() method that unconditionally returns true without...
CVE-2026-59712HIGH8.6Leantime's Users::getUser method in the JSON-RPC API lacks proper authorization checks, allowing authenticated users to ...
CVE-2026-57573HIGH8.6Crawl4AI is an open-source LLM-friendly web crawler and scraper. Prior to 0.9.0, the Docker API server applied its SSRF ...
CVE-2026-55727HIGH7.5A flaw in the authentication mechanism for video stream requests in Genetec Security Center 5.14.0.0 prior to build 5.14...
CVE-2026-55574HIGH7.5vLLM is a high-throughput and memory-efficient inference and serving engine for LLMs. Prior to 0.24.0, the structured_ou...
CVE-2026-54765HIGH8.5Traefik is an open source HTTP reverse proxy and load balancer. From v3.7.0 prior to v3.7.6, Traefik's Kubernetes Gatewa...
CVE-2026-54234HIGH7.5vLLM is a high-throughput and memory-efficient inference and serving engine for LLMs. Prior to 0.24.0, a frontend-legal ...
CVE-2026-42331HIGH7.7FOSSBilling is a free, open-source billing and client management system. Prior to version 0.8.0, the Guest API invoice/u...
CVE-2026-25271HIGH7Memory Corruption when processing asynchronous input parameters due to improper handling of modified values between chec...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now