2026 CVE Vulnerabilities

51,113 CVEs published in 2026.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2026-30006MEDIUM6.2XnSoft NConvert 7.230 is vulnerable to Stack Buffer Overrun via a crafted .tiff file.
CVE-2026-4592MEDIUM5.6A security vulnerability has been detected in kalcaddle kodbox 1.64. This impacts the function loginAfter/tfaVerify of t...
CVE-2026-4591MEDIUM4.7A weakness has been identified in kalcaddle kodbox 1.64. This affects the function checkBin of the file /workspace/sourc...
CVE-2026-33354MEDIUM6.5WWBN AVideo is an open source video platform. In versions up to and including 26.0, `POST /objects/aVideoEncoder.json.ph...
CVE-2026-4647MEDIUM6.1A flaw was found in the GNU Binutils BFD library, a widely used component for handling binary files such as object files...
CVE-2026-4589MEDIUM6.3A vulnerability was identified in kalcaddle kodbox 1.64. The affected element is the function PathDriverUrl of the file ...
CVE-2026-3635MEDIUM6.1Summary When trustProxy is configured with a restrictive trust function (e.g., a specific IP like trustProxy: '10.0.0.1'...
CVE-2026-4587MEDIUM6.3A vulnerability was found in HybridAuth up to 3.12.2. This issue affects some unknown processing of the file src/HttpCli...
CVE-2026-4586MEDIUM6.3A vulnerability was found in CodePhiliaX Chat2DB up to 0.3.7. This affects the function Upload of the file chat2db-serve...
CVE-2026-31850MEDIUM4.9Nexxt Solutions Nebula 300+ firmware through version 12.01.01.37 stores sensitive information, including administrative ...
CVE-2026-31849MEDIUM6.5Nexxt Solutions Nebula 300+ firmware through version 12.01.01.37 does not implement CSRF protections on state-changing e...
CVE-2026-4583MEDIUM5A vulnerability was detected in Shenzhen HCC Technology MPOS M6 PLUS 1V.31-N. Affected by this issue is some unknown fun...
CVE-2026-28809MEDIUM5.3XML External Entity (XXE) vulnerability in esaml (and its forks) allows an attacker to cause the system to read local fi...
CVE-2026-4582MEDIUM5A security vulnerability has been detected in Shenzhen HCC Technology MPOS M6 PLUS 1V.31-N. Affected by this vulnerabili...
CVE-2026-4628MEDIUM4.3A flaw was found in Keycloak. An improper Access Control vulnerability in Keycloak’s User-Managed Access (UMA) resource_...
CVE-2026-4603MEDIUM5.3Versions of the package jsrsasign before 11.1.1 are vulnerable to Division by zero due to the RSASetPublic/KEYUTIL parsi...
CVE-2026-4574MEDIUM6.3A vulnerability was detected in SourceCodester Simple E-learning System 1.0. This vulnerability affects unknown code of ...
CVE-2026-4573MEDIUM6.3A security vulnerability has been detected in SourceCodester Simple E-learning System 1.0. This affects an unknown part ...
CVE-2026-1969MEDIUM5.3The trx_addons WordPress plugin before 2.38.5 does not correctly validate file types in one of its AJAX action, allowing...
CVE-2026-4572MEDIUM6.5A weakness has been identified in SourceCodester Sales and Inventory System 1.0. Affected by this issue is some unknown ...
CVE-2026-4571MEDIUM6.5A security flaw has been discovered in SourceCodester Sales and Inventory System 1.0. Affected by this vulnerability is ...
CVE-2026-4569MEDIUM6.5A vulnerability was determined in SourceCodester Sales and Inventory System 1.0. This impacts an unknown function of the...
CVE-2026-4568MEDIUM6.5A vulnerability was found in SourceCodester Sales and Inventory System 1.0. This affects an unknown function of the file...
CVE-2026-4564MEDIUM4.7A security vulnerability has been detected in yangzongzhuan RuoYi up to 4.8.2. This issue affects some unknown processin...
CVE-2026-4563MEDIUM4.3A weakness has been identified in MacCMS up to 2025.1000.4052. This vulnerability affects the function order_info of the...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now