2026 CVE Vulnerabilities

50,954 CVEs published in 2026.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2026-34061MEDIUM6.5nimiq/core-rs-albatross is a Rust implementation of the Nimiq Proof-of-Stake protocol based on the Albatross consensus a...
CVE-2026-34052MEDIUM5.9LTI JupyterHub Authenticator is a JupyterHub authenticator for LTI. Prior to version 1.6.3, the LTI 1.1 validator stores...
CVE-2026-34979MEDIUM5.3OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems. In versions 2.4.16 ...
CVE-2026-34978MEDIUM6.5OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems. In versions 2.4.16 ...
CVE-2026-34947MEDIUM5.3Discourse is an open-source discussion platform. From versions 2026.1.0-latest to before 2026.1.3, 2026.2.0-latest to be...
CVE-2026-33709MEDIUM6.1JupyterHub is software that allows one to create a multi-user server for Jupyter notebooks. Prior to version 5.4.4, an o...
CVE-2026-27481MEDIUM5.3Discourse is an open-source discussion platform. From versions 2026.1.0-latest to before 2026.1.3, 2026.2.0-latest to be...
CVE-2026-27456MEDIUM4.7util-linux is a random collection of Linux utilities. Prior to version 2.41.4, a TOCTOU (Time-of-Check-Time-of-Use) vuln...
CVE-2026-27447MEDIUM6.3OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems. In versions 2.4.16 ...
CVE-2026-35560MEDIUM5.9Improper certificate validation in the identity provider connection components in Amazon Athena ODBC driver before 2.1.0...
CVE-2026-34511MEDIUM5.9OpenClaw before 2026.4.2 reuses the PKCE verifier as the OAuth state parameter in the Gemini OAuth flow, exposing it thr...
CVE-2026-32662MEDIUM6.9Development and test API endpoints are present that mirror production functionality.
CVE-2026-28767MEDIUM5.3A specific administrative endpoint notifications is accessible without proper authentication.
CVE-2026-26058MEDIUM6.1Zulip is an open-source team collaboration tool. From version 1.4.0 to before version 11.6, ./manage.py import reads arb...
CVE-2026-25742MEDIUM5.3Zulip is an open-source team collaboration tool. Prior to version 11.6, Zulip is an open-source team collaboration tool....
CVE-2026-22662MEDIUM5.3prompts.chat prior to commit 1464475 contains a blind server-side request forgery vulnerability in the Wiro media genera...
CVE-2026-5484MEDIUM5.5A weakness has been identified in BookStackApp BookStack up to 26.03. Affected is the function chapterToMarkdown of the ...
CVE-2026-3184MEDIUM5.3A flaw was found in util-linux. Improper hostname canonicalization in the `login(1)` utility, when invoked with the `-h`...
CVE-2026-2625MEDIUM5.5A flaw was found in rust-rpm-sequoia. An attacker can exploit this vulnerability by providing a specially crafted Red Ha...
CVE-2026-5476MEDIUM4.6A vulnerability was identified in NASA cFS up to 7.0.0 on 32-bit. Affected is the function CFE_TBL_ValidateCodecLoadSize...
CVE-2026-5475MEDIUM5.5A vulnerability was determined in NASA cFS up to 7.0.0. This impacts the function CFE_SB_TransmitMsg of the file cfe_sb_...
CVE-2026-5472MEDIUM6.3A flaw has been found in ProjectsAndPrograms School Management System up to 6b6fae5426044f89c08d0dd101c7fa71f9042a59. Th...
CVE-2026-5470MEDIUM6.3A security vulnerability has been detected in mixelpixx Google-Research-MCP 1e062d7bd887bfe5f6e582b6cc288bb897b35cf2/ca6...
CVE-2026-31400MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: sunrpc: fix cache_request leak in cache_release Wh...
CVE-2026-31394MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: mac80211: fix crash in ieee80211_chan_bw_change for...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now