2026 CVE Vulnerabilities

64,922 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-32688HIGH7.5Allocation of Resources Without Limits or Throttling vulnerability in elixir-plug plug_cowboy allows unauthenticated rem...
CVE-2026-7125CRITICAL9.8A vulnerability was identified in Totolink A8000RU 7.1cu.643_b20200521. Affected by this issue is the function setWiFiEa...
CVE-2026-7124CRITICAL9.8A vulnerability was determined in Totolink A8000RU 7.1cu.643_b20200521. Affected by this vulnerability is the function s...
CVE-2026-7123CRITICAL9.8A vulnerability was found in Totolink A8000RU 7.1cu.643_b20200521. Affected is the function setIptvCfg of the file /cgi-...
CVE-2026-7040HIGH7.5Text::Minify::XS versions from 0.3.0 before 0.7.8 for Perl have a heap overflow when processing some malformed UTF-8 cha...
CVE-2026-7122CRITICAL9.8A vulnerability has been found in Totolink A8000RU 7.1cu.643_b20200521. This impacts the function setUPnPCfg of the file...
CVE-2026-7121CRITICAL9.8A flaw has been found in Totolink A8000RU 7.1cu.643_b20200521. This affects the function setWizardCfg of the file /cgi-b...
CVE-2026-7119HIGH8.8A vulnerability was detected in Tenda HG3 2.0. The impacted element is an unknown function of the file /boaform/formCoun...
CVE-2026-7118MEDIUM6.3A security vulnerability has been detected in code-projects Employee Management System 1.0. The affected element is an u...
CVE-2026-7117MEDIUM6.3A weakness has been identified in code-projects Employee Management System 1.0. Impacted is an unknown function of the f...
CVE-2026-7116MEDIUM4.3A security flaw has been discovered in code-projects Employee Management System 1.0. This issue affects some unknown pro...
CVE-2026-5943HIGH7.8Document structural anomalies caused inconsistencies between page element relationships and internal index states. When ...
CVE-2026-5942MEDIUM5.5Flaws in page lifecycle management allow document structure changes to desynchronize internal component states, causing ...
CVE-2026-5941HIGH7.1Parsing logic flaws cause non-signature data to be misidentified as valid signatures when processing malformed form fiel...
CVE-2026-5940MEDIUM5.5Calling a function that triggers a UI refresh after removing comments via a script may access an invalidated object, lea...
CVE-2026-5939MEDIUM5.5A crafted XFA PDF can trigger a use-after-free condition during calculate event processing, causing the application to c...
CVE-2026-5938MEDIUM5.5Improper control flow management allows a crafted document action chain to cause modal dialog reentry on the main thread...
CVE-2026-5937MEDIUM5.5Insufficient parameter verification leads to the occurrence of format errors in files, which will trigger an unhandled "...
CVE-2026-42410MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CodexThemes TheGem...
CVE-2026-7115MEDIUM6.3A vulnerability was identified in code-projects Employee Management System 1.0. This vulnerability affects unknown code ...
CVE-2026-7114MEDIUM6.3A vulnerability was determined in code-projects Employee Management System 1.0. This affects an unknown part of the file...
CVE-2026-7113MEDIUM5.6A vulnerability was found in NousResearch hermes-agent 0.8.0. Affected by this issue is some unknown functionality of th...
CVE-2026-33453CRITICAL10Improperly Controlled Modification of Dynamically-Determined Object Attributes vulnerability in Apache Camel Camel-Coap ...
CVE-2026-27172HIGH8.8The ConsulRegistry in the camel-consul component (class org.apache.camel.component.consul.ConsulRegistry and its inner C...
CVE-2026-22337CRITICAL9.8Incorrect Privilege Assignment vulnerability in Directorist Directorist Social Login allows Privilege Escalation.This is...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now