2026 CVE Vulnerabilities
50,042 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-42184 | HIGH | 8.8 | 0.3% | May 27, 2026 | Tauri is a framework for building binaries for all major desktop platforms. From 2.0 to 2.11.0, a flaw in Tauri's is_loc... |
| CVE-2026-37713 | HIGH | 7.3 | 0.4% | May 27, 2026 | An issue in Dolibarr ERP/CRM v.22.0.0 through v.22.0.4 and v.24.0.0-alpha allows a remote attacker to execute arbitrary ... |
| CVE-2026-37712 | HIGH | 7.3 | 0.4% | May 27, 2026 | An issue in Dolibarr ERP/CRM v.22.0.0 through v.22.0.4 and v.24.0.0-alpha allows a remote attacker to execute arbitrary ... |
| CVE-2026-37711 | HIGH | 7.3 | 0.4% | May 27, 2026 | An issue in Dolibarr ERP/CRM v.22.0.0 through v.22.0.4 and v.24.0.0-alpha allows a remote attacker to execute arbitrary ... |
| CVE-2026-31266 | HIGH | 7.3 | 0.3% | May 27, 2026 | Craft CMS 5.9.5 and earlier contains a Missing Authorization vulnerability in the migrate endpoint (/actions/app/migrate... |
| CVE-2026-9704 | HIGH | 8.8 | 0.3% | May 27, 2026 | A flaw was found in Keycloak. An authenticated user with low privileges can exploit this vulnerability by sending an ove... |
| CVE-2026-9617 | HIGH | 8.8 | 0.3% | May 27, 2026 | PostgreSQL Anonymizer contains a vulnerability that allows a user to gain superuser privileges by creating a table and p... |
| CVE-2026-8180 | HIGH | 7.5 | 0.3% | May 27, 2026 | IBM Aspera High-Speed Transfer Endpoint 3.7.4 through 4.4.7 Fix Pack 1 and IBM Aspera High-Speed Transfer Server 3.7.4 t... |
| CVE-2026-8179 | HIGH | 8.8 | 0.4% | May 27, 2026 | IBM Aspera High-Speed Transfer Endpoint 3.7.4 through 4.4.7 Fix Pack 1 and IBM Aspera High-Speed Transfer Server 3.7.4 t... |
| CVE-2026-7528 | HIGH | 7.5 | 0.2% | May 27, 2026 | IBM Langflow OSS 1.0.0 through 1.9.0 could allow a denial of service due to uncontrolled resource consumption. |
| CVE-2026-7365 | HIGH | 7.8 | 0.1% | May 27, 2026 | IBM Operations Analytics - Log Analysis and IBM SmartCloud Analytics - Log Analysis uses default passwords default pass... |
| CVE-2026-6938 | HIGH | 7.5 | 0.2% | May 27, 2026 | IBM Db2 12.1.0 through 12.1.4 is vulnerable to authorization bypass when uploading to a remote object storage path with ... |
| CVE-2026-6052 | HIGH | 7.5 | 0.2% | May 27, 2026 | IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.4 is vulnerable to running out of memory when executing certain q... |
| CVE-2026-6051 | HIGH | 7.5 | 0.2% | May 27, 2026 | IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.4 is vulnerable to a denial of service when executing a specially... |
| CVE-2026-5065 | HIGH | 8.8 | 0.2% | May 27, 2026 | IBM Controller 11.0.1, 11.1.0, 11.1.1, and 11.1.2 contains hard-coded credentials, such as a password or cryptographic k... |
| CVE-2026-4410 | HIGH | 7.5 | 0.5% | May 27, 2026 | IBM WebSphere Application Server - Liberty 19.0.0.7 through 26.0.0.5 and IBM WebSphere Application Server 9.0, and 8.5 a... |
| CVE-2026-48972 | HIGH | 7.5 | 0.3% | May 27, 2026 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2026-46102 | HIGH | 7.5 | 0.5% | May 27, 2026 | In the Linux kernel, the following vulnerability has been resolved: net: strparser: fix skb_head leak in strp_abort_str... |
| CVE-2026-46100 | HIGH | 7.8 | 0.1% | May 27, 2026 | In the Linux kernel, the following vulnerability has been resolved: fs: afs: revert mmap_prepare() change Partially re... |
| CVE-2026-46099 | HIGH | 8.1 | 0.3% | May 27, 2026 | In the Linux kernel, the following vulnerability has been resolved: net: ipv6: fix NOREF dst use in seg6 and rpl lwtunn... |
| CVE-2026-46097 | HIGH | 7.8 | 0.1% | May 27, 2026 | In the Linux kernel, the following vulnerability has been resolved: Input: edt-ft5x06 - fix use-after-free in debugfs t... |
| CVE-2026-46094 | HIGH | 7.1 | 0.1% | May 27, 2026 | In the Linux kernel, the following vulnerability has been resolved: ext4: fix bounds check in check_xattrs() to prevent... |
| CVE-2026-46093 | HIGH | 7.8 | 0.1% | May 27, 2026 | In the Linux kernel, the following vulnerability has been resolved: mm/vmalloc: take vmap_purge_lock in shrinker decay... |
| CVE-2026-46090 | HIGH | 7.8 | 0.1% | May 27, 2026 | In the Linux kernel, the following vulnerability has been resolved: ALSA: aloop: Fix peer runtime UAF during format-cha... |
| CVE-2026-46085 | HIGH | 7.5 | 0.4% | May 27, 2026 | In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix rxkad crypto unalignment handling Fix h... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now