2026 CVE Vulnerabilities
48,931 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-7730 | MEDIUM | 6.3 | 1.1% | May 4, 2026 | A weakness has been identified in privsim mcp-test-runner 0.2.0. Impacted is the function child_process.spawn of the fil... |
| CVE-2026-7729 | MEDIUM | 6.3 | 0.2% | May 4, 2026 | A security flaw has been discovered in pixelsock directus-mcp 1.0.0. This issue affects the function validateUrl of the ... |
| CVE-2026-7728 | MEDIUM | 6.3 | 0.3% | May 4, 2026 | A vulnerability was identified in ryanjoachim mcp-rtfm 0.1.0. This vulnerability affects the function get_doc_content/re... |
| CVE-2026-7725 | MEDIUM | 6.3 | 0.2% | May 4, 2026 | A vulnerability was found in PrefectHQ prefect up to 3.6.25.dev6. Affected by this issue is some unknown functionality o... |
| CVE-2026-7724 | MEDIUM | 5 | 0.3% | May 4, 2026 | A vulnerability has been found in PrefectHQ prefect up to 3.6.28.dev1. Affected by this vulnerability is the function va... |
| CVE-2026-7722 | MEDIUM | 5.5 | 0.5% | May 4, 2026 | A vulnerability was detected in PrefectHQ prefect up to 3.6.21. This impacts the function endswith of the file /api/heal... |
| CVE-2026-7721 | MEDIUM | 6.3 | 0.9% | May 4, 2026 | A security vulnerability has been detected in Totolink WA300 5.2cu.7112_B20190227. This affects the function NTPSyncWith... |
| CVE-2026-7720 | MEDIUM | 6.3 | 0.9% | May 4, 2026 | A weakness has been identified in Totolink WA300 5.2cu.7112_B20190227. The impacted element is the function setLanguageC... |
| CVE-2026-7718 | MEDIUM | 6.3 | 0.9% | May 4, 2026 | A vulnerability was identified in Totolink WA300 5.2cu.7112_B20190227. Impacted is the function setWebWlanIdx of the fil... |
| CVE-2026-7716 | MEDIUM | 6.3 | 0.2% | May 4, 2026 | A vulnerability was found in code-projects Gym Management System In PHP and Windows NT 1.0. This vulnerability affects u... |
| CVE-2026-7715 | MEDIUM | 6.3 | 0.3% | May 4, 2026 | A vulnerability has been found in ravenwits mcp-server-arangodb up to 0.4.7. This affects the function arango_backup of ... |
| CVE-2026-7714 | MEDIUM | 6.5 | 0.5% | May 4, 2026 | A flaw has been found in crocodilestick Calibre-Web-Automated up to 4.0.6. Affected by this issue is some unknown functi... |
| CVE-2026-7371 | MEDIUM | 6.1 | 0.2% | May 4, 2026 | Multiple reflected cross-site scripting (xss) vulnerabilities exist in the Web Interface / ssi.cgi functionality of GeoV... |
| CVE-2026-42367 | MEDIUM | 6.5 | 0.3% | May 4, 2026 | A privilege escalation vulnerability exists in the Web Interface / ssi.cgi functionality of GeoVision LPC2011/LPC2211 1.... |
| CVE-2026-42366 | MEDIUM | 6.1 | 0.2% | May 4, 2026 | Multiple reflected cross-site scripting (xss) vulnerabilities exist in the Web Interface / ssi.cgi functionality of GeoV... |
| CVE-2026-7713 | MEDIUM | 6.3 | 0.3% | May 4, 2026 | A vulnerability was detected in crocodilestick Calibre-Web-Automated up to 4.0.6. Affected by this vulnerability is the ... |
| CVE-2026-7712 | MEDIUM | 6.3 | 0.3% | May 4, 2026 | A security vulnerability has been detected in MindsDB up to 26.01. Affected is the function pickle.loads of the componen... |
| CVE-2026-6948 | MEDIUM | 4.9 | 0.3% | May 4, 2026 | Velociraptor versions prior to 0.76.4 contain a resource exhaustion vulnerability in the server's agent control channel.... |
| CVE-2026-7709 | MEDIUM | 6.3 | 0.2% | May 3, 2026 | A vulnerability was identified in janeczku Calibre-Web up to 0.6.26. The impacted element is the function generate_auth_... |
| CVE-2026-7708 | MEDIUM | 4.3 | 0.3% | May 3, 2026 | A vulnerability was determined in Open5GS up to 2.7.7. The affected element is the function ogs_dbi_subscription_data in... |
| CVE-2026-7707 | MEDIUM | 4.3 | 0.4% | May 3, 2026 | A vulnerability was found in Open5GS up to 2.7.7. Impacted is the function udr_nudr_dr_handle_subscription_context of th... |
| CVE-2026-7706 | MEDIUM | 4.3 | 0.3% | May 3, 2026 | A vulnerability has been found in Open5GS up to 2.7.7. This issue affects the function gmm_handle_service_request of the... |
| CVE-2026-7705 | MEDIUM | 6.3 | 1.2% | May 3, 2026 | A flaw has been found in JD Cloud JDCOS 4.5.1.r4518. This vulnerability affects the function set_iptv_info of the file /... |
| CVE-2026-7704 | MEDIUM | 4.3 | 0.4% | May 3, 2026 | A vulnerability has been found in AV Stumpfl Pixera Two Media Server up to 25.1 R2. The affected element is an unknown f... |
| CVE-2026-7702 | MEDIUM | 5.5 | 0.3% | May 3, 2026 | A vulnerability was detected in toeverything AFFiNE up to 0.26.3. This issue affects the function allowDocPreview of the... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now