2026 CVE Vulnerabilities
48,589 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-44927 | MEDIUM | 5.3 | 0.2% | May 8, 2026 | In uriparser before 1.0.2, there is pointer difference truncation to int in various places. |
| CVE-2026-8149 | MEDIUM | 5.1 | 0.2% | May 8, 2026 | A vulnerability in Legion of the Bouncy Castle Inc. BC-LTS bcprov-lts8on on X86_64, AVX, AVX-512f, Linux, Legion of the ... |
| CVE-2026-42279 | MEDIUM | 5.8 | 0.3% | May 8, 2026 | solidtime is an open-source time-tracking app. In version 0.12.0, the PUT /api/v1/organizations/{organization}/time-entr... |
| CVE-2026-42277 | MEDIUM | 6.5 | 0.2% | May 8, 2026 | Onyx is an open-source AI platform. Prior to versions 3.0.9, 3.1.6, and 3.2.6, the GET /chat/file/{file_id} endpoint all... |
| CVE-2026-42276 | MEDIUM | 4.3 | 0.3% | May 8, 2026 | Onyx is an open-source AI platform. Prior to versions 3.0.9, 3.1.6, and 3.2.6, the POST /chat/stop-chat-session/{chat_se... |
| CVE-2026-44298 | MEDIUM | 4.9 | 0.3% | May 8, 2026 | Kimai is an open-source time tracking application. From version 2.32.0 to before version 2.56.0, users with the role Sys... |
| CVE-2026-43942 | MEDIUM | 5.5 | 0.1% | May 8, 2026 | electerm is an open-sourced terminal/ssh/sftp/telnet/serialport/RDP/VNC/Spice/ftp client. In versions 3.8.15 and prior, ... |
| CVE-2026-42267 | MEDIUM | 5.7 | 0.2% | May 8, 2026 | Kimai is an open-source time tracking application. From version 2.27.0 to before version 2.54.0, any ROLE_USER can creat... |
| CVE-2026-42150 | MEDIUM | 4.8 | 0.2% | May 8, 2026 | wlc is a Weblate command-line client using Weblate's REST API. Prior to version 2.0.0, the HTML output format in wlc emb... |
| CVE-2026-41646 | MEDIUM | 5.5 | 0.1% | May 8, 2026 | Nuclei is a vulnerability scanner built on a simple YAML-based DSL. From version 3.0.0 to before version 3.8.0, a vulner... |
| CVE-2026-41645 | MEDIUM | 5.3 | 0.3% | May 8, 2026 | Nuclei is a vulnerability scanner built on a simple YAML-based DSL. From version 3.0.0 to before version 3.8.0, a vulner... |
| CVE-2026-8127 | MEDIUM | 6.3 | 0.2% | May 8, 2026 | A vulnerability has been found in eladmin up to 2.7. Impacted is the function checkLevel of the file /rest/UserControlle... |
| CVE-2026-3508 | MEDIUM | 6.8 | 0.1% | May 8, 2026 | An Out-of-bounds Read vulnerability in the IOCTL handler in ASUS System Control Interface allows a local user to cause s... |
| CVE-2026-8125 | MEDIUM | 6.3 | 0.3% | May 8, 2026 | A vulnerability was detected in code-projects Simple Chat System 1.0. This vulnerability affects unknown code of the fil... |
| CVE-2026-8124 | MEDIUM | 5.5 | 0.2% | May 8, 2026 | A security vulnerability has been detected in GPAC up to 26.02.0. This affects the function sidx_box_read of the file sr... |
| CVE-2026-8123 | MEDIUM | 6.5 | 0.4% | May 8, 2026 | A vulnerability was determined in Open5GS up to 2.7.7. This impacts the function ogs_sbi_discovery_option_add_snssais in... |
| CVE-2026-8122 | MEDIUM | 6.5 | 0.4% | May 8, 2026 | A vulnerability was found in Open5GS up to 2.7.7. This affects the function ogs_sbi_discovery_option_add_service_names i... |
| CVE-2026-8121 | MEDIUM | 6.5 | 0.4% | May 8, 2026 | A vulnerability has been found in Open5GS up to 2.7.7. The impacted element is the function ogs_sbi_parse_plmn_list in t... |
| CVE-2026-8120 | MEDIUM | 6.5 | 0.4% | May 8, 2026 | A flaw has been found in Open5GS up to 2.7.7. The affected element is the function nssf_nnrf_nsselection_handle_get_from... |
| CVE-2026-8119 | MEDIUM | 5.5 | 0.2% | May 8, 2026 | A vulnerability was detected in Open5GS up to 2.7.7. Impacted is the function ogs_sbi_stream_find_by_id in the library /... |
| CVE-2026-8117 | MEDIUM | 4.3 | 0.3% | May 8, 2026 | A security vulnerability has been detected in SourceCodester Pizzafy Ecommerce System 1.0. This issue affects some unkno... |
| CVE-2026-8116 | MEDIUM | 6.3 | 0.3% | May 8, 2026 | A weakness has been identified in huangjunsen0406 xiaozhi-mcphub up to 1.0.3. This vulnerability affects unknown code of... |
| CVE-2026-8115 | MEDIUM | 5.5 | 0.6% | May 7, 2026 | A security flaw has been discovered in gyoridavid short-video-maker up to 1.3.4. This affects an unknown part of the fil... |
| CVE-2026-8114 | MEDIUM | 6.3 | 0.2% | May 7, 2026 | A vulnerability was identified in JeecgBoot up to 3.9.1. Affected by this issue is some unknown functionality of the fil... |
| CVE-2026-8113 | MEDIUM | 6.5 | 0.4% | May 7, 2026 | A vulnerability was determined in 8421bit MiniClaw up to 43905b934cf76489ab28e4d17da28ee97970f91f. Affected by this vuln... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now