2026 CVE Vulnerabilities

64,766 CVEs published in 2026.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2026-94462HIGH7.1Spree is an open source e-commerce solution built with Ruby on Rails. From 5.4.0 until 5.4.4 and 5.5.4, PATCH /api/v3/st...
CVE-2026-88415HIGH8.7MCMS 6.1.1 through 6.2.1 is vulnerable to stored Cross-Site Scripting (XSS). The article content field `contentDetails` ...
CVE-2026-84395HIGH7.1Premiere Pro is affected by a Server-Side Request Forgery (SSRF) vulnerability that could result in privilege escalation...
CVE-2026-83964HIGH7.5Adobe Connect is affected by an Improper Certificate Validation vulnerability that could lead to disclosure of sensitive...
CVE-2026-83963HIGH7.8Substance3D - Modeler is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution ...
CVE-2026-83962HIGH7.8Substance3D - Modeler is affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code exe...
CVE-2026-81999HIGH8.7Adobe Experience Manager Forms JEE is affected by a Server-Side Request Forgery (SSRF) vulnerability that could result i...
CVE-2026-81998HIGH7.8Substance3D - Modeler is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution ...
CVE-2026-79906HIGH7.8Substance3D - Modeler is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution ...
CVE-2026-77558HIGH7.5A malicious actor with access to the network could exploit an Out-of-bounds Read vulnerability found in certain UniFi ga...
CVE-2026-77556HIGH7.5A malicious actor with access to the network could exploit an Out-of-bounds Read vulnerability found in certain UniFi ga...
CVE-2026-77555HIGH7.5A malicious actor with access to the network could exploit an Out-of-bounds Write vulnerability found in certain UniFi g...
CVE-2026-77544HIGH7.5A malicious actor with access to the network could exploit an Out-of-bounds Write vulnerability found in certain UniFi g...
CVE-2026-77262HIGH8.6MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to 0.22.0, co...
CVE-2026-77259HIGH7.7MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to 0.22.0, co...
CVE-2026-77257HIGH8.3MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to 0.22.0, HT...
CVE-2026-77256HIGH8.3MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to 0.22.0, th...
CVE-2026-77255HIGH8.6MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to 0.22.0, th...
CVE-2026-77253HIGH7.1MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to 0.22.0, Ji...
CVE-2026-77248HIGH8.6MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to 0.22.0, th...
CVE-2026-77247HIGH8.3MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to 0.22.0, Ji...
CVE-2026-77246HIGH7.4MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to 0.22.0, an...
CVE-2026-75744HIGH8.1Adobe Experience Manager Forms JEE is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused...
CVE-2026-75743HIGH7.1Adobe Experience Manager Forms JEE is affected by a Cross-Site Request Forgery (CSRF) vulnerability that could result in...
CVE-2026-75676HIGH7.8Bridge is affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution in the c...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now