2026 CVE Vulnerabilities
48,674 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-44117 | MEDIUM | 6.3 | 0.2% | May 6, 2026 | OpenClaw before 2026.4.20 contains a server-side request forgery vulnerability in QQBot direct media upload that skips U... |
| CVE-2026-44111 | MEDIUM | 4.3 | 0.2% | May 6, 2026 | OpenClaw before 2026.4.15 contains an arbitrary file read vulnerability in the QMD backend memory_get function that allo... |
| CVE-2026-43583 | MEDIUM | 6.5 | 0.2% | May 6, 2026 | OpenClaw versions 2026.4.10 before 2026.4.14 fail to persist session context during delivery queue recovery for media re... |
| CVE-2026-43582 | MEDIUM | 6.3 | 0.2% | May 6, 2026 | OpenClaw before 2026.4.10 contains a server-side request forgery vulnerability in browser navigation policy that allows ... |
| CVE-2026-43579 | MEDIUM | 6.5 | 0.2% | May 6, 2026 | OpenClaw before 2026.4.10 contains an insufficient access control vulnerability in Nostr plugin HTTP profile routes that... |
| CVE-2026-8031 | MEDIUM | 5.5 | 0.4% | May 6, 2026 | A vulnerability was detected in PicoTronica e-Clinic Healthcare System ECHS 5.7. The affected element is an unknown func... |
| CVE-2026-8021 | MEDIUM | 4.2 | 0.2% | May 6, 2026 | Script injection in UI in Google Chrome prior to 148.0.7778.96 allowed a remote attacker who convinced a user to engage ... |
| CVE-2026-8020 | MEDIUM | 5.3 | 0.2% | May 6, 2026 | Uninitialized Use in GPU in Google Chrome on Android prior to 148.0.7778.96 allowed a remote attacker who had compromise... |
| CVE-2026-8019 | MEDIUM | 5.4 | 0.2% | May 6, 2026 | Insufficient policy enforcement in WebApp in Google Chrome prior to 148.0.7778.96 allowed a remote attacker to perform U... |
| CVE-2026-8015 | MEDIUM | 5.4 | 0.2% | May 6, 2026 | Inappropriate implementation in Media in Google Chrome prior to 148.0.7778.96 allowed a remote attacker to perform UI sp... |
| CVE-2026-8014 | MEDIUM | 4.3 | 0.2% | May 6, 2026 | Inappropriate implementation in Preload in Google Chrome prior to 148.0.7778.96 allowed a remote attacker to leak cross-... |
| CVE-2026-8013 | MEDIUM | 4.3 | 0.2% | May 6, 2026 | Insufficient validation of untrusted input in FedCM in Google Chrome prior to 148.0.7778.96 allowed a remote attacker to... |
| CVE-2026-8012 | MEDIUM | 5.4 | 0.1% | May 6, 2026 | Inappropriate implementation in MHTML in Google Chrome prior to 148.0.7778.96 allowed a remote attacker who had compromi... |
| CVE-2026-8011 | MEDIUM | 4.3 | 0.2% | May 6, 2026 | Insufficient policy enforcement in Search in Google Chrome prior to 148.0.7778.96 allowed a remote attacker to leak cros... |
| CVE-2026-8010 | MEDIUM | 6.3 | 0.1% | May 6, 2026 | Insufficient validation of untrusted input in SiteIsolation in Google Chrome prior to 148.0.7778.96 allowed a remote att... |
| CVE-2026-8009 | MEDIUM | 5 | 0.1% | May 6, 2026 | Inappropriate implementation in Cast in Google Chrome prior to 148.0.7778.96 allowed a remote attacker who had compromis... |
| CVE-2026-8008 | MEDIUM | 5.4 | 0.1% | May 6, 2026 | Inappropriate implementation in DevTools in Google Chrome prior to 148.0.7778.96 allowed an attacker who convinced a use... |
| CVE-2026-8006 | MEDIUM | 5.4 | 0.1% | May 6, 2026 | Insufficient policy enforcement in DevTools in Google Chrome prior to 148.0.7778.96 allowed an attacker who convinced a ... |
| CVE-2026-8005 | MEDIUM | 4.3 | 0.1% | May 6, 2026 | Insufficient validation of untrusted input in Cast in Google Chrome prior to 148.0.7778.96 allowed an attacker on the lo... |
| CVE-2026-8004 | MEDIUM | 4.3 | 0.1% | May 6, 2026 | Insufficient policy enforcement in DevTools in Google Chrome prior to 148.0.7778.96 allowed an attacker who convinced a ... |
| CVE-2026-8003 | MEDIUM | 5.4 | 0.1% | May 6, 2026 | Insufficient validation of untrusted input in TabGroups in Google Chrome prior to 148.0.7778.96 allowed a remote attacke... |
| CVE-2026-7999 | MEDIUM | 4.3 | 0.2% | May 6, 2026 | Inappropriate implementation in V8 in Google Chrome prior to 148.0.7778.96 allowed a remote attacker to obtain potential... |
| CVE-2026-7998 | MEDIUM | 5.4 | 0.2% | May 6, 2026 | Insufficient validation of untrusted input in Dialog in Google Chrome prior to 148.0.7778.96 allowed a remote attacker w... |
| CVE-2026-7996 | MEDIUM | 4.2 | 0.2% | May 6, 2026 | Insufficient validation of untrusted input in SSL in Google Chrome prior to 148.0.7778.96 allowed a remote attacker who ... |
| CVE-2026-7993 | MEDIUM | 4.2 | 0.2% | May 6, 2026 | Insufficient validation of untrusted input in Payments in Google Chrome on Android prior to 148.0.7778.96 allowed a remo... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now