2026 CVE Vulnerabilities
43,053 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-15687 | LOW | 2.4 | — | Jul 23, 2026 | A security issue was discovered in the Kubernetes Java client library where a compromised pod may be able to create new ... |
| CVE-2026-15037 | LOW | 2.9 | — | Jul 23, 2026 | Improper output neutralization (XML injection) in QDom comment, CDATA, and processing-instruction serialization in Qt XM... |
| CVE-2026-52686 | LOW | 3.7 | 0.3% | Jul 23, 2026 | The issue is a DNSSEC validation bypass where wildcard expansion proofs (NSEC/NSEC3 records) are accepted without signat... |
| CVE-2026-52684 | LOW | 3.7 | 0.2% | Jul 23, 2026 | If the auth responds very slowly and the records expire in between, the capping of TTLs is not enforced for lack of data... |
| CVE-2026-55708 | LOW | 3.1 | 0.1% | Jul 22, 2026 | In NLnet Labs Unbound 1.6.0 up to and including 1.25.1, the 'view_local_data' and 'view_local_datas' commands of 'unboun... |
| CVE-2026-54478 | LOW | 3.7 | 0.2% | Jul 22, 2026 | In NLnet Labs Unbound 1.18.0 up to and including 1.25.1, when Unbound listens on a 'proxy-protocol-port' interface with ... |
| CVE-2026-53910 | LOW | 2.1 | 0.3% | Jul 22, 2026 | diff3 tool from GNU diffutils is vulnerable to a heap‑based buffer overflow due to multiple signed integer overflows in ... |
| CVE-2026-50243 | LOW | 3.7 | 0.1% | Jul 22, 2026 | In NLnet Labs Unbound 1.6.2 up to and including 1.25.1, when Unbound is configured with the 'respip' module in front of ... |
| CVE-2026-46582 | LOW | 3.7 | 0.2% | Jul 22, 2026 | In NLnet Labs Unbound 1.6.0 up to and including 1.25.1, a replay of a wildcard rrset as another piece of data, could be ... |
| CVE-2026-44687 | LOW | 3.7 | 0.2% | Jul 22, 2026 | In NLnet Labs Unbound 1.13.2 up to and including 1.25.1, stub or forward zones where the name is below an intermediate l... |
| CVE-2026-42955 | LOW | 3.7 | 0.2% | Jul 22, 2026 | In NLnet Labs Unbound 1.16.2 up to and including 1.25.1, a similar vulnerability as with CVE-2026-40622 in the 'ghost do... |
| CVE-2026-41637 | LOW | 3.7 | 0.2% | Jul 22, 2026 | In NLnet Labs Unbound 1.22.0 up to and including 1.25.1, client terminated DNS-over-QUIC (DoQ) queries are not accounted... |
| CVE-2026-44187 | LOW | 3.3 | — | Jul 22, 2026 | A flaw was found in the Ansible Lightspeed extension for Visual Studio Code. This vulnerability allows an attacker with ... |
| CVE-2026-16517 | LOW | 2.9 | 0.1% | Jul 21, 2026 | A signed integer overflow vulnerability was found in libarchive's ZIP writer. In the archive_write_zip_header function i... |
| CVE-2026-16417 | LOW | 3.1 | 0.2% | Jul 21, 2026 | Uninitialized Use in Skia in Google Chrome prior to 150.0.7871.182 allowed a remote attacker who had compromised the ren... |
| CVE-2026-62508 | LOW | 3.1 | 0.2% | Jul 21, 2026 | Vulnerability in the Oracle Time and Labor product of Oracle E-Business Suite (component: Internal Operations). Support... |
| CVE-2026-61303 | LOW | 1.9 | 0.1% | Jul 21, 2026 | Vulnerability in the Oracle EDI Gateway product of Oracle E-Business Suite (component: Internal Operations). Supported ... |
| CVE-2026-61214 | LOW | 2.2 | 0.2% | Jul 21, 2026 | Vulnerability in the Oracle HRMS (UK) product of Oracle E-Business Suite (component: UK Payroll). Supported versions th... |
| CVE-2026-61187 | LOW | 2.8 | 0.1% | Jul 21, 2026 | Vulnerability in the Oracle Agile Engineering Data Management product of Oracle Supply Chain (component: Install). The... |
| CVE-2026-61104 | LOW | 3.7 | 0.3% | Jul 21, 2026 | Vulnerability in the PeopleSoft Enterprise CS Student Records product of Oracle PeopleSoft (component: Research Tracking... |
| CVE-2026-61096 | LOW | 2.9 | 0.1% | Jul 21, 2026 | Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Pluggable Auth). Supported... |
| CVE-2026-61081 | LOW | 2.7 | 0.2% | Jul 21, 2026 | Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Performance Schema). Suppo... |
| CVE-2026-61071 | LOW | 3.3 | 0.2% | Jul 21, 2026 | Vulnerability in the PeopleSoft Enterprise FIN Engineering Argentina product of Oracle PeopleSoft (component: Engineerin... |
| CVE-2026-61048 | LOW | 3.1 | 0.3% | Jul 21, 2026 | Vulnerability in the Oracle Inventory Optimization product of Oracle E-Business Suite (component: User Interface). Supp... |
| CVE-2026-61047 | LOW | 1.9 | 0.1% | Jul 21, 2026 | Vulnerability in the Oracle Production Scheduling product of Oracle E-Business Suite (component: Internal Operations). ... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now