2026 CVE Vulnerabilities
43,273 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-5199 | LOW | 2.3 | 0.2% | Apr 1, 2026 | A writer role user in an attacker-controlled namespace could signal, delete, and reset workflows or activities in a vict... |
| CVE-2026-5310 | LOW | 2.5 | 0.1% | Apr 1, 2026 | A vulnerability was identified in Enter Software Iperius Backup up to 8.7.2. This impacts an unknown function of the fil... |
| CVE-2026-5254 | LOW | 3.5 | 0.2% | Apr 1, 2026 | A security vulnerability has been detected in welovemedia FFmate up to 2.0.15. Affected by this issue is some unknown fu... |
| CVE-2026-5253 | LOW | 3.5 | 0.2% | Apr 1, 2026 | A weakness has been identified in bufanyun HotGo 1.0/2.0. Affected by this vulnerability is an unknown functionality of ... |
| CVE-2026-5252 | LOW | 3.5 | 0.3% | Apr 1, 2026 | A security flaw has been discovered in z-9527 admin 1.0/2.0. Affected is an unknown function of the file /server/routes/... |
| CVE-2026-5249 | LOW | 3.5 | 0.2% | Apr 1, 2026 | A vulnerability was found in gougucms 4.08.18. This impacts an unknown function of the file \gougucms-master\app\admin\v... |
| CVE-2026-3470 | LOW | 3.8 | 0.3% | Mar 31, 2026 | A vulnerability exists in the SonicWall Email Security appliance due to improper input sanitization that may lead to dat... |
| CVE-2026-3469 | LOW | 2.7 | 0.4% | Mar 31, 2026 | A denial-of-service (DoS) vulnerability exists due to improper input validation in the SonicWall Email Security applianc... |
| CVE-2026-34383 | LOW | 3.5 | 0.1% | Mar 31, 2026 | Admidio is an open-source user management solution. Prior to version 5.0.8, the inventory module's item_save endpoint ac... |
| CVE-2026-34372 | LOW | 2.7 | 0.3% | Mar 31, 2026 | Sulu is an open-source PHP content management system based on the Symfony framework. From versions 1.0.0 to before 2.6.2... |
| CVE-2026-5209 | LOW | 2.4 | 0.3% | Mar 31, 2026 | A security vulnerability has been detected in SourceCodester Leave Application System 1.0. Affected by this issue is som... |
| CVE-2026-33415 | LOW | 2.7 | 0.2% | Mar 31, 2026 | Discourse is an open-source discussion platform. From versions 2026.1.0-latest to before 2026.1.3, 2026.2.0-latest to be... |
| CVE-2026-33762 | LOW | 2.8 | 0.2% | Mar 31, 2026 | go-git is an extensible git implementation library written in pure Go. Prior to version 5.17.1, go-git’s index decoder f... |
| CVE-2026-32970 | LOW | 3.3 | 0.1% | Mar 31, 2026 | OpenClaw before 2026.3.11 contains a credential fallback vulnerability where unavailable local gateway.auth.token and ga... |
| CVE-2026-21716 | LOW | 3.3 | 0.2% | Mar 30, 2026 | An incomplete fix for CVE-2024-36137 leaves `FileHandle.chmod()` and `FileHandle.chown()` in the promises API without th... |
| CVE-2026-21715 | LOW | 3.3 | 0.2% | Mar 30, 2026 | A flaw in Node.js Permission Model filesystem enforcement leaves `fs.realpathSync.native()` without the required read pe... |
| CVE-2026-5037 | LOW | 3.3 | 0.1% | Mar 29, 2026 | A vulnerability was determined in mxml up to 4.0.4. This issue affects the function index_sort of the file mxml-index.c ... |
| CVE-2026-4995 | LOW | 3.5 | 0.2% | Mar 28, 2026 | A vulnerability was determined in wandb OpenUI up to 1.0. Affected by this vulnerability is an unknown functionality of ... |
| CVE-2026-4994 | LOW | 3.5 | 0.2% | Mar 28, 2026 | A vulnerability was found in wandb OpenUI up to 1.0/3.5-turb. Affected is the function generic_exception_handler of the ... |
| CVE-2026-4993 | LOW | 3.3 | 0.1% | Mar 28, 2026 | A vulnerability has been found in wandb OpenUI up to 0.0.0.0/1.0. This impacts an unknown function of the file backend/o... |
| CVE-2026-4973 | LOW | 3.5 | 0.2% | Mar 27, 2026 | A vulnerability was detected in SourceCodester Online Quiz System up to 1.0. Affected by this vulnerability is an unknow... |
| CVE-2026-4972 | LOW | 2.4 | 0.2% | Mar 27, 2026 | A security vulnerability has been detected in code-projects Online Reviewer System up to 1.0. Affected is an unknown fun... |
| CVE-2026-4969 | LOW | 3.5 | 0.2% | Mar 27, 2026 | A vulnerability was identified in code-projects Social Networking Site 1.0. The impacted element is an unknown function ... |
| CVE-2026-4957 | LOW | 2.7 | 0.3% | Mar 27, 2026 | A flaw has been found in OpenBMB XAgent 1.0.0. The impacted element is the function FunctionHandler.handle_tool_call of ... |
| CVE-2026-4909 | LOW | 2.4 | 0.3% | Mar 27, 2026 | A weakness has been identified in code-projects Exam Form Submission 1.0. This impacts an unknown function of the file /... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now