2026 CVE Vulnerabilities
53,398 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-4741 | HIGH | 8.6 | 0.4% | Mar 24, 2026 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in TeamJCD JoyConDroid (app... |
| CVE-2026-4737 | HIGH | 7.3 | 0.1% | Mar 24, 2026 | Use After Free vulnerability in No-Chicken Echo-Mate (SDK/rv1106-sdk/sysdrv/source/kernel/mm modules). This vulnerabili... |
| CVE-2026-4736 | HIGH | 7.3 | 0.1% | Mar 24, 2026 | Improper Handling of Values vulnerability in No-Chicken Echo-Mate (SDK/rv1106-sdk/sysdrv/source/kernel/include/net/netfi... |
| CVE-2026-4735 | HIGH | 8.7 | 0.3% | Mar 24, 2026 | Deserialization of Untrusted Data vulnerability in DTStack chunjun (chunjun-core/src/main/java/com/dtstack/chunjun/util... |
| CVE-2026-4732 | HIGH | 8.4 | 0.1% | Mar 24, 2026 | Out-of-bounds Read vulnerability in tildearrow furnace (extern/libsndfile-modified/src modules). This vulnerability is ... |
| CVE-2026-4731 | HIGH | 8.5 | 0.1% | Mar 24, 2026 | Integer Overflow or Wraparound vulnerability in artraweditor ART (rtengine modules). This vulnerability is associated ... |
| CVE-2026-4625 | HIGH | 7.3 | 0.3% | Mar 24, 2026 | A flaw has been found in SourceCodester Online Admission System 1.0. This affects an unknown function of the file /progr... |
| CVE-2026-4624 | HIGH | 7.3 | 0.3% | Mar 24, 2026 | A vulnerability was detected in SourceCodester Online Library Management System 1.0. The impacted element is an unknown ... |
| CVE-2026-4623 | HIGH | 7.3 | 0.3% | Mar 24, 2026 | A security vulnerability has been detected in DefaultFuction Jeson-Customer-Relationship-Management-System up to 1b4679c... |
| CVE-2026-33307 | HIGH | 7.5 | 0.3% | Mar 24, 2026 | Mod_gnutls is a TLS module for Apache HTTPD based on GnuTLS. In versions prior to 0.12.3 and 0.13.0, code for client cer... |
| CVE-2026-4680 | HIGH | 8.8 | 0.4% | Mar 24, 2026 | Use after free in FedCM in Google Chrome prior to 146.0.7680.165 allowed a remote attacker to execute arbitrary code ins... |
| CVE-2026-4679 | HIGH | 8.8 | 0.3% | Mar 24, 2026 | Integer overflow in Fonts in Google Chrome prior to 146.0.7680.165 allowed a remote attacker to perform an out of bounds... |
| CVE-2026-4678 | HIGH | 8.8 | 0.4% | Mar 24, 2026 | Use after free in WebGPU in Google Chrome prior to 146.0.7680.165 allowed a remote attacker to execute arbitrary code in... |
| CVE-2026-4677 | HIGH | 8.8 | 0.4% | Mar 24, 2026 | Inappropriate implementation in WebAudio in Google Chrome prior to 146.0.7680.165 allowed a remote attacker to perform a... |
| CVE-2026-4676 | HIGH | 8.8 | 0.4% | Mar 24, 2026 | Use after free in Dawn in Google Chrome prior to 146.0.7680.165 allowed a remote attacker to potentially perform a sandb... |
| CVE-2026-4675 | HIGH | 8.8 | 0.4% | Mar 24, 2026 | Heap buffer overflow in WebGL in Google Chrome prior to 146.0.7680.165 allowed a remote attacker to perform an out of bo... |
| CVE-2026-4674 | HIGH | 8.8 | 0.5% | Mar 24, 2026 | Out of bounds read in CSS in Google Chrome prior to 146.0.7680.165 allowed a remote attacker to perform out of bounds me... |
| CVE-2026-4673 | HIGH | 8.8 | 0.5% | Mar 24, 2026 | Heap buffer overflow in WebAudio in Google Chrome prior to 146.0.7680.165 allowed a remote attacker to perform an out of... |
| CVE-2026-4617 | HIGH | 7.3 | 0.3% | Mar 24, 2026 | A weakness has been identified in SourceCodester Patients Waiting Area Queue Management System 1.0. The impacted element... |
| CVE-2026-33306 | HIGH | 7.5 | 0.2% | Mar 24, 2026 | bcrypt-ruby is a Ruby binding for the OpenBSD bcrypt() password hashing algorithm. Prior to version 3.1.22, an integer o... |
| CVE-2026-33298 | HIGH | 7.8 | 0.5% | Mar 24, 2026 | llama.cpp is an inference of several LLM models in C/C++. Prior to b7824, an integer overflow vulnerability in the `ggml... |
| CVE-2026-22739 | HIGH | 8.6 | 1.2% | Mar 24, 2026 | Vulnerability in Spring Cloud when substituting the profile parameter from a request made to the Spring Cloud Config Ser... |
| CVE-2026-4615 | HIGH | 7.3 | 0.3% | Mar 24, 2026 | A vulnerability was identified in SourceCodester Online Catering Reservation 1.0. Impacted is an unknown function of the... |
| CVE-2026-4613 | HIGH | 7.3 | 0.3% | Mar 24, 2026 | A vulnerability was found in SourceCodester E-Commerce Site 1.0. This vulnerability affects unknown code of the file /pr... |
| CVE-2026-4021 | HIGH | 8.1 | 0.4% | Mar 24, 2026 | The Contest Gallery plugin for WordPress is vulnerable to an authentication bypass leading to admin account takeover in ... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now