2026 CVE Vulnerabilities

47,548 CVEs published in 2026.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2026-55952HIGH7.5The Erlang/OTP ssl application does not validate that the PSK identity list and binder list carried in a TLS 1.3 ClientH...
CVE-2026-50281HIGH7.1Craft CMS is a content management system (CMS). Versions 5.7.0 and above, prior to 5.9.21 contain a mass-assignment flaw...
CVE-2026-44941HIGH8.8A relative path traversal in the "keyhint" option in repomd.xml parsing of libzypp before 17.38.12 can be used by attack...
CVE-2026-9272HIGH8.1In Progress Flowmon ADS versions prior to 12.5.6 and 13.0.5, a vulnerability exists whereby an adversary who is authenti...
CVE-2026-8079HIGH7.3In Progress Flowmon versions prior to 12.5.9 and 13.0.11, a vulnerability exists whereby an authenticated low-privileged...
CVE-2026-56842HIGH7.5A malicious actor with access to the network and under certain conditions could exploit an Incorrect Authorization vulne...
CVE-2026-56841HIGH8.8A malicious actor with access to the network and low privileges could exploit an authenticated SQL Injection vulnerabili...
CVE-2026-55119HIGH8.1A malicious actor with access to the network and low privileges could exploit an Improper Access Control vulnerability f...
CVE-2026-55118HIGH8.3A malicious actor with access to the network,low privileges and under certain conditions could exploit an Improper Acces...
CVE-2026-55117HIGH8.6A malicious actor with access to the network could exploit a Path Traversal vulnerability found in UniFi Access Applicat...
CVE-2026-55114HIGH8.8A malicious actor with access to the network and low privileges could exploit an Improper Access Control vulnerability f...
CVE-2026-55113HIGH7.5A malicious actor with access to the network could exploit a Server-Side Request Forgery (SSRF) vulnerability found in U...
CVE-2026-55112HIGH8.8A malicious actor with access to the network and low privileges and under certain conditions could exploit an Improper A...
CVE-2026-55111HIGH7.5A malicious actor with access to the network could exploit a Path Traversal vulnerability found in UniFi Protect Floodli...
CVE-2026-54409HIGH8.1A malicious actor with access to the network and under certain conditions could exploit an Improper Initialization vulne...
CVE-2026-54407HIGH8.6A malicious actor with access to the network could exploit an Improper Access Control vulnerability found in UniFi Prote...
CVE-2026-54406HIGH8.7A malicious actor with access to the network and high privileges could exploit a Path Traversal vulnerability found in s...
CVE-2026-54405HIGH7.5A malicious actor with access to the network could exploit an Improper Input Validation vulnerability found in UniFi Net...
CVE-2026-54404HIGH8.8A malicious actor with access to the network and low privileges could exploit a series of authenticated SQL Injection vu...
CVE-2026-54403HIGH8.6A malicious actor with access to the network could exploit a Path Traversal vulnerability found in certain devices runni...
CVE-2026-54402HIGH8.8A malicious actor with access to the network and low privileges could exploit an Improper Input Validation vulnerability...
CVE-2026-54401HIGH8.8A malicious actor with access to the network and low privileges could exploit a Server-Side Request Forgery (SSRF) to es...
CVE-2026-53358HIGH8.8In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: use chan timer to close channels ...
CVE-2026-53357HIGH8In the Linux kernel, the following vulnerability has been resolved: Bluetooth: fix UAF in l2cap_sock_cleanup_listen() v...
CVE-2026-12168HIGH7.8An improper validation vulnerability for driver `GFAC_Sys_x64.sys` in Little Orbit GFAC allows a local attacker to escal...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now