2026 CVE Vulnerabilities

43,261 CVEs published in 2026.

Filter:LOWClear
CVE IDSeverityCVSSDescription
CVE-2026-9567LOW3.3A security flaw has been discovered in GPAC up to 2.4.0. Affected is the function MergeFragment of the file src/isomedia...
CVE-2026-42448LOW3.5Magic Wormhole makes it possible to get arbitrary-sized files and directories from one computer to another. Prior to 0.2...
CVE-2026-9564LOW2.4A vulnerability was found in SourceCodester/oretnom23 Hospitals Patient Records Management System 1.0. The impacted elem...
CVE-2026-47716LOW3.1Bugsink is a self-hosted error tracking tool. Prior to 2.2.0, In affected versions, the issue list view authorizes acces...
CVE-2026-47715LOW3.1Bugsink is a self-hosted error tracking tool. Prior to 2.2.0, Bugsink issue event pages accept a direct event identifier...
CVE-2026-44410LOW3.8This vulnerability stems from a business logic flaw.Attackers can exploit legitimate application functions in unintended...
CVE-2026-9530LOW3.3A weakness has been identified in GNU LibreDWG up to 0.14. The impacted element is the function read_2004_compressed_sec...
CVE-2026-9529LOW3.3A security flaw has been discovered in GNU LibreDWG up to 0.14. The affected element is the function match_BLOCK_HEADER ...
CVE-2026-9504LOW3.3A weakness has been identified in GNU LibreDWG up to 0.14. Affected is the function bit_convert_TU of the file programs/...
CVE-2026-9503LOW3.3A security flaw has been discovered in GNU LibreDWG up to 0.14. This impacts the function dwg_next_entity of the file sr...
CVE-2026-9501LOW3.3A vulnerability was determined in GNU LibreDWG up to 0.14. The impacted element is the function decompress_R2004_section...
CVE-2026-48852LOW3.7PuTTY 0.71 before 0.84 has an assertion failure in ECDSA signature verification.
CVE-2026-48851LOW3.1PuTTY 0.77 before 0.84 uses a copy of the PuTTY icon as a trust indication for TELNET data but the trust status is not c...
CVE-2026-9485LOW3.5A vulnerability was identified in SourceCodester Student Grades Management System 1.0. Affected by this issue is some un...
CVE-2026-48847LOW3.7Roundcube Webmail 1.6.x before 1.6.16, and 1.7.x before 1.7.1 allows pre-authentication arbitrary file deletion via redi...
CVE-2026-9471LOW3.5A vulnerability was detected in yashpokharna2555 StudentManagementSystem cb2f558ddf8d19396de0f92abf2d224d46a0a203. This ...
CVE-2026-9414LOW3.5A security flaw has been discovered in SourceCodester Indian Invoicing System up to 0.x/1.0. The impacted element is an ...
CVE-2026-48832LOW3.5action/cookie.php in ecrire in SPIP before 4.4.15 is prone to an open redirect vulnerability.
CVE-2026-9398LOW3.1A security vulnerability has been detected in Besen BS20 EV Charging Station up to 20260426. This affects an unknown par...
CVE-2026-9396LOW3.7A security flaw has been discovered in Besen BS20 EV Charging Station up to 20260426. Affected by this vulnerability is ...
CVE-2026-9395LOW3.5A vulnerability was identified in Besen BS20 EV Charging Station up to 20260426. Affected is an unknown function of the ...
CVE-2026-9394LOW3.1A vulnerability was determined in Besen BS20 EV Charging Station up to 20260426. This impacts an unknown function of the...
CVE-2026-9377LOW2.4A vulnerability was identified in SourceCodester SUP Online Shopping 1.0. The impacted element is an unknown function of...
CVE-2026-9370LOW3.7A weakness has been identified in ulisesbocchio jasypt-spring-boot up to 3.0.5/4.0.4. Affected by this vulnerability is ...
CVE-2026-9357LOW3.5A vulnerability was found in vBulletin 6.x. This impacts an unknown function of the component Login. Performing a manipu...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now