2026 CVE Vulnerabilities

64,803 CVEs published in 2026.

Filter:LOWClear
CVE IDSeverityCVSSDescription
CVE-2026-24122LOW3.7Cosign provides code signing and transparency for containers and binaries. In versions 3.0.4 and below, an issuing certi...
CVE-2026-25423LOW3.8Missing Authorization vulnerability in creativeinteractivemedia Real 3D FlipBook real3d-flipbook-lite allows Exploiting ...
CVE-2026-2733LOW3.8A flaw was identified in the Docker v2 authentication endpoint of Keycloak, where tokens continue to be issued even afte...
CVE-2026-2709LOW3.5A flaw has been found in busy up to 2.5.5. The affected element is an unknown function of the file source-code/busy-mast...
CVE-2026-2702LOW3.1A security flaw has been discovered in Beetel 777VR1 up to 01.00.09. This issue affects some unknown processing of the c...
CVE-2026-25120LOW2.7Gogs is an open source self-hosted Git service. In versions 0.13.4 and below, the DeleteComment API does not verify that...
CVE-2026-24764LOW3.7OpenClaw (formerly Clawdbot) is a personal AI assistant users run on their own devices. In versions 2026.2.2 and below, ...
CVE-2026-2656LOW2.5A flaw has been found in ChaiScript up to 6.1.0. This affects the function chaiscript::Type_Info::bare_equal of the file...
CVE-2026-2655LOW2.5A vulnerability was detected in ChaiScript up to 6.1.0. The impacted element is the function chaiscript::str_less::opera...
CVE-2026-1582LOW3.7The WP All Export plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and includ...
CVE-2026-2419LOW2.7The WP-DownloadManager plugin for WordPress is vulnerable to Path Traversal in all versions up to, and including, 1.69 v...
CVE-2026-1831LOW2.7The YayMail - WooCommerce Email Customizer plugin for WordPress is vulnerable to unauthorized plugin installation and ac...
CVE-2026-2642LOW3.3A security vulnerability has been detected in ggreer the_silver_searcher up to 2.2.0. The impacted element is the functi...
CVE-2026-2641LOW3.3A weakness has been identified in universal-ctags ctags up to 6.2.1. The affected element is the function parseExpressio...
CVE-2026-0102LOW3.1Under specific conditions, a malicious webpage may trigger autofill population after two consecutive taps, potentially w...
CVE-2026-24733LOW3.7Improper Input Validation vulnerability in Apache Tomcat. Tomcat did not limit HTTP/0.9 requests to the GET method. If...
CVE-2026-20796LOW3.1Mattermost versions 10.11.x <= 10.11.9 fail to properly validate channel membership at the time of data retrieval which ...
CVE-2026-0872LOW2.5Improper Certificate Validation vulnerability in Thales SafeNet Agent for Windows Logon on Windows allows Signature Spoo...
CVE-2026-20681LOW3.3A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in macOS Tahoe 2...
CVE-2026-20671LOW3.1A logic issue was addressed with improved checks. This issue is fixed in iOS 18.7.5 and iPadOS 18.7.5, iOS 26.3 and iPad...
CVE-2026-20663LOW3.3The issue was resolved by sanitizing logging. This issue is fixed in iOS 18.7.5 and iPadOS 18.7.5, iOS 26.3 and iPadOS 2...
CVE-2026-20656LOW3.3A logic issue was addressed with improved validation. This issue is fixed in Safari 26.3, iOS 18.7.5 and iPadOS 18.7.5, ...
CVE-2026-20646LOW3.3A logging issue was addressed with improved data redaction. This issue is fixed in macOS Tahoe 26.3. A malicious app may...
CVE-2026-20642LOW2.4An input validation issue was addressed. This issue is fixed in iOS 26.3 and iPadOS 26.3. A person with physical access ...
CVE-2026-20601LOW3.3A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Tahoe 26.3. An app may be a...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now