2026 CVE Vulnerabilities

48,561 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-70427MEDIUM4.3Jenkins 2.575 and earlier, LTS 2.568.1 and earlier does not safely handle symbolic links with effectively empty names du...
CVE-2026-70426CRITICAL9In Remoting 3384.v60d89463d9e0 and earlier, except 3355.3357.v931d3c992987, included in Jenkins 2.575 and earlier, LTS 2...
CVE-2026-44605MEDIUM5.5A flaw was found in the RPM Package Manager (RPM). A local user could be affected by a heap buffer overflow vulnerabilit...
CVE-2026-17625HIGH8.8IBM Langflow OSS 1.0.0 through 1.10.3, 1.0.0 through 1.10.3, 1.0.0 through 1.10.3, 1.0.0 through 1.10.3, 1.0.0 through 1...
CVE-2026-10716HIGH7.5Directus contains an authenticated SQL injection vulnerability in the collection creation flow when the instance uses Po...
CVE-2026-10128MEDIUM6.5IBM Langflow OSS 1.0.0 through 1.10.3 allows authenticated users can exploit a built-in Langflow component to read arbit...
CVE-2026-9077HIGH8.5IBM Langflow OSS 1.0.0 through 1.10.3 Langflow allows remote authenticated attackers to bypass localhost-only restrictio...
CVE-2026-8446HIGH7.5IBM Langflow OSS 1.0.0 through 1.10.3 contain an authentication bypass vulnerability in the Model Context Protocol (MCP)...
CVE-2026-7646MEDIUM6.5IBM Langflow OSS 1.0.0 through 1.10.3 allows users to read arbitrary files from the server filesystem, including other u...
CVE-2026-70607MEDIUM5.3Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 39.8.8,...
CVE-2026-20313HIGH7.7As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Catalyst SD-WAN engineering t...
CVE-2026-20312HIGH8.8As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Catalyst SD-WAN engineering t...
CVE-2026-20311MEDIUM6.3A vulnerability in the web-based management interface of Cisco IOS XE Software could allow an authenticated, remote atta...
CVE-2026-20310CRITICAL9.1As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Catalyst SD-WAN engineering t...
CVE-2026-20308MEDIUM4.3A vulnerability in the web-based management interface of Cisco IOS XE Software could allow an authenticated, remote atta...
CVE-2026-20304CRITICAL9.9As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Catalyst SD-WAN engineering t...
CVE-2026-20303CRITICAL9.9As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Catalyst SD-WAN engineering t...
CVE-2026-20301HIGH8.6A vulnerability in the Extensible Messaging Client Protocol (XMCP), also referred to as the External Client protocol, of...
CVE-2026-20294MEDIUM6.5A vulnerability in the web-based management interface of Cisco Catalyst SD-WAN Manager could allow an authenticated, rem...
CVE-2026-20289MEDIUM6.5A vulnerability in the logging subsystem of Cisco RoomOS could allow an authenticated, local attacker with low privilege...
CVE-2026-20288MEDIUM6.5A vulnerability in the web-based management interface of Cisco IMC could allow an authenticated, remote attacker with&nb...
CVE-2026-20273HIGH8.6As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering t...
CVE-2026-20272CRITICAL9.8As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering t...
CVE-2026-20271HIGH8.6As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering t...
CVE-2026-20270HIGH8.6As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering t...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now