2026 CVE Vulnerabilities

43,273 CVEs published in 2026.

Filter:LOWClear
CVE IDSeverityCVSSDescription
CVE-2026-4899LOW2.4A security flaw has been discovered in code-projects Online Food Ordering System 1.0. Affected by this issue is some unk...
CVE-2026-0968LOW3.1A flaw was found in libssh in which a malicious SFTP (SSH File Transfer Protocol) server can exploit this by sending a m...
CVE-2026-0965LOW3.3A flaw was found in libssh where it can attempt to open arbitrary files during configuration parsing. A local attacker c...
CVE-2026-3109LOW2.2Mattermost Plugins versions <=11.4 10.11.11.0 fail to validate webhook request timestamps which allows an attacker to co...
CVE-2026-4874LOW3.1A flaw was found in Keycloak. An authenticated attacker can perform Server-Side Request Forgery (SSRF) by manipulating t...
CVE-2026-4835LOW3.5A security vulnerability has been detected in code-projects Accounting System 1.0. Impacted is an unknown function of th...
CVE-2026-4833LOW3.3A weakness has been identified in Orc discount up to 3.0.1.2. This issue affects the function compile of the file markdo...
CVE-2026-4831LOW3.7A security flaw has been discovered in kalcaddle kodbox 1.64. Impacted is the function can of the file /workspace/source...
CVE-2026-4823LOW2.5A flaw has been found in Enter Software Iperius Backup up to 8.7.3. Affected by this vulnerability is an unknown functio...
CVE-2026-4363LOW3.7GitLab has remediated an issue in GitLab EE affecting all versions from 18.1 before 18.8.7, 18.9 before 18.9.3, and 18.1...
CVE-2026-28893LOW3.3A privacy issue was addressed with improved handling of temporary files. This issue is fixed in macOS Tahoe 26.4. A docu...
CVE-2026-28864LOW3.3This issue was addressed with improved permissions checking. This issue is fixed in iOS 18.7.7 and iPadOS 18.7.7, iOS 26...
CVE-2026-20684LOW3.3A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Tahoe 26.4. An app may bypa...
CVE-2026-4433LOW1.9An SSH misconfigurations exists in Tenable OT that led to the potential exfiltration of socket, port, and service inform...
CVE-2026-33624LOW2.7Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js. Prior to version...
CVE-2026-4742LOW2.9Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggling') vulnerability in visualfc liteide (lite...
CVE-2026-4616LOW2.4A security flaw has been discovered in bolo-blog up to 2.6.4. The affected element is an unknown function of the file /c...
CVE-2026-33168LOW2.3Action View provides conventions and helpers for building web pages with the Rails framework. Prior to versions 8.1.2.1,...
CVE-2026-4595LOW2.4A vulnerability was determined in code-projects Exam Form Submission 1.0. This vulnerability affects unknown code of the...
CVE-2026-4590LOW3.1A security flaw has been discovered in kalcaddle kodbox 1.64. The impacted element is an unknown function of the file /w...
CVE-2026-4588LOW3.7A vulnerability was determined in kalcaddle kodbox 1.64. Impacted is the function shareSafeGroup of the file /workspace/...
CVE-2026-4584LOW3.1A flaw has been found in Shenzhen HCC Technology MPOS M6 PLUS 1V.31-N. This affects an unknown part of the component Car...
CVE-2026-4633LOW3.7A flaw was found in Keycloak. A remote attacker can exploit differential error messages during the identity-first login ...
CVE-2026-4578LOW2.4A vulnerability was determined in code-projects Exam Form Submission 1.0. The impacted element is an unknown function of...
CVE-2026-4577LOW2.4A vulnerability was found in code-projects Exam Form Submission 1.0. The affected element is an unknown function of the ...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now