2026 CVE Vulnerabilities

64,779 CVEs published in 2026.

Filter:LOWClear
CVE IDSeverityCVSSDescription
CVE-2026-9062LOW3.4The Store Locator WordPress plugin before 1.6.9 does not validate a parameter before using it in a file path, allowing h...
CVE-2026-9061LOW3.5The Store Locator WordPress plugin before 1.6.9 does not sanitize and escape store logo metadata before storing it and o...
CVE-2026-53607LOW3.7ApostropheCMS is an open-source Node.js content management system. In versions up to and including 4.30.0, when `prettyU...
CVE-2026-12130LOW3.5A security flaw has been discovered in CodeAstro Human Resource Management System 1.0. This affects an unknown part of t...
CVE-2026-12129LOW3.5A vulnerability was identified in CodeAstro Human Resource Management System 1.0. Affected by this issue is some unknown...
CVE-2026-53724LOW2.1Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js. Prior to version...
CVE-2026-12065LOW1.8A vulnerability was identified in Groww Stock, Mutual Fund, Gold App up to 20260805 on Android. This affects an unknown ...
CVE-2026-48485LOW2.1Quest Bot is an opensource Discord Bot. Prior to version 1.1.6, the latest release suppresses mentions when creating, un...
CVE-2026-9269LOW3.5The Secure Copy Content Protection and Content Locking WordPress plugin before 5.1.5 does not sanitise and escape some o...
CVE-2026-12032LOW3.1Inappropriate implementation in Passwords in Google Chrome on Android prior to 149.0.7827.115 allowed a remote attacker ...
CVE-2026-12017LOW3.1Inappropriate implementation in Extensions in Google Chrome prior to 149.0.7827.115 allowed a remote attacker who had co...
CVE-2026-47188LOW2.3Quest Bot is an opensource modern Discord Bot built for moderation, utilities and support. Prior to version 1.0.5, the l...
CVE-2026-47175LOW2.3Quest Bot is an opensource modern Discord Bot built for moderation, utilities and support. Prior to version 1.0.4, sever...
CVE-2026-6976LOW3.7GitLab has remediated an issue in GitLab CE/EE affecting all versions from 15.9 before 18.10.8, 18.11 before 18.11.5, an...
CVE-2026-3553LOW3.1GitLab has remediated an issue in GitLab CE/EE affecting all versions from 12.0 before 18.10.8, 18.11 before 18.11.5, an...
CVE-2026-41000LOW3.7Wss4jSecurityInterceptor did not consistently wire Apache WSS4J ReplayCache instances into RequestData for validation-ti...
CVE-2026-47712LOW3.3Dulwich is a pure-Python implementation of the Git file formats and protocols. Starting in version 0.24.0 and prior to v...
CVE-2026-48011LOW3.7Shopware is an open commerce platform. Prior to versions 6.6.10.18 and 6.7.10.1, an attacker is able to enumerate the us...
CVE-2026-46668LOW2.3SpiceDB is an open source database system for creating and managing security-critical application permissions. From vers...
CVE-2026-45380LOW3.6bit7z is a cross-platform C++ static library that allows the compression/extraction of archive files. Prior to version 4...
CVE-2026-50568LOW3.6Fission is an open-source, Kubernetes-native serverless framework that simplifies the deployment of functions and applic...
CVE-2026-46497LOW2.3Crawlee is a web scraping and browser automation library. From version 1.0.0 to before version 1.7.0, Crawlee is vulnera...
CVE-2026-11859LOW2An HTML injection vulnerability in the "fetch links" email sent by Thinkst Applied Research Canarytokens, enabling Inter...
CVE-2026-9060LOW3.5The Store Locator WordPress plugin before 1.6.6 does not sanitize and escape one of its settings before storing it and o...
CVE-2026-29114LOW2.3A vulnerability has been found in some Dahua products. An attacker may obtain the device’s CA root certificate. If that ...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now