2026 CVE Vulnerabilities
48,089 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-56770 | HIGH | 7.5 | 0.3% | Jun 25, 2026 | libais through 0.15 VdmStream::AddLine uses an unchecked sentinel value as a vector index when processing AIS sentences ... |
| CVE-2026-56769 | HIGH | 8.5 | 0.2% | Jun 25, 2026 | Huly Platform through 0.7.423, fixed in commit 68cbf8a contains an authenticated server-side request forgery vulnerabili... |
| CVE-2026-56768 | HIGH | 8.8 | 0.4% | Jun 25, 2026 | Seahub before 13.0.23 does not enforce SHARE_LINK_LOGIN_REQUIRED on GET /api/v2.1/share-link-zip-task/, allowing unauthe... |
| CVE-2026-56767 | HIGH | 8.8 | 0.3% | Jun 25, 2026 | Maxun before 0.0.42 contains a cross-tenant insecure direct object reference vulnerability in storage and webhook API ha... |
| CVE-2026-56766 | HIGH | 8.8 | 1.3% | Jun 25, 2026 | Hydra through 9.7, fixed in commit 9cc84c2, contains a stack buffer overflow in NTLM authentication across SMTP, POP3, I... |
| CVE-2026-55667 | HIGH | 8.2 | 0.4% | Jun 25, 2026 | File Browser is a file managing interface for uploading, deleting, previewing, renaming, and editing files within a spec... |
| CVE-2026-54097 | HIGH | 7.2 | 0.4% | Jun 25, 2026 | File Browser is a file managing interface for uploading, deleting, previewing, renaming, and editing files within a spec... |
| CVE-2026-54096 | HIGH | 8.4 | 0.2% | Jun 25, 2026 | File Browser is a file managing interface for uploading, deleting, previewing, renaming, and editing files within a spec... |
| CVE-2026-54094 | HIGH | 7.5 | 0.5% | Jun 25, 2026 | File Browser is a file managing interface for uploading, deleting, previewing, renaming, and editing files within a spec... |
| CVE-2026-54091 | HIGH | 7.5 | 0.5% | Jun 25, 2026 | File Browser is a file managing interface for uploading, deleting, previewing, renaming, and editing files within a spec... |
| CVE-2026-54090 | HIGH | 8.7 | 0.3% | Jun 25, 2026 | File Browser is a file managing interface for uploading, deleting, previewing, renaming, and editing files within a spec... |
| CVE-2026-53925 | HIGH | 7.8 | 0.2% | Jun 25, 2026 | Glances is an open-source system cross-platform monitoring tool. From 4.0.8 until 4.5.5, the secure_popen() function in ... |
| CVE-2026-4930 | HIGH | 7.1 | 0.1% | Jun 25, 2026 | SYMCRYPTO is the SiXG301's host side hardware engine accessed by PSA crypto library that accelerates symmetric cryptogra... |
| CVE-2026-46608 | HIGH | 7.4 | 0.4% | Jun 25, 2026 | Glances is an open-source system cross-platform monitoring tool. Prior to 4.5.5, the Glances XML-RPC server (glances -s)... |
| CVE-2026-46607 | HIGH | 7.8 | 0.3% | Jun 25, 2026 | Glances is an open-source system cross-platform monitoring tool. Prior to 4.5.5, glances/outdated.py uses pickle.load() ... |
| CVE-2026-46606 | HIGH | 7.8 | 0.2% | Jun 25, 2026 | Glances is an open-source system cross-platform monitoring tool. Prior to 4.5.5, the Glances KVM/QEMU monitoring engine ... |
| CVE-2026-12921 | HIGH | 7.8 | 0.1% | Jun 25, 2026 | In AzeoTech DAQFactory versions 21.1 and prior, a Use After Free vulnerability can be exploited by an attacker using spe... |
| CVE-2026-12897 | HIGH | 8.4 | 0.1% | Jun 25, 2026 | Horner Automation Cscape versions prior to 10.2 SP3 are vulnerable to an Out-of-Bounds Read vulnerability through parsin... |
| CVE-2026-55967 | HIGH | 7.5 | 0.1% | Jun 25, 2026 | AES-GCM encryption/decryption with extremely large cumulative single message sizes (>64 GiB) were not properly rejected ... |
| CVE-2026-55961 | HIGH | 7.5 | 0.1% | Jun 25, 2026 | wolfSSL_PKCS7_verify() returning success for a degenerate (certs-only) PKCS#7 object that contains no signer. Such an ob... |
| CVE-2026-55700 | HIGH | 7.1 | 0.3% | Jun 25, 2026 | pnpm is a package manager. From 11.3.0 until 11.5.3, `pnpm stage download` derived a local filename from registry-contro... |
| CVE-2026-55698 | HIGH | 8.8 | 0.2% | Jun 25, 2026 | pnpm is a package manager. Prior to 10.34.2 and 11.5.3, pnpm can persist package-manager bootstrap metadata in the first... |
| CVE-2026-55697 | HIGH | 8.8 | 0.1% | Jun 25, 2026 | pnpm is a package manager. Prior to 10.34.2 and 11.5.3, pnpm can install configDependencies declared in pnpm-workspace.y... |
| CVE-2026-55487 | HIGH | 8.8 | 0.1% | Jun 25, 2026 | pnpm is a package manager. Prior to 10.34.2 and 11.5.3, the generic peer-suffix normalizer also stripped parenthesized t... |
| CVE-2026-50573 | HIGH | 8.1 | 0.1% | Jun 25, 2026 | pnpm is a package manager. Prior to 10.34.0 and 11.4.0, `pnpm install` in non-frozen mode can accept new remote package ... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now