2026 CVE Vulnerabilities
56,898 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-47685 | HIGH | 8.7 | 0.2% | Jul 21, 2026 | FOG is a free open-source cloning/imaging/rescue suite/inventory management system. Prior to versions 1.5.10.1832 and 1.... |
| CVE-2026-47237 | HIGH | 8 | 0.3% | Jul 21, 2026 | Kubeflow Community Distribution helps users to install Kubeflow Platform in popular Kubernetes clusters. Prior to versio... |
| CVE-2026-47143 | MEDIUM | 5.9 | 0.2% | Jul 21, 2026 | Capstone is a disassembly framework. Versions prior to 6.0.0-Alpha8 and 5.0.8 have a NULL pointer dereference in `modRMR... |
| CVE-2026-46556 | MEDIUM | 6.5 | 0.2% | Jul 21, 2026 | FlaskBB is a Forum Software written in Python using the micro framework Flask. Prior to version 2.2.1, a Server-Side Req... |
| CVE-2026-45383 | MEDIUM | 6.9 | 0.4% | Jul 21, 2026 | libde265 is an open source implementation of the h.265 video codec. Versions prior to 1.0.19 have a heap buffer overflow... |
| CVE-2026-45382 | MEDIUM | 6.9 | 0.4% | Jul 21, 2026 | libde265 is an open source implementation of the h.265 video codec. Prior to version 1.0.19, `decoder_context::decode_sl... |
| CVE-2026-44879 | HIGH | 7.2 | 1.5% | Jul 21, 2026 | A vulnerability in the command line interface of ECOS devices could allow a highly privileged, authenticated remote atta... |
| CVE-2026-44878 | HIGH | 7.2 | 0.3% | Jul 21, 2026 | A vulnerability in the web-based management interface of an ECOS device could allow a highly privileged, authenticated r... |
| CVE-2026-30633 | HIGH | 7.5 | 0.3% | Jul 21, 2026 | Directory traversal vulnerability in knowns-dev/knowns 0.11.4 via crafted path value to the get_doc and update_doc tools... |
| CVE-2026-30631 | CRITICAL | 9.8 | 0.2% | Jul 21, 2026 | An issue was discovered in bytebot-ai in commit 3d37894ce07ef8d8b40adc7fd309ad96c2a71313 (2025-09-11) allowing attackers... |
| CVE-2026-16318 | MEDIUM | 6.9 | 0.4% | Jul 21, 2026 | The QUIC transport parameters extension handler in s2n-tls incorrectly uses s2n_alloc instead of s2n_realloc to store th... |
| CVE-2026-16317 | HIGH | 8.3 | 0.2% | Jul 21, 2026 | Missing validation of the outer content_type byte on TLS 1.3 encrypted records in s2n-tls allows an active man-in-the-mi... |
| CVE-2026-12139 | MEDIUM | 5.5 | 0.1% | Jul 21, 2026 | Tanium addressed an information disclosure vulnerability in Connect. |
| CVE-2026-11925 | LOW | 2.7 | 0.2% | Jul 21, 2026 | Tanium addressed a User Interface (UI) Misrepresentation of Critical Information vulnerability in Tanium Server. |
| CVE-2026-65069 | MEDIUM | 4 | 0.2% | Jul 21, 2026 | Data::DisjointSet::Shared versions before 0.02 for Perl create a world-readable mmap backing file and open it without O_... |
| CVE-2026-65068 | LOW | 3.8 | 0.2% | Jul 21, 2026 | Data::SpatialHash::Shared versions before 0.02 for Perl create a world-readable mmap backing file and open it without O_... |
| CVE-2026-65067 | LOW | 3.8 | 0.2% | Jul 21, 2026 | Data::Intern::Shared versions before 0.02 for Perl create a world-readable mmap backing file and open it without O_EXCL ... |
| CVE-2026-65066 | LOW | 3.8 | 0.2% | Jul 21, 2026 | Data::RingBuffer::Shared versions before 0.04 for Perl create a world-readable mmap backing file and open it without O_E... |
| CVE-2026-65065 | MEDIUM | 5.5 | 0.2% | Jul 21, 2026 | Data::RoaringBitmap::Shared versions before 0.02 for Perl create a world-readable mmap backing file and open it without ... |
| CVE-2026-65064 | LOW | 3.8 | 0.2% | Jul 21, 2026 | Data::HashMap::Shared versions before 0.14 for Perl create a world-readable mmap backing file and open it without O_EXCL... |
| CVE-2026-65063 | LOW | 3.8 | 0.2% | Jul 21, 2026 | Data::RadixTree::Shared versions before 0.02 for Perl create a world-readable mmap backing file and open it without O_EX... |
| CVE-2026-65062 | LOW | 3.8 | 0.2% | Jul 21, 2026 | Data::SortedSet::Shared versions before 0.03 for Perl create a world-readable mmap backing file and open it without O_EX... |
| CVE-2026-65061 | LOW | 3.8 | 0.2% | Jul 21, 2026 | Data::ReqRep::Shared versions before 0.05 for Perl create a world-readable mmap backing file and open it without O_EXCL ... |
| CVE-2026-64880 | HIGH | 7.1 | 0.2% | Jul 21, 2026 | Unsanitized user-supplied input in report filtering parameters is concatenated directly into SQL queries without proper ... |
| CVE-2026-64879 | CRITICAL | 9.9 | 2.6% | Jul 21, 2026 | A filename supplied during file upload is not properly sanitized before being used in system command execution, allowing... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now