2026 CVE Vulnerabilities
64,785 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-92750 | MEDIUM | 6.5 | 0.3% | Sep 16, 2026 | Harness through 3.3.0 omits access control validation in the infrastructure provider read endpoint, allowing authenticat... |
| CVE-2026-92527 | MEDIUM | 6.3 | — | Sep 16, 2026 | A vulnerability has been found in chatwoot up to 4.17.1. This impacts an unknown function of the file callbacks_controll... |
| CVE-2026-81872 | MEDIUM | 6.3 | — | Sep 16, 2026 | OpenTelemetry-Go is the Go implementation of OpenTelemetry. Prior to version 0.21.0, the go.opentelemetry.io/otel/sdk/lo... |
| CVE-2026-81871 | MEDIUM | 6.3 | — | Sep 16, 2026 | OpenTelemetry-Go is the Go implementation of OpenTelemetry. Prior to version 0.21.0, the exporters/otlp/otlplog/otlplogg... |
| CVE-2026-81869 | MEDIUM | 5.1 | — | Sep 16, 2026 | OpenTelemetry-Go is the Go implementation of OpenTelemetry. From version 1.10.0 until 1.33.0, the sdk/trace/span.go attr... |
| CVE-2026-76451 | MEDIUM | 4.9 | 0.2% | Sep 16, 2026 | A vulnerability in Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow a... |
| CVE-2026-76450 | MEDIUM | 4.9 | — | Sep 16, 2026 | A vulnerability in Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow a... |
| CVE-2026-76449 | MEDIUM | 4.9 | — | Sep 16, 2026 | A vulnerability in Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow a... |
| CVE-2026-76448 | MEDIUM | 4.9 | — | Sep 16, 2026 | A vulnerability in Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow a... |
| CVE-2026-76447 | MEDIUM | 5.3 | — | Sep 16, 2026 | A vulnerability in the Online Certificate Status Protocol (OCSP) responder of Cisco ISE and Cisco ISE-PIC could allow an... |
| CVE-2026-76446 | MEDIUM | 4.9 | — | Sep 16, 2026 | A vulnerability in an API of Cisco ISE and Cisco ISE-PIC could allow an authenticated, remote attacker to read specific&... |
| CVE-2026-76444 | MEDIUM | 5.3 | 0.3% | Sep 16, 2026 | A vulnerability in an internal service of Cisco ISE and Cisco ISE-PIC could allow an unauthenticated, remote attacker to... |
| CVE-2026-76439 | MEDIUM | 5.3 | — | Sep 16, 2026 | A vulnerability in the endpoint posture status reporting functionality of the guest portal web application of Cisco ISE ... |
| CVE-2026-76438 | MEDIUM | 6.5 | — | Sep 16, 2026 | A vulnerability in the web-based management interface of Cisco BroadWorks CommPilot Application Software could allow an ... |
| CVE-2026-76434 | MEDIUM | 4.9 | — | Sep 16, 2026 | A vulnerability in the certificate import functionality of the web-based management interface of Cisco ISE and Cisco ISE... |
| CVE-2026-76433 | MEDIUM | 5.3 | — | Sep 16, 2026 | A vulnerability in the client provisioning download feature of Cisco ISE and Cisco ISE-PIC could allow an unauthenticate... |
| CVE-2026-76432 | MEDIUM | 4.9 | 0.9% | Sep 16, 2026 | A vulnerability in the web-based management interface of Cisco ISE and Cisco ISE-PIC could allow an authenticated, remot... |
| CVE-2026-76431 | MEDIUM | 4.9 | 1.1% | Sep 16, 2026 | A vulnerability in the file management function of the web-based management interface of Cisco ISE and Cisco ISE-PIC cou... |
| CVE-2026-76428 | MEDIUM | 4.9 | — | Sep 16, 2026 | A vulnerability in the REST APIs of Cisco ISE and Cisco ISE-PIC could allow an authenticated, remote attacker to conduct... |
| CVE-2026-76427 | MEDIUM | 4.9 | — | Sep 16, 2026 | A vulnerability in the offline profiler feed service of Cisco ISE could allow an authenticated, remote attacker to read ... |
| CVE-2026-76426 | MEDIUM | 4.9 | — | Sep 16, 2026 | A vulnerability in the REST API of Cisco ISE and Cisco ISE-PIC could allow an authenticated, remote attacker to conduct ... |
| CVE-2026-20350 | MEDIUM | 4.7 | — | Sep 16, 2026 | A vulnerability in the web-based management interface of Cisco ThousandEyes Virtual Appliance could allow an authenticat... |
| CVE-2026-20309 | MEDIUM | 6.1 | — | Sep 16, 2026 | A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an unauthentic... |
| CVE-2026-20290 | MEDIUM | 5.8 | — | Sep 16, 2026 | A vulnerability in SSL/TLS certificate parsing in the Snort 2 Detection Engine of Cisco Secure Firewall Threat Defense (... |
| CVE-2026-20287 | MEDIUM | 6.5 | — | Sep 16, 2026 | As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Identity Services Engine (ISE... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now