2026 CVE Vulnerabilities
64,788 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-5454 | LOW | 3.3 | 0.1% | Apr 3, 2026 | A vulnerability was found in GRID Organiser App up to 1.0.5 on Android. Impacted is an unknown function of the file file... |
| CVE-2026-5453 | LOW | 3.3 | 0.1% | Apr 3, 2026 | A vulnerability has been found in Rico só vantagem pra investir App up to 4.58.32.12421 on Android. This issue affects s... |
| CVE-2026-35538 | LOW | 3.1 | 0.3% | Apr 3, 2026 | An issue was discovered in Roundcube Webmail before 1.5.14 and 1.6.14. Unsanitized IMAP SEARCH command arguments could l... |
| CVE-2026-5452 | LOW | 3.3 | 0.1% | Apr 3, 2026 | A flaw has been found in UCC CampusConnect App up to 14.3.5 on Android. This vulnerability affects unknown code of the f... |
| CVE-2026-5420 | LOW | 2.5 | 0.1% | Apr 2, 2026 | A security flaw has been discovered in Shinrays Games Goods Triple App up to 1.200. The affected element is an unknown f... |
| CVE-2026-34762 | LOW | 2.7 | 0.2% | Apr 2, 2026 | Ella Core is a 5G core designed for private networks. Prior to version 1.8.0, the PUT /api/v1/subscriber/{imsi} API acce... |
| CVE-2026-5413 | LOW | 3.7 | 0.3% | Apr 2, 2026 | A vulnerability was identified in Newgen OmniDocs up to 12.0.00. Affected by this vulnerability is an unknown functional... |
| CVE-2026-5370 | LOW | 3.5 | 0.2% | Apr 2, 2026 | A vulnerability was identified in krayin laravel-crm up to 2.2. Impacted is the function composeMail of the file package... |
| CVE-2026-5360 | LOW | 3.7 | 0.4% | Apr 2, 2026 | A vulnerability has been found in Free5GC 4.2.0. The affected element is an unknown function of the component aper. Such... |
| CVE-2026-35388 | LOW | 2.5 | 0.1% | Apr 2, 2026 | OpenSSH before 10.3 omits connection multiplexing confirmation for proxy-mode multiplexing sessions. |
| CVE-2026-5325 | LOW | 3.5 | 0.2% | Apr 2, 2026 | A vulnerability was determined in SourceCodester Simple Customer Relationship Management System 1.0. This issue affects ... |
| CVE-2026-21767 | LOW | 3.3 | 0.1% | Apr 2, 2026 | HCL BigFix Platform is affected by insufficient authentication. The application might allow users to access sensitive a... |
| CVE-2026-5199 | LOW | 2.3 | 0.2% | Apr 1, 2026 | A writer role user in an attacker-controlled namespace could signal, delete, and reset workflows or activities in a vict... |
| CVE-2026-5310 | LOW | 2.5 | 0.1% | Apr 1, 2026 | A vulnerability was identified in Enter Software Iperius Backup up to 8.7.2. This impacts an unknown function of the fil... |
| CVE-2026-5254 | LOW | 3.5 | 0.2% | Apr 1, 2026 | A security vulnerability has been detected in welovemedia FFmate up to 2.0.15. Affected by this issue is some unknown fu... |
| CVE-2026-5253 | LOW | 3.5 | 0.2% | Apr 1, 2026 | A weakness has been identified in bufanyun HotGo 1.0/2.0. Affected by this vulnerability is an unknown functionality of ... |
| CVE-2026-5252 | LOW | 3.5 | 0.3% | Apr 1, 2026 | A security flaw has been discovered in z-9527 admin 1.0/2.0. Affected is an unknown function of the file /server/routes/... |
| CVE-2026-5249 | LOW | 3.5 | 0.2% | Apr 1, 2026 | A vulnerability was found in gougucms 4.08.18. This impacts an unknown function of the file \gougucms-master\app\admin\v... |
| CVE-2026-3470 | LOW | 3.8 | 0.3% | Mar 31, 2026 | A vulnerability exists in the SonicWall Email Security appliance due to improper input sanitization that may lead to dat... |
| CVE-2026-3469 | LOW | 2.7 | 0.4% | Mar 31, 2026 | A denial-of-service (DoS) vulnerability exists due to improper input validation in the SonicWall Email Security applianc... |
| CVE-2026-34383 | LOW | 3.5 | 0.1% | Mar 31, 2026 | Admidio is an open-source user management solution. Prior to version 5.0.8, the inventory module's item_save endpoint ac... |
| CVE-2026-34372 | LOW | 2.7 | 0.3% | Mar 31, 2026 | Sulu is an open-source PHP content management system based on the Symfony framework. From versions 1.0.0 to before 2.6.2... |
| CVE-2026-5209 | LOW | 2.4 | 0.3% | Mar 31, 2026 | A security vulnerability has been detected in SourceCodester Leave Application System 1.0. Affected by this issue is som... |
| CVE-2026-33415 | LOW | 2.7 | 0.2% | Mar 31, 2026 | Discourse is an open-source discussion platform. From versions 2026.1.0-latest to before 2026.1.3, 2026.2.0-latest to be... |
| CVE-2026-33762 | LOW | 2.8 | 0.2% | Mar 31, 2026 | go-git is an extensible git implementation library written in pure Go. Prior to version 5.17.1, go-git’s index decoder f... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now