2026 CVE Vulnerabilities

45,497 CVEs published in 2026.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2026-46705MEDIUM5.3Russh is a Rust SSH client & server library. From version 0.34.0-beta.1 to before version 0.61.0, the russh server authe...
CVE-2026-46523MEDIUM6.2ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2.2...
CVE-2026-45664MEDIUM5.3ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-...
CVE-2026-45624MEDIUM5.1ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-...
CVE-2026-45384MEDIUM6.1bit7z is a cross-platform C++ static library that allows the compression/extraction of archive files. Prior to version 4...
CVE-2026-45359MEDIUM5.7ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-...
CVE-2026-45358MEDIUM5.3ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-...
CVE-2026-45031MEDIUM5.3ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-...
CVE-2026-42326MEDIUM5.1ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-...
CVE-2026-11604MEDIUM6.5An incorrect buffer size calculation in the epoch key generator in OpenVPN ovpn-dco-win version 2.0.0 through 2.8.3 allo...
CVE-2026-0269MEDIUM5.7A memory corruption vulnerability in the processing of tunnel traffic in Palo Alto Networks PAN-OS® software allows an a...
CVE-2026-0268MEDIUM4.4A security control bypass vulnerability in Prisma Access Agent for Linux allows a local attacker to route network traffi...
CVE-2026-0267MEDIUM5.5An information exposure vulnerability in the Palo Alto Networks GlobalProtect app on macOS enables a local user to learn...
CVE-2026-0266MEDIUM4.8A cross-site scripting (XSS) vulnerability in Palo Alto Networks PAN-OS® software enables a malicious authenticated admi...
CVE-2026-50127MEDIUM5.9Weblate is a web based localization tool. From version 5.15 to before version 2026.6, Weblate's VCS_RESTRICT_PRIVATE did...
CVE-2026-46683MEDIUM6.9Snappy is a PHP library allowing thumbnail, snapshot or PDF generation from a url or a html page. Prior to version 1.7.0...
CVE-2026-45106MEDIUM4.6Weblate is a web based localization tool. Prior to version 2026.5, Weblate's live search preview renders unit source and...
CVE-2026-50639MEDIUM6.5Metrics::Any::Adapter::SignalFx versions before 0.04 for Perl does not protect against metric injections. The statsd pr...
CVE-2026-11626MEDIUM5.4CleanWipe Removal Tool (macOS), prior to 16.0.0.65, may be susceptible to an Local Privilege Escalation vulnerability, w...
CVE-2026-10740MEDIUM6.9Unbounded memory allocation in the CRYPTO frame reassembler in s2n-quic before 1.8.2 may allow an unauthenticated remote...
CVE-2026-50569MEDIUM4.3Fission is an open-source, Kubernetes-native serverless framework that simplifies the deployment of functions and applic...
CVE-2026-50565MEDIUM4.9Fission is an open-source, Kubernetes-native serverless framework that simplifies the deployment of functions and applic...
CVE-2026-46642MEDIUM6.1draw.io is a configurable diagramming and whiteboarding application. Prior to version 29.7.12, a crafted .drawio file ca...
CVE-2026-46618MEDIUM6.9Fission is an open-source, Kubernetes-native serverless framework that simplifies the deployment of functions and applic...
CVE-2026-20260MEDIUM4.3In Splunk SOAR (Security Orchestration, Automation, and Response) versions below 8.5.0, an unauthenticated attacker coul...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now