2026 CVE Vulnerabilities

64,785 CVEs published in 2026.

Filter:LOWClear
CVE IDSeverityCVSSDescription
CVE-2026-28586LOW3.3In multiple functions of AppOpsService.java, there is a possible missing permission check due to a permissions bypass. T...
CVE-2026-0056LOW3.3In setTo of ResourceTypes.cpp, there is a possible read out of bounds due to an incorrect bounds check. This could lead ...
CVE-2026-0050LOW3.3In handleBondStateChanged of AdapterService.java, there is a possible sensitive information disclosure due to a permissi...
CVE-2026-0016LOW3.3In updateProvidersWhenServiceRemoved of CredentialManagerService.java, there is a possible way to override settings acro...
CVE-2026-5419LOW3.7A flaw was found in gnutls. The PKCS#7 padding check, performed during decryption, was not constant-time. This timing si...
CVE-2026-45277LOW3.3Nextcloud is an open source content collaboration platform. Prior to version 2.7.2, authenticated users can check if arb...
CVE-2026-30963LOW2.7Capsule is a multi-tenancy and policy-based framework for Kubernetes. To defend against namespace hijacking achieved thr...
CVE-2026-45266LOW3.5Nextcloud is an open source content collaboration platform. Prior to versions 21.1.10, 22.0.11, and 23.0.3, a low-privil...
CVE-2026-45159LOW3.5Nextcloud is an open source content collaboration platform. From versions 1.15.0 to before 1.15.4, 1.16.0 to before 1.16...
CVE-2026-45155LOW2.6Nextcloud is an open source content collaboration platform. In Nextcloud Server from versions 32.0.0 to before 32.0.7 an...
CVE-2026-45154LOW2.6Nextcloud is an open source content collaboration platform. From version 2.6.0 to before version 4.3.0, when a previous ...
CVE-2026-10268LOW3.3A weakness has been identified in janet-lang janet up to 1.41.0. This vulnerability affects the function unmarshal_one_f...
CVE-2026-10267LOW3.3A security flaw has been discovered in janet-lang janet up to 1.41.0. This affects the function doframe of the file src/...
CVE-2026-10264LOW3.5A vulnerability was determined in lharries whatsapp-mcp 0.0.1. Affected by this vulnerability is the function SendMessag...
CVE-2026-10532LOW2.9Deserialization of untrusted data vulnerability in QOS.CH Sarl logback logback-core (HardenedObjectInputStream (logback-...
CVE-2026-10247LOW3.5A vulnerability was found in SourceCodester Pharmacy Sales and Inventory System 1.0. This vulnerability affects the func...
CVE-2026-10246LOW3.5A vulnerability has been found in SourceCodester Pharmacy Sales and Inventory System 1.0. This affects the function crea...
CVE-2026-10245LOW3.5A flaw has been found in SourceCodester Pharmacy Sales and Inventory System 1.0. Affected by this issue is the function ...
CVE-2026-10244LOW3.5A vulnerability was detected in SourceCodester Pharmacy Sales and Inventory System 1.0. Affected by this vulnerability i...
CVE-2026-45426LOW3.1Exploitation requires the attacker to already be an authenticated Airflow worker holding a valid Log-server JWT issued f...
CVE-2026-40963LOW3.1The structure_data endpoint in the Airflow UI returned external dependency graph nodes for linked Dags without checking ...
CVE-2026-10234LOW3.5A vulnerability was detected in Mettle sendportal up to 3.0.1. This affects an unknown part of the file /webview/ of the...
CVE-2026-10233LOW3.3A security vulnerability has been detected in Assimp up to 6.0.4. Affected by this issue is the function HL1MDLLoader::r...
CVE-2026-10228LOW3.5A vulnerability was found in raisulislamg4 student_management_system_by_php up to 310d950e09013d5133c6b9210aff9444382d16...
CVE-2026-48191LOW3.5An incorrect handling of permissions in STORM powered by OTRS and in OTRS (2026.x and above) Document Search Article Met...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now