2026 CVE Vulnerabilities
64,788 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-33624 | LOW | 2.7 | 0.2% | Mar 24, 2026 | Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js. Prior to version... |
| CVE-2026-4742 | LOW | 2.9 | 0.2% | Mar 24, 2026 | Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggling') vulnerability in visualfc liteide (lite... |
| CVE-2026-4616 | LOW | 2.4 | 0.3% | Mar 24, 2026 | A security flaw has been discovered in bolo-blog up to 2.6.4. The affected element is an unknown function of the file /c... |
| CVE-2026-33168 | LOW | 2.3 | 0.5% | Mar 23, 2026 | Action View provides conventions and helpers for building web pages with the Rails framework. Prior to versions 8.1.2.1,... |
| CVE-2026-4595 | LOW | 2.4 | 0.2% | Mar 23, 2026 | A vulnerability was determined in code-projects Exam Form Submission 1.0. This vulnerability affects unknown code of the... |
| CVE-2026-4590 | LOW | 3.1 | 0.1% | Mar 23, 2026 | A security flaw has been discovered in kalcaddle kodbox 1.64. The impacted element is an unknown function of the file /w... |
| CVE-2026-4588 | LOW | 3.7 | 0.3% | Mar 23, 2026 | A vulnerability was determined in kalcaddle kodbox 1.64. Impacted is the function shareSafeGroup of the file /workspace/... |
| CVE-2026-4584 | LOW | 3.1 | 0.2% | Mar 23, 2026 | A flaw has been found in Shenzhen HCC Technology MPOS M6 PLUS 1V.31-N. This affects an unknown part of the component Car... |
| CVE-2026-4633 | LOW | 3.7 | 0.3% | Mar 23, 2026 | A flaw was found in Keycloak. A remote attacker can exploit differential error messages during the identity-first login ... |
| CVE-2026-4578 | LOW | 2.4 | 0.3% | Mar 23, 2026 | A vulnerability was determined in code-projects Exam Form Submission 1.0. The impacted element is an unknown function of... |
| CVE-2026-4577 | LOW | 2.4 | 0.2% | Mar 23, 2026 | A vulnerability was found in code-projects Exam Form Submission 1.0. The affected element is an unknown function of the ... |
| CVE-2026-4576 | LOW | 2.4 | 0.2% | Mar 23, 2026 | A vulnerability has been found in code-projects Exam Form Submission 1.0. Impacted is an unknown function of the file /a... |
| CVE-2026-4575 | LOW | 2.4 | 0.2% | Mar 23, 2026 | A flaw has been found in code-projects Exam Form Submission 1.0. This issue affects some unknown processing of the file ... |
| CVE-2026-4549 | LOW | 3.1 | 0.3% | Mar 22, 2026 | A flaw has been found in mickasmt next-saas-stripe-starter 1.0.0. Affected by this issue is the function openCustomerPor... |
| CVE-2026-4115 | LOW | 3.7 | 0.5% | Mar 22, 2026 | A vulnerability was detected in PuTTY 0.83. Affected is the function eddsa_verify of the file crypto/ecc-ssh.c of the co... |
| CVE-2026-4541 | LOW | 2.5 | 0.1% | Mar 22, 2026 | A flaw has been found in janmojzis tinyssh up to 20250501. Impacted is an unknown function of the file tinyssh/crypto_si... |
| CVE-2026-4539 | LOW | 3.3 | 0.2% | Mar 22, 2026 | A security flaw has been discovered in pygments up to 2.19.2. The impacted element is the function AdlLexer of the file ... |
| CVE-2026-33550 | LOW | 2.6 | 0.1% | Mar 22, 2026 | SOGo before 5.12.5 does not renew the OTP if a user disables/enables it, and has a too short length (only 12 digits inst... |
| CVE-2026-2290 | LOW | 3.8 | 0.3% | Mar 21, 2026 | The Post Affiliate Pro plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and incl... |
| CVE-2026-3339 | LOW | 2.7 | 0.4% | Mar 21, 2026 | The Keep Backup Daily plugin for WordPress is vulnerable to Limited Path Traversal in all versions up to, and including,... |
| CVE-2026-33426 | LOW | 3.8 | 0.2% | Mar 21, 2026 | Discourse is an open-source discussion platform. Prior to versions 2026.3.0-latest.1, 2026.2.1, and 2026.1.2, users with... |
| CVE-2026-4495 | LOW | 3.5 | 0.3% | Mar 20, 2026 | A security flaw has been discovered in atjiu pybbs 6.0.0. This impacts the function create of the file src/main/java/co/... |
| CVE-2026-4494 | LOW | 3.5 | 0.3% | Mar 20, 2026 | A vulnerability was identified in atjiu pybbs 6.0.0. This affects the function create of the file src/main/java/co/yiiu/... |
| CVE-2026-4519 | LOW | 3.3 | 0.3% | Mar 20, 2026 | The webbrowser.open() API would accept leading dashes in the URL which could be handled as command line options for cer... |
| CVE-2026-32595 | LOW | 3.7 | 0.4% | Mar 20, 2026 | Traefik is an HTTP reverse proxy and load balancer. Versions 2.11.40 and below, 3.0.0-beta1 through 3.6.11, and 3.7.0-ea... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now