2026 CVE Vulnerabilities
55,842 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-27571 | HIGH | 7.5 | 0.5% | Feb 24, 2026 | NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. The WebSockets handling ... |
| CVE-2026-27521 | HIGH | 7.5 | 0.2% | Feb 24, 2026 | Binardat 10G08-0800GSM network switch firmware version V300SP10260209 and prior do not implement rate limiting or accoun... |
| CVE-2026-27520 | HIGH | 8.7 | 0.2% | Feb 24, 2026 | Binardat 10G08-0800GSM network switch firmware versions prior to V300SP10260209 store a user password in a client-side c... |
| CVE-2026-27519 | HIGH | 8.7 | 0.2% | Feb 24, 2026 | Binardat 10G08-0800GSM network switch firmware version V300SP10260209 and prior use RC4 with a hard-coded key embedded i... |
| CVE-2026-27516 | HIGH | 8.6 | 0.2% | Feb 24, 2026 | Binardat 10G08-0800GSM network switch firmware version V300SP10260209 and prior expose user passwords in plaintext withi... |
| CVE-2026-23678 | HIGH | 8.8 | 1.2% | Feb 24, 2026 | Binardat 10G08-0800GSM network switch firmware version V300SP10260209 and prior contain a command injection vulnerabilit... |
| CVE-2026-3102 | HIGH | 8.8 | 3.4% | Feb 24, 2026 | A vulnerability was determined in exiftool up to 13.49 on macOS. This issue affects the function SetMacOSTags of the fil... |
| CVE-2026-3101 | HIGH | 8.8 | 3.5% | Feb 24, 2026 | A vulnerability was found in Intelbras TIP 635G 1.12.3.5. This vulnerability affects unknown code of the component Ping ... |
| CVE-2026-27732 | HIGH | 8.1 | 0.2% | Feb 24, 2026 | WWBN AVideo is an open source video platform. Prior to version 22.0, the `aVideoEncoder.json.php` API endpoint accepts a... |
| CVE-2026-27584 | HIGH | 7.5 | 0.4% | Feb 24, 2026 | Actual is a local-first personal finance tool. Prior to version 26.2.1, missing authentication middleware in the ActualB... |
| CVE-2026-27483 | HIGH | 8.8 | 11.1% | Feb 24, 2026 | MindsDB is a platform for building artificial intelligence from enterprise data. Prior to version 25.9.1.1, there is a p... |
| CVE-2026-27208 | HIGH | 7.8 | 0.7% | Feb 24, 2026 | bleon-ethical/api-gateway-deploy provides API gateway deployment. Version 1.0.0 is vulnerable to an attack chain involvi... |
| CVE-2026-2803 | HIGH | 7.5 | 0.3% | Feb 24, 2026 | Information disclosure, mitigation bypass in the Settings UI component. This vulnerability was fixed in Firefox 148 and ... |
| CVE-2026-2801 | HIGH | 7.5 | 0.3% | Feb 24, 2026 | Incorrect boundary conditions in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 148 and ... |
| CVE-2026-2798 | HIGH | 8.8 | 0.2% | Feb 24, 2026 | Use-after-free in the DOM: Core & HTML component. This vulnerability was fixed in Firefox 148 and Thunderbird 148. |
| CVE-2026-2794 | HIGH | 7.5 | 0.3% | Feb 24, 2026 | Information disclosure due to uninitialized memory in Firefox and Firefox Focus for Android. This vulnerability was fixe... |
| CVE-2026-2783 | HIGH | 7.5 | 0.3% | Feb 24, 2026 | Information disclosure due to JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed i... |
| CVE-2026-2769 | HIGH | 8.8 | 0.4% | Feb 24, 2026 | Use-after-free in the Storage: IndexedDB component. This vulnerability was fixed in Firefox 148, Firefox ESR 115.33, Fir... |
| CVE-2026-2460 | HIGH | 8.1 | 0.3% | Feb 24, 2026 | A vulnerability exists in REB500 for an authenticated user with low-level privileges to access and alter the content of ... |
| CVE-2026-2459 | HIGH | 8.1 | 0.3% | Feb 24, 2026 | A vulnerability exists in REB500 for an authenticated user with Installer role to access and alter the contents of direc... |
| CVE-2026-1773 | HIGH | 7.5 | 0.4% | Feb 24, 2026 | IEC 60870-5-104 used in RTU500: Potential Denial of Service impact on reception of invalid U-format frame. Product is on... |
| CVE-2026-2664 | HIGH | 7.8 | 0.2% | Feb 24, 2026 | An out of bounds read vulnerability in the grpcfuse kernel module present in the Linux VM in Docker Desktop for Windows,... |
| CVE-2026-3067 | HIGH | 8.8 | 0.5% | Feb 24, 2026 | A vulnerability has been found in HummerRisk up to 1.5.0. This issue affects the function extractTarGZ/extractZip of the... |
| CVE-2026-3066 | HIGH | 8.8 | 9.1% | Feb 24, 2026 | A flaw has been found in HummerRisk up to 1.5.0. This vulnerability affects the function fixedCommand of the file hummer... |
| CVE-2026-3091 | HIGH | 7.3 | 0.1% | Feb 24, 2026 | An uncontrolled search path element vulnerability in Synology Presto Client before 2.1.3-0672 allows local users to read... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now