2026 CVE Vulnerabilities

43,273 CVEs published in 2026.

Filter:LOWClear
CVE IDSeverityCVSSDescription
CVE-2026-32717LOW2.7AnythingLLM is an application that turns pieces of content into context that any LLM can use as references during chatti...
CVE-2026-32715LOW3.8AnythingLLM is an application that turns pieces of content into context that any LLM can use as references during chatti...
CVE-2026-20992LOW3.3Improper authorization in Settings prior to SMR Mar-2026 Release 1 allows local attacker to disable configuring the back...
CVE-2026-20989LOW2.4Improper verification of cryptographic signature in Font Settings prior to SMR Mar-2026 Release 1 allows physical attack...
CVE-2026-32445LOW2.7Missing Authorization vulnerability in Elementor Elementor Website Builder elementor allows Exploiting Incorrectly Confi...
CVE-2026-29776LOW3.1FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.24.0, Integer Underflow in update_read_cache...
CVE-2026-4045LOW3.7A flaw has been found in projectsend up to r1945. This impacts an unknown function of the file includes/Classes/Auth.php...
CVE-2026-4044LOW3.8A vulnerability was detected in projectsend up to r1945. This affects the function realpath of the file /import-orphans....
CVE-2026-2366LOW3.1A flaw was found in Keycloak. An authorization bypass vulnerability in the Keycloak Admin API allows any authenticated u...
CVE-2026-4012LOW3.3A vulnerability was determined in rxi fe up to ed4cda96bd582cbb08520964ba627efb40f3dd91. The impacted element is the fun...
CVE-2026-4010LOW3.3A vulnerability was found in ThakeeNathees pocketlang up to cc73ca61b113d48ee130d837a7a8b145e41de5ce. The affected eleme...
CVE-2026-4009LOW3.3A vulnerability has been found in jarikomppa soloud up to 20200207. Impacted is the function drwav_read_pcm_frames_s16__...
CVE-2026-3984LOW3.5A weakness has been identified in Campcodes Division Regional Athletic Meet Game Result Matrix System 2.1. This vulnerab...
CVE-2026-3983LOW3.5A security flaw has been discovered in Campcodes Division Regional Athletic Meet Game Result Matrix System 2.1. This aff...
CVE-2026-3963LOW3.7A security flaw has been discovered in perfree go-fastdfs-web up to 1.3.7. This affects the function rememberMeManager o...
CVE-2026-3929LOW3.1Side-channel information leakage in ResourceTiming in Google Chrome prior to 146.0.7680.71 allowed a remote attacker to ...
CVE-2026-0520LOW2.8A potential vulnerability was reported in the Lenovo FileZ Android application that, under certain conditions, could all...
CVE-2026-3950LOW3.3A vulnerability was identified in strukturag libheif up to 1.21.2. This impacts the function Track::load of the file lib...
CVE-2026-3949LOW3.3A vulnerability was determined in strukturag libheif up to 1.21.2. This affects the function vvdec_push_data2 of the fil...
CVE-2026-3946LOW3.5A vulnerability was detected in PHPEMS 11.0. The affected element is an unknown function of the file /index.php?ask=app-...
CVE-2026-3911LOW2.7A flaw was found in Keycloak. An authenticated user with the view-users role could exploit a vulnerability in the UserRe...
CVE-2026-21295LOW3.1Adobe Commerce versions 2.4.9-alpha3, 2.4.8-p3, 2.4.7-p8, 2.4.6-p13, 2.4.5-p15, 2.4.4-p16 and earlier are affected by a ...
CVE-2026-0121LOW2.9In VPU, there is a possible use-after-free read due to a race condition. This could lead to local information disclosure...
CVE-2026-0115LOW2.1In Trusted Execution Environment, there is a possible key leak due to side channel information disclosure. This could le...
CVE-2026-30977LOW2RenderBlocking is a MediaWiki extension that allows interface administrators to specify render-blocking CSS and JavaScri...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now