2026 CVE Vulnerabilities
48,561 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-42176 | MEDIUM | 6.7 | 0.2% | May 8, 2026 | Scoold is a Q&A and a knowledge sharing platform for teams. Prior to version 1.67.0, Scoold allows the admins configurat... |
| CVE-2026-41495 | MEDIUM | 5.3 | 0.3% | May 8, 2026 | n8n-MCP is an MCP server that provides AI assistants access to n8n node documentation, properties, and operations. Prior... |
| CVE-2026-41511 | MEDIUM | 5.5 | 0.2% | May 8, 2026 | OpenMcdf is a fully .NET / C# library to manipulate Compound File Binary File Format files, also known as Structured Sto... |
| CVE-2026-42030 | MEDIUM | 6.1 | 0.2% | May 8, 2026 | MapServer is a system for developing web-based GIS applications. From version 6.0 to before version 8.6.2, a reflected X... |
| CVE-2026-42028 | MEDIUM | 5.3 | 0.3% | May 8, 2026 | novaGallery is a php image gallery. Prior to version 2.1.1, a path traversal vulnerability has been identified in novaGa... |
| CVE-2026-41887 | MEDIUM | 4.9 | 0.4% | May 8, 2026 | Flarum is open-source forum software. Prior to versions 1.8.16 and 2.0.0-rc.1, Flarum's patch for CVE-2023-27577 restric... |
| CVE-2026-42794 | MEDIUM | 6.1 | 0.3% | May 8, 2026 | Improper Neutralization of Input During Web Page Generation (XSS) vulnerability in absinthe-graphql absinthe_plug allows... |
| CVE-2026-41885 | MEDIUM | 6.5 | 0.2% | May 8, 2026 | i18next-locize-backend is a simple i18next backend for locize.com which can be used in Node.js, in the browser and for D... |
| CVE-2026-41591 | MEDIUM | 6.4 | 0.2% | May 8, 2026 | Marko is a declarative, HTML-based language for building web apps. Prior to marko version 5.38.36 and prior to @marko/ru... |
| CVE-2026-44500 | MEDIUM | 5.3 | 0.4% | May 8, 2026 | ZEBRA is a Zcash node written entirely in Rust. Prior to zebrad version 4.4.0, prior to zebra-chain version 7.0.0, and p... |
| CVE-2026-43475 | MEDIUM | 5.5 | 0.1% | May 8, 2026 | In the Linux kernel, the following vulnerability has been resolved: scsi: storvsc: Fix scheduling while atomic on PREEM... |
| CVE-2026-43474 | MEDIUM | 5.5 | 0.1% | May 8, 2026 | In the Linux kernel, the following vulnerability has been resolved: fs: init flags_valid before calling vfs_fileattr_ge... |
| CVE-2026-43473 | MEDIUM | 5.5 | 0.1% | May 8, 2026 | In the Linux kernel, the following vulnerability has been resolved: scsi: mpi3mr: Add NULL checks when resetting reques... |
| CVE-2026-43472 | MEDIUM | 5.5 | 0.1% | May 8, 2026 | In the Linux kernel, the following vulnerability has been resolved: unshare: fix unshare_fs() handling There's an unpl... |
| CVE-2026-43471 | MEDIUM | 5.5 | 0.1% | May 8, 2026 | In the Linux kernel, the following vulnerability has been resolved: scsi: ufs: core: Fix possible NULL pointer derefere... |
| CVE-2026-43470 | MEDIUM | 5.5 | 0.1% | May 8, 2026 | In the Linux kernel, the following vulnerability has been resolved: nfs: return EISDIR on nfs3_proc_create if d_alias i... |
| CVE-2026-43468 | MEDIUM | 5.5 | 0.1% | May 8, 2026 | In the Linux kernel, the following vulnerability has been resolved: net/mlx5: Fix deadlock between devlink lock and esw... |
| CVE-2026-43467 | MEDIUM | 5.5 | 0.1% | May 8, 2026 | In the Linux kernel, the following vulnerability has been resolved: net/mlx5: Fix crash when moving to switchdev mode ... |
| CVE-2026-43463 | MEDIUM | 5.5 | 0.1% | May 8, 2026 | In the Linux kernel, the following vulnerability has been resolved: rxrpc, afs: Fix missing error pointer check after r... |
| CVE-2026-43457 | MEDIUM | 5.5 | 0.1% | May 8, 2026 | In the Linux kernel, the following vulnerability has been resolved: mctp: i2c: fix skb memory leak in receive path Whe... |
| CVE-2026-43455 | MEDIUM | 5.5 | 0.1% | May 8, 2026 | In the Linux kernel, the following vulnerability has been resolved: mctp: route: hold key->lock in mctp_flow_prepare_ou... |
| CVE-2026-43451 | MEDIUM | 5.5 | 0.1% | May 8, 2026 | In the Linux kernel, the following vulnerability has been resolved: netfilter: nfnetlink_queue: fix entry leak in bridg... |
| CVE-2026-43448 | MEDIUM | 4.7 | 0.1% | May 8, 2026 | In the Linux kernel, the following vulnerability has been resolved: nvme-pci: Fix race bug in nvme_poll_irqdisable() I... |
| CVE-2026-43446 | MEDIUM | 5.5 | 0.1% | May 8, 2026 | In the Linux kernel, the following vulnerability has been resolved: accel/amdxdna: Fix runtime suspend deadlock when th... |
| CVE-2026-43445 | MEDIUM | 5.5 | 0.1% | May 8, 2026 | In the Linux kernel, the following vulnerability has been resolved: e1000/e1000e: Fix leak in DMA error cleanup If an ... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now