2026 CVE Vulnerabilities

64,785 CVEs published in 2026.

Filter:LOWClear
CVE IDSeverityCVSSDescription
CVE-2026-7959LOW3.1Inappropriate implementation in Navigation in Google Chrome prior to 148.0.7778.96 allowed a remote attacker who had com...
CVE-2026-7954LOW3.1Race in Shared Storage in Google Chrome prior to 148.0.7778.96 allowed a remote attacker who had compromised the rendere...
CVE-2026-7949LOW3.1Out of bounds read in Skia in Google Chrome prior to 148.0.7778.96 allowed a remote attacker who had compromised the ren...
CVE-2026-7945LOW3.1Insufficient validation of untrusted input in COOP in Google Chrome prior to 148.0.7778.96 allowed a remote attacker who...
CVE-2026-7944LOW3.1Insufficient validation of untrusted input in Persistent Cache in Google Chrome prior to 148.0.7778.96 allowed a remote ...
CVE-2026-7937LOW3.1Insufficient policy enforcement in DevTools in Google Chrome prior to 148.0.7778.96 allowed an attacker who convinced a ...
CVE-2026-7909LOW3.1Inappropriate implementation in ServiceWorker in Google Chrome prior to 148.0.7778.96 allowed a remote attacker who had ...
CVE-2026-8028LOW3.7A vulnerability was detected in FlowiseAI Flowise up to 3.0.12. This affects the function verify of the file packages/se...
CVE-2026-44405LOW3.4In Paramiko through 4.0.0 before a448945, rsakey.py allows the SHA-1 algorithm.
CVE-2026-7847LOW2.6A vulnerability was found in chatchat-space Langchain-Chatchat up to 0.3.1.3. The affected element is the function _get_...
CVE-2026-7846LOW2.6A vulnerability has been found in chatchat-space Langchain-Chatchat up to 0.3.1.3. Impacted is the function files of the...
CVE-2026-7845LOW2.6A flaw has been found in chatchat-space Langchain-Chatchat up to 0.3.1.3. This issue affects the function PIL.Image.toby...
CVE-2026-43529LOW2.5OpenClaw before 2026.4.10 contains a time-of-check-time-of-use vulnerability in the validateScriptFileForShellBleed func...
CVE-2026-6499LOW2.4Incorrect Permission Assignment for Critical Resource vulnerability in ILM Informatique OpenConcerto allows Replace Bina...
CVE-2026-7740LOW3.3A security vulnerability has been detected in justdan96 tsMuxer up to 2.7.0. This issue affects the function VvcVpsUnit:...
CVE-2026-7739LOW3.3A weakness has been identified in justdan96 tsMuxer up to 2.7.0. This vulnerability affects the function HevcVpsUnit::se...
CVE-2026-43864LOW2.5mutt before 2.3.2 has a show_sig_summary NULL pointer dereference.
CVE-2026-43863LOW3.7mutt before 2.3.2 has an infinite loop in data_object_to_stream in crypt-gpgme.c.
CVE-2026-43862LOW3.7In mutt before 2.3.2, the imap_auth_gss security level is mishandled.
CVE-2026-43861LOW3.7mutt before 2.3.2 does not check for '\0' in url_pct_decode.
CVE-2026-43860LOW3.7mutt before 2.3.2 sometimes truncates the hash_passwd by one byte for IMAP auth_cram MD5 digest.
CVE-2026-43859LOW3.7mutt before 2.3.2 sometimes uses strfcpy instead of memcpy for the IMAP auth_cram MD5 digest.
CVE-2026-7689LOW3.7A security flaw has been discovered in Dolibarr ERP CRM up to 23.0.2. This vulnerability affects the function dol_verify...
CVE-2026-7677LOW3.5A vulnerability was determined in kerwincui FastBee up to 1.2.1. The impacted element is the function Add of the file sp...
CVE-2026-7671LOW3.7A vulnerability has been found in CodeWise Tornet Scooter Mobile App 4.75 on iOS/Android. The impacted element is an unk...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now