2026 CVE Vulnerabilities

64,788 CVEs published in 2026.

Filter:LOWClear
CVE IDSeverityCVSSDescription
CVE-2026-33624LOW2.7Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js. Prior to version...
CVE-2026-4742LOW2.9Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggling') vulnerability in visualfc liteide (lite...
CVE-2026-4616LOW2.4A security flaw has been discovered in bolo-blog up to 2.6.4. The affected element is an unknown function of the file /c...
CVE-2026-33168LOW2.3Action View provides conventions and helpers for building web pages with the Rails framework. Prior to versions 8.1.2.1,...
CVE-2026-4595LOW2.4A vulnerability was determined in code-projects Exam Form Submission 1.0. This vulnerability affects unknown code of the...
CVE-2026-4590LOW3.1A security flaw has been discovered in kalcaddle kodbox 1.64. The impacted element is an unknown function of the file /w...
CVE-2026-4588LOW3.7A vulnerability was determined in kalcaddle kodbox 1.64. Impacted is the function shareSafeGroup of the file /workspace/...
CVE-2026-4584LOW3.1A flaw has been found in Shenzhen HCC Technology MPOS M6 PLUS 1V.31-N. This affects an unknown part of the component Car...
CVE-2026-4633LOW3.7A flaw was found in Keycloak. A remote attacker can exploit differential error messages during the identity-first login ...
CVE-2026-4578LOW2.4A vulnerability was determined in code-projects Exam Form Submission 1.0. The impacted element is an unknown function of...
CVE-2026-4577LOW2.4A vulnerability was found in code-projects Exam Form Submission 1.0. The affected element is an unknown function of the ...
CVE-2026-4576LOW2.4A vulnerability has been found in code-projects Exam Form Submission 1.0. Impacted is an unknown function of the file /a...
CVE-2026-4575LOW2.4A flaw has been found in code-projects Exam Form Submission 1.0. This issue affects some unknown processing of the file ...
CVE-2026-4549LOW3.1A flaw has been found in mickasmt next-saas-stripe-starter 1.0.0. Affected by this issue is the function openCustomerPor...
CVE-2026-4115LOW3.7A vulnerability was detected in PuTTY 0.83. Affected is the function eddsa_verify of the file crypto/ecc-ssh.c of the co...
CVE-2026-4541LOW2.5A flaw has been found in janmojzis tinyssh up to 20250501. Impacted is an unknown function of the file tinyssh/crypto_si...
CVE-2026-4539LOW3.3A security flaw has been discovered in pygments up to 2.19.2. The impacted element is the function AdlLexer of the file ...
CVE-2026-33550LOW2.6SOGo before 5.12.5 does not renew the OTP if a user disables/enables it, and has a too short length (only 12 digits inst...
CVE-2026-2290LOW3.8The Post Affiliate Pro plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and incl...
CVE-2026-3339LOW2.7The Keep Backup Daily plugin for WordPress is vulnerable to Limited Path Traversal in all versions up to, and including,...
CVE-2026-33426LOW3.8Discourse is an open-source discussion platform. Prior to versions 2026.3.0-latest.1, 2026.2.1, and 2026.1.2, users with...
CVE-2026-4495LOW3.5A security flaw has been discovered in atjiu pybbs 6.0.0. This impacts the function create of the file src/main/java/co/...
CVE-2026-4494LOW3.5A vulnerability was identified in atjiu pybbs 6.0.0. This affects the function create of the file src/main/java/co/yiiu/...
CVE-2026-4519LOW3.3The webbrowser.open() API would accept leading dashes in the URL which could be handled as command line options for cer...
CVE-2026-32595LOW3.7Traefik is an HTTP reverse proxy and load balancer. Versions 2.11.40 and below, 3.0.0-beta1 through 3.6.11, and 3.7.0-ea...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now