2026 CVE Vulnerabilities
64,658 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-9434 | CRITICAL | 9.8 | 1.7% | May 25, 2026 | A security vulnerability has been detected in Totolink A8000RU 7.1cu.643_b20200521. Impacted is the function setWiFiWpsC... |
| CVE-2026-9433 | CRITICAL | 9.8 | 1.7% | May 25, 2026 | A weakness has been identified in Totolink A8000RU 7.1cu.643_b20200521. This issue affects the function setMacFilterRule... |
| CVE-2026-9432 | CRITICAL | 9.8 | 1.7% | May 25, 2026 | A security flaw has been discovered in Totolink A8000RU 7.1cu.643_b20200521. This vulnerability affects the function set... |
| CVE-2026-9431 | HIGH | 8.8 | 0.4% | May 25, 2026 | A vulnerability was identified in Tenda F1202 1.2.0.20(408). This affects the function fromPptpUserAdd of the file /gofo... |
| CVE-2026-9430 | HIGH | 8.8 | 0.4% | May 25, 2026 | A vulnerability was determined in Tenda F1202 1.2.0.20(408). Affected by this issue is the function formGstDhcpSetSer of... |
| CVE-2026-9429 | HIGH | 8.8 | 0.6% | May 25, 2026 | A vulnerability was found in Tenda F1202 1.2.0.20(408). Affected by this vulnerability is the function formWrlExtraSet o... |
| CVE-2026-9428 | HIGH | 8.8 | 0.6% | May 25, 2026 | A vulnerability has been found in Tenda F1202 1.2.0.20(408). Affected is the function fromPPTPUserSetting of the file /g... |
| CVE-2026-41863 | MEDIUM | 6.5 | 0.4% | May 25, 2026 | Spring AI's support for Anthropic's Skills API used LLM-influenced filenames unsanitized in Path.resolve before writing ... |
| CVE-2026-2651 | CRITICAL | 9 | 0.3% | May 25, 2026 | A vulnerability in MLflow versions <=3.10.1.dev0 allows unauthorized access to multipart upload (MPU) endpoints when the... |
| CVE-2026-25193 | HIGH | 8.6 | 0.1% | May 25, 2026 | Insertion of Sensitive Information into Log File (CWE-532) in some Command Centre Service installers could lead to Servi... |
| CVE-2026-9427 | HIGH | 8.8 | 0.4% | May 25, 2026 | A flaw has been found in Edimax EW-7438RPn 1.31. This impacts the function formWlSiteSurvey of the file /goform/formWlSi... |
| CVE-2026-9426 | HIGH | 8.8 | 0.4% | May 25, 2026 | A vulnerability was detected in Edimax EW-7438RPn 1.31. This affects the function formHwSet of the file /goform/formHwSe... |
| CVE-2026-9425 | HIGH | 8.8 | 0.4% | May 25, 2026 | A security vulnerability has been detected in Edimax EW-7438RPn 1.31. The impacted element is the function formWlanMP of... |
| CVE-2026-9424 | MEDIUM | 6.3 | 1.2% | May 25, 2026 | A weakness has been identified in Edimax EW-7438RPn 1.31. The affected element is the function formWlanMP of the file /g... |
| CVE-2026-9423 | MEDIUM | 4.7 | 2.1% | May 25, 2026 | A security flaw has been discovered in Edimax BR-6675nD 1.12. Impacted is the function mp of the file /goform/mp of the ... |
| CVE-2026-9422 | HIGH | 7.3 | 0.3% | May 25, 2026 | A vulnerability was identified in KLiK SocialMediaWebsite 1.0. This issue affects some unknown processing of the compone... |
| CVE-2026-9421 | HIGH | 7.3 | 0.3% | May 25, 2026 | A vulnerability was determined in KLiK SocialMediaWebsite 1.0. This vulnerability affects the function uniqid of the fil... |
| CVE-2026-9420 | MEDIUM | 6.3 | 0.2% | May 25, 2026 | A vulnerability was found in KLiK SocialMediaWebsite 1.0. This affects an unknown part of the component HTTP GET Request... |
| CVE-2026-9419 | MEDIUM | 4.3 | 0.3% | May 25, 2026 | A vulnerability has been found in code-projects Employee Management System 1.0. Affected by this issue is some unknown f... |
| CVE-2026-9418 | MEDIUM | 4.3 | 0.3% | May 25, 2026 | A flaw has been found in code-projects Employee Management System 1.0. Affected by this vulnerability is an unknown func... |
| CVE-2026-9417 | MEDIUM | 4.3 | 0.3% | May 25, 2026 | A vulnerability was detected in code-projects Employee Management System 1.0. Affected is an unknown function of the fil... |
| CVE-2026-8652 | HIGH | 8.5 | 0.7% | May 25, 2026 | An OS Command Injection vulnerability exists in Aterm. If a malicious third person gains administrator access to the pro... |
| CVE-2026-6059 | MEDIUM | 4.8 | 0.2% | May 25, 2026 | A cross-site scripting vulnerability exists in Aterm. Arbitrary scripts may be executed in the web browser of a user acc... |
| CVE-2026-9489 | HIGH | 8.5 | 0.1% | May 25, 2026 | NitroSense 3.x before 3.01.3052 contains Local Privilege Escalation (LPE) vulnerability.The program exposes a Windows Na... |
| CVE-2026-9416 | MEDIUM | 4.3 | 0.3% | May 25, 2026 | A security vulnerability has been detected in code-projects Employee Management System 1.0. This impacts an unknown func... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now