2026 CVE Vulnerabilities
48,096 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-44972 | MEDIUM | 5 | 0.1% | May 27, 2026 | GuardDog is a CLI tool to identify malicious PyPI packages. From 2.6.0 to 2.9.0, GuardDog includes attacker-controlled f... |
| CVE-2026-44839 | MEDIUM | 4.8 | 0.2% | May 27, 2026 | RabbitMQ is a messaging and streaming broker. From 3.7.0 to before 4.1.2 and 4.0.13, This vulnerability is fixed in 4.1... |
| CVE-2026-30498 | MEDIUM | 6.3 | 0.1% | May 27, 2026 | A Cross-Site Request Forgery (CSRF) vulnerability was discovered in the delete.php endpoint of Jason2605 AdminPanel 4.0. |
| CVE-2026-1248 | MEDIUM | 4.3 | 0.2% | May 27, 2026 | IBM Business Automation Workflow containers and traditional may leak information about its database structure in error m... |
| CVE-2026-9035 | MEDIUM | 6.5 | 0.3% | May 27, 2026 | IBM Aspera High-Speed Transfer Endpoint 3.7.4 through 4.4.7 Fix Pack 1 and IBM Aspera High-Speed Transfer Server 3.7.4 t... |
| CVE-2026-8405 | MEDIUM | 6.5 | 0.2% | May 27, 2026 | IBM Guardium Data Protection 12.2.1, and 12.2.2 's add-on feature of Guardium Data Protection named "Long Term Retention... |
| CVE-2026-7254 | MEDIUM | 5.3 | 0.2% | May 27, 2026 | IBM OPENBMC FW1110.00 through FW1110.11 is vulnerable to denial of service attacks by unauthenticated network users. |
| CVE-2026-6936 | MEDIUM | 6.5 | 0.2% | May 27, 2026 | IBM i 7.6, 7.5, 7.4, and 7.3 s vulnerable to a denial-of-service attack due to uncontrolled recursion in the Integrated ... |
| CVE-2026-6053 | MEDIUM | 5.5 | 0.1% | May 27, 2026 | IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.4 is vulnerable to a denial of service when a specially crafted q... |
| CVE-2026-5516 | MEDIUM | 5.9 | 0.2% | May 27, 2026 | IBM WebSphere Application Server - Liberty 22.0.0.11 through 26.0.0.5 IBM WebSphere Application Server Liberty could all... |
| CVE-2026-5515 | MEDIUM | 5.5 | 0.1% | May 27, 2026 | IBM App Connect Enterprise 13.0.1.0 through 13.0.7.0 stores potentially sensitive information in log files that could be... |
| CVE-2026-48971 | MEDIUM | 4.3 | 0.2% | May 27, 2026 | Missing Authorization vulnerability in WebToffee Product Import Export for WooCommerce allows Exploiting Incorrectly Con... |
| CVE-2026-47104 | MEDIUM | 5.5 | 0.1% | May 27, 2026 | libusb before version 1.0.30 contains a one-byte out-of-bounds read vulnerability in parse_iad_array() in descriptor.c t... |
| CVE-2026-46103 | MEDIUM | 5.5 | 0.1% | May 27, 2026 | In the Linux kernel, the following vulnerability has been resolved: can: ucan: fix devres lifetime USB drivers bind to... |
| CVE-2026-46101 | MEDIUM | 5.5 | 0.1% | May 27, 2026 | In the Linux kernel, the following vulnerability has been resolved: netfilter: reject zero shift in nft_bitwise Reject... |
| CVE-2026-46098 | MEDIUM | 5.5 | 0.1% | May 27, 2026 | In the Linux kernel, the following vulnerability has been resolved: net: caif: clear client service pointer on teardown... |
| CVE-2026-46096 | MEDIUM | 5.5 | 0.1% | May 27, 2026 | In the Linux kernel, the following vulnerability has been resolved: tpm2-sessions: Fix missing tpm_buf_destroy() in tpm... |
| CVE-2026-46095 | MEDIUM | 5.5 | 0.1% | May 27, 2026 | In the Linux kernel, the following vulnerability has been resolved: md/md-llbitmap: raise barrier before state machine ... |
| CVE-2026-46092 | MEDIUM | 5.5 | 0.1% | May 27, 2026 | In the Linux kernel, the following vulnerability has been resolved: wifi: rtw88: check for PCI upstream bridge existenc... |
| CVE-2026-46091 | MEDIUM | 5.5 | 0.1% | May 27, 2026 | In the Linux kernel, the following vulnerability has been resolved: media: rc: igorplugusb: heed coherency rules In a ... |
| CVE-2026-46089 | MEDIUM | 5.5 | 0.1% | May 27, 2026 | In the Linux kernel, the following vulnerability has been resolved: zram: do not forget to endio for partial discard re... |
| CVE-2026-46088 | MEDIUM | 5.5 | 0.1% | May 27, 2026 | In the Linux kernel, the following vulnerability has been resolved: ALSA: control: Validate buf_len before strnlen() in... |
| CVE-2026-46087 | MEDIUM | 5.5 | 0.1% | May 27, 2026 | In the Linux kernel, the following vulnerability has been resolved: mm/damon/stat: fix memory leak on damon_start() fai... |
| CVE-2026-46086 | MEDIUM | 5.5 | 0.1% | May 27, 2026 | In the Linux kernel, the following vulnerability has been resolved: net: bridge: use a stable FDB dst snapshot in RCU r... |
| CVE-2026-46083 | MEDIUM | 5.5 | 0.1% | May 27, 2026 | In the Linux kernel, the following vulnerability has been resolved: spi: fix resource leaks on device setup failure Ma... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now