2026 CVE Vulnerabilities

60,215 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-4110MEDIUM6.1The ultimate-woocommerce-auction-pro WordPress plugin through 2.4.5 does not sanitise and escape a parameter before outp...
CVE-2026-10530MEDIUM5.3The Pie Register WordPress plugin before 3.8.4.10 does not use sufficiently random values when generating its account v...
CVE-2026-6645HIGH7.3An insecure process execution vulnerability exists in the pc-printer-updater.exe component of the PaperCut Print Deploy ...
CVE-2026-8918HIGH7.1A permissive list of allowed inputs in ASUS Armoury Crate allows a local administrator to perform arbitrary memory read/...
CVE-2026-11748MEDIUM6.9A vulnerability has been identified in centraldogma-server-auth-shiro versions prior to 0.84.0, where the SearchFirstAct...
CVE-2026-11746CRITICAL9.4A vulnerability has been identified in centraldogma-server versions prior to 0.84.0, where enabling ZooKeeper replicatio...
CVE-2026-11745HIGH8.8A vulnerability has been identified in centraldogma-server-mirror-git versions prior to 0.84.0, where the Git mirror SSH...
CVE-2026-12823LOW3.3A security flaw has been discovered in Browserbase Skills up to 20260526. This impacts an unknown function of the compon...
CVE-2026-12822HIGH7.8A vulnerability was identified in langflow-ai langflow up to 1.9.3. This affects an unknown function of the component Bu...
CVE-2026-12821MEDIUM6.3A vulnerability was determined in FlowiseAI Flowise up to 3.1.2. The impacted element is an unknown function of the file...
CVE-2026-12815MEDIUM6.3A vulnerability has been found in coollabsio coolify 4.0.0. Impacted is an unknown function of the component Image Name ...
CVE-2026-12845Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All r...
CVE-2026-12814MEDIUM6.3A flaw has been found in Comfast CF-WR631AX V3 up to 2.7.0.8. This issue affects the function system of the file /cgi-bi...
CVE-2026-12813MEDIUM6.3A vulnerability was detected in activepieces up to 0.83.0. This vulnerability affects the function handleUrlFile in the ...
CVE-2026-12812LOW3.5A security vulnerability has been detected in Radware Cyber Controller up to 10.11.0. This affects an unknown part of th...
CVE-2026-12811MEDIUM4.3A weakness has been identified in kortix-ai suna up to 0.8.38. Affected by this issue is the function router.replace/rou...
CVE-2026-12810MEDIUM6.3A security flaw has been discovered in Edimax BR-6478AC V2 1.23. Affected by this vulnerability is the function mp of th...
CVE-2026-12809MEDIUM6.3A vulnerability was identified in Edimax BR-6478AC V2 1.23. Affected is the function wiz_5in1_redirect of the file /gofo...
CVE-2026-12808MEDIUM6.3A vulnerability was determined in Edimax BR-6478AC V2 1.23. This impacts the function stainfo of the file /goform/stainf...
CVE-2026-12807MEDIUM6.3A vulnerability was found in Edimax BR-6478AC V2 1.23. This affects the function setWAN of the file /goform/setWAN of th...
CVE-2026-12806HIGH8.8A vulnerability has been found in Edimax BR-6478AC V2 1.23. The impacted element is the function formWlSiteSurvey of the...
CVE-2026-12805MEDIUM6.3A flaw has been found in OFFIS DCMTK up to 3.7.0. The affected element is the function XMLNode::parseFile in the library...
CVE-2026-12804MEDIUM4.3A vulnerability was detected in lemonldap-ng up to 2.23.0. Impacted is an unknown function in the library lemonldap-ng-p...
CVE-2026-56412MEDIUM5.9libexpat before 2.8.2 does not consider XML_TOK_DATA_CHARS in doCdataSection and thus lacks handler call depth tracking ...
CVE-2026-56411MEDIUM6.9xmlwf in libexpat before 2.8.2 has an integer overflow in endDoctypeDecl via NOTATION declarations.

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now