2026 CVE Vulnerabilities
43,284 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-62946 | MEDIUM | 4.7 | 0.1% | Jul 30, 2026 | ImageMagick is free and open-source software used for editing and manipulating digital images. In versions prior to both... |
| CVE-2026-62363 | MEDIUM | 5 | 0.1% | Jul 30, 2026 | ImageMagick is free and open-source software used for editing and manipulating digital images. In versions prior to 7.1.... |
| CVE-2026-62343 | MEDIUM | 4.7 | 0.1% | Jul 30, 2026 | ImageMagick is free and open-source software used for editing and manipulating digital images. In versions prior to 6.9.... |
| CVE-2026-15157 | MEDIUM | 5.4 | 0.2% | Jul 29, 2026 | undici does not validate the type property of a duck-typed blob-like request body before using it as the Content-Type he... |
| CVE-2026-67439 | MEDIUM | 4.3 | 0.3% | Jul 29, 2026 | OliveTin gives safe and simple access to predefined shell commands from a web interface. Prior to 3000.17.0, the service... |
| CVE-2026-67438 | MEDIUM | 6.6 | 1.0% | Jul 29, 2026 | OliveTin gives access to predefined shell commands from a web interface. From 3000.2.0 until 3000.17.0, the service/inte... |
| CVE-2026-65975 | MEDIUM | 6.5 | 0.2% | Jul 29, 2026 | Pydantic AI is a Python agent framework for building applications and workflows with Generative AI. In versions 1.88.0 u... |
| CVE-2026-54249 | MEDIUM | 6.8 | 0.2% | Jul 29, 2026 | Pydantic AI is a Python agent framework for building Generative AI applications. In versions 1.65.0 through 1.105.0, and... |
| CVE-2026-46678 | MEDIUM | 5.9 | 0.4% | Jul 29, 2026 | Pydantic AI is a Python agent framework for building Generative AI applications. In versions 1.56.0 through 1.98.0, when... |
| CVE-2026-16728 | MEDIUM | 6.5 | 0.2% | Jul 29, 2026 | undici's retry interceptor can deliver a response whose body length does not match the Content-Length header exposed to ... |
| CVE-2026-13309 | MEDIUM | 6.8 | 0.2% | Jul 29, 2026 | Autel MaxiCharger AC Elite Home NFC Stack-based Buffer Overflow Arbitrary Code Execution Vulnerability. This vulnerabili... |
| CVE-2026-13307 | MEDIUM | 6.8 | 0.3% | Jul 29, 2026 | Autel MaxiCharger AC Elite Home USB Heap-based Buffer Overflow Arbitrary Code Execution Vulnerability. This vulnerabilit... |
| CVE-2026-13306 | MEDIUM | 4.3 | 0.2% | Jul 29, 2026 | Autel MaxiCharger AC Elite Home USB Authentication Bypass Vulnerability. This vulnerability allows physically present at... |
| CVE-2026-13305 | MEDIUM | 6.4 | 0.1% | Jul 29, 2026 | Autel MaxiCharger AC Elite Home Software Update Improper Verification of Cryptographic Signature Arbitrary Code Executio... |
| CVE-2026-6336 | MEDIUM | 5.3 | 0.3% | Jul 29, 2026 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 16.6 before 19.0.5, 19.1 before 19.1.3, and 1... |
| CVE-2026-6267 | MEDIUM | 5.3 | 0.3% | Jul 29, 2026 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 10.1.0 before 19.0.5, 19.1 before 19.1.3, and... |
| CVE-2026-67435 | MEDIUM | 6 | 0.3% | Jul 29, 2026 | linuxfabrik-lib provides Python modules for database access, caching, shell execution, and API integrations. Prior to ve... |
| CVE-2026-67433 | MEDIUM | 5.8 | 0.1% | Jul 29, 2026 | Linuxfabrik monitoring-plugins provides Python monitoring plugins for Icinga, Nagios, and related monitoring systems. In... |
| CVE-2026-67430 | MEDIUM | 5.3 | 0.3% | Jul 29, 2026 | MCP Ruby SDK is the official Ruby SDK for Model Context Protocol servers and clients. Prior to 0.23.0, MCP::Server::Tran... |
| CVE-2026-63119 | MEDIUM | 6.2 | 0.1% | Jul 29, 2026 | MCP Ruby SDK is the official Ruby SDK for Model Context Protocol servers and clients. Prior to 0.23.0, MCP::Server::Tran... |
| CVE-2026-63118 | MEDIUM | 6.9 | 0.2% | Jul 29, 2026 | MCP Ruby SDK is the official Ruby SDK for Model Context Protocol servers and clients. Prior to 0.23.0, MCP::Server::Tran... |
| CVE-2026-5492 | MEDIUM | 6.5 | — | Jul 29, 2026 | DriveLock Directory Traversal Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclo... |
| CVE-2026-5489 | MEDIUM | 5.3 | — | Jul 29, 2026 | DriveLock Directory Traversal Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclo... |
| CVE-2026-4672 | MEDIUM | 4.3 | 0.2% | Jul 29, 2026 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.4 before 19.0.5, 19.1 before 19.1.3, and 1... |
| CVE-2026-3093 | MEDIUM | 4.7 | 0.2% | Jul 29, 2026 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 14.0 before 19.0.5, 19.1 before 19.1.3, and 1... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now