2026 CVE Vulnerabilities
53,163 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-2819 | MEDIUM | 6.3 | 0.3% | Feb 20, 2026 | A vulnerability was identified in Dromara RuoYi-Vue-Plus up to 5.5.3. This vulnerability affects the function SaServletF... |
| CVE-2026-27016 | MEDIUM | 5.4 | 0.2% | Feb 20, 2026 | LibreNMS is an auto-discovering PHP/MySQL/SNMP based network monitoring tool. Versions 24.10.0 through 26.1.1 are vulner... |
| CVE-2026-26989 | MEDIUM | 4.8 | 0.2% | Feb 20, 2026 | LibreNMS is an auto-discovering PHP/MySQL/SNMP based network monitoring tool. Versions 25.12.0 and below are affected by... |
| CVE-2026-26987 | MEDIUM | 6.1 | 0.3% | Feb 20, 2026 | LibreNMS is an auto-discovering PHP/MySQL/SNMP based network monitoring tool. Versions 25.12.0 and below are vulnerable ... |
| CVE-2026-26977 | MEDIUM | 5.3 | 0.3% | Feb 20, 2026 | Frappe Learning Management System (LMS) is a learning system that helps users structure their content. In versions 2.44.... |
| CVE-2026-26967 | MEDIUM | 5.3 | 0.3% | Feb 20, 2026 | PJSIP is a free and open source multimedia communication library written in C. In versions 2.16 and below, there is a cr... |
| CVE-2026-2605 | MEDIUM | 5.3 | 0.3% | Feb 20, 2026 | Tanium addressed an insertion of sensitive information into log file vulnerability in TanOS. |
| CVE-2026-2408 | MEDIUM | 4.7 | 0.1% | Feb 20, 2026 | Tanium addressed a use-after-free vulnerability in the Cloud Workloads Enforce client extension. |
| CVE-2026-2350 | MEDIUM | 6.5 | 0.3% | Feb 20, 2026 | Tanium addressed an insertion of sensitive information into log file vulnerability in Interact and TDS. |
| CVE-2026-27009 | MEDIUM | 5.8 | 0.2% | Feb 20, 2026 | OpenClaw is a personal AI assistant. Prior to version 2026.2.15, a atored XSS issue in the OpenClaw Control UI when rend... |
| CVE-2026-27008 | MEDIUM | 6.7 | 0.2% | Feb 20, 2026 | OpenClaw is a personal AI assistant. Prior to version 2026.2.15, a bug in `download` skill installation allowed `targetD... |
| CVE-2026-27004 | MEDIUM | 5.5 | 0.1% | Feb 20, 2026 | OpenClaw is a personal AI assistant. Prior to version 2026.2.15, in some shared-agent deployments, OpenClaw session tool... |
| CVE-2026-27003 | MEDIUM | 5.5 | 0.1% | Feb 20, 2026 | OpenClaw is a personal AI assistant. Telegram bot tokens can appear in error messages and stack traces (for example, whe... |
| CVE-2026-26972 | MEDIUM | 6.7 | 0.2% | Feb 20, 2026 | OpenClaw is a personal AI assistant. In versions 2026.1.12 through 2026.2.12, OpenClaw browser download helpers accepted... |
| CVE-2026-26963 | MEDIUM | 5.4 | 0.1% | Feb 20, 2026 | Cilium is a networking, observability, and security solution with an eBPF-based dataplane. Versions 1.18.0 through 1.18.... |
| CVE-2026-26329 | MEDIUM | 6.5 | 0.4% | Feb 20, 2026 | OpenClaw is a personal AI assistant. Prior to version 2026.2.14, authenticated attackers can read arbitrary files from t... |
| CVE-2026-26328 | MEDIUM | 6.5 | 0.3% | Feb 20, 2026 | OpenClaw is a personal AI assistant. Prior to version 2026.2.14, under iMessage `groupPolicy=allowlist`, group authoriza... |
| CVE-2026-1292 | MEDIUM | 6.5 | 0.3% | Feb 20, 2026 | Tanium addressed an insertion of sensitive information into log file vulnerability in Trends. |
| CVE-2026-26953 | MEDIUM | 5.4 | 0.3% | Feb 19, 2026 | Pi-hole Admin Interface is a web interface for managing Pi-hole, a network-level ad and internet tracker blocking applic... |
| CVE-2026-26952 | MEDIUM | 5.4 | 0.2% | Feb 19, 2026 | Pi-hole Admin Interface is a web interface for managing Pi-hole, a network-level ad and internet tracker blocking applic... |
| CVE-2026-26327 | MEDIUM | 6.5 | 0.1% | Feb 19, 2026 | OpenClaw is a personal AI assistant. Discovery beacons (Bonjour/mDNS and DNS-SD) include TXT records such as `lanHost`, ... |
| CVE-2026-26326 | MEDIUM | 4.3 | 0.3% | Feb 19, 2026 | OpenClaw is a personal AI assistant. Prior to version 2026.2.14, `skills.status` could disclose secrets to `operator.rea... |
| CVE-2026-26320 | MEDIUM | 6.5 | 0.4% | Feb 19, 2026 | OpenClaw is a personal AI assistant. OpenClaw macOS desktop client registers the `openclaw://` URL scheme. For `openclaw... |
| CVE-2026-1658 | MEDIUM | 5.3 | 0.2% | Feb 19, 2026 | User Interface (UI) Misrepresentation of Critical Information vulnerability in OpenText™ Directory Services allows Cache... |
| CVE-2026-26744 | MEDIUM | 5.3 | 0.3% | Feb 19, 2026 | A user enumeration vulnerability exists in FormaLMS 4.1.18 and below in the password recovery functionality accessible v... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now