2026 CVE Vulnerabilities

43,261 CVEs published in 2026.

Filter:LOWClear
CVE IDSeverityCVSSDescription
CVE-2026-5266LOW2.3Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Wikimedia Foundation Echo. This vulnerabil...
CVE-2026-44658LOW2.4Zen is a firefox-based browser. Prior to 1.19.12b, RSS feed URLs entered by the user are validated to http: or https: in...
CVE-2026-34094LOW3.8Vulnerability in Wikimedia Foundation MediaWiki. This vulnerability is associated with program files includes/Page/Art...
CVE-2026-34086LOW2.1Vulnerability in Wikimedia Foundation AbuseFilter. This issue affects AbuseFilter: from * before 1.43.7, 1.44.4, 1.45.2...
CVE-2026-8276LOW3.7A flaw has been found in bettercap up to 2.41.5. Affected by this issue is some unknown functionality of the file module...
CVE-2026-8275LOW3.7A vulnerability was detected in bettercap up to 2.41.5. Affected by this vulnerability is the function ippReadChunkedBod...
CVE-2026-8262LOW2.4A vulnerability was identified in Devs Palace ERP Online up to 4.0.0. This impacts an unknown function of the file /acco...
CVE-2026-8256LOW2.4A security vulnerability has been detected in Devs Palace ERP Online up to 4.0.0. This vulnerability affects unknown cod...
CVE-2026-8255LOW2.4A weakness has been identified in Devs Palace ERP Online up to 4.0.0. This affects an unknown part of the file /inventor...
CVE-2026-8254LOW2.4A security flaw has been discovered in Devs Palace ERP Online up to 4.0.0. Affected by this issue is some unknown functi...
CVE-2026-8253LOW2.4A vulnerability was identified in Devs Palace ERP Online up to 4.0.0. Affected by this vulnerability is an unknown funct...
CVE-2026-8242LOW3.7A vulnerability was found in Industrial Application Software IAS Canias ERP 8.03. The impacted element is the function d...
CVE-2026-8221LOW2.4A flaw has been found in Devs Palace ERP Online up to 4.0.0. This impacts an unknown function of the file /inventory/ite...
CVE-2026-8220LOW2.4A vulnerability was detected in Devs Palace ERP Online up to 4.0.0. This affects an unknown function of the file /invent...
CVE-2026-8219LOW2.4A security vulnerability has been detected in Devs Palace ERP Online up to 4.0.0. The impacted element is an unknown fun...
CVE-2026-8218LOW2.4A weakness has been identified in Devs Palace ERP Online up to 4.0.0. The affected element is an unknown function of the...
CVE-2026-45182LOW2.2GrapheneOS before 2026050400 allows attackers to discover the real IP address of a VPN user as a consequence of a regist...
CVE-2026-8196LOW3.7A flaw has been found in JeecgBoot 3.9.1. The impacted element is an unknown function of the file jeecg-module-system/je...
CVE-2026-44987LOW3.8SysReptor is a fully customizable pentest reporting platform. Prior to version 2026.29, users with "User Admin" permissi...
CVE-2026-44286LOW2.3FastGPT is an AI Agent building platform. Prior to version 4.14.17, an unauthenticated Server-Side Request Forgery (SSRF...
CVE-2026-42195LOW3.4draw.io is a configurable diagramming and whiteboarding application. Prior to version 29.7.9, the draw.io client accepts...
CVE-2026-32803LOW3.3Dell PowerScale OneFS versions 9.5.0.0 through 9.5.1.6, 9.6.0.0 through 9.7.1.13, 9.8.0.0 through 9.10.1.5 and 9.11.0.0 ...
CVE-2026-44916LOW3In OpenStack Ironic before 35.0.2 (in a certain non-default configuration), instance_info['ks_template'] is rendered wit...
CVE-2026-8136LOW2.4A flaw has been found in SourceCodester Pharmacy Sales and Inventory System 1.0. This affects an unknown part of the fil...
CVE-2026-41498LOW3.3Kimai is an open-source time tracking application. Prior to version 2.54.0, the Team API endpoints use #[IsGranted('edit...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now