2026 CVE Vulnerabilities

53,238 CVEs published in 2026.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2026-5212HIGH8.8A vulnerability has been found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, D...
CVE-2026-34733HIGH7.3WWBN AVideo is an open source video platform. In versions 26.0 and prior, the AVideo installation script install/deleteS...
CVE-2026-34732HIGH7.5WWBN AVideo is an open source video platform. In versions 26.0 and prior, the AVideo CreatePlugin template for list.json...
CVE-2026-34731HIGH7.5WWBN AVideo is an open source video platform. In versions 26.0 and prior, the AVideo on_publish_done.php endpoint in the...
CVE-2026-34394HIGH8.1WWBN AVideo is an open source video platform. In versions 26.0 and prior, AVideo's admin plugin configuration endpoint (...
CVE-2026-34384HIGH7.3Admidio is an open-source user management solution. Prior to version 5.0.8, the create_user, assign_member, and assign_u...
CVE-2026-34381HIGH7.5Admidio is an open-source user management solution. From version 5.0.0 to before version 5.0.8, Admidio relies on adm_my...
CVE-2026-34367HIGH8.7InvoiceShelf is an open-source web & mobile app that helps track expenses, payments and create professional invoices and...
CVE-2026-34366HIGH8.1InvoiceShelf is an open-source web & mobile app that helps track expenses, payments and create professional invoices and...
CVE-2026-5211HIGH8.8A flaw has been found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, D...
CVE-2026-34784HIGH7.5Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js. Prior to version...
CVE-2026-34365HIGH8.1InvoiceShelf is an open-source web & mobile app that helps track expenses, payments and create professional invoices and...
CVE-2026-34204HIGH7.1MinIO is a high-performance object storage system. Prior to version RELEASE.2026-03-26T21-24-40Z, a flaw in extractMetad...
CVE-2026-30290HIGH8.4An arbitrary file overwrite vulnerability in InTouch Contacts & Caller ID APP v6.38.1 allows attackers to overwrite crit...
CVE-2026-5210HIGH7.3A vulnerability was detected in SourceCodester Leave Application System 1.0. This affects an unknown part. Performing a ...
CVE-2026-5190HIGH7.7Out-of-bounds write in the streaming decoder component in aws-c-event-stream before 0.6.0 might allow a third party oper...
CVE-2026-32726HIGH8.1SciTokens C++ is a minimal library for creating and using SciTokens from C or C++. Prior to version 1.4.1, scitokens-cpp...
CVE-2026-32725HIGH8.3SciTokens C++ is a minimal library for creating and using SciTokens from C or C++. Prior to version 1.4.1, scitokens-cpp...
CVE-2026-30279HIGH8.4An arbitrary file overwrite vulnerability in Squareapps LLC My Location Travel Timeline v11.80 allows attackers to overw...
CVE-2026-30277HIGH8.4An arbitrary file overwrite vulnerability in PDF Reader App : TA/UTAX Mobile Print v3.7.2.251001 allows attackers to ove...
CVE-2026-2123HIGH7.8A security audit identified a privilege escalation vulnerability in Operations Agent(<=OA 12.29) on Windows. Under speci...
CVE-2026-24165HIGH8.8NVIDIA BioNeMo contains a vulnerability where a user could cause a deserialization of untrusted data. A successful explo...
CVE-2026-5204HIGH8.8A vulnerability was determined in Tenda CH22 1.0.0.1. Affected is the function formWebTypeLibrary of the file /goform/we...
CVE-2026-5087HIGH7.5PAGI::Middleware::Session::Store::Cookie versions through 0.001003 for Perl generates random bytes insecurely. PAGI::Mi...
CVE-2026-4818HIGH8.1In Search Guard FLX versions from 3.0.0 up to 4.0.1, there exists an issue which allows users without the necessary priv...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now