2026 CVE Vulnerabilities
43,261 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-43863 | LOW | 3.7 | 0.2% | May 4, 2026 | mutt before 2.3.2 has an infinite loop in data_object_to_stream in crypt-gpgme.c. |
| CVE-2026-43862 | LOW | 3.7 | 0.2% | May 4, 2026 | In mutt before 2.3.2, the imap_auth_gss security level is mishandled. |
| CVE-2026-43861 | LOW | 3.7 | 0.2% | May 4, 2026 | mutt before 2.3.2 does not check for '\0' in url_pct_decode. |
| CVE-2026-43860 | LOW | 3.7 | 0.2% | May 4, 2026 | mutt before 2.3.2 sometimes truncates the hash_passwd by one byte for IMAP auth_cram MD5 digest. |
| CVE-2026-43859 | LOW | 3.7 | 0.2% | May 4, 2026 | mutt before 2.3.2 sometimes uses strfcpy instead of memcpy for the IMAP auth_cram MD5 digest. |
| CVE-2026-7689 | LOW | 3.7 | 0.1% | May 3, 2026 | A security flaw has been discovered in Dolibarr ERP CRM up to 23.0.2. This vulnerability affects the function dol_verify... |
| CVE-2026-7677 | LOW | 3.5 | 0.2% | May 3, 2026 | A vulnerability was determined in kerwincui FastBee up to 1.2.1. The impacted element is the function Add of the file sp... |
| CVE-2026-7671 | LOW | 3.7 | 0.6% | May 3, 2026 | A vulnerability has been found in CodeWise Tornet Scooter Mobile App 4.75 on iOS/Android. The impacted element is an unk... |
| CVE-2026-7501 | LOW | 3.5 | 0.3% | Apr 30, 2026 | A weakness has been identified in LinkStackOrg LinkStack up to 4.8.6. Impacted is the function editPage of the file app/... |
| CVE-2026-41263 | LOW | 3.7 | 0.4% | Apr 30, 2026 | Traefik is an HTTP reverse proxy and load balancer. Prior to versions 2.11.43, 3.6.14, and 3.7.0-rc.2, there is a timing... |
| CVE-2026-33448 | LOW | 3.3 | 0.1% | Apr 30, 2026 | CVE-2026-33448 is a format string vulnerability in the logging subsystem of Secure Access client for MacOS prior to 14.... |
| CVE-2026-3832 | LOW | 3.7 | 0.7% | Apr 30, 2026 | A flaw was found in gnutls. A remote attacker could exploit this vulnerability by presenting a specially crafted Online ... |
| CVE-2026-7390 | LOW | 3.5 | 0.2% | Apr 29, 2026 | A vulnerability was detected in SourceCodester Pharmacy Sales and Inventory System 1.0. The impacted element is the func... |
| CVE-2026-22741 | LOW | 3.1 | 0.2% | Apr 29, 2026 | Spring MVC and WebFlux applications are vulnerable to cache poisoning when resolving static resources. More precisely,... |
| CVE-2026-7360 | LOW | 3.1 | 0.2% | Apr 28, 2026 | Insufficient validation of untrusted input. in Compositing in Google Chrome prior to 147.0.7727.138 allowed a remote att... |
| CVE-2026-7351 | LOW | 3.1 | 0.1% | Apr 28, 2026 | Race in MHTML in Google Chrome prior to 147.0.7727.138 allowed an attacker who convinced a user to install a malicious e... |
| CVE-2026-7303 | LOW | 3.7 | 0.4% | Apr 28, 2026 | A security flaw has been discovered in Xuxueli xxl-job up to 3.3.2. Impacted is the function logDetailCat of the file xx... |
| CVE-2026-7297 | LOW | 2.4 | 0.2% | Apr 28, 2026 | A vulnerability was determined in SourceCodester Pizzafy Ecommerce System 1.0. This vulnerability affects the function s... |
| CVE-2026-7296 | LOW | 2.4 | 0.2% | Apr 28, 2026 | A vulnerability was found in SourceCodester Pizzafy Ecommerce System 1.0. This affects the function save_order of the fi... |
| CVE-2026-7295 | LOW | 2.4 | 0.2% | Apr 28, 2026 | A vulnerability has been found in SourceCodester Pizzafy Ecommerce System 1.0. Affected by this issue is the function sa... |
| CVE-2026-7294 | LOW | 2.4 | 0.2% | Apr 28, 2026 | A flaw has been found in SourceCodester Pizzafy Ecommerce System 1.0. Affected by this vulnerability is the function sav... |
| CVE-2026-7281 | LOW | 2.4 | 0.2% | Apr 28, 2026 | A vulnerability was determined in SourceCodester Pharmacy Sales and Inventory System 1.0. The impacted element is the fu... |
| CVE-2026-7269 | LOW | 2.4 | 0.2% | Apr 28, 2026 | A vulnerability was found in SourceCodester Pharmacy Sales and Inventory System 1.0. Affected is an unknown function of ... |
| CVE-2026-7222 | LOW | 3.5 | 0.2% | Apr 28, 2026 | A vulnerability was determined in code-projects Coaching Management System 1.0. Affected by this vulnerability is an unk... |
| CVE-2026-7110 | LOW | 3.5 | 0.2% | Apr 27, 2026 | A flaw has been found in code-projects Invoice System in Laravel 1.0. Affected is an unknown function of the file /item.... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now