2026 CVE Vulnerabilities

43,261 CVEs published in 2026.

Filter:LOWClear
CVE IDSeverityCVSSDescription
CVE-2026-9306LOW3.7A security vulnerability has been detected in QuantumNous new-api up to 0.12.1. This affects the function RelayMidjourne...
CVE-2026-39824LOW3.3NewNTUnicodeString does not check for string length overflow. When provided with a string that overflows the maximum siz...
CVE-2026-39967LOW3.1TypeBot is a chatbot builder tool. In versions 3.15.2 and prior, the bot engine's the findResult query does not filter r...
CVE-2026-9249LOW3.1Unverified password change in Devolutions Server allows an attacker to change a user's password without providing the pr...
CVE-2026-9248LOW2.6Authorization bypass in the entry duplication feature in Devolutions Server allows an authenticated user with write acce...
CVE-2026-9247LOW2.4Insufficient logging in the entry export feature in Devolutions Server allows an authenticated user with export permissi...
CVE-2026-8477LOW2.7Improper enforcement of the sealed-entry workflow in the entry sensitive-data retrieval feature in Devolutions Server al...
CVE-2026-25608LOW2.3STER uses unencrypted TCP traffic to transmit data over the network. It allows an attacker to conduct a Man-In-The-Middl...
CVE-2026-7837LOW3.7A time-of-check time-of-use (TOCTOU) condition in the ad_flush function in Netatalk 3.0.0 through 4.4.2 involves root-pr...
CVE-2026-44075LOW3.7A missing break statement in DSI OpenSession processing in Netatalk 1.5.0 through 4.4.2 causes a DSIOPT_ATTNQUANT switch...
CVE-2026-44074LOW3.7Netatalk 2.1.0 through 4.4.2 combines multiple errno values using bitwise OR, resulting in incorrect error codes when mu...
CVE-2026-44071LOW3.7Netatalk 3.1.2 through 4.4.2 is compiled without FORTIFY_SOURCE, which disables built-in buffer overflow detection at ru...
CVE-2026-44057LOW3.1A dead bounds check in the Spotlight RPC unmarshaller in Netatalk 3.0.0 through 4.4.2 results in an unreachable code pat...
CVE-2026-7836LOW3.1An incorrect calculation in the hextoint macro in Netatalk 2.0.0 through 4.4.2 due to improper uppercase character handl...
CVE-2026-7835LOW3.1A format string argument mismatch in Netatalk 3.0.3 through 4.4.2 allows a remote authenticated attacker to cause a mino...
CVE-2026-44072LOW3Netatalk 2.2.1 through 4.4.2 calls system() after a failed chdir() without properly handling the error condition, which ...
CVE-2026-44070LOW3.1An unbounded memory reallocation in the charset conversion code in Netatalk 2.0.0 through 4.4.2 allows a remote authenti...
CVE-2026-44069LOW3.9An integer underflow in the volxlate function in Netatalk 3.0.0 through 4.4.2 allows a local privileged user to obtain l...
CVE-2026-47068LOW2.3Authorization Bypass Through User-Controlled Key vulnerability in phenixdigital phoenix_storybook allows cross-session P...
CVE-2026-45232LOW3.7Rsync versions before 3.4.3 contain an off-by-one out-of-bounds stack write vulnerability in the establish_proxy_connect...
CVE-2026-8492LOW2.7Modification of Assumed-Immutable Data (MAID) vulnerability in Drupal Translate Drupal with GTranslate allows Resource L...
CVE-2026-8491LOW3.7Improper Check for Unusual or Exceptional Conditions vulnerability in Drupal Node View Permissions allows Forceful Brows...
CVE-2026-5511LOW2.7In the web management interface of Archer AX72 (SG) v1, the network diagnostic feature improperly handles invalid user i...
CVE-2026-7860LOW1.6A possible information disclosure vulnerability exists in the Vaadin Maven plugin and Vaadin Gradle plugin that exposes ...
CVE-2026-33565LOW3.3in OpenHarmony v6.0 and prior versions allow a local attacker cause DOS.

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now