2026 CVE Vulnerabilities
52,193 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-3934 | MEDIUM | 6.5 | 0.2% | Mar 11, 2026 | Insufficient policy enforcement in ChromeDriver in Google Chrome prior to 146.0.7680.71 allowed a remote attacker to byp... |
| CVE-2026-3930 | MEDIUM | 5.3 | 0.2% | Mar 11, 2026 | Unsafe navigation in Navigation in Google Chrome on iOS prior to 146.0.7680.71 allowed a remote attacker to bypass navig... |
| CVE-2026-3928 | MEDIUM | 4.3 | 0.1% | Mar 11, 2026 | Insufficient policy enforcement in Extensions in Google Chrome prior to 146.0.7680.71 allowed an attacker who convinced ... |
| CVE-2026-3927 | MEDIUM | 4.3 | 0.2% | Mar 11, 2026 | Incorrect security UI in PictureInPicture in Google Chrome prior to 146.0.7680.71 allowed a remote attacker to perform U... |
| CVE-2026-3925 | MEDIUM | 4.3 | 0.1% | Mar 11, 2026 | Incorrect security UI in LookalikeChecks in Google Chrome on Android prior to 146.0.7680.71 allowed a remote attacker to... |
| CVE-2026-32128 | MEDIUM | 6.3 | 0.3% | Mar 11, 2026 | FastGPT is an AI Agent building platform. In 4.14.7 and earlier, FastGPT's Python Sandbox (fastgpt-sandbox) includes gua... |
| CVE-2026-32117 | MEDIUM | 5.4 | 0.3% | Mar 11, 2026 | The grafanacubism-panel plugin allows use of cubism.js in Grafana. In 0.1.2 and earlier, the panel's zoom-link handler p... |
| CVE-2026-3957 | MEDIUM | 4.7 | 0.2% | Mar 11, 2026 | A flaw has been found in xierongwkhd weimai-wetapp up to 5fe9e8225be4f73f2c5087f134aff657bdf1c6f2. This vulnerability af... |
| CVE-2026-3956 | MEDIUM | 4.7 | 0.2% | Mar 11, 2026 | A vulnerability was detected in xierongwkhd weimai-wetapp up to 5fe9e8225be4f73f2c5087f134aff657bdf1c6f2. This affects t... |
| CVE-2026-3955 | MEDIUM | 6.3 | 0.2% | Mar 11, 2026 | A security vulnerability has been detected in elecV2P up to 3.8.3. Affected by this issue is the function runJSFile of t... |
| CVE-2026-32125 | MEDIUM | 5.4 | 0.2% | Mar 11, 2026 | OpenEMR is a free and open source electronic health records and medical practice management application. Prior to 8.0.0.... |
| CVE-2026-32124 | MEDIUM | 5.4 | 0.2% | Mar 11, 2026 | OpenEMR is a free and open source electronic health records and medical practice management application. Prior to 8.0.0.... |
| CVE-2026-32123 | MEDIUM | 6.5 | 0.3% | Mar 11, 2026 | OpenEMR is a free and open source electronic health records and medical practice management application. Prior to 8.0.0.... |
| CVE-2026-32122 | MEDIUM | 4.3 | 0.2% | Mar 11, 2026 | OpenEMR is a free and open source electronic health records and medical practice management application. Prior to 8.0.0.... |
| CVE-2026-32121 | MEDIUM | 5.4 | 0.2% | Mar 11, 2026 | OpenEMR is a free and open source electronic health records and medical practice management application. Prior to 8.0.0.... |
| CVE-2026-32112 | MEDIUM | 4.7 | 0.2% | Mar 11, 2026 | ha-mcp is a Home Assistant MCP Server. Prior to 7.0.0, the ha-mcp OAuth consent form renders user-controlled parameters ... |
| CVE-2026-32111 | MEDIUM | 5.3 | 0.3% | Mar 11, 2026 | ha-mcp is a Home Assistant MCP Server. Prior to 7.0.0, the ha-mcp OAuth consent form (beta feature) accepts a user-suppl... |
| CVE-2026-32109 | MEDIUM | 4.4 | 0.2% | Mar 11, 2026 | Copyparty is a portable file server. Prior to 1.20.12, if an attacker has been given both read- and write-permissions to... |
| CVE-2026-32108 | MEDIUM | 6.5 | 0.3% | Mar 11, 2026 | Copyparty is a portable file server. Prior to 1.20.12, there was a missing permission-check in the shares feature (the s... |
| CVE-2026-32104 | MEDIUM | 5.4 | 0.3% | Mar 11, 2026 | StudioCMS is a server-side-rendered, Astro native, headless content management system. Prior to 0.4.3, the updateUserNot... |
| CVE-2026-32102 | MEDIUM | 6.5 | 0.4% | Mar 11, 2026 | OliveTin gives access to predefined shell commands from a web interface. In 3000.10.2 and earlier, OliveTin’s live Event... |
| CVE-2026-32101 | MEDIUM | 6.3 | 0.2% | Mar 11, 2026 | StudioCMS is a server-side-rendered, Astro native, headless content management system. Prior to 0.3.1, the S3 storage ma... |
| CVE-2026-2640 | MEDIUM | 5.5 | 0.1% | Mar 11, 2026 | During an internal security assessment, a potential vulnerability was discovered in Lenovo PC Manager that could allow a... |
| CVE-2026-1717 | MEDIUM | 6.8 | 0.1% | Mar 11, 2026 | An input validation vulnerability was reported in the LenovoProductivitySystemAddin used in Lenovo Vantage and Lenovo Ba... |
| CVE-2026-1653 | MEDIUM | 5.5 | 0.1% | Mar 11, 2026 | A potential divide by zero vulnerability was reported in the Lenovo Virtual Bus driver used in Smart Connect that could ... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now