2026 CVE Vulnerabilities
64,803 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-24122 | LOW | 3.7 | 0.2% | Feb 19, 2026 | Cosign provides code signing and transparency for containers and binaries. In versions 3.0.4 and below, an issuing certi... |
| CVE-2026-25423 | LOW | 3.8 | 0.2% | Feb 19, 2026 | Missing Authorization vulnerability in creativeinteractivemedia Real 3D FlipBook real3d-flipbook-lite allows Exploiting ... |
| CVE-2026-2733 | LOW | 3.8 | 0.3% | Feb 19, 2026 | A flaw was identified in the Docker v2 authentication endpoint of Keycloak, where tokens continue to be issued even afte... |
| CVE-2026-2709 | LOW | 3.5 | 0.3% | Feb 19, 2026 | A flaw has been found in busy up to 2.5.5. The affected element is an unknown function of the file source-code/busy-mast... |
| CVE-2026-2702 | LOW | 3.1 | 0.3% | Feb 19, 2026 | A security flaw has been discovered in Beetel 777VR1 up to 01.00.09. This issue affects some unknown processing of the c... |
| CVE-2026-25120 | LOW | 2.7 | 0.3% | Feb 19, 2026 | Gogs is an open source self-hosted Git service. In versions 0.13.4 and below, the DeleteComment API does not verify that... |
| CVE-2026-24764 | LOW | 3.7 | 0.2% | Feb 19, 2026 | OpenClaw (formerly Clawdbot) is a personal AI assistant users run on their own devices. In versions 2026.2.2 and below, ... |
| CVE-2026-2656 | LOW | 2.5 | 0.2% | Feb 18, 2026 | A flaw has been found in ChaiScript up to 6.1.0. This affects the function chaiscript::Type_Info::bare_equal of the file... |
| CVE-2026-2655 | LOW | 2.5 | 0.2% | Feb 18, 2026 | A vulnerability was detected in ChaiScript up to 6.1.0. The impacted element is the function chaiscript::str_less::opera... |
| CVE-2026-1582 | LOW | 3.7 | 0.3% | Feb 18, 2026 | The WP All Export plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and includ... |
| CVE-2026-2419 | LOW | 2.7 | 0.7% | Feb 18, 2026 | The WP-DownloadManager plugin for WordPress is vulnerable to Path Traversal in all versions up to, and including, 1.69 v... |
| CVE-2026-1831 | LOW | 2.7 | 0.3% | Feb 18, 2026 | The YayMail - WooCommerce Email Customizer plugin for WordPress is vulnerable to unauthorized plugin installation and ac... |
| CVE-2026-2642 | LOW | 3.3 | 0.2% | Feb 18, 2026 | A security vulnerability has been detected in ggreer the_silver_searcher up to 2.2.0. The impacted element is the functi... |
| CVE-2026-2641 | LOW | 3.3 | 0.2% | Feb 18, 2026 | A weakness has been identified in universal-ctags ctags up to 6.2.1. The affected element is the function parseExpressio... |
| CVE-2026-0102 | LOW | 3.1 | 0.5% | Feb 17, 2026 | Under specific conditions, a malicious webpage may trigger autofill population after two consecutive taps, potentially w... |
| CVE-2026-24733 | LOW | 3.7 | 0.5% | Feb 17, 2026 | Improper Input Validation vulnerability in Apache Tomcat. Tomcat did not limit HTTP/0.9 requests to the GET method. If... |
| CVE-2026-20796 | LOW | 3.1 | 0.2% | Feb 13, 2026 | Mattermost versions 10.11.x <= 10.11.9 fail to properly validate channel membership at the time of data retrieval which ... |
| CVE-2026-0872 | LOW | 2.5 | 0.2% | Feb 13, 2026 | Improper Certificate Validation vulnerability in Thales SafeNet Agent for Windows Logon on Windows allows Signature Spoo... |
| CVE-2026-20681 | LOW | 3.3 | 0.1% | Feb 11, 2026 | A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in macOS Tahoe 2... |
| CVE-2026-20671 | LOW | 3.1 | 0.3% | Feb 11, 2026 | A logic issue was addressed with improved checks. This issue is fixed in iOS 18.7.5 and iPadOS 18.7.5, iOS 26.3 and iPad... |
| CVE-2026-20663 | LOW | 3.3 | 0.1% | Feb 11, 2026 | The issue was resolved by sanitizing logging. This issue is fixed in iOS 18.7.5 and iPadOS 18.7.5, iOS 26.3 and iPadOS 2... |
| CVE-2026-20656 | LOW | 3.3 | 0.1% | Feb 11, 2026 | A logic issue was addressed with improved validation. This issue is fixed in Safari 26.3, iOS 18.7.5 and iPadOS 18.7.5, ... |
| CVE-2026-20646 | LOW | 3.3 | 0.1% | Feb 11, 2026 | A logging issue was addressed with improved data redaction. This issue is fixed in macOS Tahoe 26.3. A malicious app may... |
| CVE-2026-20642 | LOW | 2.4 | 0.1% | Feb 11, 2026 | An input validation issue was addressed. This issue is fixed in iOS 26.3 and iPadOS 26.3. A person with physical access ... |
| CVE-2026-20601 | LOW | 3.3 | 0.1% | Feb 11, 2026 | A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Tahoe 26.3. An app may be a... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now