2026 CVE Vulnerabilities
67,095 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-5004 | HIGH | 8.8 | 0.7% | Mar 28, 2026 | A vulnerability was determined in Wavlink WL-WN579X3-C 231124. This impacts the function sub_4019FC of the file /cgi-bin... |
| CVE-2026-5003 | MEDIUM | 5.5 | 0.3% | Mar 28, 2026 | A vulnerability was found in PromtEngineer localGPT up to 4d41c7d1713b16b216d8e062e51a5dd88b20b054. This affects the fun... |
| CVE-2026-5002 | HIGH | 7.3 | 0.3% | Mar 28, 2026 | A vulnerability has been found in PromtEngineer localGPT up to 4d41c7d1713b16b216d8e062e51a5dd88b20b054. The impacted el... |
| CVE-2026-5001 | HIGH | 7.3 | 0.3% | Mar 28, 2026 | A flaw has been found in PromtEngineer localGPT up to 4d41c7d1713b16b216d8e062e51a5dd88b20b054. The affected element is ... |
| CVE-2026-5000 | HIGH | 7.3 | 0.4% | Mar 28, 2026 | A vulnerability was detected in PromtEngineer localGPT up to 4d41c7d1713b16b216d8e062e51a5dd88b20b054. Impacted is the f... |
| CVE-2026-4999 | MEDIUM | 6.3 | 0.3% | Mar 28, 2026 | A security vulnerability has been detected in z-9527 admin up to 72aaf2dd05cf4ec2e98f390668b41e128eec5ad2. This issue af... |
| CVE-2026-4998 | HIGH | 7.3 | 0.5% | Mar 28, 2026 | A weakness has been identified in Sinaptik AI PandasAI up to 3.0.0. This vulnerability affects the function CodeExecutor... |
| CVE-2026-4997 | MEDIUM | 5.5 | 0.5% | Mar 28, 2026 | A security flaw has been discovered in Sinaptik AI PandasAI up to 3.0.0. This affects the function is_sql_query_safe of ... |
| CVE-2026-4996 | HIGH | 7.3 | 0.3% | Mar 28, 2026 | A vulnerability was identified in Sinaptik AI PandasAI up to 0.1.4. Affected by this issue is the function delete_questi... |
| CVE-2026-2595 | MEDIUM | 5.4 | 0.1% | Mar 28, 2026 | The Quads Ads Manager for Google AdSense plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions u... |
| CVE-2026-4995 | LOW | 3.5 | 0.2% | Mar 28, 2026 | A vulnerability was determined in wandb OpenUI up to 1.0. Affected by this vulnerability is an unknown functionality of ... |
| CVE-2026-4994 | LOW | 3.5 | 0.2% | Mar 28, 2026 | A vulnerability was found in wandb OpenUI up to 1.0/3.5-turb. Affected is the function generic_exception_handler of the ... |
| CVE-2026-4993 | LOW | 3.3 | 0.1% | Mar 28, 2026 | A vulnerability has been found in wandb OpenUI up to 0.0.0.0/1.0. This impacts an unknown function of the file backend/o... |
| CVE-2026-2442 | MEDIUM | 5.3 | 0.3% | Mar 28, 2026 | The Page Builder: Pagelayer – Drag and Drop website builder plugin for WordPress is vulnerable to Improper Neutralizatio... |
| CVE-2026-23399 | MEDIUM | 5.5 | 0.1% | Mar 28, 2026 | In the Linux kernel, the following vulnerability has been resolved: nf_tables: nft_dynset: fix possible stateful expres... |
| CVE-2026-1307 | MEDIUM | 6.5 | 0.2% | Mar 28, 2026 | The Ninja Forms - The Contact Form Builder That Grows With You plugin for WordPress is vulnerable to Sensitive Informati... |
| CVE-2026-4987 | HIGH | 7.5 | 0.3% | Mar 28, 2026 | The SureForms – Contact Form, Payment Form & Other Custom Form Builder plugin for WordPress is vulnerable to Payment Amo... |
| CVE-2026-1679 | HIGH | 7.8 | 0.2% | Mar 28, 2026 | The eswifi socket offload driver copies user-provided payloads into a fixed buffer without checking available space; ove... |
| CVE-2026-4992 | MEDIUM | 4.3 | 0.3% | Mar 27, 2026 | A flaw has been found in wandb OpenUI up to 1.0. This affects the function create_share/get_share of the file backend/op... |
| CVE-2026-4991 | MEDIUM | 5.1 | 0.2% | Mar 27, 2026 | A vulnerability was detected in QDOCS Smart School Management System up to 7.2. The impacted element is an unknown funct... |
| CVE-2026-4248 | HIGH | 8 | 0.2% | Mar 27, 2026 | The Ultimate Member plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and incl... |
| CVE-2026-33996 | MEDIUM | 5.5 | 0.1% | Mar 27, 2026 | LibJWT is a C JSON Web Token Library. Starting in version 3.0.0 and prior to version 3.3.0, the JWK parsing for RSA-PSS ... |
| CVE-2026-33994 | CRITICAL | 9.8 | 0.6% | Mar 27, 2026 | Locutus brings stdlibs of other programming languages to JavaScript for educational purposes. Starting in version 2.0.39... |
| CVE-2026-33993 | CRITICAL | 9.8 | 0.6% | Mar 27, 2026 | Locutus brings stdlibs of other programming languages to JavaScript for educational purposes. Prior to version 3.0.25, t... |
| CVE-2026-33992 | MEDIUM | 6.5 | 0.4% | Mar 27, 2026 | pyLoad is a free and open-source download manager written in Python. Prior to version 0.5.0b3.dev97, PyLoad's download e... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now