2026 CVE Vulnerabilities
64,868 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-7546 | CRITICAL | 9.8 | 0.8% | May 1, 2026 | A security vulnerability has been detected in Totolink NR1800X 9.1.0u.6279_B20210910. The impacted element is the functi... |
| CVE-2026-7545 | HIGH | 7.3 | 0.3% | May 1, 2026 | A weakness has been identified in SourceCodester Advanced School Management System 1.0. The affected element is an unkno... |
| CVE-2026-7538 | CRITICAL | 9.8 | 1.8% | May 1, 2026 | A vulnerability was identified in Totolink A8000RU 7.1cu.643_b20200521. This issue affects the function Vulnerability of... |
| CVE-2026-7536 | MEDIUM | 5.5 | 0.4% | May 1, 2026 | A vulnerability was determined in Open5GS up to 2.7.7. This vulnerability affects the function bsf_sess_add_by_ip_addres... |
| CVE-2026-7535 | MEDIUM | 4.3 | 0.3% | May 1, 2026 | A vulnerability was found in Open5GS up to 2.7.7. This affects the function amf_namf_comm_handle_registration_status_upd... |
| CVE-2026-7519 | HIGH | 7.3 | 0.4% | May 1, 2026 | A vulnerability has been found in Fujian Apex LiveBOS up to 2.0. Impacted is an unknown function of the file /feed/Uploa... |
| CVE-2026-7518 | MEDIUM | 4.3 | 0.4% | May 1, 2026 | A flaw has been found in Open5GS up to 2.7.7. This issue affects the function amf_namf_callback_handle_sdm_data_change_n... |
| CVE-2026-7513 | HIGH | 8.8 | 0.5% | May 1, 2026 | A vulnerability has been found in UTT HiPER 1200GW up to 2.5.3-170306. The impacted element is the function strcpy of th... |
| CVE-2026-7512 | HIGH | 8.8 | 0.5% | May 1, 2026 | A flaw has been found in UTT HiPER 1200GW up to 2.5.3-1703. The affected element is the function strcpy of the file /gof... |
| CVE-2026-5656 | HIGH | 7.8 | 0.2% | May 1, 2026 | Profile import path traversal in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service and possible code... |
| CVE-2026-5405 | HIGH | 7.8 | 0.2% | May 1, 2026 | RDP protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service and possible code ... |
| CVE-2026-5404 | MEDIUM | 5.5 | 0.1% | May 1, 2026 | K12 RF5 file parser crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service |
| CVE-2026-5403 | HIGH | 7.8 | 0.2% | May 1, 2026 | SBC codec crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service and possible code execution |
| CVE-2026-22726 | MEDIUM | 5 | 0.2% | May 1, 2026 | Route Services can be leveraged to send app traffic to network destinations outside of an app's configured egress rules.... |
| CVE-2026-7510 | MEDIUM | 6.3 | 0.3% | Apr 30, 2026 | A vulnerability was determined in OWAP DefectDojo up to 2.55.4. Affected by this vulnerability is an unknown functionali... |
| CVE-2026-7508 | MEDIUM | 6.3 | 0.2% | Apr 30, 2026 | A vulnerability was found in Bootstrap CMS 0.9.0-alpha. Affected is an unknown function of the file resources/views/page... |
| CVE-2026-7506 | HIGH | 7.3 | 0.3% | Apr 30, 2026 | A vulnerability has been found in SourceCodester Hotel Management System 1.0. This impacts an unknown function of the fi... |
| CVE-2026-7505 | HIGH | 7.3 | 0.4% | Apr 30, 2026 | A flaw has been found in nextlevelbuilder GoClaw and GoClaw Lite up to 3.8.5. This affects an unknown function of the co... |
| CVE-2026-4178 | — | — | — | Apr 30, 2026 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2026-28909 | MEDIUM | 6.5 | 0.2% | Apr 30, 2026 | Users who connect to malicious registries with hostnames matching the bypass patterns will have their registry credentia... |
| CVE-2026-7551 | HIGH | 8.8 | 0.6% | Apr 30, 2026 | HKUDS OpenHarness contains a remote code execution vulnerability in the /bridge slash command that allows remote senders... |
| CVE-2026-7503 | HIGH | 8.8 | 0.4% | Apr 30, 2026 | A vulnerability was detected in code-projects for Plugin 4.1.2cu.5137. The impacted element is the function setWiFiMulti... |
| CVE-2026-7502 | MEDIUM | 5.4 | 0.3% | Apr 30, 2026 | A security vulnerability has been detected in LinkStackOrg LinkStack up to 4.8.6. The affected element is the function s... |
| CVE-2026-6543 | HIGH | 8.8 | 0.5% | Apr 30, 2026 | IBM Langflow Desktop 1.0.0 through 1.8.4 Langflow allows an attacker to execute arbitrary commands with the privileges o... |
| CVE-2026-6542 | HIGH | 8.1 | 0.2% | Apr 30, 2026 | IBM Langflow OSS 1.0.0 through 1.8.4 could allow any user to supply a flow_id to read transaction logs and vertex build ... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now