2026 CVE Vulnerabilities

43,261 CVEs published in 2026.

Filter:LOWClear
CVE IDSeverityCVSSDescription
CVE-2026-40077LOW3.1Beszel is a server monitoring platform. Prior to 0.18.7, some API endpoints in the Beszel hub accept a user-supplied sys...
CVE-2026-5836LOW2.4A vulnerability has been found in code-projects Online Shoe Store 1.0. Affected by this issue is some unknown functional...
CVE-2026-5835LOW2.4A flaw has been found in code-projects Online Shoe Store 1.0. Affected by this vulnerability is an unknown functionality...
CVE-2026-5834LOW2.4A vulnerability was detected in code-projects Online Shoe Store 1.0. Affected is an unknown function of the file /admin/...
CVE-2026-4916LOW2.7GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.2 before 18.8.9, 18.9 before 18.9.5, and 1...
CVE-2026-5810LOW3.5A flaw has been found in SourceCodester Sales and Inventory System 1.0. Affected is an unknown function of the file /del...
CVE-2026-5806LOW3.5A security vulnerability has been detected in code-projects Easy Blog Site 1.0. This affects an unknown function of the ...
CVE-2026-39510LOW2.7Authorization Bypass Through User-Controlled Key vulnerability in WP Chill Image Photo Gallery Final Tiles Grid final-ti...
CVE-2026-34781LOW3.3Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 39.8.5,...
CVE-2026-39349LOW2.7OrangeHRM is a comprehensive human resource management (HRM) system. From 5.0 to 5.8, OrangeHRM Open Source encrypts cer...
CVE-2026-39347LOW2.7OrangeHRM is a comprehensive human resource management (HRM) system. From 5.0 to 5.8, OrangeHRM Open Source accepts chan...
CVE-2026-39321LOW3.7Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js. Prior to 9.8.0-a...
CVE-2026-5382LOW3An issue that could expose records outside of the authorized organization scope through the MCP endpoints has been resol...
CVE-2026-5381LOW2.2An issue that could expose task information outside of the authorized organization scope has been resolved. This is an i...
CVE-2026-5379LOW3An issue that allowed MCP agents to access certificate information from outside of their authorized organization scope h...
CVE-2026-5375LOW2.7An issue that could allow a user with access to a credential to view sensitive fields through an API response has been r...
CVE-2026-4292LOW2.7An issue was discovered in 6.0 before 6.0.4, 5.2 before 5.2.13, and 4.2 before 4.2.30. Admin changelist forms using `Mod...
CVE-2026-28810LOW3.7Generation of Predictable Numbers or Identifiers vulnerability in Erlang/OTP kernel (inet_res, inet_db modules) allows D...
CVE-2026-35448LOW3.7WWBN AVideo is an open source video platform. In versions 26.0 and prior, the BlockonomicsYPT plugin's check.php endpoin...
CVE-2026-5682LOW3.7A vulnerability has been found in Meesho Online Shopping App up to 27.3 on Android. Affected is an unknown function of t...
CVE-2026-5668LOW2.4A flaw has been found in Cyber-III Student-Management-System up to 1a938fa61e9f735078e9b291d2e6215b4942af3f. This affect...
CVE-2026-5647LOW2.4A vulnerability was detected in code-projects Online Shoe Store 1.0. This affects an unknown part of the file /admin/adm...
CVE-2026-5644LOW2.4A security flaw has been discovered in Cyber-III Student-Management-System up to 1a938fa61e9f735078e9b291d2e6215b4942af3...
CVE-2026-5643LOW2.4A vulnerability was identified in Cyber-III Student-Management-System up to 1a938fa61e9f735078e9b291d2e6215b4942af3f. Th...
CVE-2026-5622LOW3.7A vulnerability was determined in hcengineering Huly Platform 0.7.382. Affected by this issue is some unknown functional...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now