2026 CVE Vulnerabilities

49,059 CVEs published in 2026.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2026-5401MEDIUM5.5AFP Spotlight protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
CVE-2026-5299MEDIUM5.5ICMPv6 PvD protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
CVE-2026-42798MEDIUM4Little CMS (lcms2) 2.16 through 2.18 before 2.19 has an integer overflow in ParseCube in cmscgats.c.
CVE-2026-41226MEDIUM5.1Open redirect vulnerability exists in Multiple laser printers and MFPs which implement Ricoh Web Image Monitor. When acc...
CVE-2026-7469MEDIUM6.3A vulnerability was detected in Tenda 4G300 US_4G300V1.0Mt_V1.01.42_CN_TDC01. This impacts the function sub_425A28 of th...
CVE-2026-7447MEDIUM6.3A flaw has been found in SourceCodester Pet Grooming Management Software 1.0. This vulnerability affects unknown code of...
CVE-2026-7445MEDIUM6.3A security vulnerability has been detected in ZachHandley ZMCPTools up to 0.2.2. Affected by this issue is some unknown ...
CVE-2026-7410MEDIUM6.3A vulnerability has been found in SourceCodester Pizzafy Ecommerce System 1.0. This vulnerability affects unknown code o...
CVE-2026-7409MEDIUM4.7A flaw has been found in SourceCodester Pizzafy Ecommerce System 1.0. This affects the function save_user of the file /a...
CVE-2026-7408MEDIUM4.7A vulnerability was detected in SourceCodester Pizzafy Ecommerce System 1.0. Affected by this issue is the function save...
CVE-2026-7407MEDIUM4.7A security vulnerability has been detected in SourceCodester Pizzafy Ecommerce System 1.0. Affected by this vulnerabilit...
CVE-2026-7403MEDIUM5.5A security flaw has been discovered in geldata gel-mcp 0.1.0. This impacts the function list_rules/fetch_rule of the fil...
CVE-2026-1858MEDIUM4.8wget2 accepts a server certificate with incorrect Key Usage (KU) or Extended Key Usage (EKU). If the attackers compromis...
CVE-2026-7425MEDIUM6.5Insufficient option length validation in the IPv6 Router Advertisement parser in FreeRTOS-Plus-TCP before V4.2.6 and V4....
CVE-2026-7401MEDIUM4.3A vulnerability was detected in SourceCodester CET Automated Grading System with AI Predictive Analytics 1.0. This vulne...
CVE-2026-7439MEDIUM4.8AgentFlow's local web API accepts non-JSON content types on POST /api/runs and POST /api/runs/validate endpoints without...
CVE-2026-7423MEDIUM6.5Integer underflow in the ICMP and ICMPv6 echo reply handlers in FreeRTOS-Plus-TCP before V4.4.1 and V4.2.6 allows an adj...
CVE-2026-7397MEDIUM4.4A security flaw has been discovered in NousResearch hermes-agent 0.8.0. This affects the function _check_sensitive_path ...
CVE-2026-41499MEDIUM6.5Wazuh is a free and open source platform used for threat prevention, detection, and response. From version 4.0.0 to befo...
CVE-2026-26206MEDIUM6.5Wazuh is a free and open source platform used for threat prevention, detection, and response. From version 4.0.0 to befo...
CVE-2026-7396MEDIUM5.5A vulnerability was identified in NousResearch hermes-agent 0.8.0. Affected by this issue is some unknown functionality ...
CVE-2026-7394MEDIUM4.7A vulnerability was determined in SourceCodester Pizzafy Ecommerce System 1.0. Affected by this vulnerability is an unkn...
CVE-2026-26204MEDIUM5.5Wazuh is a free and open source platform used for threat prevention, detection, and response. From version 1.0.0 to befo...
CVE-2026-7393MEDIUM4.7A vulnerability was found in SourceCodester Pizzafy Ecommerce System 1.0. Affected is the function save_menu of the file...
CVE-2026-7392MEDIUM6.3A vulnerability has been found in SourceCodester Pharmacy Sales and Inventory System 1.0. This impacts the function dele...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now