2026 CVE Vulnerabilities

64,766 CVEs published in 2026.

Filter:LOWClear
CVE IDSeverityCVSSDescription
CVE-2026-19230LOW3.5A vulnerability was identified in SourceCodester Photo Share Website 1.0. This affects an unknown part of the file /soci...
CVE-2026-17435LOW2.5File::Rotate::Simple versions before 0.4.0 for Perl create the target of dangling symlinks when rotating files. When th...
CVE-2026-17597LOW2.7Nexus Repository 3 contains a Server-Side Request Forgery (SSRF) vulnerability in the email configuration verification f...
CVE-2026-17595LOW2.7Nexus Repository 3 did not fully sandbox JEXL expressions used in Content Selectors. An account holding the nexus:select...
CVE-2026-19209LOW3.5A flaw has been found in SourceCodester Photo Share Website 1.0. The affected element is an unknown function of the file...
CVE-2026-19208LOW3.7A vulnerability was detected in WonderTrader up to 0.9.9. Impacted is the function TraderDD::queryTrades of the file src...
CVE-2026-19207LOW2.4A security vulnerability has been detected in PHPGurukul Company Visitor Management System 1.0. This issue affects some ...
CVE-2026-61477LOW2.3An injection vulnerability was found in libvirt's virtual network driver. The network XML parser does not strip newline ...
CVE-2026-49005LOW2.4The root password hash of the device can be obtained through unencrypted information in the firmware.
CVE-2026-71438LOW2.4Mermaid is a JavaScript tool that uses Markdown-inspired text to create and modify diagrams and charts. Prior to 10.9.8 ...
CVE-2026-71326LOW3.8Traefik is an open source HTTP reverse proxy and load balancer. From 3.6.11 until 3.6.25 and 3.7.10, Traefik's BasicAuth...
CVE-2026-64655LOW2.1GitHub CLI (gh) is GitHub’s official command line tool. Prior to 2.97.0, gh attestation verify  builds the certificate S...
CVE-2026-64652LOW3.3GitHub CLI (gh) is GitHub's official command line tool. Prior to version 2.97.0, gh auth status masked only the characte...
CVE-2026-48082LOW3.7OpenReception's appointment booking software provides an end-to-end encrypted appointment booking platform. Prior to ver...
CVE-2026-48074LOW2.7OpenReception's appointment booking software provides an end-to-end encrypted appointment booking platform. Prior to ver...
CVE-2026-19167LOW3.1Integer overflow in GPU in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who had compromised the rende...
CVE-2026-19161LOW3.1Uninitialized Use in Skia in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who had compromised the ren...
CVE-2026-19160LOW3.1Uninitialized Use in Skia in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who had compromised the ren...
CVE-2026-19110LOW2.4A vulnerability was determined in DataGear up to 5.0.0. The impacted element is the function HtmlTplDashboardWidgetHtmlR...
CVE-2026-19059LOW3.3A vulnerability was determined in FoundationAgents MetaGPT up to 0.8.2. This affects the function read of the file metag...
CVE-2026-14225LOW2.7The Easy Appointments WordPress plugin before 3.12.28 does not correctly validate shortcode input in one of its block-re...
CVE-2026-15599LOW3.3Unverified ownership vulnerability in TÜBİTAK BİLGEM Software Technologies Research Institute pardus-domain-joiner allow...
CVE-2026-18839LOW2.2An integer underflow was found in the popt library when formatting help text for option tables that exceed the terminal ...
CVE-2026-70437LOW3.7Jenkins Webhook Secret Credentials Provider Plugin 16.v0cfa_f0215cf5 and earlier does not use a constant-time comparison...
CVE-2026-70430LOW2.7Jenkins 2.575 and earlier, LTS 2.568.1 and earlier does not restrict the types of objects that can be instantiated as pa...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now