2026 CVE Vulnerabilities
52,233 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-27688 | MEDIUM | 5 | 0.2% | Mar 10, 2026 | Due to a missing authorization check in SAP NetWeaver Application Server for ABAP, an authenticated attacker with user p... |
| CVE-2026-27687 | MEDIUM | 5.8 | 0.3% | Mar 10, 2026 | Due to missing authorization check in SAP S/4HANA HCM Portugal and SAP ERP HCM Portugal, a user with high privileges cou... |
| CVE-2026-27686 | MEDIUM | 5.9 | 0.2% | Mar 10, 2026 | Due to a Missing Authorization Check in SAP Business Warehouse (Service API), an authenticated attacker could perform un... |
| CVE-2026-27684 | MEDIUM | 6.4 | 0.3% | Mar 10, 2026 | SAP NetWeaver Feedback Notifications Service contains a SQL injection vulnerability that allows an authenticated attacke... |
| CVE-2026-24317 | MEDIUM | 5 | 0.2% | Mar 10, 2026 | SAP GUI for Windows allows DLL files to be loaded from arbitrary directories within the application. An unauthenticated ... |
| CVE-2026-24316 | MEDIUM | 6.4 | 0.2% | Mar 10, 2026 | SAP NetWeaver Application Server for ABAP provides an ABAP Report for testing purposes, which allows to send HTTP reques... |
| CVE-2026-24313 | MEDIUM | 5 | 0.2% | Mar 10, 2026 | SAP Solution Tools Plug-In (ST-PI) contains a function module that does not perform the necessary authorization checks f... |
| CVE-2026-24311 | MEDIUM | 5.6 | 0.1% | Mar 10, 2026 | The SAP Customer Checkout application exhibits certain design characteristics that involve locally storing operational d... |
| CVE-2026-24310 | MEDIUM | 4.3 | 0.2% | Mar 10, 2026 | Due to missing authorization check in SAP NetWeaver Application Server for ABAP, an authenticated attacker could execute... |
| CVE-2026-24309 | MEDIUM | 6.4 | 0.2% | Mar 10, 2026 | Due to missing authorization check in SAP NetWeaver Application Server for ABAP, an authenticated attacker could execute... |
| CVE-2026-1920 | MEDIUM | 5.3 | 0.2% | Mar 10, 2026 | The Booking Calendar for Appointments and Service Businesses – Booktics plugin for WordPress is vulnerable to unauthoriz... |
| CVE-2026-1919 | MEDIUM | 5.3 | 0.3% | Mar 10, 2026 | The Booking Calendar for Appointments and Service Businesses – Booktics plugin for WordPress is vulnerable to unauthoriz... |
| CVE-2026-1508 | MEDIUM | 4.3 | 0.1% | Mar 10, 2026 | The Court Reservation WordPress plugin before 1.10.9 does not have CSRF check in place when deleting events, which coul... |
| CVE-2026-0489 | MEDIUM | 6.1 | 0.2% | Mar 10, 2026 | Due to insufficient validation of user-controlled input in the URLs query parameter. SAP Business One Job Service could ... |
| CVE-2026-31802 | MEDIUM | 5.5 | 0.3% | Mar 10, 2026 | node-tar is a full-featured Tar for Node.js. Prior to version 7.5.11, tar (npm) can be tricked into creating a symlink t... |
| CVE-2026-30937 | MEDIUM | 6.1 | 0.1% | Mar 10, 2026 | ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-1... |
| CVE-2026-30936 | MEDIUM | 5.5 | 0.1% | Mar 10, 2026 | ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-1... |
| CVE-2026-30935 | MEDIUM | 4.4 | 0.1% | Mar 10, 2026 | ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-1... |
| CVE-2026-28692 | MEDIUM | 4.8 | 0.3% | Mar 10, 2026 | ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-1... |
| CVE-2026-28690 | MEDIUM | 6.5 | 0.1% | Mar 10, 2026 | ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-1... |
| CVE-2026-28689 | MEDIUM | 6.3 | 0.1% | Mar 10, 2026 | ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-1... |
| CVE-2026-28688 | MEDIUM | 5.3 | 0.2% | Mar 10, 2026 | ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-1... |
| CVE-2026-28687 | MEDIUM | 5.3 | 0.2% | Mar 10, 2026 | ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-1... |
| CVE-2026-28686 | MEDIUM | 6.8 | 0.1% | Mar 10, 2026 | ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-1... |
| CVE-2026-28493 | MEDIUM | 6.5 | 0.2% | Mar 10, 2026 | ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-1... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now