2026 CVE Vulnerabilities
53,146 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-27735 | MEDIUM | 6.5 | 0.3% | Feb 26, 2026 | Model Context Protocol Servers is a collection of reference implementations for the model context protocol (MCP). In mcp... |
| CVE-2026-27711 | MEDIUM | 6.6 | 0.1% | Feb 26, 2026 | NanaZip is an open source file archive. Starting in version 5.0.1252.0 and prior to versions 6.0.1638.0 and 6.5.1638.0, ... |
| CVE-2026-27710 | MEDIUM | 5 | 0.1% | Feb 26, 2026 | NanaZip is an open source file archive. Starting in version 5.0.1252.0 and prior to versions 6.0.1638.0 and 6.5.1638.0, ... |
| CVE-2026-27709 | MEDIUM | 6.6 | 0.1% | Feb 26, 2026 | NanaZip is an open source file archive. Starting in version 5.0.1252.0 and prior to versions 6.0.1638.0 and 6.5.1638.0, ... |
| CVE-2026-3209 | MEDIUM | 6.3 | 0.3% | Feb 25, 2026 | A vulnerability has been found in fosrl Pangolin up to 1.15.4-s.3. This affects the function verifyRoleAccess/verifyApiK... |
| CVE-2026-27578 | MEDIUM | 5.4 | 0.2% | Feb 25, 2026 | n8n is an open source workflow automation platform. Prior to versions 2.10.1, 2.9.3, and 1.123.22, an authenticated user... |
| CVE-2026-2694 | MEDIUM | 5.4 | 0.2% | Feb 25, 2026 | The The Events Calendar plugin for WordPress is vulnerable to unauthorized modification of data and loss of data due to ... |
| CVE-2026-27116 | MEDIUM | 6.1 | 0.2% | Feb 25, 2026 | Vikunja is an open-source self-hosted task management platform. Prior to version 2.0.0, a reflected HTML injection vulne... |
| CVE-2026-26985 | MEDIUM | 6.5 | 0.3% | Feb 25, 2026 | LORIS (Longitudinal Online Research and Imaging System) is a self-hosted web application that provides data- and project... |
| CVE-2026-2845 | MEDIUM | 6.5 | 0.3% | Feb 25, 2026 | An issue has been discovered in GitLab CE/EE affecting all versions from 11.2 before 18.7.5, 18.8 before 18.8.5, and 18.... |
| CVE-2026-27015 | MEDIUM | 6.5 | 0.3% | Feb 25, 2026 | FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.23.0, a missing bounds check in `sma... |
| CVE-2026-26271 | MEDIUM | 5.3 | 0.2% | Feb 25, 2026 | FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.23.0, a buffer overread in `freerdp_... |
| CVE-2026-1747 | MEDIUM | 4.3 | 0.2% | Feb 25, 2026 | GitLab has remediated an issue in GitLab EE affecting all versions from 17.11 before 18.7.5, 18.8 before 18.8.5, and 18.... |
| CVE-2026-0752 | MEDIUM | 6.1 | 0.3% | Feb 25, 2026 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 16.2 before 18.7.5, 18.8 before 18.8.5, and 1... |
| CVE-2026-2636 | MEDIUM | 5.5 | 0.4% | Feb 25, 2026 | This vulnerability is caused by a CWE‑159: "Improper Handling of Invalid Use of Special Elements" weakness, which leads ... |
| CVE-2026-25736 | MEDIUM | 4.8 | 0.3% | Feb 25, 2026 | Rucio is a software framework that provides functionality to organize, manage, and access large volumes of scientific da... |
| CVE-2026-25735 | MEDIUM | 4.8 | 0.3% | Feb 25, 2026 | Rucio is a software framework that provides functionality to organize, manage, and access large volumes of scientific da... |
| CVE-2026-25734 | MEDIUM | 4.8 | 0.3% | Feb 25, 2026 | Rucio is a software framework that provides functionality to organize, manage, and access large volumes of scientific da... |
| CVE-2026-25733 | MEDIUM | 5.4 | 0.3% | Feb 25, 2026 | Rucio is a software framework that provides functionality to organize, manage, and access large volumes of scientific da... |
| CVE-2026-25138 | MEDIUM | 5.3 | 0.3% | Feb 25, 2026 | Rucio is a software framework that provides functionality to organize, manage, and access large volumes of scientific da... |
| CVE-2026-25136 | MEDIUM | 6.1 | 0.3% | Feb 25, 2026 | Rucio is a software framework that provides functionality to organize, manage, and access large volumes of scientific da... |
| CVE-2026-3221 | MEDIUM | 4.9 | 0.2% | Feb 25, 2026 | Sensitive user account information is not encrypted in the database in Devolutions Server 2025.3.14 and earlier, which ... |
| CVE-2026-25930 | MEDIUM | 6.5 | 0.3% | Feb 25, 2026 | OpenEMR is a free and open source electronic health records and medical practice management application. Prior to versio... |
| CVE-2026-25929 | MEDIUM | 6.5 | 0.3% | Feb 25, 2026 | OpenEMR is a free and open source electronic health records and medical practice management application. Prior to versio... |
| CVE-2026-25743 | MEDIUM | 4.8 | 0.2% | Feb 25, 2026 | OpenEMR is a free and open source electronic health records and medical practice management application. Prior to versio... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now