2026 CVE Vulnerabilities
61,264 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-5242 | HIGH | 8.8 | 0.3% | Jun 15, 2026 | Improper neutralization of formula elements in a CSV file vulnerability in MIA Technology Inc. Pizzy Library allows Code... |
| CVE-2026-5233 | HIGH | 7.1 | 0.2% | Jun 15, 2026 | Improper Control of Interaction Frequency vulnerability in MIA Technology Inc. Pizzy Library allows Flooding. This issu... |
| CVE-2026-5230 | HIGH | 7.1 | 0.2% | Jun 15, 2026 | Improper Access Control, Missing Authorization vulnerability in MIA Technology Inc. Pizzy Library allows Exploiting Inco... |
| CVE-2026-5079 | HIGH | 7.5 | 0.3% | Jun 15, 2026 | Impact: multer versions 1.0.0 through 2.1.1 and 3.0.0-alpha.1 are vulnerable to a Denial of Service via deeply nested fi... |
| CVE-2026-52704 | CRITICAL | 10 | 0.3% | Jun 15, 2026 | Improper Control of Generation of Code ('Code Injection') vulnerability in Edgar Rojas WooCommerce PDF Invoice Builder a... |
| CVE-2026-49111 | HIGH | 8.8 | 0.2% | Jun 15, 2026 | Incorrect Privilege Assignment vulnerability in ThemeGrill Masteriyo - LMS allows Privilege Escalation. This issue affe... |
| CVE-2026-49064 | HIGH | 7.5 | 0.2% | Jun 15, 2026 | Insertion of Sensitive Information Into Sent Data vulnerability in Stiofan GetPaid allows Retrieve Embedded Sensitive Da... |
| CVE-2026-49062 | HIGH | 8.8 | 0.3% | Jun 15, 2026 | Authentication Bypass Using an Alternate Path or Channel vulnerability in WP Engine Faust.Js allows Password Recovery Ex... |
| CVE-2026-48969 | MEDIUM | 6.5 | 0.2% | Jun 15, 2026 | Subscriber Broken Access Control in Really Simple SSL <= 9.5.9 versions. |
| CVE-2026-5482 | CRITICAL | 9.3 | 0.4% | Jun 15, 2026 | Responsive FileManager's allows an unauthenticated attacker to upload files of any type and extension without restrictio... |
| CVE-2026-49757 | CRITICAL | 9.2 | 0.6% | Jun 15, 2026 | Authentication Bypass by Spoofing vulnerability in team-alembic AshAuthentication allows account takeover of local users... |
| CVE-2026-34030 | MEDIUM | 6.9 | 0.3% | Jun 15, 2026 | The Wertheim SafeController Software, AssemblyVersion 6.15.8328.28014, does not sufficiently validate the branch code wh... |
| CVE-2026-34029 | MEDIUM | 6.8 | 0.1% | Jun 15, 2026 | The Wertheim SafeController Software, AssemblyVersion 6.15.8328.28014, contains a hard-coded cryptographic key in the Sa... |
| CVE-2026-34028 | MEDIUM | 6.9 | 0.4% | Jun 15, 2026 | The Wertheim SafeController Software, AssemblyVersion 6.15.8328.28014, exposes web-accessible file paths that are not pr... |
| CVE-2026-34027 | MEDIUM | 5.3 | 0.3% | Jun 15, 2026 | The Wertheim SafeController Software, AssemblyVersion 6.15.8328.28014, contains insufficient server-side file type valid... |
| CVE-2026-34026 | HIGH | 7.1 | 0.4% | Jun 15, 2026 | Wertheim SafeController Software, AssemblyVersion 6.15.8328.28014, contains a path traversal vulnerability in the docume... |
| CVE-2026-34025 | MEDIUM | 5.3 | 0.3% | Jun 15, 2026 | The Wertheim SafeController Software, AssemblyVersion 6.15.8328.28014, contains an IP restriction bypass vulnerability i... |
| CVE-2026-34024 | HIGH | 8.6 | 0.3% | Jun 15, 2026 | The Wertheim SafeController Software, AssemblyVersion 6.15.8328.28014, contains missing authorization checks on multiple... |
| CVE-2026-34023 | HIGH | 7.1 | 0.3% | Jun 15, 2026 | The Wertheim SafeController Software, AssemblyVersion 6.15.8328.28014, contains an incorrect authorization vulnerability... |
| CVE-2026-34022 | HIGH | 7.1 | 0.1% | Jun 15, 2026 | The Wertheim SafeController Family 65000, Controller 65000 - AssemblyVersion 6.11.8130.22319, uses weak custom cryptogra... |
| CVE-2026-34021 | HIGH | 8.6 | 0.2% | Jun 15, 2026 | The Wertheim SafeController 5400, Controller 5400 - AssemblyVersion 6.11.8130.22320, uses RS-485 communication between t... |
| CVE-2026-12057 | HIGH | 7.8 | 0.1% | Jun 15, 2026 | When the application executes the JavaScript script embedded in the PDF within the sandbox, it fails to intercept some d... |
| CVE-2026-50100 | HIGH | 8.5 | 0.1% | Jun 15, 2026 | Multiple printer drivers provided by Ricoh Company, Ltd. and KONICA MINOLTA JAPAN, INC. contain a privilege escalation v... |
| CVE-2026-44188 | MEDIUM | 5.3 | 0.3% | Jun 15, 2026 | A flaw was found in Ansible Lightspeed. This vulnerability, related to insufficient session expiration, allows a remote ... |
| CVE-2026-11860 | HIGH | 7.5 | 0.2% | Jun 15, 2026 | Quick.CMS deserializes user-controlled data received over plaintext HTTP without ensuring integrity or authenticity. Thi... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now