2026 CVE Vulnerabilities

64,858 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-7669MEDIUM6.3A vulnerability was detected in sgl-project SGLang up to 0.5.9. Impacted is the function get_tokenizer of the file pytho...
CVE-2026-7668HIGH7.3A vulnerability was identified in MikroTik RouterOS 6.49.8. This vulnerability affects the function ASN1_STRING_data in ...
CVE-2026-7653MEDIUM6.3A security flaw has been discovered in r-huijts mcp-server-rijksmuseum up to 1.0.4. Affected is the function open_image_...
CVE-2026-7645MEDIUM6.5A vulnerability was found in ruvnet sublinear-time-solver 1.5.0. Affected by this vulnerability is the function export_s...
CVE-2026-7644HIGH7.3A vulnerability has been found in ChatGPTNextWeb NextChat up to 2.16.1. Affected is the function addMcpServer of the fil...
CVE-2026-7643MEDIUM4.3A flaw has been found in ChatGPTNextWeb NextChat up to 2.16.1. This impacts an unknown function of the file Next.js of t...
CVE-2026-7642MEDIUM6.3A vulnerability was detected in pskill9 website-downloader up to 0.1.0. This affects the function download_website of th...
CVE-2026-7633MEDIUM6.5A vulnerability was identified in Totolink N300RH 6.1c.1353_B20190305. This impacts the function setUploadSetting of the...
CVE-2026-7632HIGH7.3A vulnerability was determined in code-projects Online Hospital Management System 1.0. This affects an unknown function ...
CVE-2026-7631MEDIUM5.4A vulnerability was found in code-projects Online Hospital Management System 1.0. The impacted element is an unknown fun...
CVE-2026-7630HIGH7.3A vulnerability has been found in innocommerce InnoShop up to 0.7.8. The affected element is the function InstallService...
CVE-2026-7629MEDIUM6.3A flaw has been found in kleneway awesome-cursor-mpc-server up to 2.0.1. Impacted is the function runCodeReviewTool of t...
CVE-2026-3504MEDIUM5.3The Dokan: AI Powered WooCommerce Multivendor Marketplace Solution plugin for WordPress is vulnerable to Sensitive Infor...
CVE-2026-2554HIGH8.1The WCFM – Frontend Manager for WooCommerce along with Bookings Subscription Listings Compatible plugin for WordPress is...
CVE-2026-0703MEDIUM6.4The NextMove Lite – Thank You Page for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via...
CVE-2026-7628MEDIUM6.3A vulnerability was detected in crazyrabbitLTC mcp-code-review-server up to 0.1.0. This issue affects the function execu...
CVE-2026-6817MEDIUM5.8The Quiz Maker by AYS plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'rate_reason' parameter ...
CVE-2026-6525MEDIUM5.5IEEE 802.11 protocol dissector crash in Wireshark 4.6.0 to 4.6.4
CVE-2026-6320HIGH7.5The Salon Booking System – Free Version plugin for WordPress is vulnerable to Arbitrary File Read in versions up to, and...
CVE-2026-4790MEDIUM5.4The Premium Addons for Elementor – Powerful Elementor Templates & Widgets plugin for WordPress is vulnerable to Stored C...
CVE-2026-4100HIGH7.1The Paid Memberships Pro plugin for WordPress is vulnerable to unauthorized modification and disruption of Stripe webhoo...
CVE-2026-4062HIGH7.5The Geo Mashup plugin for WordPress is vulnerable to Time-Based SQL Injection via the 'object_ids' and 'exclude_object_i...
CVE-2026-4061HIGH7.5The Geo Mashup plugin for WordPress is vulnerable to Time-Based SQL Injection via the 'map_post_type' parameter in all v...
CVE-2026-4060HIGH7.5The Geo Mashup plugin for WordPress is vulnerable to Time-Based SQL Injection via the 'sort' parameter in all versions u...
CVE-2026-7627MEDIUM6.3A security vulnerability has been detected in 8nite metatrader-4-mcp 1.0.0. This vulnerability affects the function Call...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now