2026 CVE Vulnerabilities

56,979 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-42533CRITICAL9.2A vulnerability exists in NGINX Plus and NGINX Open Source when a map directive uses regex matching and a string express...
CVE-2026-33213MEDIUM6.1Redash is a package for data visualization and sharing. From 5.0.2 to 26.3.0, the get_next_path() function in Redash's a...
CVE-2026-62175Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-60091. Reason: This candidate is a ...
CVE-2026-59838MEDIUM4.8A improper neutralization of script-related html tags in a web page (basic xss) vulnerability in Fortinet FortiSIEM 7.4....
CVE-2026-43637CRITICAL9.1Cornac before 2.6.0 contains a path traversal (Tar Slip) vulnerability that allows attackers to write arbitrary files ou...
CVE-2026-58559MEDIUM6.5DoS vulnerability in the vibration service. Impact: Successful exploitation of this vulnerability may affect availabilit...
CVE-2026-58558HIGH7.8Permission control vulnerability in the file system. Impact: Successful exploitation of this vulnerability may affect se...
CVE-2026-58557MEDIUM4.8Design defect vulnerability in Expedition mode. Impact: Successful exploitation of this vulnerability may affect availab...
CVE-2026-58556MEDIUM5.1Permission control vulnerability in the Bluetooth module. Impact: Successful exploitation of this vulnerability may affe...
CVE-2026-58555MEDIUM6.6Permission bypass vulnerability in the card module. Impact: Successful exploitation of this vulnerability may affect ava...
CVE-2026-58554MEDIUM6.6Permission control vulnerability in the Settings module. Impact: Successful exploitation of this vulnerability may affec...
CVE-2026-58553MEDIUM4Out-of-bounds read vulnerability in the image codec module. Impact: Successful exploitation of this vulnerability may af...
CVE-2026-58552MEDIUM5.1Out-of-bounds read vulnerability in the image codec module. Impact: Successful exploitation of this vulnerability may af...
CVE-2026-58551MEDIUM5.1Out-of-bounds read vulnerability in the image codec module. Impact: Successful exploitation of this vulnerability may af...
CVE-2026-58550MEDIUM4Out-of-bounds read vulnerability in the image codec module. Impact: Successful exploitation of this vulnerability may af...
CVE-2026-58549MEDIUM4Out-of-bounds read vulnerability in the image codec module. Impact: Successful exploitation of this vulnerability may af...
CVE-2026-46459MEDIUM5.3ICU Scandinavia Boomerang is vulnerable to a missing authentication flaw in its device receiver endpoints. This allows a...
CVE-2026-46458HIGH7.1ICU Scandinavia Boomerang is vulnerable to an information disclosure flaw where sensitive credential files are exposed v...
CVE-2026-15809HIGH7.8A flaw was found in CRI-O. The fix for a previous vulnerability (CVE-2022-4318) was incorrect, allowing it to be bypasse...
CVE-2026-15779MEDIUM6.1A flaw was found in samba's pam_winbind. When mkhomedir is enabled, pam_winbind chowns the target account's home directo...
CVE-2026-61873HIGH8.1Grav before 9.1.8 contains an arbitrary file write vulnerability in the Form plugin's process.save.filename parameter, w...
CVE-2026-61872LOW2.5ImageMagick before 7.1.2-26 and 6.9.13-51 contains a memory leak in the TIFF encoder when an invalid tiff:tile-geometry ...
CVE-2026-61871MEDIUM6.3ImageMagick before 7.1.2-26 and 6.9.13-51 contains a memory leak in the ICON decoder that occurs when a memory allocatio...
CVE-2026-61869LOW2.9ImageMagick before 7.1.2-26 and 6.9.13-51 contains a memory leak in the MIFF encoder that occurs when a memory allocatio...
CVE-2026-61868MEDIUM6.3ImageMagick before 7.1.2-26 and 6.9.x before 6.9.13-51 contains a memory leak in the YUV decoder that occurs when openin...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now