2026 CVE Vulnerabilities
64,763 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-18152 | HIGH | 7.4 | 0.2% | Sep 22, 2026 | IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remote attacker to forge validly-signed messa... |
| CVE-2026-18137 | HIGH | 8.1 | 0.5% | Sep 22, 2026 | IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remote attacker to execute arbitrary ESQL com... |
| CVE-2026-18134 | HIGH | 7.5 | 0.2% | Sep 22, 2026 | IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remote attacker to obtain sensitive informati... |
| CVE-2026-18131 | HIGH | 8.2 | 0.4% | Sep 22, 2026 | IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remote attacker to execute arbitrary JavaScri... |
| CVE-2026-18123 | HIGH | 7.6 | 0.6% | Sep 22, 2026 | IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remote attacker to cause a denial of service ... |
| CVE-2026-18095 | HIGH | 8.5 | 0.6% | Sep 22, 2026 | IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remote authenticated attacker to execute arbi... |
| CVE-2026-18074 | HIGH | 8.2 | 0.6% | Sep 22, 2026 | IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remote attacker to perform unauthorized actio... |
| CVE-2026-18066 | HIGH | 7.9 | 0.2% | Sep 22, 2026 | IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a local attacker to obtain sensitive informatio... |
| CVE-2026-17647 | HIGH | 8.8 | 0.2% | Sep 22, 2026 | IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a local attacker to execute arbitrary commands ... |
| CVE-2026-17646 | HIGH | 8.5 | 0.4% | Sep 22, 2026 | IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remote authenticated attacker to obtain sensi... |
| CVE-2026-17644 | HIGH | 8.8 | 0.1% | Sep 22, 2026 | IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a local attacker to gain unauthorized access to... |
| CVE-2026-17643 | HIGH | 8.8 | 0.1% | Sep 22, 2026 | IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a local attacker to obtain sensitive informatio... |
| CVE-2026-17637 | HIGH | 8.8 | 0.7% | Sep 22, 2026 | IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow an adjacent-network attacker to execute arbitra... |
| CVE-2026-17636 | HIGH | 8.8 | 0.7% | Sep 22, 2026 | IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remote authenticated attacker to execute arbi... |
| CVE-2026-17618 | HIGH | 7.3 | 0.4% | Sep 22, 2026 | IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remote unauthenticated attacker to view and m... |
| CVE-2026-17102 | HIGH | 8.8 | 0.6% | Sep 22, 2026 | IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to execute arbitrary commands du... |
| CVE-2026-16672 | HIGH | 8.8 | 0.5% | Sep 22, 2026 | IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to execute arbitrary code due to... |
| CVE-2026-16469 | HIGH | 8.8 | 0.9% | Sep 22, 2026 | IBM DataStage on Cloud Pak for Data 5.4.0.0 px-runtime could allow a remote authenticated attacker to execute arbitrary ... |
| CVE-2026-16468 | HIGH | 8.8 | 1.7% | Sep 22, 2026 | IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to execute arbitrary commands du... |
| CVE-2026-96269 | HIGH | 7.5 | 0.2% | Sep 22, 2026 | GNU Emacs 28.1 through 31.1 allows arbitrary code execution upon opening a file, because an untrusted value of read-symb... |
| CVE-2026-95814 | HIGH | 8.1 | 0.4% | Sep 22, 2026 | Vaultwarden through 1.37.3 omits organization membership status validation from three cipher access-restriction queries,... |
| CVE-2026-94450 | HIGH | 7.5 | 1.9% | Sep 22, 2026 | Improper validation of the Destination Connection ID length in s2n-quic 1.88.0 and earlier may allow an unauthenticated ... |
| CVE-2026-91018 | HIGH | 8.8 | 0.4% | Sep 22, 2026 | lwIP (Lightweight IP) has a double free vulnerability, which could crash the system, cause a DoS, memory corruption, or ... |
| CVE-2026-77912 | HIGH | 7.4 | 0.4% | Sep 22, 2026 | A stored cross-site scripting (XSS) vulnerability was identified in GitHub Enterprise Server that allowed an authenticat... |
| CVE-2026-77426 | HIGH | 7.1 | 0.5% | Sep 22, 2026 | Unleash is an open-source feature management platform. Prior to 8.0.3, the Unleash admin API contains five authorization... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now