2026 CVE Vulnerabilities
53,146 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-2802 | MEDIUM | 4.2 | 0.1% | Feb 24, 2026 | Race condition in the JavaScript: GC component. This vulnerability was fixed in Firefox 148 and Thunderbird 148. |
| CVE-2026-23984 | MEDIUM | 6.5 | 0.3% | Feb 24, 2026 | An Improper Input Validation vulnerability exists in Apache Superset that allows an authenticated user with SQLLab acces... |
| CVE-2026-23983 | MEDIUM | 6.5 | 0.4% | Feb 24, 2026 | A Sensitive Data Exposure vulnerability exists in Apache Superset allowing authenticated users to retrieve sensitive use... |
| CVE-2026-23982 | MEDIUM | 6.5 | 0.4% | Feb 24, 2026 | An Improper Authorization vulnerability exists in Apache Superset that allows a low-privileged user to bypass data acces... |
| CVE-2026-23980 | MEDIUM | 6.5 | 0.5% | Feb 24, 2026 | Improper Neutralization of Special Elements used in a SQL Command ('SQL Injection') vulnerability in Apache Superset all... |
| CVE-2026-23969 | MEDIUM | 6.5 | 0.6% | Feb 24, 2026 | Apache Superset utilizes a configurable dictionary, DISALLOWED_SQL_FUNCTIONS, to restrict the execution of potentially s... |
| CVE-2026-1772 | MEDIUM | 5.3 | 0.3% | Feb 24, 2026 | RTU500 web interface: An unprivileged user can read user management information. The information cannot be accessed via ... |
| CVE-2026-24314 | MEDIUM | 4.3 | 0.2% | Feb 24, 2026 | Under certain conditions SAP S/4HANA (Manage Payment Media) allows an authenticated attacker to access information which... |
| CVE-2026-3070 | MEDIUM | 6.1 | 0.3% | Feb 24, 2026 | A vulnerability was detected in SourceCodester Modern Image Gallery App 1.0. Affected by this vulnerability is an unknow... |
| CVE-2026-27461 | MEDIUM | 4.9 | 0.5% | Feb 24, 2026 | Pimcore is an Open Source Data & Experience Management Platform. In versions up to and including 11.5.14.1 and 12.3.2, t... |
| CVE-2026-3054 | MEDIUM | 6.1 | 0.4% | Feb 24, 2026 | A vulnerability was identified in Alinto SOGo 5.12.3/5.12.4. This impacts an unknown function. The manipulation of the a... |
| CVE-2026-27129 | MEDIUM | 6.5 | 0.4% | Feb 24, 2026 | Craft is a content management system (CMS). In versions 4.5.0-RC1 through 4.16.18 and 5.0.0-RC1 through 5.8.22, the SSRF... |
| CVE-2026-27128 | MEDIUM | 4.8 | 0.2% | Feb 24, 2026 | Craft is a content management system (CMS). In versions 4.5.0-RC1 through 4.16.18 and 5.0.0-RC1 through 5.8.22, a Time-o... |
| CVE-2026-27127 | MEDIUM | 6.3 | 0.4% | Feb 24, 2026 | Craft is a content management system (CMS). In versions 4.5.0-RC1 through 4.16.18 and 5.0.0-RC1 through 5.8.22, the SSRF... |
| CVE-2026-27126 | MEDIUM | 4.8 | 0.2% | Feb 24, 2026 | Craft is a content management system (CMS). In versions 4.5.0-RC1 through 4.16.18 and 5.0.0-RC1 through 5.8.22, a stored... |
| CVE-2026-26983 | MEDIUM | 5.3 | 0.4% | Feb 24, 2026 | ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-1... |
| CVE-2026-26981 | MEDIUM | 6.5 | 0.5% | Feb 24, 2026 | OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the ... |
| CVE-2026-25982 | MEDIUM | 6.5 | 0.3% | Feb 24, 2026 | ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-1... |
| CVE-2026-3050 | MEDIUM | 5.4 | 0.2% | Feb 24, 2026 | A flaw has been found in horilla-opensource horilla up to 1.0.2. Impacted is an unknown function of the file static/asse... |
| CVE-2026-3049 | MEDIUM | 6.1 | 0.4% | Feb 24, 2026 | A vulnerability was detected in horilla-opensource horilla up to 1.0.2. This issue affects the function get of the file ... |
| CVE-2026-27643 | MEDIUM | 5.3 | 0.3% | Feb 24, 2026 | free5GC UDR is the user data repository (UDR) for free5GC, an an open-source project for 5th generation (5G) mobile core... |
| CVE-2026-25802 | MEDIUM | 5.4 | 0.2% | Feb 24, 2026 | New API is a large language mode (LLM) gateway and artificial intelligence (AI) asset management system. Prior to versio... |
| CVE-2026-25797 | MEDIUM | 5.3 | 0.2% | Feb 24, 2026 | ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-1... |
| CVE-2026-25638 | MEDIUM | 5.3 | 0.3% | Feb 24, 2026 | ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-1... |
| CVE-2026-25637 | MEDIUM | 5.3 | 0.4% | Feb 24, 2026 | ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to version 7.1.2-15... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now