2026 CVE Vulnerabilities
55,817 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-27498 | HIGH | 8.8 | 0.7% | Feb 25, 2026 | n8n is an open source workflow automation platform. Prior to versions 2.2.0 and 1.123.8, an authenticated user with perm... |
| CVE-2026-27497 | HIGH | 8.8 | 0.8% | Feb 25, 2026 | n8n is an open source workflow automation platform. Prior to versions 2.10.1, 2.9.3, and 1.123.22, an authenticated user... |
| CVE-2026-27951 | HIGH | 7.5 | 0.3% | Feb 25, 2026 | FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.23.0, the function `Stream_EnsureCap... |
| CVE-2026-27950 | HIGH | 7.5 | 0.4% | Feb 25, 2026 | FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.23.0, the fix for the heap-use-after... |
| CVE-2026-27819 | HIGH | 7.2 | 0.7% | Feb 25, 2026 | Vikunja is an open-source self-hosted task management platform. Prior to version 2.0.0, the restoreConfig function in vi... |
| CVE-2026-27616 | HIGH | 7.3 | 0.5% | Feb 25, 2026 | Vikunja is an open-source self-hosted task management platform. Prior to version 2.0.0, the application allows users to ... |
| CVE-2026-26986 | HIGH | 7.5 | 0.5% | Feb 25, 2026 | FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.23.0, `rail_window_free` dereference... |
| CVE-2026-26984 | HIGH | 8.8 | 0.7% | Feb 25, 2026 | LORIS (Longitudinal Online Research and Imaging System) is a self-hosted web application that provides data- and project... |
| CVE-2026-3200 | HIGH | 7.3 | 0.3% | Feb 25, 2026 | A vulnerability was identified in z-9527 admin 1.0/2.0. The affected element is the function checkName/register/login/ge... |
| CVE-2026-3172 | HIGH | 8.1 | 0.3% | Feb 25, 2026 | Buffer overflow in parallel HNSW index build in pgvector 0.6.0 through 0.8.1 allows a database user to leak sensitive da... |
| CVE-2026-26965 | HIGH | 8.8 | 0.6% | Feb 25, 2026 | FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.23.0, in the RLE planar decode path,... |
| CVE-2026-26955 | HIGH | 8.8 | 0.5% | Feb 25, 2026 | FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.23.0, a malicious RDP server can tri... |
| CVE-2026-25954 | HIGH | 7.5 | 0.5% | Feb 25, 2026 | FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.23.0, `xf_rail_server_local_move_siz... |
| CVE-2026-25942 | HIGH | 7.5 | 0.5% | Feb 25, 2026 | FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.23.0, `xf_rail_server_execute_result... |
| CVE-2026-22721 | HIGH | 7.2 | 0.7% | Feb 25, 2026 | VMware Aria Operations contains a privilege escalation vulnerability. A malicious actor with privileges in vCenter to ac... |
| CVE-2026-1725 | HIGH | 7.5 | 0.4% | Feb 25, 2026 | GitLab has remediated an issue in GitLab CE/EE affecting versions from 18.9 before 18.9.1 that could have under certain ... |
| CVE-2026-1662 | HIGH | 7.5 | 0.4% | Feb 25, 2026 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 14.4 before 18.7.5, 18.8 before 18.8.5, and 1... |
| CVE-2026-1388 | HIGH | 7.5 | 0.4% | Feb 25, 2026 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 9.2 before 18.7.5, 18.8 before 18.8.5, and 18... |
| CVE-2026-25941 | HIGH | 8.1 | 0.3% | Feb 25, 2026 | FreeRDP is a free implementation of the Remote Desktop Protocol. Versions on the 2.x branch prior to to 2.11.8 and on th... |
| CVE-2026-22719 | HIGH | 8.1 | 17.4% | Feb 25, 2026 | VMware Aria Operations contains a command injection vulnerability. A malicious unauthenticated actor may exploit this is... |
| CVE-2026-25927 | HIGH | 7.1 | 0.2% | Feb 25, 2026 | OpenEMR is a free and open source electronic health records and medical practice management application. Prior to versio... |
| CVE-2026-25746 | HIGH | 8.8 | 3.1% | Feb 25, 2026 | OpenEMR is a free and open source electronic health records and medical practice management application. Versions prior ... |
| CVE-2026-25476 | HIGH | 7.5 | 0.3% | Feb 25, 2026 | OpenEMR is a free and open source electronic health records and medical practice management application. Prior to versio... |
| CVE-2026-25164 | HIGH | 8.1 | 0.3% | Feb 25, 2026 | OpenEMR is a free and open source electronic health records and medical practice management application. Prior to versio... |
| CVE-2026-24005 | HIGH | 7.6 | 0.3% | Feb 25, 2026 | Kruise provides automated management of large-scale applications on Kubernetes. Prior to versions 1.8.3 and 1.7.5, PodPr... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now