2026 CVE Vulnerabilities
43,896 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-61952 | MEDIUM | 4.9 | 0.3% | Jul 13, 2026 | Missing Authorization vulnerability in Jose Vega WooCommerce Bulk Edit Products – WP Sheet Editor woo-bulk-edit-products... |
| CVE-2026-59523 | MEDIUM | 6.5 | 0.3% | Jul 13, 2026 | Missing Authorization vulnerability in NSquared Simply Schedule Appointments simply-schedule-appointments allows Exploit... |
| CVE-2026-57812 | MEDIUM | 6.5 | 0.3% | Jul 13, 2026 | Missing Authorization vulnerability in NSquared Simply Schedule Appointments simply-schedule-appointments allows Exploit... |
| CVE-2026-57797 | MEDIUM | 4.3 | 0.3% | Jul 13, 2026 | Missing Authorization vulnerability in ThemeMove EduMall edumall allows Exploiting Incorrectly Configured Access Control... |
| CVE-2026-57783 | MEDIUM | 6.5 | 0.2% | Jul 13, 2026 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in merkulove Speaker ... |
| CVE-2026-57782 | MEDIUM | 5.3 | 0.3% | Jul 13, 2026 | Missing Authorization vulnerability in PressTigers Universal Clocks universal-clocks allows Exploiting Incorrectly Confi... |
| CVE-2026-57781 | MEDIUM | 5.3 | 0.3% | Jul 13, 2026 | Missing Authorization vulnerability in Sovlix MeetingHub meetinghub allows Exploiting Incorrectly Configured Access Cont... |
| CVE-2026-57780 | MEDIUM | 6.5 | 0.2% | Jul 13, 2026 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Plugin Envision En... |
| CVE-2026-57779 | MEDIUM | 5.3 | 0.3% | Jul 13, 2026 | Missing Authorization vulnerability in themebeez Fascinate fascinate allows Exploiting Incorrectly Configured Access Con... |
| CVE-2026-57778 | MEDIUM | 5.3 | 0.3% | Jul 13, 2026 | Missing Authorization vulnerability in wpdevart Booking calendar, Appointment Booking System booking-calendar allows Exp... |
| CVE-2026-57776 | MEDIUM | 5.3 | 0.4% | Jul 13, 2026 | Missing Authorization vulnerability in vowelweb VW Wedding vw-wedding allows Exploiting Incorrectly Configured Access Co... |
| CVE-2026-57774 | MEDIUM | 5.3 | 0.4% | Jul 13, 2026 | Missing Authorization vulnerability in vowelweb VW Food Corner vw-food-corner allows Exploiting Incorrectly Configured A... |
| CVE-2026-57711 | MEDIUM | 6.5 | 0.2% | Jul 13, 2026 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in PSM Plugins Suppor... |
| CVE-2026-57698 | MEDIUM | 6.5 | 0.4% | Jul 13, 2026 | Authentication Bypass Using an Alternate Path or Channel vulnerability in VillaTheme Abandoned Cart Recovery for WooComm... |
| CVE-2026-57694 | MEDIUM | 6.5 | 0.3% | Jul 13, 2026 | Authorization Bypass Through User-Controlled Key vulnerability in Themeum Tutor LMS tutor allows Exploiting Incorrectly ... |
| CVE-2026-57693 | MEDIUM | 6.5 | 0.2% | Jul 13, 2026 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Spacetime Ad Inser... |
| CVE-2026-57691 | MEDIUM | 5.8 | 0.2% | Jul 13, 2026 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Eli Anti-Malware S... |
| CVE-2026-57424 | MEDIUM | 6.5 | 0.3% | Jul 13, 2026 | Missing Authorization vulnerability in knitpay Razorpay Payment Links for WooCommerce rzp-woocommerce allows Exploiting ... |
| CVE-2026-57420 | MEDIUM | 6.5 | 0.2% | Jul 13, 2026 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Netrr Author Box W... |
| CVE-2026-57419 | MEDIUM | 6.5 | 0.3% | Jul 13, 2026 | Missing Authorization vulnerability in Fahad Mahmood Stock Locations for WooCommerce stock-locations-for-woocommerce all... |
| CVE-2026-57418 | MEDIUM | 6.5 | 0.3% | Jul 13, 2026 | Missing Authorization vulnerability in BoldGrid Client Invoicing by Sprout Invoices sprout-invoices allows Exploiting In... |
| CVE-2026-57414 | MEDIUM | 6.5 | 0.2% | Jul 13, 2026 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in QuantumCloud ChatB... |
| CVE-2026-57413 | MEDIUM | 6.4 | 0.2% | Jul 13, 2026 | Server-Side Request Forgery (SSRF) vulnerability in bdthemes Instant Image Generator ai-image allows Server Side Request... |
| CVE-2026-57412 | MEDIUM | 6.5 | 0.3% | Jul 13, 2026 | Missing Authorization vulnerability in Codemenschen Gift Vouchers gift-voucher allows Exploiting Incorrectly Configured ... |
| CVE-2026-57408 | MEDIUM | 6.5 | 0.3% | Jul 13, 2026 | Missing Authorization vulnerability in peachpayments Peach Payments Gateway wc-peach-payments-gateway allows Exploiting ... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now