2026 CVE Vulnerabilities
45,497 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-46705 | MEDIUM | 5.3 | 0.2% | Jun 10, 2026 | Russh is a Rust SSH client & server library. From version 0.34.0-beta.1 to before version 0.61.0, the russh server authe... |
| CVE-2026-46523 | MEDIUM | 6.2 | 0.3% | Jun 10, 2026 | ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2.2... |
| CVE-2026-45664 | MEDIUM | 5.3 | 0.4% | Jun 10, 2026 | ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-... |
| CVE-2026-45624 | MEDIUM | 5.1 | 0.1% | Jun 10, 2026 | ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-... |
| CVE-2026-45384 | MEDIUM | 6.1 | 0.1% | Jun 10, 2026 | bit7z is a cross-platform C++ static library that allows the compression/extraction of archive files. Prior to version 4... |
| CVE-2026-45359 | MEDIUM | 5.7 | 0.1% | Jun 10, 2026 | ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-... |
| CVE-2026-45358 | MEDIUM | 5.3 | 0.2% | Jun 10, 2026 | ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-... |
| CVE-2026-45031 | MEDIUM | 5.3 | 0.5% | Jun 10, 2026 | ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-... |
| CVE-2026-42326 | MEDIUM | 5.1 | 0.1% | Jun 10, 2026 | ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-... |
| CVE-2026-11604 | MEDIUM | 6.5 | 0.1% | Jun 10, 2026 | An incorrect buffer size calculation in the epoch key generator in OpenVPN ovpn-dco-win version 2.0.0 through 2.8.3 allo... |
| CVE-2026-0269 | MEDIUM | 5.7 | 0.2% | Jun 10, 2026 | A memory corruption vulnerability in the processing of tunnel traffic in Palo Alto Networks PAN-OS® software allows an a... |
| CVE-2026-0268 | MEDIUM | 4.4 | 0.1% | Jun 10, 2026 | A security control bypass vulnerability in Prisma Access Agent for Linux allows a local attacker to route network traffi... |
| CVE-2026-0267 | MEDIUM | 5.5 | 0.1% | Jun 10, 2026 | An information exposure vulnerability in the Palo Alto Networks GlobalProtect app on macOS enables a local user to learn... |
| CVE-2026-0266 | MEDIUM | 4.8 | 0.1% | Jun 10, 2026 | A cross-site scripting (XSS) vulnerability in Palo Alto Networks PAN-OS® software enables a malicious authenticated admi... |
| CVE-2026-50127 | MEDIUM | 5.9 | 0.3% | Jun 10, 2026 | Weblate is a web based localization tool. From version 5.15 to before version 2026.6, Weblate's VCS_RESTRICT_PRIVATE did... |
| CVE-2026-46683 | MEDIUM | 6.9 | 0.2% | Jun 10, 2026 | Snappy is a PHP library allowing thumbnail, snapshot or PDF generation from a url or a html page. Prior to version 1.7.0... |
| CVE-2026-45106 | MEDIUM | 4.6 | 0.2% | Jun 10, 2026 | Weblate is a web based localization tool. Prior to version 2026.5, Weblate's live search preview renders unit source and... |
| CVE-2026-50639 | MEDIUM | 6.5 | 0.3% | Jun 10, 2026 | Metrics::Any::Adapter::SignalFx versions before 0.04 for Perl does not protect against metric injections. The statsd pr... |
| CVE-2026-11626 | MEDIUM | 5.4 | 0.1% | Jun 10, 2026 | CleanWipe Removal Tool (macOS), prior to 16.0.0.65, may be susceptible to an Local Privilege Escalation vulnerability, w... |
| CVE-2026-10740 | MEDIUM | 6.9 | 0.3% | Jun 10, 2026 | Unbounded memory allocation in the CRYPTO frame reassembler in s2n-quic before 1.8.2 may allow an unauthenticated remote... |
| CVE-2026-50569 | MEDIUM | 4.3 | 0.2% | Jun 10, 2026 | Fission is an open-source, Kubernetes-native serverless framework that simplifies the deployment of functions and applic... |
| CVE-2026-50565 | MEDIUM | 4.9 | 0.3% | Jun 10, 2026 | Fission is an open-source, Kubernetes-native serverless framework that simplifies the deployment of functions and applic... |
| CVE-2026-46642 | MEDIUM | 6.1 | 0.2% | Jun 10, 2026 | draw.io is a configurable diagramming and whiteboarding application. Prior to version 29.7.12, a crafted .drawio file ca... |
| CVE-2026-46618 | MEDIUM | 6.9 | 0.4% | Jun 10, 2026 | Fission is an open-source, Kubernetes-native serverless framework that simplifies the deployment of functions and applic... |
| CVE-2026-20260 | MEDIUM | 4.3 | 0.2% | Jun 10, 2026 | In Splunk SOAR (Security Orchestration, Automation, and Response) versions below 8.5.0, an unauthenticated attacker coul... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now