2026 CVE Vulnerabilities

49,614 CVEs published in 2026.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2026-10617HIGH7.3A security vulnerability has been detected in nextlevelbuilder GoClaw up to 3.11.3. This affects the function resolveAut...
CVE-2026-10608HIGH7.3A security flaw has been discovered in DedeCMS 5.7.88. This affects the function RemoveXSS of the file /plus/carbuyactio...
CVE-2026-10607HIGH7.3A vulnerability was identified in DedeCMS 5.7.88. The impacted element is the function dede_htmlspecialchars of the file...
CVE-2026-10584HIGH8.2Proxy server in Graph Explorer before 3.0.1 falls back to HTTP when certificate files are missing, which might allow rem...
CVE-2026-40715HIGH7.8Dell ThinOS 10, versions prior to ThinOS10 2602_10.0765, contain an Improper Access Control vulnerability. A low privile...
CVE-2026-24237HIGH7.8NVIDIA NVTabular contains a vulnerability where an attacker could cause improper deserialization of untrusted data. A su...
CVE-2026-24221HIGH7.8NVIDIA NVTabular contains a vulnerability where an attacker could cause improper deserialization of untrusted data. A su...
CVE-2026-10606HIGH7.3A vulnerability was determined in DedeCMS 5.7.88. The affected element is the function TrimMsg of the file /plus/feedbac...
CVE-2026-49754HIGH8.2Allocation of Resources Without Limits or Throttling vulnerability in elixir-mint Mint allows attacker-controlled HTTP/2...
CVE-2026-48862HIGH8.2Allocation of Resources Without Limits or Throttling vulnerability in elixir-mint Mint allows attacker-controlled HTTP/2...
CVE-2026-45686HIGH7.5OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the OpenTelemetry standard. From version 0.7.0...
CVE-2026-45685HIGH7.5OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the OpenTelemetry standard. From version 0.1.0...
CVE-2026-45680HIGH7.5OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the OpenTelemetry standard. Prior to version 0...
CVE-2026-45678HIGH7.5OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the OpenTelemetry standard. Prior to version 0...
CVE-2026-45553HIGH7.5NiceGUI is a Python-based UI framework. Prior to version 3.12.0, ui.restructured_text() renders reStructuredText server-...
CVE-2026-42654HIGH7.1Authentication Bypass Using an Alternate Path or Channel vulnerability in WP Swings Wallet System for WooCommerce allows...
CVE-2026-40780HIGH7.5Authentication Bypass Using an Alternate Path or Channel vulnerability in Liquid Web / StellarWP BookIt allows Password ...
CVE-2026-40619HIGH7.8A high security vulnerability affecting Security Center main server installations has been identified. It could allow an...
CVE-2026-33398HIGH7.1NamelessMC is website software for Minecraft servers. In version 2.2.4, `modules/Forum/pages/forum/get_quotes.php` only ...
CVE-2026-30652HIGH8.8A remote buffer overflow vulnerability exists in the /cgi-bin/dido/setdo.cgi endpoint of the admin interface of Vivotek ...
CVE-2026-30650HIGH8.8A post-authentication remote buffer overflow vulnerability exists in the /cgi-bin/admin/eventtask.cgi endpoint of the ad...
CVE-2026-30649HIGH7.3Buffer Overflow vulnerability in VIVOTEK INC FD8136-VVTK-0300a allows a remote attacker to execute arbitrary code via th...
CVE-2026-10629HIGH7.4SIP signaling stack in Verizon IMS (unspecified version) implements SIP signaling without IPsec integrity protection (mi...
CVE-2026-10591HIGH8.8Insufficient access control restrictions in the file write tool in Amazon Kiro IDE before version 0.11 might allow remot...
CVE-2026-10047HIGH7.8The Bitdefender Napoca bare-metal hypervisor contains an out-of-bounds write vulnerability in the real-mode hook handler...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now