2026 CVE Vulnerabilities

53,423 CVEs published in 2026.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2026-23273HIGH7.8In the Linux kernel, the following vulnerability has been resolved: macvlan: observe an RCU grace period in macvlan_com...
CVE-2026-23272HIGH7.8In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: unconditionally bump set->nel...
CVE-2026-23271HIGH7.8In the Linux kernel, the following vulnerability has been resolved: perf: Fix __perf_event_overflow() vs perf_remove_fr...
CVE-2026-33191HIGH8.6Free5GC is an open-source Linux Foundation project for 5th generation (5G) mobile core networks. Versions prior to 1.4.2...
CVE-2026-33064HIGH7.5Free5GC is an open-source Linux Foundation project for 5th generation (5G) mobile core networks. Versions prior to 1.4.2...
CVE-2026-4478HIGH8.2A vulnerability was identified in Yi Technology YI Home Camera 2 2.1.1_20171024151200. This impacts an unknown function ...
CVE-2026-4475HIGH8.8A vulnerability has been found in Yi Technology YI Home Camera 2 2.1.1_20171024151200. The affected element is an unknow...
CVE-2026-33055HIGH8.1tar-rs is a tar archive reading/writing library for Rust. Versions 0.4.44 and below have conditional logic that skips th...
CVE-2026-33053HIGH8.8Langflow is a tool for building and deploying AI-powered agents and workflows. In versions prior to 1.9.0, the delete_ap...
CVE-2026-33043HIGH8.1WWBN AVideo is an open source video platform. In versions 25.0 and below, /objects/phpsessionid.json.php exposes the cur...
CVE-2026-33040HIGH7.5libp2p-rust is the official rust language Implementation of the libp2p networking stack. In versions prior to 0.49.3, th...
CVE-2026-33039HIGH8.6WWBN AVideo is an open source video platform. In versions 25.0 and below, the plugin/LiveLinks/proxy.php endpoint valida...
CVE-2026-33038HIGH8.1WWBN AVideo is an open source video platform. Versions 25.0 and below are vulnerable to unauthenticated application take...
CVE-2026-33037HIGH8.1WWBN AVideo is an open source video platform. In versions 25.0 and below, the official Docker deployment files (docker-c...
CVE-2026-33036HIGH7.5fast-xml-parser allows users to process XML from JS object without C/C++ based libraries or callbacks. Versions 4.0.0-be...
CVE-2026-33025HIGH8.8AVideo is a video-sharing Platform. Versions prior to 8.0 contain a SQL Injection vulnerability in the getSqlFromPost() ...
CVE-2026-33013HIGH7.5Micronaut Framework is a JVM-based full stack Java framework designed for building modular, easily testable JVM applicat...
CVE-2026-33012HIGH7.5Micronaut Framework is a JVM-based full stack Java framework designed for building modular, easily testable JVM applicat...
CVE-2026-33011HIGH7.5Nest is a framework for building scalable Node.js server-side applications. In versions 11.1.15 and below, a NestJS appl...
CVE-2026-32954HIGH7.5ERP is a free and open source Enterprise Resource Planning tool. In versions prior to 16.8.0 and 15.100.0, certain endpo...
CVE-2026-32950HIGH8.8SQLBot is an intelligent data query system based on a large language model and RAG. Versions prior to 1.7.0 contain a cr...
CVE-2026-32949HIGH7.5SQLBot is an intelligent data query system based on a large language model and RAG. Versions prior to 1.7.0 contain a Se...
CVE-2026-32942HIGH8.1PJSIP is a free and open source multimedia communication library written in C. Versions 2.16 and below contain a heap u...
CVE-2026-32939HIGH8.1DataEase is an open source data visualization analysis tool. Versions 2.10.19 and below have inconsistent Locale handlin...
CVE-2026-33063HIGH7.5free5GC is an open source 5G core network. free5GC AUSF prior to version 1.4.2 has is an Improper Null Check vulnerabili...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now