2026 CVE Vulnerabilities

48,925 CVEs published in 2026.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2026-33007MEDIUM5.3A NULL pointer dereference in the mod_authn_socache in Apache HTTP Server 2.4.66 and earlier allows an unauthenticated r...
CVE-2026-33006MEDIUM4.8A timing attack against mod_auth_digest in Apache HTTP Server 2.4.66 allows a bypass of Digest authentication by a remot...
CVE-2026-34032MEDIUM5.3Improper Null Termination, Out-of-bounds Read vulnerability in Apache HTTP Server. This issue affects Apache HTTP Serve...
CVE-2026-33857MEDIUM5.3Out-of-bounds Read vulnerability in mod_proxy_ajp of Apache HTTP Server. This issue affects Apache HTTP Server: throu...
CVE-2026-31205MEDIUM5.7Cross Site Scripting vulnerability in Pluck CMS before v.4.7.21dev allows a remote attacker to escalate privileges via t...
CVE-2026-7746MEDIUM6.3A vulnerability was identified in SourceCodester Web-based Pharmacy Product Management System 1.0. Affected is an unknow...
CVE-2026-7745MEDIUM6.3A vulnerability was determined in CodeAstro Online Classroom 1.0. This impacts an unknown function of the file /OnlineCl...
CVE-2026-7744MEDIUM6.3A vulnerability was found in CodeAstro Online Classroom 1.0. This affects an unknown function of the file /OnlineClassro...
CVE-2026-7743MEDIUM6.3A vulnerability has been found in CodeAstro Online Classroom 1.0. The impacted element is an unknown function of the fil...
CVE-2026-7742MEDIUM6.3A flaw has been found in CodeAstro Online Classroom 1.0. The affected element is an unknown function of the file /Online...
CVE-2026-7741MEDIUM6.3A vulnerability was detected in CodeAstro Online Classroom 1.0. Impacted is an unknown function of the file /OnlineClass...
CVE-2026-7738MEDIUM6.3A security flaw has been discovered in puchunjie doc-tools-mcp 1.0.18. This affects the function create_document/open_do...
CVE-2026-5335MEDIUM5.3The Magic Export & Import WordPress plugin before 1.2.0 stores exported CSV files at a publicly accessible location, mak...
CVE-2026-20451MEDIUM6.7In slbc, there is a possible out of bounds write due to type confusion. This could lead to local escalation of privilege...
CVE-2026-20450MEDIUM6.5In Modem, there is a possible system crash due to incorrect error handling. This could lead to remote denial of service,...
CVE-2026-20449MEDIUM6.5In Modem, there is a possible system crash due to a heap buffer overflow. This could lead to remote denial of service, i...
CVE-2026-20448MEDIUM6.7In geniezone, there is a possible escalation of privilege due to a missing permission check. This could lead to local es...
CVE-2026-20447MEDIUM6.7In geniezone, there is a possible escalation of privilege due to a missing bounds check. This could lead to local escala...
CVE-2026-7732MEDIUM6.3A vulnerability was detected in code-projects BloodBank Managing System 1.0. The impacted element is an unknown function...
CVE-2026-7731MEDIUM6.3A security vulnerability has been detected in code-projects BloodBank Managing System 1.0. The affected element is an un...
CVE-2026-7730MEDIUM6.3A weakness has been identified in privsim mcp-test-runner 0.2.0. Impacted is the function child_process.spawn of the fil...
CVE-2026-7729MEDIUM6.3A security flaw has been discovered in pixelsock directus-mcp 1.0.0. This issue affects the function validateUrl of the ...
CVE-2026-7728MEDIUM6.3A vulnerability was identified in ryanjoachim mcp-rtfm 0.1.0. This vulnerability affects the function get_doc_content/re...
CVE-2026-7725MEDIUM6.3A vulnerability was found in PrefectHQ prefect up to 3.6.25.dev6. Affected by this issue is some unknown functionality o...
CVE-2026-7724MEDIUM5A vulnerability has been found in PrefectHQ prefect up to 3.6.28.dev1. Affected by this vulnerability is the function va...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now