2026 CVE Vulnerabilities
48,306 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-46405 | MEDIUM | 5.3 | 0.4% | Aug 7, 2026 | OpenBao is an open source identity-based secrets management system. Prior to version 2.5.4, in OpenBao's Kerberos auth m... |
| CVE-2026-45808 | HIGH | 7.1 | 0.3% | Aug 7, 2026 | OpenBao is an open source identity-based secrets management system. Prior to version 2.5.4, OpenBao's namespaces provide... |
| CVE-2026-11743 | MEDIUM | 6.6 | 0.1% | Aug 7, 2026 | The SF32LB MPI QSPI NOR flash driver (drivers/flash/flash_sf32lb_mpi_qspi_nor.c) validated the flash offset and length o... |
| CVE-2026-11742 | LOW | 3.6 | 0.1% | Aug 7, 2026 | The kernel queue helper z_queue_node_peek() in kernel/queue.c dereferences a node taken from a queue's data_q list, read... |
| CVE-2026-9031 | MEDIUM | 6.8 | 0.2% | Aug 7, 2026 | An input validation vulnerability exists in the HTTP-WRITEOEM handler due to insufficient validation of user-supplied da... |
| CVE-2026-9030 | MEDIUM | 6.8 | 0.1% | Aug 7, 2026 | A denial-of-service vulnerability exists in httpd service on Archer A6 v4 where the asynchronous systool instruction han... |
| CVE-2026-71381 | MEDIUM | 4 | 0.2% | Aug 7, 2026 | Adobe Genuine Software Integrity Service on Windows is affected by an Incorrect Authorization vulnerability that could r... |
| CVE-2026-70624 | — | — | — | Aug 7, 2026 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2026-70623 | — | — | — | Aug 7, 2026 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2026-69207 | MEDIUM | 5.3 | 0.7% | Aug 7, 2026 | Hono is a Web application framework that provides support for any JavaScript runtime. Prior to 4.12.34, the built-in COR... |
| CVE-2026-66061 | HIGH | 7.1 | 0.1% | Aug 7, 2026 | Home Assistant is open source home automation software focused on local control and privacy. Prior to 2026.5.0, the iOS... |
| CVE-2026-66060 | HIGH | 7.1 | 0.1% | Aug 7, 2026 | Home Assistant is open source home automation software focused on local control and privacy. Prior to 2026.5.3, the Co... |
| CVE-2026-59717 | MEDIUM | 4.3 | — | Aug 7, 2026 | Home Assistant is open source home automation software focused on local control and privacy. Prior to 2026.6.1, the Andr... |
| CVE-2026-54338 | MEDIUM | 5.3 | 0.3% | Aug 7, 2026 | JupyterHub is software that allows users to create a multi-user server for Jupyter notebooks. Prior to 5.5.0, invalid in... |
| CVE-2026-50540 | CRITICAL | 9.6 | 0.4% | Aug 7, 2026 | Kata Containers is an open source project focusing on a standard implementation of lightweight Virtual Machines (VMs) th... |
| CVE-2026-47664 | HIGH | 8.6 | 0.1% | Aug 7, 2026 | Pathling is a set of tools that make it easier to use FHIR and clinical terminology within health data analytics. Prior ... |
| CVE-2026-47663 | HIGH | 8.7 | 0.2% | Aug 7, 2026 | Pathling is a set of tools that make it easier to use FHIR and clinical terminology within health data analytics. Prior ... |
| CVE-2026-47662 | HIGH | 8.7 | 0.2% | Aug 7, 2026 | Pathling is a set of tools that make it easier to use FHIR and clinical terminology within health data analytics. Prior ... |
| CVE-2026-46358 | MEDIUM | 5.4 | 0.1% | Aug 7, 2026 | OpenBao is an open source identity-based secrets management system. Prior to version 2.5.4, OpenBao's inline auth functi... |
| CVE-2026-19246 | MEDIUM | 6.3 | 0.2% | Aug 7, 2026 | A vulnerability has been found in HKUDS nanobot up to 0.2.1. This affects the function _download_image_data_url of the f... |
| CVE-2026-19245 | LOW | 3.3 | 0.1% | Aug 7, 2026 | A flaw has been found in HKUDS nanobot up to 0.2.1. The impacted element is the function ExecTool._prepare_command of th... |
| CVE-2026-19244 | MEDIUM | 4.7 | 0.3% | Aug 7, 2026 | A vulnerability was detected in HKUDS nanobot up to 0.2.1. The affected element is the function connect_mcp_servers of t... |
| CVE-2026-11425 | MEDIUM | 4.4 | 0.2% | Aug 7, 2026 | Domoticz versions prior to 2026.3 contains a stored cross-site scripting vulnerability in the mobile dashboard that allo... |
| CVE-2026-71870 | MEDIUM | 4.8 | 0.1% | Aug 7, 2026 | pypdf is a free and open-source pure-python PDF library. Prior to 6.15.0, a crafted PDF can cause large memory consumpti... |
| CVE-2026-66151 | MEDIUM | 5.5 | 0.2% | Aug 7, 2026 | SonicWall Global VPN Client version 4.10.8.1108 and earlier is vulnerable to an out-of-bounds kernel memory read in the ... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now