2026 CVE Vulnerabilities
53,146 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-51274 | — | — | 0.4% | Jul 28, 2026 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv... |
| CVE-2026-51273 | — | — | 0.1% | Jul 28, 2026 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv... |
| CVE-2026-18085 | MEDIUM | 6.9 | 0.2% | Jul 28, 2026 | An Improper Input Validation in the BlackBerry UEM Management Console of BlackBerry UEM 12.23.0 QF8 and earlier allows A... |
| CVE-2026-18084 | MEDIUM | 6.1 | 0.3% | Jul 28, 2026 | Improper Neutralization of Input During Web Page Generation vulnerability in BlackBerry UEM Management Console of BlackB... |
| CVE-2026-16313 | HIGH | 7.6 | 0.3% | Jul 28, 2026 | A flaw was found in sg3_utils. The sg_inq command, when invoked with the --export option, outputs device identification ... |
| CVE-2026-8058 | MEDIUM | 4.5 | — | Jul 28, 2026 | IBM OPENBMC FW1110.00 through FW1110.20, and FW1060.00 through FW1060.71 allows a user to supply a password with a resou... |
| CVE-2026-7868 | MEDIUM | 6.5 | — | Jul 28, 2026 | IBM OPENBMC FW1110.00 through FW1110.20, and FW1060.00 through FW1060.71 allows ReadOnly users to escalate privileges an... |
| CVE-2026-7775 | MEDIUM | 4.8 | 0.2% | Jul 28, 2026 | IBM Sterling B2B Integrator 6.2.0.0 through 6.2.0.6, 6.2.1.0 through 6.2.1.1_2, and 6.2.2.0 through 6.2.2.0_1 and IBM St... |
| CVE-2026-67181 | MEDIUM | 5.4 | 0.3% | Jul 28, 2026 | Rouille 0.3.3 through 3.6.2 contains an HTTP request smuggling vulnerability that allows remote attackers to desynchroni... |
| CVE-2026-66754 | HIGH | 8.2 | 0.4% | Jul 28, 2026 | Rouille 0.1.6 through 3.6.2 contains a reachable assertion vulnerability in the Request::remove_prefix function that all... |
| CVE-2026-66753 | MEDIUM | 6.3 | 0.2% | Jul 28, 2026 | tiny-http through 0.12.0 contains an HTTP header injection vulnerability that allows attackers to inject carriage return... |
| CVE-2026-66752 | MEDIUM | 6.3 | 0.2% | Jul 28, 2026 | tiny-http through 0.12.0 contains an HTTP request smuggling vulnerability that allows remote attackers to desynchronize ... |
| CVE-2026-66751 | MEDIUM | 5.4 | 0.2% | Jul 28, 2026 | Let's Chat 0.3.0 through 0.4.8 contains an improper authorization vulnerability that allows any authenticated user to ar... |
| CVE-2026-66750 | MEDIUM | 5.3 | 0.3% | Jul 28, 2026 | Let's Chat 0.3.0 through 0.4.8 contains a broken access control vulnerability that allows authenticated attackers to dow... |
| CVE-2026-66749 | HIGH | 7.1 | 0.3% | Jul 28, 2026 | Let's Chat 0.4.0 through 0.4.8 contains a null dereference vulnerability that allows authenticated attackers to crash th... |
| CVE-2026-66748 | HIGH | 8.8 | 0.8% | Jul 28, 2026 | Camaleon CMS versions 2.1.1 through 2.9.1 contains an authenticated remote code execution vulnerability that allows user... |
| CVE-2026-66746 | MEDIUM | 5.4 | 0.2% | Jul 28, 2026 | Rouille 0.4.0 through 3.6.2 contains an HTTP response splitting vulnerability that allows remote attackers to inject arb... |
| CVE-2026-62828 | MEDIUM | 5.4 | 0.2% | Jul 28, 2026 | Improper input validation in Microsoft Edge for Android allows an unauthorized attacker to perform tampering over a netw... |
| CVE-2026-61609 | HIGH | 7.5 | 0.4% | Jul 28, 2026 | Pterodactyl is a free, open-source game server management panel. From 1.7.0 until 1.13.0, the authentication rate limite... |
| CVE-2026-54593 | HIGH | 8.1 | 0.4% | Jul 28, 2026 | Pterodactyl is a free, open-source game server management panel. Prior to Panel version 1.12.3 and Wings version 1.12.2,... |
| CVE-2026-54545 | HIGH | 7.1 | 0.1% | Jul 28, 2026 | wakaru is a JavaScript decompiler and unminifier toolkit. From 1.0.0 until 1.4.0, @wakaru/cli sanitizes bundle-controlle... |
| CVE-2026-51271 | — | — | 0.3% | Jul 28, 2026 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv... |
| CVE-2026-51270 | — | — | 0.4% | Jul 28, 2026 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv... |
| CVE-2026-51269 | — | — | 0.4% | Jul 28, 2026 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv... |
| CVE-2026-51268 | — | — | 0.4% | Jul 28, 2026 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now