2026 CVE Vulnerabilities

55,817 CVEs published in 2026.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2026-27498HIGH8.8n8n is an open source workflow automation platform. Prior to versions 2.2.0 and 1.123.8, an authenticated user with perm...
CVE-2026-27497HIGH8.8n8n is an open source workflow automation platform. Prior to versions 2.10.1, 2.9.3, and 1.123.22, an authenticated user...
CVE-2026-27951HIGH7.5FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.23.0, the function `Stream_EnsureCap...
CVE-2026-27950HIGH7.5FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.23.0, the fix for the heap-use-after...
CVE-2026-27819HIGH7.2Vikunja is an open-source self-hosted task management platform. Prior to version 2.0.0, the restoreConfig function in vi...
CVE-2026-27616HIGH7.3Vikunja is an open-source self-hosted task management platform. Prior to version 2.0.0, the application allows users to ...
CVE-2026-26986HIGH7.5FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.23.0, `rail_window_free` dereference...
CVE-2026-26984HIGH8.8LORIS (Longitudinal Online Research and Imaging System) is a self-hosted web application that provides data- and project...
CVE-2026-3200HIGH7.3A vulnerability was identified in z-9527 admin 1.0/2.0. The affected element is the function checkName/register/login/ge...
CVE-2026-3172HIGH8.1Buffer overflow in parallel HNSW index build in pgvector 0.6.0 through 0.8.1 allows a database user to leak sensitive da...
CVE-2026-26965HIGH8.8FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.23.0, in the RLE planar decode path,...
CVE-2026-26955HIGH8.8FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.23.0, a malicious RDP server can tri...
CVE-2026-25954HIGH7.5FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.23.0, `xf_rail_server_local_move_siz...
CVE-2026-25942HIGH7.5FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.23.0, `xf_rail_server_execute_result...
CVE-2026-22721HIGH7.2VMware Aria Operations contains a privilege escalation vulnerability. A malicious actor with privileges in vCenter to ac...
CVE-2026-1725HIGH7.5GitLab has remediated an issue in GitLab CE/EE affecting versions from 18.9 before 18.9.1 that could have under certain ...
CVE-2026-1662HIGH7.5GitLab has remediated an issue in GitLab CE/EE affecting all versions from 14.4 before 18.7.5, 18.8 before 18.8.5, and 1...
CVE-2026-1388HIGH7.5GitLab has remediated an issue in GitLab CE/EE affecting all versions from 9.2 before 18.7.5, 18.8 before 18.8.5, and 18...
CVE-2026-25941HIGH8.1FreeRDP is a free implementation of the Remote Desktop Protocol. Versions on the 2.x branch prior to to 2.11.8 and on th...
CVE-2026-22719HIGH8.1VMware Aria Operations contains a command injection vulnerability. A malicious unauthenticated actor may exploit this is...
CVE-2026-25927HIGH7.1OpenEMR is a free and open source electronic health records and medical practice management application. Prior to versio...
CVE-2026-25746HIGH8.8OpenEMR is a free and open source electronic health records and medical practice management application. Versions prior ...
CVE-2026-25476HIGH7.5OpenEMR is a free and open source electronic health records and medical practice management application. Prior to versio...
CVE-2026-25164HIGH8.1OpenEMR is a free and open source electronic health records and medical practice management application. Prior to versio...
CVE-2026-24005HIGH7.6Kruise provides automated management of large-scale applications on Kubernetes. Prior to versions 1.8.3 and 1.7.5, PodPr...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now