2026 CVE Vulnerabilities
51,113 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-30006 | MEDIUM | 6.2 | 0.2% | Mar 23, 2026 | XnSoft NConvert 7.230 is vulnerable to Stack Buffer Overrun via a crafted .tiff file. |
| CVE-2026-4592 | MEDIUM | 5.6 | 0.3% | Mar 23, 2026 | A security vulnerability has been detected in kalcaddle kodbox 1.64. This impacts the function loginAfter/tfaVerify of t... |
| CVE-2026-4591 | MEDIUM | 4.7 | 2.1% | Mar 23, 2026 | A weakness has been identified in kalcaddle kodbox 1.64. This affects the function checkBin of the file /workspace/sourc... |
| CVE-2026-33354 | MEDIUM | 6.5 | 0.3% | Mar 23, 2026 | WWBN AVideo is an open source video platform. In versions up to and including 26.0, `POST /objects/aVideoEncoder.json.ph... |
| CVE-2026-4647 | MEDIUM | 6.1 | 0.2% | Mar 23, 2026 | A flaw was found in the GNU Binutils BFD library, a widely used component for handling binary files such as object files... |
| CVE-2026-4589 | MEDIUM | 6.3 | 0.2% | Mar 23, 2026 | A vulnerability was identified in kalcaddle kodbox 1.64. The affected element is the function PathDriverUrl of the file ... |
| CVE-2026-3635 | MEDIUM | 6.1 | 0.1% | Mar 23, 2026 | Summary When trustProxy is configured with a restrictive trust function (e.g., a specific IP like trustProxy: '10.0.0.1'... |
| CVE-2026-4587 | MEDIUM | 6.3 | 0.2% | Mar 23, 2026 | A vulnerability was found in HybridAuth up to 3.12.2. This issue affects some unknown processing of the file src/HttpCli... |
| CVE-2026-4586 | MEDIUM | 6.3 | 0.2% | Mar 23, 2026 | A vulnerability was found in CodePhiliaX Chat2DB up to 0.3.7. This affects the function Upload of the file chat2db-serve... |
| CVE-2026-31850 | MEDIUM | 4.9 | 0.2% | Mar 23, 2026 | Nexxt Solutions Nebula 300+ firmware through version 12.01.01.37 stores sensitive information, including administrative ... |
| CVE-2026-31849 | MEDIUM | 6.5 | 0.1% | Mar 23, 2026 | Nexxt Solutions Nebula 300+ firmware through version 12.01.01.37 does not implement CSRF protections on state-changing e... |
| CVE-2026-4583 | MEDIUM | 5 | 0.3% | Mar 23, 2026 | A vulnerability was detected in Shenzhen HCC Technology MPOS M6 PLUS 1V.31-N. Affected by this issue is some unknown fun... |
| CVE-2026-28809 | MEDIUM | 5.3 | 0.3% | Mar 23, 2026 | XML External Entity (XXE) vulnerability in esaml (and its forks) allows an attacker to cause the system to read local fi... |
| CVE-2026-4582 | MEDIUM | 5 | 0.3% | Mar 23, 2026 | A security vulnerability has been detected in Shenzhen HCC Technology MPOS M6 PLUS 1V.31-N. Affected by this vulnerabili... |
| CVE-2026-4628 | MEDIUM | 4.3 | 0.2% | Mar 23, 2026 | A flaw was found in Keycloak. An improper Access Control vulnerability in Keycloak’s User-Managed Access (UMA) resource_... |
| CVE-2026-4603 | MEDIUM | 5.3 | 0.1% | Mar 23, 2026 | Versions of the package jsrsasign before 11.1.1 are vulnerable to Division by zero due to the RSASetPublic/KEYUTIL parsi... |
| CVE-2026-4574 | MEDIUM | 6.3 | 0.2% | Mar 23, 2026 | A vulnerability was detected in SourceCodester Simple E-learning System 1.0. This vulnerability affects unknown code of ... |
| CVE-2026-4573 | MEDIUM | 6.3 | 0.2% | Mar 23, 2026 | A security vulnerability has been detected in SourceCodester Simple E-learning System 1.0. This affects an unknown part ... |
| CVE-2026-1969 | MEDIUM | 5.3 | 0.2% | Mar 23, 2026 | The trx_addons WordPress plugin before 2.38.5 does not correctly validate file types in one of its AJAX action, allowing... |
| CVE-2026-4572 | MEDIUM | 6.5 | 0.2% | Mar 23, 2026 | A weakness has been identified in SourceCodester Sales and Inventory System 1.0. Affected by this issue is some unknown ... |
| CVE-2026-4571 | MEDIUM | 6.5 | 0.2% | Mar 23, 2026 | A security flaw has been discovered in SourceCodester Sales and Inventory System 1.0. Affected by this vulnerability is ... |
| CVE-2026-4569 | MEDIUM | 6.5 | 0.3% | Mar 23, 2026 | A vulnerability was determined in SourceCodester Sales and Inventory System 1.0. This impacts an unknown function of the... |
| CVE-2026-4568 | MEDIUM | 6.5 | 0.3% | Mar 23, 2026 | A vulnerability was found in SourceCodester Sales and Inventory System 1.0. This affects an unknown function of the file... |
| CVE-2026-4564 | MEDIUM | 4.7 | 0.3% | Mar 23, 2026 | A security vulnerability has been detected in yangzongzhuan RuoYi up to 4.8.2. This issue affects some unknown processin... |
| CVE-2026-4563 | MEDIUM | 4.3 | 0.3% | Mar 23, 2026 | A weakness has been identified in MacCMS up to 2025.1000.4052. This vulnerability affects the function order_info of the... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now