2026 CVE Vulnerabilities
60,215 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-4110 | MEDIUM | 6.1 | 0.2% | Jun 22, 2026 | The ultimate-woocommerce-auction-pro WordPress plugin through 2.4.5 does not sanitise and escape a parameter before outp... |
| CVE-2026-10530 | MEDIUM | 5.3 | 0.1% | Jun 22, 2026 | The Pie Register WordPress plugin before 3.8.4.10 does not use sufficiently random values when generating its account v... |
| CVE-2026-6645 | HIGH | 7.3 | 0.1% | Jun 22, 2026 | An insecure process execution vulnerability exists in the pc-printer-updater.exe component of the PaperCut Print Deploy ... |
| CVE-2026-8918 | HIGH | 7.1 | 0.3% | Jun 22, 2026 | A permissive list of allowed inputs in ASUS Armoury Crate allows a local administrator to perform arbitrary memory read/... |
| CVE-2026-11748 | MEDIUM | 6.9 | 0.4% | Jun 22, 2026 | A vulnerability has been identified in centraldogma-server-auth-shiro versions prior to 0.84.0, where the SearchFirstAct... |
| CVE-2026-11746 | CRITICAL | 9.4 | 0.1% | Jun 22, 2026 | A vulnerability has been identified in centraldogma-server versions prior to 0.84.0, where enabling ZooKeeper replicatio... |
| CVE-2026-11745 | HIGH | 8.8 | 0.1% | Jun 22, 2026 | A vulnerability has been identified in centraldogma-server-mirror-git versions prior to 0.84.0, where the Git mirror SSH... |
| CVE-2026-12823 | LOW | 3.3 | 0.1% | Jun 22, 2026 | A security flaw has been discovered in Browserbase Skills up to 20260526. This impacts an unknown function of the compon... |
| CVE-2026-12822 | HIGH | 7.8 | 0.1% | Jun 22, 2026 | A vulnerability was identified in langflow-ai langflow up to 1.9.3. This affects an unknown function of the component Bu... |
| CVE-2026-12821 | MEDIUM | 6.3 | 0.3% | Jun 22, 2026 | A vulnerability was determined in FlowiseAI Flowise up to 3.1.2. The impacted element is an unknown function of the file... |
| CVE-2026-12815 | MEDIUM | 6.3 | 1.2% | Jun 22, 2026 | A vulnerability has been found in coollabsio coolify 4.0.0. Impacted is an unknown function of the component Image Name ... |
| CVE-2026-12845 | — | — | — | Jun 21, 2026 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All r... |
| CVE-2026-12814 | MEDIUM | 6.3 | 1.2% | Jun 21, 2026 | A flaw has been found in Comfast CF-WR631AX V3 up to 2.7.0.8. This issue affects the function system of the file /cgi-bi... |
| CVE-2026-12813 | MEDIUM | 6.3 | 0.2% | Jun 21, 2026 | A vulnerability was detected in activepieces up to 0.83.0. This vulnerability affects the function handleUrlFile in the ... |
| CVE-2026-12812 | LOW | 3.5 | 0.2% | Jun 21, 2026 | A security vulnerability has been detected in Radware Cyber Controller up to 10.11.0. This affects an unknown part of th... |
| CVE-2026-12811 | MEDIUM | 4.3 | 0.3% | Jun 21, 2026 | A weakness has been identified in kortix-ai suna up to 0.8.38. Affected by this issue is the function router.replace/rou... |
| CVE-2026-12810 | MEDIUM | 6.3 | 1.2% | Jun 21, 2026 | A security flaw has been discovered in Edimax BR-6478AC V2 1.23. Affected by this vulnerability is the function mp of th... |
| CVE-2026-12809 | MEDIUM | 6.3 | 1.2% | Jun 21, 2026 | A vulnerability was identified in Edimax BR-6478AC V2 1.23. Affected is the function wiz_5in1_redirect of the file /gofo... |
| CVE-2026-12808 | MEDIUM | 6.3 | 1.2% | Jun 21, 2026 | A vulnerability was determined in Edimax BR-6478AC V2 1.23. This impacts the function stainfo of the file /goform/stainf... |
| CVE-2026-12807 | MEDIUM | 6.3 | 1.2% | Jun 21, 2026 | A vulnerability was found in Edimax BR-6478AC V2 1.23. This affects the function setWAN of the file /goform/setWAN of th... |
| CVE-2026-12806 | HIGH | 8.8 | 0.5% | Jun 21, 2026 | A vulnerability has been found in Edimax BR-6478AC V2 1.23. The impacted element is the function formWlSiteSurvey of the... |
| CVE-2026-12805 | MEDIUM | 6.3 | 0.3% | Jun 21, 2026 | A flaw has been found in OFFIS DCMTK up to 3.7.0. The affected element is the function XMLNode::parseFile in the library... |
| CVE-2026-12804 | MEDIUM | 4.3 | 0.3% | Jun 21, 2026 | A vulnerability was detected in lemonldap-ng up to 2.23.0. Impacted is an unknown function in the library lemonldap-ng-p... |
| CVE-2026-56412 | MEDIUM | 5.9 | 0.1% | Jun 21, 2026 | libexpat before 2.8.2 does not consider XML_TOK_DATA_CHARS in doCdataSection and thus lacks handler call depth tracking ... |
| CVE-2026-56411 | MEDIUM | 6.9 | 0.1% | Jun 21, 2026 | xmlwf in libexpat before 2.8.2 has an integer overflow in endDoctypeDecl via NOTATION declarations. |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now