2026 CVE Vulnerabilities
55,856 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-25794 | HIGH | 8.2 | 0.4% | Feb 24, 2026 | ImageMagick is free and open-source software used for editing and manipulating digital images. `WriteUHDRImage` in `code... |
| CVE-2026-25545 | HIGH | 8.6 | 1.8% | Feb 24, 2026 | Astro is a web framework. Prior to version 9.5.4, Server-Side Rendered pages that return an error with a prerendered cus... |
| CVE-2026-25501 | HIGH | 7.5 | 0.3% | Feb 24, 2026 | free5GC SMF provides Session Management Function for free5GC, an open-source project for 5th generation (5G) mobile core... |
| CVE-2026-24485 | HIGH | 7.5 | 0.4% | Feb 24, 2026 | ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-1... |
| CVE-2026-24481 | HIGH | 7.5 | 0.3% | Feb 24, 2026 | ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-1... |
| CVE-2026-21864 | HIGH | 7.5 | 0.3% | Feb 24, 2026 | Valkey-Bloom is a Rust based Valkey module which brings a Bloom Filter (Module) data type into the Valkey distributed ke... |
| CVE-2026-3044 | HIGH | 8.8 | 0.5% | Feb 24, 2026 | A vulnerability has been found in Tenda AC8 16.03.34.06. This affects the function webCgiGetUploadFile of the file /cgi-... |
| CVE-2026-21665 | HIGH | 7.7 | 0.4% | Feb 23, 2026 | The Print Service component of Fiserv Originate Loans Peripherals (formerly Velocity Services) in unsupported version 20... |
| CVE-2026-3040 | HIGH | 7.2 | 9.1% | Feb 23, 2026 | A vulnerability was identified in DrayTek Vigor 300B up to 1.5.1.6. This affects the function cgiGetFile of the file /cg... |
| CVE-2026-25649 | HIGH | 8.7 | 0.1% | Feb 23, 2026 | Versions of the Traccar open-source GPS tracking system up to and including 6.11.1 contain an issue in which authenticat... |
| CVE-2026-3026 | HIGH | 7.3 | 0.4% | Feb 23, 2026 | A vulnerability has been found in erzhongxmu JEEWMS 3.7. Affected by this issue is some unknown functionality of the fil... |
| CVE-2026-25648 | HIGH | 8.7 | 0.3% | Feb 23, 2026 | Versions of the Traccar open-source GPS tracking system starting with 6.11.1 contain an issue in which authenticated use... |
| CVE-2026-27623 | HIGH | 7.5 | 0.4% | Feb 23, 2026 | Valkey is a distributed key-value database. Starting in version 9.0.0 and prior to version 9.0.3, a malicious actor with... |
| CVE-2026-21863 | HIGH | 7.5 | 0.6% | Feb 23, 2026 | Valkey is a distributed key-value database. Prior to versions 9.0.2, 8.1.6, 8.0.7, and 7.2.12, a malicious actor with ac... |
| CVE-2026-27514 | HIGH | 7.1 | 0.2% | Feb 23, 2026 | Shenzhen Tenda F3 Wireless Router firmware V12.01.01.55_multi contains a sensitive information exposure vulnerability in... |
| CVE-2026-3016 | HIGH | 8.8 | 0.7% | Feb 23, 2026 | A vulnerability was identified in UTT HiPER 810G up to 1.7.7-171114. The affected element is the function strcpy of the ... |
| CVE-2026-3015 | HIGH | 8.8 | 0.8% | Feb 23, 2026 | A vulnerability was determined in UTT HiPER 810G up to 1.7.7-171114. Impacted is the function strcpy of the file /goform... |
| CVE-2026-2697 | HIGH | 8.8 | 0.2% | Feb 23, 2026 | An Indirect Object Reference (IDOR) in Security Center allows an authenticated remote attacker to escalate privileges vi... |
| CVE-2026-21420 | HIGH | 7.8 | 0.1% | Feb 23, 2026 | Dell Repository Manager (DRM), versions prior to 3.4.8, contains an Uncontrolled Search Path Element vulnerability. A lo... |
| CVE-2026-2981 | HIGH | 8.8 | 0.7% | Feb 23, 2026 | A vulnerability was found in UTT HiPER 810G up to 1.7.7-1711. The affected element is the function strcpy of the file /g... |
| CVE-2026-2980 | HIGH | 7.3 | 0.8% | Feb 23, 2026 | A vulnerability has been found in UTT HiPER 810G up to 1.7.7-1711. Impacted is the function strcpy of the file /goform/s... |
| CVE-2026-2979 | HIGH | 8.8 | 0.3% | Feb 23, 2026 | A flaw has been found in FastApiAdmin up to 2.2.0. This issue affects the function user_avatar_upload_controller of the ... |
| CVE-2026-25747 | HIGH | 8.8 | 0.9% | Feb 23, 2026 | Deserialization of Untrusted Data vulnerability in Apache Camel LevelDB component. The Camel-LevelDB DefaultLevelDBSeri... |
| CVE-2026-2978 | HIGH | 8.8 | 0.3% | Feb 23, 2026 | A vulnerability was detected in FastApiAdmin up to 2.2.0. This vulnerability affects the function upload_file_controller... |
| CVE-2026-2977 | HIGH | 8.8 | 0.3% | Feb 23, 2026 | A security vulnerability has been detected in FastApiAdmin up to 2.2.0. This affects the function upload_controller of t... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now