2026 CVE Vulnerabilities

64,785 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-8177HIGH7.5XML::LibXML versions through 2.0210 for Perl read out-of-bounds heap memory when parsing XML node names containing trunc...
CVE-2026-45191MEDIUM6.5Net::CIDR::Lite versions before 0.24 for Perl does not properly consider extraneous zero characters in CIDR mask values,...
CVE-2026-45190MEDIUM6.5Net::CIDR::Lite versions before 0.24 for Perl does not properly validate IP address and CIDR mask inputs, which may allo...
CVE-2026-45180HIGH7.5Catalyst::Plugin::Statsd versions through 0.10.0 for Perl may leak session ids. If the communication channel to the sta...
CVE-2026-45179MEDIUM5.3Plack::Middleware::Statsd versions before 0.9.0 for Perl may leak user IP addresses. If the communication channel to th...
CVE-2026-8244MEDIUM5.5A vulnerability was identified in Industrial Application Software IAS Canias ERP 8.03. This impacts an unknown function ...
CVE-2026-8243MEDIUM6.9A vulnerability was determined in Industrial Application Software IAS Canias ERP 8.03. This affects an unknown function ...
CVE-2026-8242LOW3.7A vulnerability was found in Industrial Application Software IAS Canias ERP 8.03. The impacted element is the function d...
CVE-2026-8241MEDIUM5.5A vulnerability has been found in Industrial Application Software IAS Canias ERP 8.03. The affected element is the funct...
CVE-2026-8235MEDIUM5.5A vulnerability was detected in 8421bit MiniClaw 0.8.0/0.9.0. This issue affects the function resolveSkillScriptPath of ...
CVE-2026-8234HIGH8.8A security vulnerability has been detected in EFM ipTIME A8004T 14.18.2. This vulnerability affects the function formWif...
CVE-2026-45186HIGH7.5In libexpat before 2.8.1, the computational complexity of attribute name collision checks allows a denial of service via...
CVE-2026-8233MEDIUM4.6A vulnerability was determined in Dotouch XproUPF 2.0.0-release-088aa7c4. Affected is an unknown function of the compone...
CVE-2026-8232MEDIUM5.1A vulnerability was found in Dotouch XproUPF 2.0.0-release-088aa7c4. This impacts the function vlib_worker_loop in the l...
CVE-2026-8231MEDIUM6.3A vulnerability has been found in CodeAstro Online Catering Ordering System 1.0. This affects an unknown function of the...
CVE-2026-7263HIGH7.5In PHP versions 8.4.* before 8.4.21 and 8.5.* before 8.5.6, DOMNode::C14N() method may process the XML data incorrectly,...
CVE-2026-6104CRITICAL9.1In PHP versions 8.4.* before 8.4.21 and 8.5.* before 8.5.6, when an encoding name containing an embedded NUL byte is pas...
CVE-2026-8230HIGH8.8A flaw has been found in Wavlink NU516U1 240425. The impacted element is the function sys_login1 of the file /cgi-bin/lo...
CVE-2026-8229HIGH8.8A vulnerability was detected in Wavlink NU516U1 240425. The affected element is the function WifiBasic of the file /cgi-...
CVE-2026-8228HIGH8.8A security vulnerability has been detected in Wavlink NU516U1 240425. Impacted is the function advance of the file /cgi-...
CVE-2026-8227HIGH8.8A weakness has been identified in Wavlink NU516U1 240425. This issue affects the function wzdapMesh of the file /cgi-bin...
CVE-2026-8226HIGH7.5A security flaw has been discovered in Open5GS up to 2.7.7. This vulnerability affects the function ogs_pcc_rule_install...
CVE-2026-8225HIGH7.5A vulnerability was identified in Open5GS up to 2.7.7. This affects the function pcf_npcf_smpolicycontrol_handle_delete ...
CVE-2026-7568HIGH7.5In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.21, and 8.5.* before 8.5.6, the metaphone() f...
CVE-2026-7262HIGH7.5In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.21, and 8.5.* before 8.5.6, when a SOAP serve...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now