2026 CVE Vulnerabilities
56,866 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-21489 | HIGH | 7.1 | 0.1% | Jan 6, 2026 | iccDEV provides a set of libraries and tools for working with ICC color management profiles. Versions 2.3.1.1 and below ... |
| CVE-2026-21488 | HIGH | 7.1 | 0.1% | Jan 6, 2026 | iccDEV provides a set of libraries and tools for working with ICC color management profiles. Versions 2.3.1.1 and below ... |
| CVE-2026-21411 | HIGH | 8.8 | 0.3% | Jan 6, 2026 | Authentication bypass issue exists in OpenBlocks series versions prior to FW5.0.8, which may allow an attacker to bypass... |
| CVE-2026-21677 | HIGH | 8.8 | 0.3% | Jan 6, 2026 | iccDEV provides a set of libraries and tools for working with ICC color management profiles. Versions 2.3.1 and below ha... |
| CVE-2026-21676 | HIGH | 8.8 | 0.3% | Jan 6, 2026 | iccDEV provides a set of libraries and tools for working with ICC color management profiles. Versions 2.3.1 and below ha... |
| CVE-2026-21487 | HIGH | 7.1 | 0.2% | Jan 6, 2026 | iccDEV provides a set of libraries and tools for working with ICC color management profiles. Versions 2.3.1.1 and below ... |
| CVE-2026-21486 | HIGH | 7.8 | 0.1% | Jan 6, 2026 | iccDEV provides a set of libraries and tools for working with ICC color management profiles. Versions 2.3.1.1 and below ... |
| CVE-2026-21485 | HIGH | 8.8 | 0.3% | Jan 6, 2026 | iccDEV provides a set of libraries and tools for working with ICC color management profiles. Versions 2.3.1.1 and below ... |
| CVE-2026-21673 | HIGH | 7.8 | 0.2% | Jan 6, 2026 | iccDEV provides a set of libraries and tools for working with ICC color management profiles. Versions 2.3.1 and below ha... |
| CVE-2026-21507 | HIGH | 7.5 | 0.4% | Jan 6, 2026 | iccDEV provides a set of libraries and tools for working with ICC color management profiles. Versions 2.3.1 and below ha... |
| CVE-2026-0621 | HIGH | 7.5 | 0.4% | Jan 5, 2026 | Anthropic's MCP TypeScript SDK versions up to and including 1.25.1 contain a regular expression denial of service (ReDoS... |
| CVE-2026-21633 | HIGH | 8.8 | 0.4% | Jan 5, 2026 | A malicious actor with access to the adjacent network could obtain unauthorized access to a UniFi Protect Camera by expl... |
| CVE-2026-0589 | HIGH | 7.3 | 0.5% | Jan 5, 2026 | A vulnerability was found in code-projects Online Product Reservation System 1.0. Impacted is an unknown function of the... |
| CVE-2026-0574 | HIGH | 8.8 | 0.3% | Jan 4, 2026 | A weakness has been identified in yeqifu warehouse up to aaf29962ba407d22d991781de28796ee7b4670e4. This affects the func... |
| CVE-2026-21452 | HIGH | 7.5 | 0.5% | Jan 2, 2026 | MessagePack for Java is a serializer implementation for Java. A denial-of-service vulnerability exists in versions prior... |
| CVE-2026-21451 | HIGH | 8.4 | 0.5% | Jan 2, 2026 | Bagisto is an open source laravel eCommerce platform. A stored Cross-Site Scripting (XSS) vulnerability exists in Bagist... |
| CVE-2026-21449 | HIGH | 8.8 | 0.5% | Jan 2, 2026 | Bagisto is an open source laravel eCommerce platform. Versions prior to 2.3.10 are vulnerable to server-side template in... |
| CVE-2026-21447 | HIGH | 7.1 | 0.3% | Jan 2, 2026 | Bagisto is an open source laravel eCommerce platform. Prior to version 2.3.10, an Insecure Direct Object Reference vulne... |
| CVE-2026-21433 | HIGH | 7.7 | 0.3% | Jan 2, 2026 | Emlog is an open source website building system. Versions up to and including 2.5.19 are vulnerable to server-side Out-o... |
| CVE-2026-0547 | HIGH | 8.8 | 0.3% | Jan 2, 2026 | A vulnerability was found in PHPGurukul Online Course Registration up to 3.1. This issue affects some unknown processing... |
| CVE-2026-21428 | HIGH | 7.5 | 0.4% | Jan 1, 2026 | cpp-httplib is a C++11 single-file header-only cross platform HTTP/HTTPS library. Prior to version 0.30.0, the ``write_h... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now