2026 CVE Vulnerabilities

44,976 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-11612Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2026-71502MEDIUM5.1CTI-Transmute contains a stored cross-site scripting vulnerability caused by insufficient neutralization of Vue template...
CVE-2026-71958CRITICAL9.8D-Link DWR-M961 devices with hardware version C1 and software version 1.1.2_C1_202602110044 contain a buffer overflow vu...
CVE-2026-71957CRITICAL9.8D-Link DWR-M961 devices with hardware version C1 and software version 1.1.2_C1_202602110044 contain a buffer overflow vu...
CVE-2026-71956CRITICAL9.8D-Link DWR-M961 devices with hardware version C1 and software version 1.1.2_C1_202602110044 contain a command injection ...
CVE-2026-71955CRITICAL9.8D-Link DWR-M961 devices with hardware version C1 and software version 1.1.2_C1_202602110044 contain a command injection ...
CVE-2026-71954CRITICAL9.8D-Link DWR-M961 devices with hardware version C1 and firmware version before 1.1.5_C1_202607071108 contain a command inj...
CVE-2026-71953CRITICAL9.8D-Link DWR-M961 devices with hardware version C1 and firmware version before 1.1.5_C1_202607071108 contain a command inj...
CVE-2026-71952CRITICAL9.8D-Link DWR-M961 devices with hardware version C1 and firmware version before 1.1.5_C1_202607071108 contain a command inj...
CVE-2026-71951CRITICAL9.8D-Link DWR-M961 devices with hardware version C1 and firmware version before 1.1.5_C1_202607071108 contain a command inj...
CVE-2026-71950CRITICAL9.8D-Link DWR-M961 devices with hardware version C1 and firmware version before 1.1.5_C1_202607071108 contain a command inj...
CVE-2026-71949CRITICAL9.8D-Link DWR-M961 devices with hardware version C1 and firmware version before 1.1.5_C1_202607071108 contain a command inj...
CVE-2026-71948CRITICAL9.8D-Link DWR-M961 devices with hardware version C1 and firmware version before 1.1.5_C1_202607071108 contain a command inj...
CVE-2026-71947CRITICAL9.8D-Link DWR-M961 devices with hardware version C1 and firmware version before 1.1.5_C1_202607071108 contain a command inj...
CVE-2026-71946CRITICAL9.8D-Link DWR-M961 devices with hardware version C1 and firmware version before 1.1.5_C1_202607071108 contain a command inj...
CVE-2026-71945CRITICAL9.8D-Link DWR-M961 devices with hardware version C1 and firmware version before 1.1.5_C1_202607071108 contain a command inj...
CVE-2026-71944CRITICAL9.8D-Link DWR-M961 devices with hardware version C1 and firmware version before 1.1.5_C1_202607071108 contain a command inj...
CVE-2026-67620HIGH7.7Flowise through 3.1.4 contains a server-side request forgery vulnerability in the SSRF guard implemented in httpSecurity...
CVE-2026-42170HIGH7.8A heap-based buffer overflow vulnerability exists in the GIMP DDS (DirectDraw Surface) file parser. When a crafted DDS f...
CVE-2026-19288MEDIUM5.3A vulnerability has been found in astralisone rive-mcp-server-core up to db1d0cc4cd52589116360428b7504fd0ca748b3e. This ...
CVE-2026-19287MEDIUM5.3A flaw has been found in abrinsmead mindpilot-mcp 0.5.0. Affected by this issue is some unknown functionality of the com...
CVE-2026-19285MEDIUM5.3A vulnerability was detected in aaronsb memory-graph up to 5cfd2382778837b9f6399080956eee670d00452c. Affected by this vu...
CVE-2026-19284MEDIUM5.3A security vulnerability has been detected in MauricioMilano coder-api up to 1.1.0. Affected is the function createProje...
CVE-2026-19282MEDIUM5.3A weakness has been identified in andreahaku llm_memory_mcp up to f11dc8bcff3ff8cf943a2945f99ff3b0bdc8a6d0. This impacts...
CVE-2026-19281MEDIUM5.3A security flaw has been discovered in adolfosalasgomez3011 slidev-builder-mcp 2.1.0. This affects the function generate...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now