2026 CVE Vulnerabilities

45,207 CVEs published in 2026.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2026-15515HIGH7A security vulnerability has been detected in Tencent PC Manager 18.1.30242.301. This issue affects some unknown process...
CVE-2026-15514HIGH7.3A weakness has been identified in Metasoft 美特软件 MetaCRM up to 6.4.0 Beta06. This vulnerability affects the function RPCS...
CVE-2026-15506HIGH7.8A security vulnerability has been detected in SecureAge CatchPulse up to 10.9.3. The affected element is an unknown func...
CVE-2026-10667HIGH7.8Zephyr's dynamic kernel-object tracking (kernel/userspace/userspace.c, formerly kernel/userspace.c) maintains a doubly-l...
CVE-2026-10665HIGH7.4In Zephyr's WireGuard subsystem (subsys/net/lib/wireguard), wg_process_data_message() in wg_crypto.c linearizes an inbou...
CVE-2026-58596HIGH8.3Untrusted pointer dereference in Microsoft Edge (Chromium-based) allows an unauthorized attacker to elevate privileges o...
CVE-2026-61875HIGH8.8luci-app-upnp contains a stored cross-site scripting vulnerability that allows unauthenticated LAN clients to inject Jav...
CVE-2026-59260HIGH8.8OpenWrt luci-app-samba4 read ACL grants file.exec permission on /usr/sbin/smbd, allowing authenticated delegated users t...
CVE-2026-56313HIGH8.1Capgo before 12.128.2 contains a cross-organization account disruption vulnerability in the SSO prelink endpoint that al...
CVE-2026-56308HIGH8.4Capgo before 12.128.2 allows email address changes without requiring current password re-authentication or verification ...
CVE-2026-56259HIGH8.8Crawl4AI before 0.8.8 contains credential exfiltration vulnerabilities in the Docker API server that allow attackers to ...
CVE-2026-56241HIGH8.3Capgo before 12.128.2 contains a privilege escalation vulnerability where demoted super_admin users retain access to del...
CVE-2026-56238HIGH8.7Capgo before 12.128.2 contains an information disclosure vulnerability in the Supabase PostgREST global_stats endpoint t...
CVE-2026-15498HIGH7.3A vulnerability was identified in sergomanov SmartHomeAdatum up to cf495353d81b680675eb8d9aa14a318aa45ce12c. This impact...
CVE-2026-15497HIGH7.3A vulnerability was determined in SonicCloudOrg sonic-agent up to 2.7.2. This affects an unknown function of the file so...
CVE-2026-15491HIGH7.3A weakness has been identified in RafyMrX TOKO-ONLINE-ROTI up to ddfe1cd587be0a0b5135d8b6e85cce2ec3aece99. This affects ...
CVE-2026-15490HIGH7.3A security flaw has been discovered in RafyMrX TOKO-ONLINE-ROTI up to ddfe1cd587be0a0b5135d8b6e85cce2ec3aece99. Affected...
CVE-2026-15489HIGH7.3A vulnerability was identified in RafyMrX TOKO-ONLINE-ROTI up to ddfe1cd587be0a0b5135d8b6e85cce2ec3aece99. Affected by t...
CVE-2026-15488HIGH7.3A vulnerability was determined in hcr707305003 shiroiAdmin 1.1/1.3. Affected is the function FileController::upload of t...
CVE-2026-15484HIGH8.8A vulnerability was detected in TRENDnet TEW-821DAP 1.12B01. The affected element is the function sub_41EC14 of the file...
CVE-2026-15483HIGH8.8A security vulnerability has been detected in TRENDnet TEW-821DAP 1.12B01. Impacted is the function sub_41EC14 of the fi...
CVE-2026-15482HIGH7.3A weakness has been identified in Aster Telecom Azcall 10/11. This issue affects some unknown processing of the file /az...
CVE-2026-15481HIGH8.8A security flaw has been discovered in Trendnet TEW-635BRM up to 1.00.03. This vulnerability affects the function ipoa_t...
CVE-2026-15480HIGH8.8A vulnerability was identified in Trendnet TEW-635BRM up to 1.00.03. This affects the function start_httpd of the file /...
CVE-2026-15479HIGH7.3A vulnerability was found in H3C NX15 V100R017. Affected by this vulnerability is the function change_passwd of the file...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now