2026 CVE Vulnerabilities

64,785 CVEs published in 2026.

Filter:LOWClear
CVE IDSeverityCVSSDescription
CVE-2026-7014LOW2.4A flaw has been found in MaxSite CMS up to 109.3. This vulnerability affects unknown code of the component down_count Pl...
CVE-2026-7013LOW2.4A security vulnerability has been detected in MaxSite CMS up to 109.3. Affected by this issue is some unknown functional...
CVE-2026-7012LOW2.4A vulnerability was detected in MaxSite CMS up to 109.3. This affects an unknown part of the component Redirect Plugin. ...
CVE-2026-7011LOW2.4A weakness has been identified in MaxSite CMS up to 109.3. Affected by this vulnerability is an unknown functionality of...
CVE-2026-7001LOW2.4A vulnerability was found in Datacom DM4100 1.3.6.1.4.1.3709. This affects an unknown part of the component Ethernet Con...
CVE-2026-7000LOW2.4A vulnerability has been found in Datacom DM4100 1.3.6.1.4.1.3709. Affected by this issue is some unknown functionality ...
CVE-2026-6999LOW2.4A flaw has been found in BIVOCOM TR321 21.1.1.50. Affected by this vulnerability is an unknown functionality of the comp...
CVE-2026-6998LOW2.4A vulnerability was detected in BDCOM P3310D 0.4.2 10.1.0F Build 86345. Affected is an unknown function of the component...
CVE-2026-6997LOW2.4A security vulnerability has been detected in BDCOM P3310D 0.4.2 10.1.0F Build 86345. This impacts an unknown function o...
CVE-2026-6996LOW2.4A weakness has been identified in BDCOM P3310D 0.4.2 10.1.0F Build 86345. This affects an unknown function of the compon...
CVE-2026-6995LOW2.4A security flaw has been discovered in BDCOM P3310D 0.4.2 10.1.0F Build 86345. The impacted element is an unknown functi...
CVE-2026-6990LOW3.5A vulnerability was found in projeto-siga siga 11.0.3.18. The affected element is an unknown function of the file /sigaw...
CVE-2026-6986LOW3.7A security vulnerability has been detected in Cesanta Mongoose up to 7.20. This issue affects the function mg_aes_gcm_de...
CVE-2026-41488LOW3.1LangChain is a framework for building agents and LLM-powered applications. Prior to 1.1.14, langchain-openai's _url_to_s...
CVE-2026-42040LOW3.7Axios is a promise based HTTP client for the browser and Node.js. Prior to 1.15.1 and 0.31.1, the encode() function in l...
CVE-2026-41321LOW2.2@astrojs/cloudflare is an SSR adapter for use with Cloudflare Workers targets. Prior to 13.1.10, the fetch() call for re...
CVE-2026-31051LOW3.8An issue in Hostbill v.2025-11-24 and 2025-12-01 allows a remote attacker to cause a denial of service via the Client Ba...
CVE-2026-4313LOW2.4AdaptiveGRC is vulnerable to Stored XSS via text type fields across the forms. Authenticated attacker can replace the va...
CVE-2026-29051LOW3.3melange allows users to build apk packages using declarative pipelines. Starting in version 0.32.0 and prior to version ...
CVE-2026-41357LOW3.3OpenClaw before 2026.3.31 contains an environment variable leakage vulnerability in SSH-based sandbox backends that pass...
CVE-2026-4512LOW3.5The reCaptcha by WebDesignBy WordPress plugin before 2.0 does not sanitize or escape the Site Key setting before outputt...
CVE-2026-41988LOW2.5uuid before 14.0.0 can make unexpected writes when external output buffers are used, and the UUID version is 3, 5, or 6....
CVE-2026-3254LOW3.5GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.11 before 18.11.1 that under certain condi...
CVE-2026-35381LOW3.3A logic error in the cut utility of uutils coreutils causes the utility to ignore the -s (only-delimited) flag when usin...
CVE-2026-35379LOW3.3A logic error in the tr utility of uutils coreutils causes the program to incorrectly define the [:graph:] and [:print:]...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now