2026 CVE Vulnerabilities

55,856 CVEs published in 2026.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2026-25794HIGH8.2ImageMagick is free and open-source software used for editing and manipulating digital images. `WriteUHDRImage` in `code...
CVE-2026-25545HIGH8.6Astro is a web framework. Prior to version 9.5.4, Server-Side Rendered pages that return an error with a prerendered cus...
CVE-2026-25501HIGH7.5free5GC SMF provides Session Management Function for free5GC, an open-source project for 5th generation (5G) mobile core...
CVE-2026-24485HIGH7.5ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-1...
CVE-2026-24481HIGH7.5ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-1...
CVE-2026-21864HIGH7.5Valkey-Bloom is a Rust based Valkey module which brings a Bloom Filter (Module) data type into the Valkey distributed ke...
CVE-2026-3044HIGH8.8A vulnerability has been found in Tenda AC8 16.03.34.06. This affects the function webCgiGetUploadFile of the file /cgi-...
CVE-2026-21665HIGH7.7The Print Service component of Fiserv Originate Loans Peripherals (formerly Velocity Services) in unsupported version 20...
CVE-2026-3040HIGH7.2A vulnerability was identified in DrayTek Vigor 300B up to 1.5.1.6. This affects the function cgiGetFile of the file /cg...
CVE-2026-25649HIGH8.7Versions of the Traccar open-source GPS tracking system up to and including 6.11.1 contain an issue in which authenticat...
CVE-2026-3026HIGH7.3A vulnerability has been found in erzhongxmu JEEWMS 3.7. Affected by this issue is some unknown functionality of the fil...
CVE-2026-25648HIGH8.7Versions of the Traccar open-source GPS tracking system starting with 6.11.1 contain an issue in which authenticated use...
CVE-2026-27623HIGH7.5Valkey is a distributed key-value database. Starting in version 9.0.0 and prior to version 9.0.3, a malicious actor with...
CVE-2026-21863HIGH7.5Valkey is a distributed key-value database. Prior to versions 9.0.2, 8.1.6, 8.0.7, and 7.2.12, a malicious actor with ac...
CVE-2026-27514HIGH7.1Shenzhen Tenda F3 Wireless Router firmware V12.01.01.55_multi contains a sensitive information exposure vulnerability in...
CVE-2026-3016HIGH8.8A vulnerability was identified in UTT HiPER 810G up to 1.7.7-171114. The affected element is the function strcpy of the ...
CVE-2026-3015HIGH8.8A vulnerability was determined in UTT HiPER 810G up to 1.7.7-171114. Impacted is the function strcpy of the file /goform...
CVE-2026-2697HIGH8.8An Indirect Object Reference (IDOR) in Security Center allows an authenticated remote attacker to escalate privileges vi...
CVE-2026-21420HIGH7.8Dell Repository Manager (DRM), versions prior to 3.4.8, contains an Uncontrolled Search Path Element vulnerability. A lo...
CVE-2026-2981HIGH8.8A vulnerability was found in UTT HiPER 810G up to 1.7.7-1711. The affected element is the function strcpy of the file /g...
CVE-2026-2980HIGH7.3A vulnerability has been found in UTT HiPER 810G up to 1.7.7-1711. Impacted is the function strcpy of the file /goform/s...
CVE-2026-2979HIGH8.8A flaw has been found in FastApiAdmin up to 2.2.0. This issue affects the function user_avatar_upload_controller of the ...
CVE-2026-25747HIGH8.8Deserialization of Untrusted Data vulnerability in Apache Camel LevelDB component. The Camel-LevelDB DefaultLevelDBSeri...
CVE-2026-2978HIGH8.8A vulnerability was detected in FastApiAdmin up to 2.2.0. This vulnerability affects the function upload_file_controller...
CVE-2026-2977HIGH8.8A security vulnerability has been detected in FastApiAdmin up to 2.2.0. This affects the function upload_controller of t...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now