2026 CVE Vulnerabilities
64,785 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-28586 | LOW | 3.3 | 0.1% | Jun 1, 2026 | In multiple functions of AppOpsService.java, there is a possible missing permission check due to a permissions bypass. T... |
| CVE-2026-0056 | LOW | 3.3 | 0.1% | Jun 1, 2026 | In setTo of ResourceTypes.cpp, there is a possible read out of bounds due to an incorrect bounds check. This could lead ... |
| CVE-2026-0050 | LOW | 3.3 | 0.1% | Jun 1, 2026 | In handleBondStateChanged of AdapterService.java, there is a possible sensitive information disclosure due to a permissi... |
| CVE-2026-0016 | LOW | 3.3 | 0.1% | Jun 1, 2026 | In updateProvidersWhenServiceRemoved of CredentialManagerService.java, there is a possible way to override settings acro... |
| CVE-2026-5419 | LOW | 3.7 | 0.4% | Jun 1, 2026 | A flaw was found in gnutls. The PKCS#7 padding check, performed during decryption, was not constant-time. This timing si... |
| CVE-2026-45277 | LOW | 3.3 | 0.1% | Jun 1, 2026 | Nextcloud is an open source content collaboration platform. Prior to version 2.7.2, authenticated users can check if arb... |
| CVE-2026-30963 | LOW | 2.7 | 0.2% | Jun 1, 2026 | Capsule is a multi-tenancy and policy-based framework for Kubernetes. To defend against namespace hijacking achieved thr... |
| CVE-2026-45266 | LOW | 3.5 | 0.2% | Jun 1, 2026 | Nextcloud is an open source content collaboration platform. Prior to versions 21.1.10, 22.0.11, and 23.0.3, a low-privil... |
| CVE-2026-45159 | LOW | 3.5 | 0.2% | Jun 1, 2026 | Nextcloud is an open source content collaboration platform. From versions 1.15.0 to before 1.15.4, 1.16.0 to before 1.16... |
| CVE-2026-45155 | LOW | 2.6 | 0.2% | Jun 1, 2026 | Nextcloud is an open source content collaboration platform. In Nextcloud Server from versions 32.0.0 to before 32.0.7 an... |
| CVE-2026-45154 | LOW | 2.6 | 0.2% | Jun 1, 2026 | Nextcloud is an open source content collaboration platform. From version 2.6.0 to before version 4.3.0, when a previous ... |
| CVE-2026-10268 | LOW | 3.3 | 0.1% | Jun 1, 2026 | A weakness has been identified in janet-lang janet up to 1.41.0. This vulnerability affects the function unmarshal_one_f... |
| CVE-2026-10267 | LOW | 3.3 | 0.1% | Jun 1, 2026 | A security flaw has been discovered in janet-lang janet up to 1.41.0. This affects the function doframe of the file src/... |
| CVE-2026-10264 | LOW | 3.5 | 0.3% | Jun 1, 2026 | A vulnerability was determined in lharries whatsapp-mcp 0.0.1. Affected by this vulnerability is the function SendMessag... |
| CVE-2026-10532 | LOW | 2.9 | 0.3% | Jun 1, 2026 | Deserialization of untrusted data vulnerability in QOS.CH Sarl logback logback-core (HardenedObjectInputStream (logback-... |
| CVE-2026-10247 | LOW | 3.5 | 0.2% | Jun 1, 2026 | A vulnerability was found in SourceCodester Pharmacy Sales and Inventory System 1.0. This vulnerability affects the func... |
| CVE-2026-10246 | LOW | 3.5 | 0.2% | Jun 1, 2026 | A vulnerability has been found in SourceCodester Pharmacy Sales and Inventory System 1.0. This affects the function crea... |
| CVE-2026-10245 | LOW | 3.5 | 0.2% | Jun 1, 2026 | A flaw has been found in SourceCodester Pharmacy Sales and Inventory System 1.0. Affected by this issue is the function ... |
| CVE-2026-10244 | LOW | 3.5 | 0.2% | Jun 1, 2026 | A vulnerability was detected in SourceCodester Pharmacy Sales and Inventory System 1.0. Affected by this vulnerability i... |
| CVE-2026-45426 | LOW | 3.1 | 0.3% | Jun 1, 2026 | Exploitation requires the attacker to already be an authenticated Airflow worker holding a valid Log-server JWT issued f... |
| CVE-2026-40963 | LOW | 3.1 | 0.5% | Jun 1, 2026 | The structure_data endpoint in the Airflow UI returned external dependency graph nodes for linked Dags without checking ... |
| CVE-2026-10234 | LOW | 3.5 | 0.2% | Jun 1, 2026 | A vulnerability was detected in Mettle sendportal up to 3.0.1. This affects an unknown part of the file /webview/ of the... |
| CVE-2026-10233 | LOW | 3.3 | 0.1% | Jun 1, 2026 | A security vulnerability has been detected in Assimp up to 6.0.4. Affected by this issue is the function HL1MDLLoader::r... |
| CVE-2026-10228 | LOW | 3.5 | 0.2% | Jun 1, 2026 | A vulnerability was found in raisulislamg4 student_management_system_by_php up to 310d950e09013d5133c6b9210aff9444382d16... |
| CVE-2026-48191 | LOW | 3.5 | 0.1% | Jun 1, 2026 | An incorrect handling of permissions in STORM powered by OTRS and in OTRS (2026.x and above) Document Search Article Met... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now