2026 CVE Vulnerabilities
53,639 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-0587 | MEDIUM | 5.4 | 0.2% | Jan 5, 2026 | A security flaw has been discovered in Xinhu Rainrock RockOA up to 2.7.1. Affected is an unknown function of the file ro... |
| CVE-2026-0586 | MEDIUM | 6.1 | 0.3% | Jan 5, 2026 | A vulnerability was detected in code-projects Online Product Reservation System 1.0. The affected element is an unknown ... |
| CVE-2026-0580 | MEDIUM | 6.1 | 0.2% | Jan 5, 2026 | A vulnerability was found in SourceCodester API Key Manager App 1.0. Affected by this vulnerability is an unknown functi... |
| CVE-2026-21484 | MEDIUM | 5.3 | 0.7% | Jan 3, 2026 | AnythingLLM is an application that turns pieces of content into context that any LLM can use as references during chatti... |
| CVE-2026-21483 | MEDIUM | 5.4 | 0.2% | Jan 2, 2026 | listmonk is a standalone, self-hosted, newsletter and mailing list manager. Prior to version 6.0.0, lower-privileged use... |
| CVE-2026-0571 | MEDIUM | 6.5 | 0.4% | Jan 2, 2026 | A security flaw has been discovered in yeqifu warehouse up to aaf29962ba407d22d991781de28796ee7b4670e4. Affected by this... |
| CVE-2026-21444 | MEDIUM | 5.5 | 0.1% | Jan 2, 2026 | libtpms, a library that provides software emulation of a Trusted Platform Module, has a flaw in versions 0.10.0 and 0.10... |
| CVE-2026-21432 | MEDIUM | 5.4 | 0.2% | Jan 2, 2026 | Emlog is an open source website building system. Version 2.5.23 has a stored cross-site scripting vulnerability that can... |
| CVE-2026-21431 | MEDIUM | 5.4 | 0.2% | Jan 2, 2026 | Emlog is an open source website building system. Version 2.5.23 has a stored cross-site scripting vulnerability in the `... |
| CVE-2026-21429 | MEDIUM | 4.3 | 0.2% | Jan 2, 2026 | Emlog is an open source website building system. In version 2.5.23, the admin can set controls which makes users unable ... |
| CVE-2026-21437 | MEDIUM | 5.5 | 0.1% | Jan 1, 2026 | eopkg is a Solus package manager implemented in python3. In versions prior to 4.4.0, a malicious package could include f... |
| CVE-2026-21436 | MEDIUM | 5.5 | 0.3% | Jan 1, 2026 | eopkg is a Solus package manager implemented in python3. In versions prior to 4.4.0, a malicious package could escape th... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now