2026 CVE Vulnerabilities
48,925 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-33007 | MEDIUM | 5.3 | 0.5% | May 4, 2026 | A NULL pointer dereference in the mod_authn_socache in Apache HTTP Server 2.4.66 and earlier allows an unauthenticated r... |
| CVE-2026-33006 | MEDIUM | 4.8 | 0.6% | May 4, 2026 | A timing attack against mod_auth_digest in Apache HTTP Server 2.4.66 allows a bypass of Digest authentication by a remot... |
| CVE-2026-34032 | MEDIUM | 5.3 | 0.5% | May 4, 2026 | Improper Null Termination, Out-of-bounds Read vulnerability in Apache HTTP Server. This issue affects Apache HTTP Serve... |
| CVE-2026-33857 | MEDIUM | 5.3 | 0.4% | May 4, 2026 | Out-of-bounds Read vulnerability in mod_proxy_ajp of Apache HTTP Server. This issue affects Apache HTTP Server: throu... |
| CVE-2026-31205 | MEDIUM | 5.7 | 0.3% | May 4, 2026 | Cross Site Scripting vulnerability in Pluck CMS before v.4.7.21dev allows a remote attacker to escalate privileges via t... |
| CVE-2026-7746 | MEDIUM | 6.3 | 0.2% | May 4, 2026 | A vulnerability was identified in SourceCodester Web-based Pharmacy Product Management System 1.0. Affected is an unknow... |
| CVE-2026-7745 | MEDIUM | 6.3 | 0.2% | May 4, 2026 | A vulnerability was determined in CodeAstro Online Classroom 1.0. This impacts an unknown function of the file /OnlineCl... |
| CVE-2026-7744 | MEDIUM | 6.3 | 0.2% | May 4, 2026 | A vulnerability was found in CodeAstro Online Classroom 1.0. This affects an unknown function of the file /OnlineClassro... |
| CVE-2026-7743 | MEDIUM | 6.3 | 0.2% | May 4, 2026 | A vulnerability has been found in CodeAstro Online Classroom 1.0. The impacted element is an unknown function of the fil... |
| CVE-2026-7742 | MEDIUM | 6.3 | 0.2% | May 4, 2026 | A flaw has been found in CodeAstro Online Classroom 1.0. The affected element is an unknown function of the file /Online... |
| CVE-2026-7741 | MEDIUM | 6.3 | 0.2% | May 4, 2026 | A vulnerability was detected in CodeAstro Online Classroom 1.0. Impacted is an unknown function of the file /OnlineClass... |
| CVE-2026-7738 | MEDIUM | 6.3 | 0.3% | May 4, 2026 | A security flaw has been discovered in puchunjie doc-tools-mcp 1.0.18. This affects the function create_document/open_do... |
| CVE-2026-5335 | MEDIUM | 5.3 | 0.3% | May 4, 2026 | The Magic Export & Import WordPress plugin before 1.2.0 stores exported CSV files at a publicly accessible location, mak... |
| CVE-2026-20451 | MEDIUM | 6.7 | 0.2% | May 4, 2026 | In slbc, there is a possible out of bounds write due to type confusion. This could lead to local escalation of privilege... |
| CVE-2026-20450 | MEDIUM | 6.5 | 0.3% | May 4, 2026 | In Modem, there is a possible system crash due to incorrect error handling. This could lead to remote denial of service,... |
| CVE-2026-20449 | MEDIUM | 6.5 | 0.2% | May 4, 2026 | In Modem, there is a possible system crash due to a heap buffer overflow. This could lead to remote denial of service, i... |
| CVE-2026-20448 | MEDIUM | 6.7 | 0.1% | May 4, 2026 | In geniezone, there is a possible escalation of privilege due to a missing permission check. This could lead to local es... |
| CVE-2026-20447 | MEDIUM | 6.7 | 0.1% | May 4, 2026 | In geniezone, there is a possible escalation of privilege due to a missing bounds check. This could lead to local escala... |
| CVE-2026-7732 | MEDIUM | 6.3 | 0.2% | May 4, 2026 | A vulnerability was detected in code-projects BloodBank Managing System 1.0. The impacted element is an unknown function... |
| CVE-2026-7731 | MEDIUM | 6.3 | 0.2% | May 4, 2026 | A security vulnerability has been detected in code-projects BloodBank Managing System 1.0. The affected element is an un... |
| CVE-2026-7730 | MEDIUM | 6.3 | 1.1% | May 4, 2026 | A weakness has been identified in privsim mcp-test-runner 0.2.0. Impacted is the function child_process.spawn of the fil... |
| CVE-2026-7729 | MEDIUM | 6.3 | 0.2% | May 4, 2026 | A security flaw has been discovered in pixelsock directus-mcp 1.0.0. This issue affects the function validateUrl of the ... |
| CVE-2026-7728 | MEDIUM | 6.3 | 0.3% | May 4, 2026 | A vulnerability was identified in ryanjoachim mcp-rtfm 0.1.0. This vulnerability affects the function get_doc_content/re... |
| CVE-2026-7725 | MEDIUM | 6.3 | 0.2% | May 4, 2026 | A vulnerability was found in PrefectHQ prefect up to 3.6.25.dev6. Affected by this issue is some unknown functionality o... |
| CVE-2026-7724 | MEDIUM | 5 | 0.3% | May 4, 2026 | A vulnerability has been found in PrefectHQ prefect up to 3.6.28.dev1. Affected by this vulnerability is the function va... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now