2026 CVE Vulnerabilities

64,858 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-7690CRITICAL9.8A weakness has been identified in Wavlink WL-WN570HA1 R70HA1 V1410_221110. This issue affects the function set_sys_adm o...
CVE-2026-7689LOW3.7A security flaw has been discovered in Dolibarr ERP CRM up to 23.0.2. This vulnerability affects the function dol_verify...
CVE-2026-7688MEDIUM5A vulnerability was identified in Dolibarr ERP CRM up to 23.0.2. This affects the function _checkValForAPI of the file h...
CVE-2026-7687MEDIUM6.3A vulnerability was determined in langflow-ai langflow up to 1.8.4. Affected by this issue is the function CodeParser.pa...
CVE-2026-7686MEDIUM5.5A vulnerability was found in eyeo Adblock Plus up to 4.36.2 on Chrome. Affected by this vulnerability is the function po...
CVE-2026-7685HIGH8.8A vulnerability was detected in Edimax BR-6208AC up to 1.02. Affected is an unknown function of the file /goform/setWAN....
CVE-2026-7684HIGH8.8A security vulnerability has been detected in Edimax BR-6428nC up to 1.16. This impacts an unknown function of the file ...
CVE-2026-7683MEDIUM6.3A weakness has been identified in Edimax BR-6428nC up to 1.16. This affects an unknown function of the file /goform/setW...
CVE-2026-7682MEDIUM6.3A security flaw has been discovered in Edimax BR-6208AC 1.02. The impacted element is the function setWAN of the file /g...
CVE-2026-5337MEDIUM6.5During the analysis, it was identified that authenticated attackers with Subscriber-level access or higher are able to p...
CVE-2026-7681MEDIUM6.5A security vulnerability has been detected in jsbroks COCO Annotator up to 0.11.1. Affected by this vulnerability is an ...
CVE-2026-7680MEDIUM4.3A weakness has been identified in jsbroks COCO Annotator up to 0.11.1. Affected is an unknown function of the file backe...
CVE-2026-5063HIGH7.2The NEX-Forms – Ultimate Forms Plugin for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting vi...
CVE-2026-7679HIGH7.3A security flaw has been discovered in YunaiV yudao-cloud up to 2026.01. This impacts the function getAccessToken of the...
CVE-2026-7678MEDIUM6.3A vulnerability was identified in YunaiV yudao-cloud up to 2026.01. This affects the function getDataBySQL of the file y...
CVE-2026-7677LOW3.5A vulnerability was determined in kerwincui FastBee up to 1.2.1. The impacted element is the function Add of the file sp...
CVE-2026-7676MEDIUM4.3A vulnerability was found in kerwincui FastBee up to 1.2.1. The affected element is the function ToolController.download...
CVE-2026-7675HIGH8.8A vulnerability has been found in Shenzhen Libituo Technology LBT-T300-HW1 up to 1.2.8. Impacted is the function start_l...
CVE-2026-7674HIGH8.8A flaw has been found in Shenzhen Libituo Technology LBT-T300-HW1 up to 1.2.8. This issue affects the function start_sin...
CVE-2026-7673MEDIUM4.7A vulnerability was detected in crmeb_java up to 1.3.4. This vulnerability affects unknown code of the file crmeb/crmeb-...
CVE-2026-40561MEDIUM5.3Starlet versions through 0.31 for Perl allows HTTP Request Smuggling via Improper Header Precedence. Starlet incorrectl...
CVE-2026-7672MEDIUM6.3A security vulnerability has been detected in youlaitech youlai-boot up to 2.21.1. This affects the function getUserList...
CVE-2026-7671LOW3.7A vulnerability has been found in CodeWise Tornet Scooter Mobile App 4.75 on iOS/Android. The impacted element is an unk...
CVE-2026-7670HIGH7.3A flaw has been found in Jinher OA 1.0. The affected element is an unknown function of the file /C6/JHSoft.Web.PlanSumma...
CVE-2026-6481——Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now