2026 CVE Vulnerabilities
50,000 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-33558 | MEDIUM | 5.3 | 0.5% | Apr 20, 2026 | Information exposure vulnerability has been identified in Apache Kafka. The NetworkClient component will output entire ... |
| CVE-2026-6636 | MEDIUM | 4.3 | 0.5% | Apr 20, 2026 | A vulnerability was detected in p2r3 convert up to 6998584ace3e11db66dff0b423612a5cf91de75b. Affected is the function Bu... |
| CVE-2026-6634 | MEDIUM | 6.3 | 0.3% | Apr 20, 2026 | A weakness has been identified in usememos memos up to 0.22.1. This affects the function memos_access_token of the file ... |
| CVE-2026-6654 | MEDIUM | 5.1 | 0.2% | Apr 20, 2026 | Double-Free / Use-After-Free (UAF) in the `IntoIter::drop` and `ThinVec::clear` functions in the thin_vec crate. A panic... |
| CVE-2026-6628 | MEDIUM | 6.3 | 0.2% | Apr 20, 2026 | A flaw has been found in phili67 Ecclesia CRM up to 8.0.0. This affects the function ValidateInput of the file /v2/query... |
| CVE-2026-6626 | MEDIUM | 6.3 | 0.2% | Apr 20, 2026 | A vulnerability was detected in Cockpit-HQ Cockpit up to 2.13.5. Affected by this issue is some unknown functionality of... |
| CVE-2026-6623 | MEDIUM | 4.8 | 0.2% | Apr 20, 2026 | A security flaw has been discovered in BichitroGan ISP Billing Software 2025.3.20. This impacts an unknown function of t... |
| CVE-2026-31429 | MEDIUM | 5.5 | 0.3% | Apr 20, 2026 | In the Linux kernel, the following vulnerability has been resolved: net: skb: fix cross-cache free of KFENCE-allocated ... |
| CVE-2026-6620 | MEDIUM | 6.3 | 0.3% | Apr 20, 2026 | A vulnerability was found in SonicCloudOrg sonic-server up to 2.0.0. The affected element is the function Upload of the ... |
| CVE-2026-6618 | MEDIUM | 6.3 | 0.2% | Apr 20, 2026 | A flaw has been found in langgenius dify up to 1.13.3. This issue affects the function parse_openai_plugin_json_to_tool_... |
| CVE-2026-6617 | MEDIUM | 6.3 | 0.2% | Apr 20, 2026 | A vulnerability was detected in langgenius dify up to 0.6.9. This vulnerability affects the function get_api_tool_provid... |
| CVE-2026-6616 | MEDIUM | 6.3 | 0.2% | Apr 20, 2026 | A security vulnerability has been detected in TransformerOptimus SuperAGI up to 0.0.14. This affects the function extrac... |
| CVE-2026-6614 | MEDIUM | 6.3 | 0.2% | Apr 20, 2026 | A security flaw has been discovered in TransformerOptimus SuperAGI up to 0.0.14. Affected by this vulnerability is the f... |
| CVE-2026-6613 | MEDIUM | 6.3 | 0.2% | Apr 20, 2026 | A vulnerability was identified in TransformerOptimus SuperAGI up to 0.0.14. Affected is the function delete_agent/stop_s... |
| CVE-2026-6612 | MEDIUM | 6.3 | 0.3% | Apr 20, 2026 | A vulnerability was determined in TransformerOptimus SuperAGI up to 0.0.14. This impacts the function get_agent_executio... |
| CVE-2026-6609 | MEDIUM | 6.3 | 0.2% | Apr 20, 2026 | A flaw has been found in liangliangyy DjangoBlog up to 2.1.0.0. The affected element is the function form_valid of the f... |
| CVE-2026-6608 | MEDIUM | 5.5 | 0.3% | Apr 20, 2026 | A vulnerability was detected in lm-sys fastchat up to 0.2.36. Impacted is the function add_text of the component Arena S... |
| CVE-2026-6607 | MEDIUM | 5.5 | 0.6% | Apr 20, 2026 | A security vulnerability has been detected in lm-sys fastchat up to 0.2.36. This issue affects the function api_generate... |
| CVE-2026-6601 | MEDIUM | 4.3 | 0.3% | Apr 20, 2026 | A vulnerability has been found in Lagom WHMCS Template up to 2.4.2. This impacts an unknown function of the component Da... |
| CVE-2026-6599 | MEDIUM | 6.3 | 0.2% | Apr 20, 2026 | A vulnerability was detected in langflow-ai langflow up to 1.8.3. The impacted element is the function get_client_ip/ins... |
| CVE-2026-6598 | MEDIUM | 4.3 | 0.2% | Apr 20, 2026 | A security vulnerability has been detected in langflow-ai langflow up to 1.8.3. The affected element is the function cre... |
| CVE-2026-32964 | MEDIUM | 6.9 | 0.3% | Apr 20, 2026 | SD-330AC and AMC Manager provided by silex technology, Inc. contain an improper neutralization of CRLF sequences ('CRLF ... |
| CVE-2026-32963 | MEDIUM | 6.1 | 0.2% | Apr 20, 2026 | SD-330AC and AMC Manager provided by silex technology, Inc. contain a reflected cross-site scripting vulnerability. When... |
| CVE-2026-32962 | MEDIUM | 6.9 | 0.3% | Apr 20, 2026 | SD-330AC and AMC Manager provided by silex technology, Inc. contain a missing authentication for critical function issue... |
| CVE-2026-32961 | MEDIUM | 6.9 | 0.6% | Apr 20, 2026 | SD-330AC and AMC Manager provided by silex technology, Inc. contain a heap-based buffer overflow vulnerability in packet... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now