2026 CVE Vulnerabilities
52,080 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-35242 | HIGH | 7.5 | 0.1% | Apr 21, 2026 | Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version th... |
| CVE-2026-35231 | HIGH | 7.5 | 0.3% | Apr 21, 2026 | Vulnerability in the Oracle Financial Services Transaction Filtering product of Oracle Financial Services Applications (... |
| CVE-2026-35230 | HIGH | 7.5 | 0.2% | Apr 21, 2026 | Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version th... |
| CVE-2026-35229 | HIGH | 7.5 | 0.3% | Apr 21, 2026 | Vulnerability in the Java VM component of Oracle Database Server. Supported versions that are affected are 19.3-19.30 a... |
| CVE-2026-34320 | HIGH | 7.5 | 0.3% | Apr 21, 2026 | Vulnerability in the Oracle Financial Services Customer Screening product of Oracle Financial Services Applications (com... |
| CVE-2026-34310 | HIGH | 7.5 | 0.3% | Apr 21, 2026 | Vulnerability in the Oracle Financial Services Analytical Applications Infrastructure product of Oracle Financial Servic... |
| CVE-2026-34309 | HIGH | 8.1 | 0.3% | Apr 21, 2026 | Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Security). Supported ve... |
| CVE-2026-34305 | HIGH | 7.5 | 0.3% | Apr 21, 2026 | Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Web Services). Supported ve... |
| CVE-2026-34297 | HIGH | 7.5 | 0.3% | Apr 21, 2026 | Vulnerability in the Oracle HCM Common Architecture product of Oracle E-Business Suite (component: Knowledge Integration... |
| CVE-2026-34292 | HIGH | 7.2 | 0.3% | Apr 21, 2026 | Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions t... |
| CVE-2026-34291 | HIGH | 8.7 | 0.3% | Apr 21, 2026 | Vulnerability in the Oracle HTTP Server product of Oracle Fusion Middleware (component: Core). Supported versions that ... |
| CVE-2026-34290 | HIGH | 7.5 | 0.3% | Apr 21, 2026 | Vulnerability in the Oracle Identity Manager Connector product of Oracle Fusion Middleware (component: Core). The supp... |
| CVE-2026-34282 | HIGH | 7.5 | 0.6% | Apr 21, 2026 | Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE... |
| CVE-2026-33518 | HIGH | 7.2 | 0.3% | Apr 21, 2026 | An incorrect privilege assignment vulnerability exists in Esri Portal for ArcGIS 11.5 in Windows and Linux that allows h... |
| CVE-2026-22016 | HIGH | 7.5 | 0.7% | Apr 21, 2026 | Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE... |
| CVE-2026-22011 | HIGH | 7.6 | 0.3% | Apr 21, 2026 | Vulnerability in the Oracle Applications DBA product of Oracle E-Business Suite (component: ADPatch). Supported version... |
| CVE-2026-22010 | HIGH | 7.5 | 0.3% | Apr 21, 2026 | Vulnerability in the Oracle Financial Services Analytical Applications Infrastructure product of Oracle Financial Servic... |
| CVE-2026-21997 | HIGH | 8.5 | 0.2% | Apr 21, 2026 | Vulnerability in the Oracle Life Sciences Empirica Signal product of Oracle Life Science Applications (component: Common... |
| CVE-2026-6819 | HIGH | 8.8 | 0.3% | Apr 21, 2026 | HKUDS OpenHarness prior to PR #156 remediation exposes plugin lifecycle commands including /plugin install, /plugin enab... |
| CVE-2026-40890 | HIGH | 7.5 | 0.3% | Apr 21, 2026 | The package `github.com/gomarkdown/markdown` is a Go library for parsing Markdown text and rendering as HTML. Processing... |
| CVE-2026-40885 | HIGH | 8.8 | 0.3% | Apr 21, 2026 | goshs is a SimpleHTTPServer written in Go. From 2.0.0-beta.4 to 2.0.0-beta.5, goshs leaks file-based ACL credentials thr... |
| CVE-2026-40883 | HIGH | 8.1 | 0.1% | Apr 21, 2026 | goshs is a SimpleHTTPServer written in Go. From 2.0.0-beta.4 to 2.0.0-beta.5, goshs contains a cross-site request forger... |
| CVE-2026-40881 | HIGH | 7.5 | 0.3% | Apr 21, 2026 | ZEBRA is a Zcash node written entirely in Rust. Prior to zebrad version 4.3.0 and zebra-network version 5.0.1, when dese... |
| CVE-2026-40880 | HIGH | 8.1 | 0.3% | Apr 21, 2026 | ZEBRA is a Zcash node written entirely in Rust. Prior to zebrad version 4.3.1 and zebra-consensus version 5.0.2, a logic... |
| CVE-2026-40879 | HIGH | 7.5 | 0.3% | Apr 21, 2026 | Nest is a framework for building scalable Node.js server-side applications. Prior to 11.1.19, when an attacker sends man... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now