2026 CVE Vulnerabilities
51,054 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-32120 | MEDIUM | 6.3 | 0.3% | Mar 25, 2026 | OpenEMR is a free and open source electronic health records and medical practice management application. Prior to versio... |
| CVE-2026-33249 | MEDIUM | 4.3 | 0.2% | Mar 25, 2026 | NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Starting in version 2.11... |
| CVE-2026-33248 | MEDIUM | 4.2 | 0.1% | Mar 25, 2026 | NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Prior to versions 2.11.1... |
| CVE-2026-33223 | MEDIUM | 5.4 | 0.2% | Mar 25, 2026 | NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Prior to versions 2.11.1... |
| CVE-2026-33222 | MEDIUM | 4.9 | 0.3% | Mar 25, 2026 | NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Prior to versions 2.11.1... |
| CVE-2026-2485 | MEDIUM | 4.8 | 0.2% | Mar 25, 2026 | IBM Infosphere Information Server 11.7.0.0 through 11.7.1.6 is vulnerable to stored cross-site scripting. This vulnerabi... |
| CVE-2026-2484 | MEDIUM | 4.3 | 0.3% | Mar 25, 2026 | IBM InfoSphere Information Server 11.7.0.0 through 11.7.1.6 is affected by an information exposure vulnerability caused ... |
| CVE-2026-2483 | MEDIUM | 5.4 | 0.2% | Mar 25, 2026 | IBM InfoSphere Information Server 11.7.0.0 through 11.7.1.6 is vulnerable to cross-site scripting. This vulnerability al... |
| CVE-2026-1561 | MEDIUM | 5.4 | 0.3% | Mar 25, 2026 | IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.3 IBM WebSphere Application Server Liberty is vulnera... |
| CVE-2026-1262 | MEDIUM | 4.3 | 0.2% | Mar 25, 2026 | IBM InfoSphere Information Server 11.7.0.0 through 11.7.1.6 is affected by an information disclosure vulnerability. |
| CVE-2026-1015 | MEDIUM | 5.4 | 0.2% | Mar 25, 2026 | IBM InfoSphere Information Server 11.7.0.0 through 11.7.1.6 is vulnerable to server-side request forgery (SSRF). This ma... |
| CVE-2026-1014 | MEDIUM | 6.5 | 0.2% | Mar 25, 2026 | IBM InfoSphere Information Server 11.7.0.0 through 11.7.1.6 is vulnerable to exposure of sensitive information via JSON ... |
| CVE-2026-33247 | MEDIUM | 5.3 | 0.4% | Mar 25, 2026 | NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Prior to versions 2.11.1... |
| CVE-2026-33246 | MEDIUM | 5.4 | 0.1% | Mar 25, 2026 | NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. The nats-server offers a... |
| CVE-2026-33219 | MEDIUM | 5.3 | 0.5% | Mar 25, 2026 | NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Prior to versions 2.11.1... |
| CVE-2026-33217 | MEDIUM | 6.5 | 0.3% | Mar 25, 2026 | NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Prior to versions 2.11.1... |
| CVE-2026-33809 | MEDIUM | 5.3 | 0.3% | Mar 25, 2026 | A maliciously crafted TIFF file can cause image decoding to attempt to allocate up 4GiB of memory, causing either excess... |
| CVE-2026-33751 | MEDIUM | 4.8 | 0.2% | Mar 25, 2026 | n8n is an open source workflow automation platform. Prior to versions 1.123.27, 2.13.3, and 2.14.1, a flaw in the LDAP n... |
| CVE-2026-33722 | MEDIUM | 5.3 | 0.3% | Mar 25, 2026 | n8n is an open source workflow automation platform. Prior to versions 2.6.4 and 1.123.23, an authenticated user without ... |
| CVE-2026-33720 | MEDIUM | 4.2 | 0.2% | Mar 25, 2026 | n8n is an open source workflow automation platform. Prior to version 2.8.0, when the `N8N_SKIP_AUTH_ON_OAUTH_CALLBACK` e... |
| CVE-2026-1001 | MEDIUM | 4.8 | 0.2% | Mar 25, 2026 | Domoticz versions prior to 2026.1 contain a stored cross-site scripting vulnerability in the Add Hardware and rename dev... |
| CVE-2026-33663 | MEDIUM | 6.5 | 0.4% | Mar 25, 2026 | n8n is an open source workflow automation platform. Prior to versions 2.14.1, 2.13.3, and 1.123.27, an authenticated use... |
| CVE-2026-27496 | MEDIUM | 6.5 | 0.3% | Mar 25, 2026 | n8n is an open source workflow automation platform. Prior to versions 1.123.22, 2.9.3, and 2.10.1, an authenticated user... |
| CVE-2026-32567 | MEDIUM | 6.8 | 0.3% | Mar 25, 2026 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in icopydoc YML for Yandex ... |
| CVE-2026-32562 | MEDIUM | 5.4 | 0.1% | Mar 25, 2026 | Missing Authorization vulnerability in WP Folio Team PPWP password-protect-page allows Exploiting Incorrectly Configured... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now