2026 CVE Vulnerabilities
56,866 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-22190 | HIGH | 7.5 | 0.3% | Jan 7, 2026 | The egg-mkfont utility in Panda3D versions up to and including 1.10.16 contains an uncontrolled format string vulnerabil... |
| CVE-2026-22187 | HIGH | 7.8 | 0.4% | Jan 7, 2026 | Bio-Formats versions up to and including 8.3.0 perform unsafe Java deserialization of attacker-controlled memoization ca... |
| CVE-2026-22186 | HIGH | 7.1 | 0.1% | Jan 7, 2026 | Bio-Formats versions up to and including 8.3.0 contain an XML External Entity (XXE) vulnerability in the Leica Microsyst... |
| CVE-2026-22184 | HIGH | 7.8 | 0.4% | Jan 7, 2026 | zlib versions up to and including 1.3.1.2 include a global buffer overflow in the untgz utility located under contrib/un... |
| CVE-2026-21682 | HIGH | 8.8 | 0.3% | Jan 7, 2026 | iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of Internatio... |
| CVE-2026-21681 | HIGH | 7.1 | 0.2% | Jan 7, 2026 | iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of Internatio... |
| CVE-2026-21856 | HIGH | 8.8 | 0.3% | Jan 7, 2026 | The Tarkov Data Manager is a tool to manage the Tarkov item data. Prior to commit 9bdb3a75a98a7047b6d70144eb1da1655d6992... |
| CVE-2026-21680 | HIGH | 7.5 | 0.3% | Jan 7, 2026 | iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of Internatio... |
| CVE-2026-21678 | HIGH | 7.8 | 0.2% | Jan 7, 2026 | iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of ICC color ... |
| CVE-2026-21505 | HIGH | 7.8 | 0.2% | Jan 7, 2026 | iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of ICC color ... |
| CVE-2026-21504 | HIGH | 7.8 | 0.2% | Jan 7, 2026 | iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of ICC color ... |
| CVE-2026-21501 | HIGH | 7.8 | 0.2% | Jan 7, 2026 | iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of ICC color ... |
| CVE-2026-21500 | HIGH | 7.8 | 0.2% | Jan 7, 2026 | iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of ICC color ... |
| CVE-2026-0669 | HIGH | 7.5 | 0.4% | Jan 7, 2026 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Wikimedia Foundation Med... |
| CVE-2026-22544 | HIGH | 8.7 | 0.2% | Jan 7, 2026 | An attacker with a network connection could detect credentials in clear text. |
| CVE-2026-22536 | HIGH | 8.6 | 0.1% | Jan 7, 2026 | The absence of permissions control for the user XXX allows the current configuration in the sudoers file to escalate pri... |
| CVE-2026-22535 | HIGH | 8.9 | 0.1% | Jan 7, 2026 | An attacker with the ability to interact through the network and with access credentials, could, thanks to the unsecured... |
| CVE-2026-22541 | HIGH | 8.2 | 0.3% | Jan 7, 2026 | The massive sending of ICMP requests causes a denial of service on one of the boards from the EVCharger that allows cont... |
| CVE-2026-20893 | HIGH | 8.5 | 0.1% | Jan 7, 2026 | Origin validation error issue exists in Fujitsu Security Solution AuthConductor Client Basic V2 2.0.25.0 and earlier. If... |
| CVE-2026-0656 | HIGH | 8.2 | 0.3% | Jan 7, 2026 | The iPaymu Payment Gateway for WooCommerce plugin for WordPress is vulnerable to Missing Authentication in all versions ... |
| CVE-2026-0628 | HIGH | 8.8 | 6.5% | Jan 7, 2026 | Insufficient policy enforcement in WebView tag in Google Chrome prior to 143.0.7499.192 allowed an attacker who convince... |
| CVE-2026-21494 | HIGH | 7.1 | 0.1% | Jan 6, 2026 | iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of Internatio... |
| CVE-2026-21491 | HIGH | 7.1 | 0.2% | Jan 6, 2026 | iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of Internatio... |
| CVE-2026-21490 | HIGH | 7.1 | 0.2% | Jan 6, 2026 | iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of Internatio... |
| CVE-2026-0641 | HIGH | 8.8 | 2.4% | Jan 6, 2026 | A security vulnerability has been detected in TOTOLINK WA300 5.2cu.7112_B20190227. This vulnerability affects the functi... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now