2026 CVE Vulnerabilities

57,138 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-11592MEDIUM4.3The Email Subscribers & Newsletters – Email Marketing, Post Notifications & Newsletter Plugin for WordPress plugin for W...
CVE-2026-11578LOW2.7The Fluent Forms WordPress plugin before 6.2.5 does not properly restrict the deletion of form submission entries to th...
CVE-2026-10089MEDIUM6.4The Insert Pages plugin for WordPress is vulnerable to Stored Cross-Site Scripting via post custom field keys (meta key ...
CVE-2026-10077MEDIUM6.8The yootheme WordPress theme before 5.0.35 does not prevent its bundled front-end framework from treating certain HTML a...
CVE-2026-57278HIGH8.3GeoWebPlayer (also called "Web Plugin" in the GV-VMS documentation and "WS Player" for VMS-Cloud) is an addon that can b...
CVE-2026-57277HIGH8.3GeoWebPlayer (also called "Web Plugin" in the GV-VMS documentation and "WS Player" for VMS-Cloud) is an addon that can b...
CVE-2026-57276HIGH8.3GeoWebPlayer (also called "Web Plugin" in the GV-VMS documentation and "WS Player" for VMS-Cloud) is an addon that can b...
CVE-2026-57275HIGH8.3GeoWebPlayer (also called "Web Plugin" in the GV-VMS documentation and "WS Player" for VMS-Cloud) is an addon that can b...
CVE-2026-57274HIGH8.3GeoWebPlayer (also called "Web Plugin" in the GV-VMS documentation and "WS Player" for VMS-Cloud) is an addon that can b...
CVE-2026-57273HIGH8.3GeoWebPlayer (also called "Web Plugin" in the GV-VMS documentation and "WS Player" for VMS-Cloud) is an addon that can b...
CVE-2026-57272HIGH8.3GeoWebPlayer (also called "Web Plugin" in the GV-VMS documentation and "WS Player" for VMS-Cloud) is an addon that can b...
CVE-2026-57271HIGH8.3GeoWebPlayer (also called "Web Plugin" in the GV-VMS documentation and "WS Player" for VMS-Cloud) is an addon that can b...
CVE-2026-57270HIGH8.3GeoWebPlayer (also called "Web Plugin" in the GV-VMS documentation and "WS Player" for VMS-Cloud) is an addon that can b...
CVE-2026-57269HIGH8.3GeoWebPlayer (also called "Web Plugin" in the GV-VMS documentation and "WS Player" for VMS-Cloud) is an addon that can b...
CVE-2026-57268HIGH8.3GeoWebPlayer (also called "Web Plugin" in the GV-VMS documentation and "WS Player" for VMS-Cloud) is an addon that can b...
CVE-2026-57267HIGH8.3GeoWebPlayer (also called "Web Plugin" in the GV-VMS documentation and "WS Player" for VMS-Cloud) is an addon that can b...
CVE-2026-57266HIGH8.3GeoWebPlayer (also called "Web Plugin" in the GV-VMS documentation and "WS Player" for VMS-Cloud) is an addon that can b...
CVE-2026-57265HIGH8.3GeoWebPlayer (also called "Web Plugin" in the GV-VMS documentation and "WS Player" for VMS-Cloud) is an addon that can b...
CVE-2026-57264HIGH8.3GeoWebPlayer (also called "Web Plugin" in the GV-VMS documentation and "WS Player" for VMS-Cloud) is an addon that can b...
CVE-2026-13132HIGH8.3GeoWebPlayer (also called "Web Plugin" in the GV-VMS documentation and "WS Player" for VMS-Cloud) is an addon that can b...
CVE-2026-13131HIGH8.3GeoWebPlayer (also called "Web Plugin" in the GV-VMS documentation and "WS Player" for VMS-Cloud) is an addon that can b...
CVE-2026-13125HIGH8.8GeoWebPlayer (also called "Web Plugin" in the GV-VMS documentation and "WS Player" for VMS-Cloud) is an addon that can b...
CVE-2026-55794HIGH8.7Craft CMS is a content management system (CMS). In versions 5.9.0 and above prior to 5.10.0, control panel users with th...
CVE-2026-55792MEDIUM6Craft CMS is a content management system (CMS). In versions starting from 4.0.0-RC1 and prior to 4.18.0, and 5.0.0-RC1 a...
CVE-2026-55791MEDIUM6.9Craft CMS is a content management system (CMS). Versions 4.0.0-RC1 and above, prior to 4.18.0 and 5.0.0-RC1, and above, ...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now