2026 CVE Vulnerabilities

50,983 CVEs published in 2026.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2026-34534MEDIUM5.5iccDEV provides a set of libraries and tools for working with ICC color management profiles. Prior to version 2.3.1.6, a...
CVE-2026-34533MEDIUM5.5iccDEV provides a set of libraries and tools for working with ICC color management profiles. Prior to version 2.3.1.6, a...
CVE-2026-34452MEDIUM5.3The Claude SDK for Python provides access to the Claude API from Python applications. From version 0.86.0 to before vers...
CVE-2026-34451MEDIUM5.4Claude SDK for TypeScript provides access to the Claude API from server-side TypeScript or JavaScript applications. From...
CVE-2026-34450MEDIUM4.4The Claude SDK for Python provides access to the Claude API from Python applications. From version 0.86.0 to before vers...
CVE-2026-34443MEDIUM5.3FreeScout is a free help desk and shared inbox built with PHP's Laravel framework. Prior to version 1.8.211, checkIpByMa...
CVE-2026-34442MEDIUM6.1FreeScout is a free help desk and shared inbox built with PHP's Laravel framework. Prior to version 1.8.211, host header...
CVE-2026-34441MEDIUM6.5cpp-httplib is a C++11 single-file header-only cross platform HTTP/HTTPS library. Prior to version 0.40.0, cpp-httplib i...
CVE-2026-34405MEDIUM6.1Nuxt OG Image generates OG Images with Vue templates in Nuxt. Prior to version 6.2.5, the image‑generation component by ...
CVE-2026-34401MEDIUM6.5XML Notepad is a Windows program that provides a simple intuitive User Interface for browsing and editing XML documents....
CVE-2026-3468MEDIUM4.8A stored Cross-Site Scripting (XSS) vulnerability has been identified in the SonicWall Email Security appliance due to i...
CVE-2026-34740MEDIUM6.5WWBN AVideo is an open source video platform. In versions 26.0 and prior, the EPG (Electronic Program Guide) link featur...
CVE-2026-34739MEDIUM6.1WWBN AVideo is an open source video platform. In versions 26.0 and prior, the User_Location plugin's testIP.php page ref...
CVE-2026-34738MEDIUM4.3WWBN AVideo is an open source video platform. In versions 26.0 and prior, AVideo's video processing pipeline accepts an ...
CVE-2026-34737MEDIUM6.5WWBN AVideo is an open source video platform. In versions 26.0 and prior, the StripeYPT plugin includes a test.php debug...
CVE-2026-34716MEDIUM6.4WWBN AVideo is an open source video platform. In versions 26.0 and prior, the AVideo YPTSocket plugin's caller feature r...
CVE-2026-34613MEDIUM6.5WWBN AVideo is an open source video platform. In versions 26.0 and prior, the AVideo endpoint objects/pluginSwitch.json....
CVE-2026-34611MEDIUM6.5WWBN AVideo is an open source video platform. In versions 26.0 and prior, the AVideo endpoint objects/emailAllUsers.json...
CVE-2026-34586MEDIUM6.5PdfDing is a selfhosted PDF manager, viewer and editor offering a seamless user experience on multiple devices. Prior to...
CVE-2026-34396MEDIUM6.1WWBN AVideo is an open source video platform. In versions 26.0 and prior, the AVideo admin panel renders plugin configur...
CVE-2026-34395MEDIUM6.5WWBN AVideo is an open source video platform. In versions 26.0 and prior, the plugin/YPTWallet/view/users.json.php endpo...
CVE-2026-34382MEDIUM4.6Admidio is an open-source user management solution. From version 5.0.0 to before version 5.0.8, the delete mode handler ...
CVE-2026-34215MEDIUM6.5Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js. Prior to version...
CVE-2026-34206MEDIUM6.1Captcha Protect is a Traefik middleware to add an anti-bot challenge to individual IPs in a subnet when traffic spikes a...
CVE-2026-34203MEDIUM4.3Nautobot is a Network Source of Truth and Network Automation Platform. Prior to versions 2.4.30 and 3.0.10, user creatio...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now