2026 CVE Vulnerabilities

48,715 CVEs published in 2026.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2026-11531HIGH7.3A security flaw has been discovered in imvks786 student_management_system up to 9599b560ad3c3b83e75d328b76bedcd489ef1f46...
CVE-2026-11530HIGH7.3A vulnerability was identified in imvks786 student_management_system up to 9599b560ad3c3b83e75d328b76bedcd489ef1f46. Thi...
CVE-2026-49975HIGH7.5Memory Allocation with Excessive Size Value vulnerability in Apache HTTP Server's mod_http leads to denial of service vi...
CVE-2026-49755HIGH7.5Improper Handling of Highly Compressed Data (Data Amplification) vulnerability in wojtekmach Req allows attacker-control...
CVE-2026-48913HIGH7.3Use After Free vulnerability in Apache HTTP Server module mod_http2 when file handles are already exhausted. This issue...
CVE-2026-46657HIGH7.1Bludit is a content management system. Versions prior to 3.22.0 have a vulnerability in the user management logic that a...
CVE-2026-46656HIGH8.8Bludit is a content management system. Versions prior to 3.22.0 have a Broken Access Control flaw where active sessions ...
CVE-2026-46480HIGH8.8Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, evaluat...
CVE-2026-46479HIGH8.8Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, evaluat...
CVE-2026-46478HIGH8.8Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, Dataset...
CVE-2026-46477HIGH8.8Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, dataset...
CVE-2026-46476HIGH8.8Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, CustomT...
CVE-2026-46475HIGH8.8Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, assista...
CVE-2026-46444HIGH8.8Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, all CRU...
CVE-2026-46275HIGH7.8In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_uart: fix UAFs and race conditions i...
CVE-2026-46274HIGH7.8In the Linux kernel, the following vulnerability has been resolved: io-wq: check that the predecessor is hashed in io_w...
CVE-2026-44186HIGH7.3Loop with Unreachable Exit Condition ('Infinite Loop') vulnerability in the mod_proxy_ftp module in Apache HTTP Server w...
CVE-2026-44185HIGH7.3Buffer Over-read vulnerability in Apache HTTP Server via outbound OCSP requests to an attacker controlled OCSP server T...
CVE-2026-42863HIGH8.1Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, a mass ...
CVE-2026-42536HIGH7.5Heap-based Buffer Overflow vulnerability in Apache HTTP Server with mod_xml2enc, xml2StartParse, and untrusted content ...
CVE-2026-36786HIGH7.5Shenzhen Tenda Technology Co., Ltd Tenda FH451 V1.0.0.9 was discovered to contain a stack overflow in the list1 paramete...
CVE-2026-34356HIGH7.5Heap-based Buffer Overflow vulnerability in Apache HTTP Server with malicious backend servers and ProxyPassReverseCookie...
CVE-2026-34355HIGH7.5A buffer overflow in mod_proxy_html in Apache HTTP Server 2.4.67 and earlier allows an attack by an untrusted backend. U...
CVE-2026-34194HIGH7.1Software installed and run as a non-privileged user may conduct improper GPU system calls to cause mismanagement of a ma...
CVE-2026-22164HIGH7.5Software installed and run as a non-privileged user may conduct improper GPU system calls to corrupt kernel heap memory....

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now