2026 CVE Vulnerabilities

43,261 CVEs published in 2026.

Filter:LOWClear
CVE IDSeverityCVSSDescription
CVE-2026-6737LOW2An Exposed IOCTL with Insufficient Access Control vulnerability in AsusPTPFilter allows a local user to bypass driver se...
CVE-2026-41663LOW3.5Admidio is an open-source user management solution. Prior to version 5.0.9, several administrative operations in Admidio...
CVE-2026-41659LOW2.7Admidio is an open-source user management solution. Prior to version 5.0.9, the member assignment DataTables endpoint (m...
CVE-2026-8022LOW3.1Inappropriate implementation in MHTML in Google Chrome prior to 148.0.7778.96 allowed a remote attacker who convinced a ...
CVE-2026-8017LOW3.1Side-channel information leakage in Media in Google Chrome prior to 148.0.7778.96 allowed a remote attacker to leak cros...
CVE-2026-7968LOW3.1Insufficient validation of untrusted input in CORS in Google Chrome prior to 148.0.7778.96 allowed a remote attacker who...
CVE-2026-7966LOW3.1Insufficient validation of untrusted input in SiteIsolation in Google Chrome prior to 148.0.7778.96 allowed a remote att...
CVE-2026-7965LOW3.1Insufficient validation of untrusted input in DevTools in Google Chrome prior to 148.0.7778.96 allowed a remote attacker...
CVE-2026-7959LOW3.1Inappropriate implementation in Navigation in Google Chrome prior to 148.0.7778.96 allowed a remote attacker who had com...
CVE-2026-7954LOW3.1Race in Shared Storage in Google Chrome prior to 148.0.7778.96 allowed a remote attacker who had compromised the rendere...
CVE-2026-7949LOW3.1Out of bounds read in Skia in Google Chrome prior to 148.0.7778.96 allowed a remote attacker who had compromised the ren...
CVE-2026-7945LOW3.1Insufficient validation of untrusted input in COOP in Google Chrome prior to 148.0.7778.96 allowed a remote attacker who...
CVE-2026-7944LOW3.1Insufficient validation of untrusted input in Persistent Cache in Google Chrome prior to 148.0.7778.96 allowed a remote ...
CVE-2026-7937LOW3.1Insufficient policy enforcement in DevTools in Google Chrome prior to 148.0.7778.96 allowed an attacker who convinced a ...
CVE-2026-7909LOW3.1Inappropriate implementation in ServiceWorker in Google Chrome prior to 148.0.7778.96 allowed a remote attacker who had ...
CVE-2026-8028LOW3.7A vulnerability was detected in FlowiseAI Flowise up to 3.0.12. This affects the function verify of the file packages/se...
CVE-2026-44405LOW3.4In Paramiko through 4.0.0 before a448945, rsakey.py allows the SHA-1 algorithm.
CVE-2026-7847LOW2.6A vulnerability was found in chatchat-space Langchain-Chatchat up to 0.3.1.3. The affected element is the function _get_...
CVE-2026-7846LOW2.6A vulnerability has been found in chatchat-space Langchain-Chatchat up to 0.3.1.3. Impacted is the function files of the...
CVE-2026-7845LOW2.6A flaw has been found in chatchat-space Langchain-Chatchat up to 0.3.1.3. This issue affects the function PIL.Image.toby...
CVE-2026-43529LOW2.5OpenClaw before 2026.4.10 contains a time-of-check-time-of-use vulnerability in the validateScriptFileForShellBleed func...
CVE-2026-6499LOW2.4Incorrect Permission Assignment for Critical Resource vulnerability in ILM Informatique OpenConcerto allows Replace Bina...
CVE-2026-7740LOW3.3A security vulnerability has been detected in justdan96 tsMuxer up to 2.7.0. This issue affects the function VvcVpsUnit:...
CVE-2026-7739LOW3.3A weakness has been identified in justdan96 tsMuxer up to 2.7.0. This vulnerability affects the function HevcVpsUnit::se...
CVE-2026-43864LOW2.5mutt before 2.3.2 has a show_sig_summary NULL pointer dereference.

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now