2026 CVE Vulnerabilities
50,983 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-34534 | MEDIUM | 5.5 | 0.1% | Mar 31, 2026 | iccDEV provides a set of libraries and tools for working with ICC color management profiles. Prior to version 2.3.1.6, a... |
| CVE-2026-34533 | MEDIUM | 5.5 | 0.2% | Mar 31, 2026 | iccDEV provides a set of libraries and tools for working with ICC color management profiles. Prior to version 2.3.1.6, a... |
| CVE-2026-34452 | MEDIUM | 5.3 | 0.1% | Mar 31, 2026 | The Claude SDK for Python provides access to the Claude API from Python applications. From version 0.86.0 to before vers... |
| CVE-2026-34451 | MEDIUM | 5.4 | 0.3% | Mar 31, 2026 | Claude SDK for TypeScript provides access to the Claude API from server-side TypeScript or JavaScript applications. From... |
| CVE-2026-34450 | MEDIUM | 4.4 | 0.1% | Mar 31, 2026 | The Claude SDK for Python provides access to the Claude API from Python applications. From version 0.86.0 to before vers... |
| CVE-2026-34443 | MEDIUM | 5.3 | 0.3% | Mar 31, 2026 | FreeScout is a free help desk and shared inbox built with PHP's Laravel framework. Prior to version 1.8.211, checkIpByMa... |
| CVE-2026-34442 | MEDIUM | 6.1 | 0.2% | Mar 31, 2026 | FreeScout is a free help desk and shared inbox built with PHP's Laravel framework. Prior to version 1.8.211, host header... |
| CVE-2026-34441 | MEDIUM | 6.5 | 0.2% | Mar 31, 2026 | cpp-httplib is a C++11 single-file header-only cross platform HTTP/HTTPS library. Prior to version 0.40.0, cpp-httplib i... |
| CVE-2026-34405 | MEDIUM | 6.1 | 0.2% | Mar 31, 2026 | Nuxt OG Image generates OG Images with Vue templates in Nuxt. Prior to version 6.2.5, the image‑generation component by ... |
| CVE-2026-34401 | MEDIUM | 6.5 | 1.0% | Mar 31, 2026 | XML Notepad is a Windows program that provides a simple intuitive User Interface for browsing and editing XML documents.... |
| CVE-2026-3468 | MEDIUM | 4.8 | 0.2% | Mar 31, 2026 | A stored Cross-Site Scripting (XSS) vulnerability has been identified in the SonicWall Email Security appliance due to i... |
| CVE-2026-34740 | MEDIUM | 6.5 | 0.3% | Mar 31, 2026 | WWBN AVideo is an open source video platform. In versions 26.0 and prior, the EPG (Electronic Program Guide) link featur... |
| CVE-2026-34739 | MEDIUM | 6.1 | 0.2% | Mar 31, 2026 | WWBN AVideo is an open source video platform. In versions 26.0 and prior, the User_Location plugin's testIP.php page ref... |
| CVE-2026-34738 | MEDIUM | 4.3 | 0.2% | Mar 31, 2026 | WWBN AVideo is an open source video platform. In versions 26.0 and prior, AVideo's video processing pipeline accepts an ... |
| CVE-2026-34737 | MEDIUM | 6.5 | 0.3% | Mar 31, 2026 | WWBN AVideo is an open source video platform. In versions 26.0 and prior, the StripeYPT plugin includes a test.php debug... |
| CVE-2026-34716 | MEDIUM | 6.4 | 0.3% | Mar 31, 2026 | WWBN AVideo is an open source video platform. In versions 26.0 and prior, the AVideo YPTSocket plugin's caller feature r... |
| CVE-2026-34613 | MEDIUM | 6.5 | 0.2% | Mar 31, 2026 | WWBN AVideo is an open source video platform. In versions 26.0 and prior, the AVideo endpoint objects/pluginSwitch.json.... |
| CVE-2026-34611 | MEDIUM | 6.5 | 0.2% | Mar 31, 2026 | WWBN AVideo is an open source video platform. In versions 26.0 and prior, the AVideo endpoint objects/emailAllUsers.json... |
| CVE-2026-34586 | MEDIUM | 6.5 | 0.3% | Mar 31, 2026 | PdfDing is a selfhosted PDF manager, viewer and editor offering a seamless user experience on multiple devices. Prior to... |
| CVE-2026-34396 | MEDIUM | 6.1 | 0.2% | Mar 31, 2026 | WWBN AVideo is an open source video platform. In versions 26.0 and prior, the AVideo admin panel renders plugin configur... |
| CVE-2026-34395 | MEDIUM | 6.5 | 0.3% | Mar 31, 2026 | WWBN AVideo is an open source video platform. In versions 26.0 and prior, the plugin/YPTWallet/view/users.json.php endpo... |
| CVE-2026-34382 | MEDIUM | 4.6 | 0.1% | Mar 31, 2026 | Admidio is an open-source user management solution. From version 5.0.0 to before version 5.0.8, the delete mode handler ... |
| CVE-2026-34215 | MEDIUM | 6.5 | 0.3% | Mar 31, 2026 | Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js. Prior to version... |
| CVE-2026-34206 | MEDIUM | 6.1 | 0.2% | Mar 31, 2026 | Captcha Protect is a Traefik middleware to add an anti-bot challenge to individual IPs in a subnet when traffic spikes a... |
| CVE-2026-34203 | MEDIUM | 4.3 | 0.2% | Mar 31, 2026 | Nautobot is a Network Source of Truth and Network Automation Platform. Prior to versions 2.4.30 and 3.0.10, user creatio... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now