2026 CVE Vulnerabilities
64,766 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-94462 | HIGH | 7.1 | 0.4% | Sep 22, 2026 | Spree is an open source e-commerce solution built with Ruby on Rails. From 5.4.0 until 5.4.4 and 5.5.4, PATCH /api/v3/st... |
| CVE-2026-88415 | HIGH | 8.7 | 0.2% | Sep 22, 2026 | MCMS 6.1.1 through 6.2.1 is vulnerable to stored Cross-Site Scripting (XSS). The article content field `contentDetails` ... |
| CVE-2026-84395 | HIGH | 7.1 | — | Sep 22, 2026 | Premiere Pro is affected by a Server-Side Request Forgery (SSRF) vulnerability that could result in privilege escalation... |
| CVE-2026-83964 | HIGH | 7.5 | 0.2% | Sep 22, 2026 | Adobe Connect is affected by an Improper Certificate Validation vulnerability that could lead to disclosure of sensitive... |
| CVE-2026-83963 | HIGH | 7.8 | 0.1% | Sep 22, 2026 | Substance3D - Modeler is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution ... |
| CVE-2026-83962 | HIGH | 7.8 | 0.2% | Sep 22, 2026 | Substance3D - Modeler is affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code exe... |
| CVE-2026-81999 | HIGH | 8.7 | — | Sep 22, 2026 | Adobe Experience Manager Forms JEE is affected by a Server-Side Request Forgery (SSRF) vulnerability that could result i... |
| CVE-2026-81998 | HIGH | 7.8 | 0.1% | Sep 22, 2026 | Substance3D - Modeler is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution ... |
| CVE-2026-79906 | HIGH | 7.8 | 0.1% | Sep 22, 2026 | Substance3D - Modeler is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution ... |
| CVE-2026-77558 | HIGH | 7.5 | — | Sep 22, 2026 | A malicious actor with access to the network could exploit an Out-of-bounds Read vulnerability found in certain UniFi ga... |
| CVE-2026-77556 | HIGH | 7.5 | — | Sep 22, 2026 | A malicious actor with access to the network could exploit an Out-of-bounds Read vulnerability found in certain UniFi ga... |
| CVE-2026-77555 | HIGH | 7.5 | — | Sep 22, 2026 | A malicious actor with access to the network could exploit an Out-of-bounds Write vulnerability found in certain UniFi g... |
| CVE-2026-77544 | HIGH | 7.5 | — | Sep 22, 2026 | A malicious actor with access to the network could exploit an Out-of-bounds Write vulnerability found in certain UniFi g... |
| CVE-2026-77262 | HIGH | 8.6 | 0.5% | Sep 22, 2026 | MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to 0.22.0, co... |
| CVE-2026-77259 | HIGH | 7.7 | 0.4% | Sep 22, 2026 | MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to 0.22.0, co... |
| CVE-2026-77257 | HIGH | 8.3 | 0.5% | Sep 22, 2026 | MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to 0.22.0, HT... |
| CVE-2026-77256 | HIGH | 8.3 | 0.4% | Sep 22, 2026 | MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to 0.22.0, th... |
| CVE-2026-77255 | HIGH | 8.6 | 0.4% | Sep 22, 2026 | MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to 0.22.0, th... |
| CVE-2026-77253 | HIGH | 7.1 | 0.4% | Sep 22, 2026 | MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to 0.22.0, Ji... |
| CVE-2026-77248 | HIGH | 8.6 | 0.4% | Sep 22, 2026 | MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to 0.22.0, th... |
| CVE-2026-77247 | HIGH | 8.3 | 0.5% | Sep 22, 2026 | MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to 0.22.0, Ji... |
| CVE-2026-77246 | HIGH | 7.4 | 0.2% | Sep 22, 2026 | MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to 0.22.0, an... |
| CVE-2026-75744 | HIGH | 8.1 | — | Sep 22, 2026 | Adobe Experience Manager Forms JEE is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused... |
| CVE-2026-75743 | HIGH | 7.1 | 1.5% | Sep 22, 2026 | Adobe Experience Manager Forms JEE is affected by a Cross-Site Request Forgery (CSRF) vulnerability that could result in... |
| CVE-2026-75676 | HIGH | 7.8 | 0.2% | Sep 22, 2026 | Bridge is affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution in the c... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now