2026 CVE Vulnerabilities
43,273 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-4899 | LOW | 2.4 | 0.3% | Mar 26, 2026 | A security flaw has been discovered in code-projects Online Food Ordering System 1.0. Affected by this issue is some unk... |
| CVE-2026-0968 | LOW | 3.1 | 0.4% | Mar 26, 2026 | A flaw was found in libssh in which a malicious SFTP (SSH File Transfer Protocol) server can exploit this by sending a m... |
| CVE-2026-0965 | LOW | 3.3 | 0.2% | Mar 26, 2026 | A flaw was found in libssh where it can attempt to open arbitrary files during configuration parsing. A local attacker c... |
| CVE-2026-3109 | LOW | 2.2 | 0.3% | Mar 26, 2026 | Mattermost Plugins versions <=11.4 10.11.11.0 fail to validate webhook request timestamps which allows an attacker to co... |
| CVE-2026-4874 | LOW | 3.1 | 0.3% | Mar 26, 2026 | A flaw was found in Keycloak. An authenticated attacker can perform Server-Side Request Forgery (SSRF) by manipulating t... |
| CVE-2026-4835 | LOW | 3.5 | 0.2% | Mar 26, 2026 | A security vulnerability has been detected in code-projects Accounting System 1.0. Impacted is an unknown function of th... |
| CVE-2026-4833 | LOW | 3.3 | 0.1% | Mar 26, 2026 | A weakness has been identified in Orc discount up to 3.0.1.2. This issue affects the function compile of the file markdo... |
| CVE-2026-4831 | LOW | 3.7 | 0.5% | Mar 26, 2026 | A security flaw has been discovered in kalcaddle kodbox 1.64. Impacted is the function can of the file /workspace/source... |
| CVE-2026-4823 | LOW | 2.5 | 0.1% | Mar 25, 2026 | A flaw has been found in Enter Software Iperius Backup up to 8.7.3. Affected by this vulnerability is an unknown functio... |
| CVE-2026-4363 | LOW | 3.7 | 0.1% | Mar 25, 2026 | GitLab has remediated an issue in GitLab EE affecting all versions from 18.1 before 18.8.7, 18.9 before 18.9.3, and 18.1... |
| CVE-2026-28893 | LOW | 3.3 | 0.1% | Mar 25, 2026 | A privacy issue was addressed with improved handling of temporary files. This issue is fixed in macOS Tahoe 26.4. A docu... |
| CVE-2026-28864 | LOW | 3.3 | 0.2% | Mar 25, 2026 | This issue was addressed with improved permissions checking. This issue is fixed in iOS 18.7.7 and iPadOS 18.7.7, iOS 26... |
| CVE-2026-20684 | LOW | 3.3 | 0.1% | Mar 25, 2026 | A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Tahoe 26.4. An app may bypa... |
| CVE-2026-4433 | LOW | 1.9 | 0.2% | Mar 24, 2026 | An SSH misconfigurations exists in Tenable OT that led to the potential exfiltration of socket, port, and service inform... |
| CVE-2026-33624 | LOW | 2.7 | 0.2% | Mar 24, 2026 | Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js. Prior to version... |
| CVE-2026-4742 | LOW | 2.9 | 0.2% | Mar 24, 2026 | Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggling') vulnerability in visualfc liteide (lite... |
| CVE-2026-4616 | LOW | 2.4 | 0.3% | Mar 24, 2026 | A security flaw has been discovered in bolo-blog up to 2.6.4. The affected element is an unknown function of the file /c... |
| CVE-2026-33168 | LOW | 2.3 | 0.5% | Mar 23, 2026 | Action View provides conventions and helpers for building web pages with the Rails framework. Prior to versions 8.1.2.1,... |
| CVE-2026-4595 | LOW | 2.4 | 0.2% | Mar 23, 2026 | A vulnerability was determined in code-projects Exam Form Submission 1.0. This vulnerability affects unknown code of the... |
| CVE-2026-4590 | LOW | 3.1 | 0.1% | Mar 23, 2026 | A security flaw has been discovered in kalcaddle kodbox 1.64. The impacted element is an unknown function of the file /w... |
| CVE-2026-4588 | LOW | 3.7 | 0.3% | Mar 23, 2026 | A vulnerability was determined in kalcaddle kodbox 1.64. Impacted is the function shareSafeGroup of the file /workspace/... |
| CVE-2026-4584 | LOW | 3.1 | 0.2% | Mar 23, 2026 | A flaw has been found in Shenzhen HCC Technology MPOS M6 PLUS 1V.31-N. This affects an unknown part of the component Car... |
| CVE-2026-4633 | LOW | 3.7 | 0.3% | Mar 23, 2026 | A flaw was found in Keycloak. A remote attacker can exploit differential error messages during the identity-first login ... |
| CVE-2026-4578 | LOW | 2.4 | 0.3% | Mar 23, 2026 | A vulnerability was determined in code-projects Exam Form Submission 1.0. The impacted element is an unknown function of... |
| CVE-2026-4577 | LOW | 2.4 | 0.2% | Mar 23, 2026 | A vulnerability was found in code-projects Exam Form Submission 1.0. The affected element is an unknown function of the ... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now