2026 CVE Vulnerabilities
50,954 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-34061 | MEDIUM | 6.5 | 0.2% | Apr 3, 2026 | nimiq/core-rs-albatross is a Rust implementation of the Nimiq Proof-of-Stake protocol based on the Albatross consensus a... |
| CVE-2026-34052 | MEDIUM | 5.9 | 0.3% | Apr 3, 2026 | LTI JupyterHub Authenticator is a JupyterHub authenticator for LTI. Prior to version 1.6.3, the LTI 1.1 validator stores... |
| CVE-2026-34979 | MEDIUM | 5.3 | 0.4% | Apr 3, 2026 | OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems. In versions 2.4.16 ... |
| CVE-2026-34978 | MEDIUM | 6.5 | 0.4% | Apr 3, 2026 | OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems. In versions 2.4.16 ... |
| CVE-2026-34947 | MEDIUM | 5.3 | 0.2% | Apr 3, 2026 | Discourse is an open-source discussion platform. From versions 2026.1.0-latest to before 2026.1.3, 2026.2.0-latest to be... |
| CVE-2026-33709 | MEDIUM | 6.1 | 0.2% | Apr 3, 2026 | JupyterHub is software that allows one to create a multi-user server for Jupyter notebooks. Prior to version 5.4.4, an o... |
| CVE-2026-27481 | MEDIUM | 5.3 | 0.2% | Apr 3, 2026 | Discourse is an open-source discussion platform. From versions 2026.1.0-latest to before 2026.1.3, 2026.2.0-latest to be... |
| CVE-2026-27456 | MEDIUM | 4.7 | 0.1% | Apr 3, 2026 | util-linux is a random collection of Linux utilities. Prior to version 2.41.4, a TOCTOU (Time-of-Check-Time-of-Use) vuln... |
| CVE-2026-27447 | MEDIUM | 6.3 | 0.3% | Apr 3, 2026 | OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems. In versions 2.4.16 ... |
| CVE-2026-35560 | MEDIUM | 5.9 | 0.3% | Apr 3, 2026 | Improper certificate validation in the identity provider connection components in Amazon Athena ODBC driver before 2.1.0... |
| CVE-2026-34511 | MEDIUM | 5.9 | 0.2% | Apr 3, 2026 | OpenClaw before 2026.4.2 reuses the PKCE verifier as the OAuth state parameter in the Gemini OAuth flow, exposing it thr... |
| CVE-2026-32662 | MEDIUM | 6.9 | 0.3% | Apr 3, 2026 | Development and test API endpoints are present that mirror production functionality. |
| CVE-2026-28767 | MEDIUM | 5.3 | 0.4% | Apr 3, 2026 | A specific administrative endpoint notifications is accessible without proper authentication. |
| CVE-2026-26058 | MEDIUM | 6.1 | 0.2% | Apr 3, 2026 | Zulip is an open-source team collaboration tool. From version 1.4.0 to before version 11.6, ./manage.py import reads arb... |
| CVE-2026-25742 | MEDIUM | 5.3 | 0.3% | Apr 3, 2026 | Zulip is an open-source team collaboration tool. Prior to version 11.6, Zulip is an open-source team collaboration tool.... |
| CVE-2026-22662 | MEDIUM | 5.3 | 0.2% | Apr 3, 2026 | prompts.chat prior to commit 1464475 contains a blind server-side request forgery vulnerability in the Wiro media genera... |
| CVE-2026-5484 | MEDIUM | 5.5 | 0.3% | Apr 3, 2026 | A weakness has been identified in BookStackApp BookStack up to 26.03. Affected is the function chapterToMarkdown of the ... |
| CVE-2026-3184 | MEDIUM | 5.3 | 0.4% | Apr 3, 2026 | A flaw was found in util-linux. Improper hostname canonicalization in the `login(1)` utility, when invoked with the `-h`... |
| CVE-2026-2625 | MEDIUM | 5.5 | 0.1% | Apr 3, 2026 | A flaw was found in rust-rpm-sequoia. An attacker can exploit this vulnerability by providing a specially crafted Red Ha... |
| CVE-2026-5476 | MEDIUM | 4.6 | 0.2% | Apr 3, 2026 | A vulnerability was identified in NASA cFS up to 7.0.0 on 32-bit. Affected is the function CFE_TBL_ValidateCodecLoadSize... |
| CVE-2026-5475 | MEDIUM | 5.5 | 0.2% | Apr 3, 2026 | A vulnerability was determined in NASA cFS up to 7.0.0. This impacts the function CFE_SB_TransmitMsg of the file cfe_sb_... |
| CVE-2026-5472 | MEDIUM | 6.3 | 0.2% | Apr 3, 2026 | A flaw has been found in ProjectsAndPrograms School Management System up to 6b6fae5426044f89c08d0dd101c7fa71f9042a59. Th... |
| CVE-2026-5470 | MEDIUM | 6.3 | 0.2% | Apr 3, 2026 | A security vulnerability has been detected in mixelpixx Google-Research-MCP 1e062d7bd887bfe5f6e582b6cc288bb897b35cf2/ca6... |
| CVE-2026-31400 | MEDIUM | 5.5 | 0.1% | Apr 3, 2026 | In the Linux kernel, the following vulnerability has been resolved: sunrpc: fix cache_request leak in cache_release Wh... |
| CVE-2026-31394 | MEDIUM | 5.5 | 0.1% | Apr 3, 2026 | In the Linux kernel, the following vulnerability has been resolved: mac80211: fix crash in ieee80211_chan_bw_change for... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now