2026 CVE Vulnerabilities
49,614 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-7135 | MEDIUM | 5.3 | 0.1% | Apr 27, 2026 | A security flaw has been discovered in GPAC up to 26.03-DEV-rev105-g8f39a1eb3-master. Affected by this vulnerability is ... |
| CVE-2026-7134 | MEDIUM | 4.7 | 0.2% | Apr 27, 2026 | A vulnerability was identified in code-projects Online Lot Reservation System 1.0. Affected is an unknown function of th... |
| CVE-2026-41467 | MEDIUM | 5.4 | 0.2% | Apr 27, 2026 | ProjeQtor versions 7.0 through 12.4.3 contain a stored cross-site scripting vulnerability in the file upload functionali... |
| CVE-2026-41466 | MEDIUM | 5.4 | 0.2% | Apr 27, 2026 | ProjeQtor versions 7.0 through 12.4.3 contain a stored cross-site scripting vulnerability in the checkValidHtmlText() fu... |
| CVE-2026-7133 | MEDIUM | 4.7 | 0.2% | Apr 27, 2026 | A vulnerability was determined in code-projects Online Lot Reservation System 1.0. This impacts an unknown function of t... |
| CVE-2026-7132 | MEDIUM | 5.5 | 0.4% | Apr 27, 2026 | A vulnerability was found in code-projects Online Lot Reservation System up to 1.0. This affects the function readfile o... |
| CVE-2026-6357 | MEDIUM | 5.3 | 0.1% | Apr 27, 2026 | pip prior to version 26.1 would run self-update check functionality after installing wheel files which required importin... |
| CVE-2026-7129 | MEDIUM | 4.3 | 0.3% | Apr 27, 2026 | A vulnerability was detected in SourceCodester Pharmacy Sales and Inventory System 1.0. Impacted is an unknown function ... |
| CVE-2026-41081 | MEDIUM | 6.5 | 0.3% | Apr 27, 2026 | Improper Handling of TLS Client Authentication Failure Leading to Anonymous Principal Assignment in Apache Storm Versio... |
| CVE-2026-40557 | MEDIUM | 4.8 | 0.2% | Apr 27, 2026 | Improper Certificate Validation via Global SSL Context Downgrade in Apache Storm Prometheus Reporter Versions Affected... |
| CVE-2026-7118 | MEDIUM | 6.3 | 0.2% | Apr 27, 2026 | A security vulnerability has been detected in code-projects Employee Management System 1.0. The affected element is an u... |
| CVE-2026-7117 | MEDIUM | 6.3 | 0.2% | Apr 27, 2026 | A weakness has been identified in code-projects Employee Management System 1.0. Impacted is an unknown function of the f... |
| CVE-2026-7116 | MEDIUM | 4.3 | 0.3% | Apr 27, 2026 | A security flaw has been discovered in code-projects Employee Management System 1.0. This issue affects some unknown pro... |
| CVE-2026-5942 | MEDIUM | 5.5 | 0.2% | Apr 27, 2026 | Flaws in page lifecycle management allow document structure changes to desynchronize internal component states, causing ... |
| CVE-2026-5940 | MEDIUM | 5.5 | 0.2% | Apr 27, 2026 | Calling a function that triggers a UI refresh after removing comments via a script may access an invalidated object, lea... |
| CVE-2026-5939 | MEDIUM | 5.5 | 0.1% | Apr 27, 2026 | A crafted XFA PDF can trigger a use-after-free condition during calculate event processing, causing the application to c... |
| CVE-2026-5938 | MEDIUM | 5.5 | 0.1% | Apr 27, 2026 | Improper control flow management allows a crafted document action chain to cause modal dialog reentry on the main thread... |
| CVE-2026-5937 | MEDIUM | 5.5 | 0.1% | Apr 27, 2026 | Insufficient parameter verification leads to the occurrence of format errors in files, which will trigger an unhandled "... |
| CVE-2026-42410 | MEDIUM | 6.5 | 0.1% | Apr 27, 2026 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CodexThemes TheGem... |
| CVE-2026-7115 | MEDIUM | 6.3 | 0.2% | Apr 27, 2026 | A vulnerability was identified in code-projects Employee Management System 1.0. This vulnerability affects unknown code ... |
| CVE-2026-7114 | MEDIUM | 6.3 | 0.2% | Apr 27, 2026 | A vulnerability was determined in code-projects Employee Management System 1.0. This affects an unknown part of the file... |
| CVE-2026-7113 | MEDIUM | 5.6 | 0.4% | Apr 27, 2026 | A vulnerability was found in NousResearch hermes-agent 0.8.0. Affected by this issue is some unknown functionality of th... |
| CVE-2026-7112 | MEDIUM | 5.6 | 0.4% | Apr 27, 2026 | A vulnerability has been found in NousResearch hermes-agent 0.8.0. Affected by this vulnerability is the function _check... |
| CVE-2026-7109 | MEDIUM | 5.5 | 0.3% | Apr 27, 2026 | A vulnerability was detected in code-projects Invoice System in Laravel 1.0. This impacts an unknown function of the fil... |
| CVE-2026-7108 | MEDIUM | 4.3 | 0.2% | Apr 27, 2026 | A security vulnerability has been detected in code-projects Invoice System in Laravel 1.0. This affects an unknown funct... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now