2026 CVE Vulnerabilities
64,785 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-7014 | LOW | 2.4 | 0.3% | Apr 26, 2026 | A flaw has been found in MaxSite CMS up to 109.3. This vulnerability affects unknown code of the component down_count Pl... |
| CVE-2026-7013 | LOW | 2.4 | 0.2% | Apr 26, 2026 | A security vulnerability has been detected in MaxSite CMS up to 109.3. Affected by this issue is some unknown functional... |
| CVE-2026-7012 | LOW | 2.4 | 0.3% | Apr 26, 2026 | A vulnerability was detected in MaxSite CMS up to 109.3. This affects an unknown part of the component Redirect Plugin. ... |
| CVE-2026-7011 | LOW | 2.4 | 0.3% | Apr 26, 2026 | A weakness has been identified in MaxSite CMS up to 109.3. Affected by this vulnerability is an unknown functionality of... |
| CVE-2026-7001 | LOW | 2.4 | 0.2% | Apr 25, 2026 | A vulnerability was found in Datacom DM4100 1.3.6.1.4.1.3709. This affects an unknown part of the component Ethernet Con... |
| CVE-2026-7000 | LOW | 2.4 | 0.2% | Apr 25, 2026 | A vulnerability has been found in Datacom DM4100 1.3.6.1.4.1.3709. Affected by this issue is some unknown functionality ... |
| CVE-2026-6999 | LOW | 2.4 | 0.3% | Apr 25, 2026 | A flaw has been found in BIVOCOM TR321 21.1.1.50. Affected by this vulnerability is an unknown functionality of the comp... |
| CVE-2026-6998 | LOW | 2.4 | 0.2% | Apr 25, 2026 | A vulnerability was detected in BDCOM P3310D 0.4.2 10.1.0F Build 86345. Affected is an unknown function of the component... |
| CVE-2026-6997 | LOW | 2.4 | 0.2% | Apr 25, 2026 | A security vulnerability has been detected in BDCOM P3310D 0.4.2 10.1.0F Build 86345. This impacts an unknown function o... |
| CVE-2026-6996 | LOW | 2.4 | 0.2% | Apr 25, 2026 | A weakness has been identified in BDCOM P3310D 0.4.2 10.1.0F Build 86345. This affects an unknown function of the compon... |
| CVE-2026-6995 | LOW | 2.4 | 0.2% | Apr 25, 2026 | A security flaw has been discovered in BDCOM P3310D 0.4.2 10.1.0F Build 86345. The impacted element is an unknown functi... |
| CVE-2026-6990 | LOW | 3.5 | 0.2% | Apr 25, 2026 | A vulnerability was found in projeto-siga siga 11.0.3.18. The affected element is an unknown function of the file /sigaw... |
| CVE-2026-6986 | LOW | 3.7 | 0.2% | Apr 25, 2026 | A security vulnerability has been detected in Cesanta Mongoose up to 7.20. This issue affects the function mg_aes_gcm_de... |
| CVE-2026-41488 | LOW | 3.1 | 0.2% | Apr 24, 2026 | LangChain is a framework for building agents and LLM-powered applications. Prior to 1.1.14, langchain-openai's _url_to_s... |
| CVE-2026-42040 | LOW | 3.7 | 0.2% | Apr 24, 2026 | Axios is a promise based HTTP client for the browser and Node.js. Prior to 1.15.1 and 0.31.1, the encode() function in l... |
| CVE-2026-41321 | LOW | 2.2 | 0.2% | Apr 24, 2026 | @astrojs/cloudflare is an SSR adapter for use with Cloudflare Workers targets. Prior to 13.1.10, the fetch() call for re... |
| CVE-2026-31051 | LOW | 3.8 | 0.4% | Apr 24, 2026 | An issue in Hostbill v.2025-11-24 and 2025-12-01 allows a remote attacker to cause a denial of service via the Client Ba... |
| CVE-2026-4313 | LOW | 2.4 | 0.6% | Apr 24, 2026 | AdaptiveGRC is vulnerable to Stored XSS via text type fields across the forms. Authenticated attacker can replace the va... |
| CVE-2026-29051 | LOW | 3.3 | 0.2% | Apr 24, 2026 | melange allows users to build apk packages using declarative pipelines. Starting in version 0.32.0 and prior to version ... |
| CVE-2026-41357 | LOW | 3.3 | 0.2% | Apr 23, 2026 | OpenClaw before 2026.3.31 contains an environment variable leakage vulnerability in SSH-based sandbox backends that pass... |
| CVE-2026-4512 | LOW | 3.5 | 0.2% | Apr 23, 2026 | The reCaptcha by WebDesignBy WordPress plugin before 2.0 does not sanitize or escape the Site Key setting before outputt... |
| CVE-2026-41988 | LOW | 2.5 | 0.1% | Apr 23, 2026 | uuid before 14.0.0 can make unexpected writes when external output buffers are used, and the UUID version is 3, 5, or 6.... |
| CVE-2026-3254 | LOW | 3.5 | 0.2% | Apr 22, 2026 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.11 before 18.11.1 that under certain condi... |
| CVE-2026-35381 | LOW | 3.3 | 0.1% | Apr 22, 2026 | A logic error in the cut utility of uutils coreutils causes the utility to ignore the -s (only-delimited) flag when usin... |
| CVE-2026-35379 | LOW | 3.3 | 0.1% | Apr 22, 2026 | A logic error in the tr utility of uutils coreutils causes the program to incorrectly define the [:graph:] and [:print:]... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now