2026 CVE Vulnerabilities
48,516 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-4286 | MEDIUM | 4.3 | 0.1% | May 18, 2026 | Mattermost versions 11.5.x <= 11.5.1, 10.11.x <= 10.11.13 fail to check if {{team_id}} was being changed when updating p... |
| CVE-2026-3471 | MEDIUM | 6.5 | 0.2% | May 18, 2026 | Mattermost Desktop App versions <=6.1 6.0.1 5.4.13.0 fail to prevent an invalid URL from loading in a pop-up window in t... |
| CVE-2026-3117 | MEDIUM | 6.5 | 0.2% | May 18, 2026 | Mattermost Plugins versions <=11.5 11.1.5 10.13.11 11.3.4.0 fail to properly check for permissions when processing comma... |
| CVE-2026-28732 | MEDIUM | 4.3 | 0.2% | May 18, 2026 | Mattermost versions 11.5.x <= 11.5.1, 10.11.x <= 10.11.13, 11.4.x <= 11.4.3 Fail to enforce slash command trigger-word u... |
| CVE-2026-6342 | MEDIUM | 4.3 | 0.2% | May 18, 2026 | Mattermost Plugins versions <=11.5 11.1.5 10.13.11 11.3.4.0 fail to appropriately check for valid namespaces which allow... |
| CVE-2026-6341 | MEDIUM | 4.3 | 0.2% | May 18, 2026 | Mattermost Plugins versions <=11.5 11.1.5 10.13.11 11.3.4.0 fail to have API-level checks on which groups the user can c... |
| CVE-2026-6340 | MEDIUM | 6.5 | 0.2% | May 18, 2026 | Mattermost versions 11.5.x <= 11.5.1, 10.11.x <= 10.11.13, 11.4.x <= 11.4.3 fail to validate 7zip archive structure befo... |
| CVE-2026-4273 | MEDIUM | 4.3 | 0.1% | May 18, 2026 | Mattermost versions 11.5.x <= 11.5.1, 10.11.x <= 10.11.13 fail to validate that the RefreshedToken differs from the orig... |
| CVE-2026-3637 | MEDIUM | 4.3 | 0.2% | May 18, 2026 | Mattermost versions 11.5.x <= 11.5.1, 10.11.x <= 10.11.13, 11.4.x <= 11.4.3 fail to check the create_post channel permis... |
| CVE-2026-3495 | MEDIUM | 4.8 | 0.1% | May 18, 2026 | Mattermost versions 11.5.x <= 11.5.1, 10.11.x <= 10.11.13 fail to escape some variables that could contain malicious con... |
| CVE-2026-2325 | MEDIUM | 6.5 | 0.2% | May 18, 2026 | Mattermost versions 11.5.x <= 11.5.1, 10.11.x <= 10.11.13, 11.4.x <= 11.4.3 fail to limit the size of the request body o... |
| CVE-2026-28759 | MEDIUM | 4.3 | 0.2% | May 18, 2026 | Mattermost versions 11.5.x <= 11.5.1, 10.11.x <= 10.11.13, 11.4.x <= 11.4.3 fail to validate that a remote cluster has a... |
| CVE-2026-1631 | MEDIUM | 5.4 | 0.2% | May 18, 2026 | The Feeds for YouTube (YouTube video, channel, and gallery plugin) WordPress plugin before 2.6.4 is vulnerable to unauth... |
| CVE-2026-8786 | MEDIUM | 6.3 | 0.3% | May 18, 2026 | A vulnerability has been found in Tencent WeKnora up to 0.3.6. Affected by this issue is the function getKnowledgeBaseFo... |
| CVE-2026-8784 | MEDIUM | 4.2 | 0.2% | May 18, 2026 | A vulnerability was detected in npitre cramfs-tools up to 2.2. Affected is the function change_file_status of the file c... |
| CVE-2026-8783 | MEDIUM | 4.3 | 0.4% | May 18, 2026 | A security vulnerability has been detected in omec-project amf up to 2.1.3-dev. This impacts the function UERadioCapabil... |
| CVE-2026-8782 | MEDIUM | 4.3 | 0.3% | May 18, 2026 | A weakness has been identified in omec-project amf up to 2.1.3-dev. This affects an unknown function of the file ngap/ha... |
| CVE-2026-8781 | MEDIUM | 4.3 | 0.3% | May 18, 2026 | A security flaw has been discovered in omec-project amf up to 2.1.3-dev. The impacted element is the function RANConfigu... |
| CVE-2026-8780 | MEDIUM | 4.3 | 0.3% | May 18, 2026 | A vulnerability was identified in omec-project amf up to 2.1.3-dev. The affected element is an unknown function of the f... |
| CVE-2026-8779 | MEDIUM | 4.3 | 0.3% | May 18, 2026 | A vulnerability was determined in omec-project amf up to 2.1.3-dev. Impacted is the function NGSetupRequest of the file ... |
| CVE-2026-8777 | MEDIUM | 6.3 | 1.2% | May 18, 2026 | A vulnerability was found in Edimax BR-6428NS 1.10. This issue affects the function formStaDrvSetup of the file /goform/... |
| CVE-2026-8774 | MEDIUM | 6.3 | 1.2% | May 18, 2026 | A vulnerability was detected in Edimax BR-6228NC 1.22. Affected by this issue is the function mp of the file /goform/mp ... |
| CVE-2026-8773 | MEDIUM | 4.7 | 0.2% | May 18, 2026 | A security vulnerability has been detected in linlinjava litemall up to 1.8.0. Affected by this vulnerability is the fun... |
| CVE-2026-8772 | MEDIUM | 4.7 | 0.2% | May 18, 2026 | A weakness has been identified in linlinjava litemall up to 1.8.0. Affected is an unknown function of the component Admi... |
| CVE-2026-8769 | MEDIUM | 6.5 | 0.6% | May 17, 2026 | A vulnerability was determined in vercel ai up to 3.0.97. The impacted element is the function createJsonResponseHandler... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now