2026 CVE Vulnerabilities

51,054 CVEs published in 2026.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2026-32120MEDIUM6.3OpenEMR is a free and open source electronic health records and medical practice management application. Prior to versio...
CVE-2026-33249MEDIUM4.3NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Starting in version 2.11...
CVE-2026-33248MEDIUM4.2NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Prior to versions 2.11.1...
CVE-2026-33223MEDIUM5.4NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Prior to versions 2.11.1...
CVE-2026-33222MEDIUM4.9NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Prior to versions 2.11.1...
CVE-2026-2485MEDIUM4.8IBM Infosphere Information Server 11.7.0.0 through 11.7.1.6 is vulnerable to stored cross-site scripting. This vulnerabi...
CVE-2026-2484MEDIUM4.3IBM InfoSphere Information Server 11.7.0.0 through 11.7.1.6 is affected by an information exposure vulnerability caused ...
CVE-2026-2483MEDIUM5.4IBM InfoSphere Information Server 11.7.0.0 through 11.7.1.6 is vulnerable to cross-site scripting. This vulnerability al...
CVE-2026-1561MEDIUM5.4IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.3 IBM WebSphere Application Server Liberty is vulnera...
CVE-2026-1262MEDIUM4.3IBM InfoSphere Information Server 11.7.0.0 through 11.7.1.6 is affected by an information disclosure vulnerability.
CVE-2026-1015MEDIUM5.4IBM InfoSphere Information Server 11.7.0.0 through 11.7.1.6 is vulnerable to server-side request forgery (SSRF). This ma...
CVE-2026-1014MEDIUM6.5IBM InfoSphere Information Server 11.7.0.0 through 11.7.1.6 is vulnerable to exposure of sensitive information via JSON ...
CVE-2026-33247MEDIUM5.3NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Prior to versions 2.11.1...
CVE-2026-33246MEDIUM5.4NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. The nats-server offers a...
CVE-2026-33219MEDIUM5.3NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Prior to versions 2.11.1...
CVE-2026-33217MEDIUM6.5NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Prior to versions 2.11.1...
CVE-2026-33809MEDIUM5.3A maliciously crafted TIFF file can cause image decoding to attempt to allocate up 4GiB of memory, causing either excess...
CVE-2026-33751MEDIUM4.8n8n is an open source workflow automation platform. Prior to versions 1.123.27, 2.13.3, and 2.14.1, a flaw in the LDAP n...
CVE-2026-33722MEDIUM5.3n8n is an open source workflow automation platform. Prior to versions 2.6.4 and 1.123.23, an authenticated user without ...
CVE-2026-33720MEDIUM4.2n8n is an open source workflow automation platform. Prior to version 2.8.0, when the `N8N_SKIP_AUTH_ON_OAUTH_CALLBACK` e...
CVE-2026-1001MEDIUM4.8Domoticz versions prior to 2026.1 contain a stored cross-site scripting vulnerability in the Add Hardware and rename dev...
CVE-2026-33663MEDIUM6.5n8n is an open source workflow automation platform. Prior to versions 2.14.1, 2.13.3, and 1.123.27, an authenticated use...
CVE-2026-27496MEDIUM6.5n8n is an open source workflow automation platform. Prior to versions 1.123.22, 2.9.3, and 2.10.1, an authenticated user...
CVE-2026-32567MEDIUM6.8Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in icopydoc YML for Yandex ...
CVE-2026-32562MEDIUM5.4Missing Authorization vulnerability in WP Folio Team PPWP password-protect-page allows Exploiting Incorrectly Configured...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now