2026 CVE Vulnerabilities
45,307 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-15070 | HIGH | 8.8 | 0.3% | Jul 10, 2026 | The Salon Booking System – Free Version plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions... |
| CVE-2026-13430 | HIGH | 7.2 | 0.6% | Jul 10, 2026 | The Post Export Import with Media plugin for WordPress is vulnerable to Arbitrary File Upload in all versions up to, and... |
| CVE-2026-15319 | HIGH | 7.3 | 0.3% | Jul 10, 2026 | A security vulnerability has been detected in Sipeed PicoClaw up to 0.2.9. This affects the function IPAllowlist of the ... |
| CVE-2026-54771 | HIGH | 8.1 | 0.4% | Jul 10, 2026 | Langroid is a framework for building large-language-model-powered applications. Prior to version 0.65.3, a Langroid appl... |
| CVE-2026-50181 | HIGH | 7.1 | 0.2% | Jul 10, 2026 | Langroid is a framework for building large-language-model-powered applications. Prior to version 0.64.0, Langroid's `Rea... |
| CVE-2026-50180 | HIGH | 8.7 | 0.7% | Jul 10, 2026 | Langroid is a framework for building large-language-model-powered applications. Prior to version 0.64.0, `SQLChatAgent` ... |
| CVE-2026-12598 | HIGH | 8.1 | 0.3% | Jul 10, 2026 | The LoginPress Pro plugin for WordPress is vulnerable to authentication bypass in versions up to and including 6.2.3 via... |
| CVE-2026-12597 | HIGH | 8.1 | 0.4% | Jul 10, 2026 | The LoginPress Pro plugin for WordPress is vulnerable to Authentication Bypass via the GitHub OAuth callback in versions... |
| CVE-2026-12595 | HIGH | 8.1 | 0.3% | Jul 10, 2026 | The LoginPress Pro plugin for WordPress is vulnerable to Authentication Bypass via Unverified OAuth Email in all version... |
| CVE-2026-59858 | HIGH | 7.8 | 0.1% | Jul 9, 2026 | Vim is an open source, command line text editor. Prior to 9.2.0735, the C omni-completion script in runtime/autoload/cco... |
| CVE-2026-59856 | HIGH | 7.8 | 0.2% | Jul 9, 2026 | Vim is an open source, command line text editor. Prior to 9.2.0736, the PHP omni-completion script in runtime/autoload/p... |
| CVE-2026-59855 | HIGH | 8.6 | 0.3% | Jul 9, 2026 | SiYuan is an open-source personal knowledge management system. Prior to 3.7.1, Asset.render in app/src/asset/index.ts in... |
| CVE-2026-59834 | HIGH | 7.5 | 0.4% | Jul 9, 2026 | SiYuan is an open-source personal knowledge management system. Prior to 3.7.1, the block search endpoint POST /api/searc... |
| CVE-2026-59833 | HIGH | 8.6 | 0.4% | Jul 9, 2026 | SiYuan is an open-source personal knowledge management system. Prior to 3.7.1, SiYuan renders note and package content t... |
| CVE-2026-59832 | HIGH | 7.7 | 0.3% | Jul 9, 2026 | SiYuan is an open-source personal knowledge management system. Prior to 3.7.1, the /snippets/*filepath route handler ser... |
| CVE-2026-33655 | HIGH | 7.7 | 0.4% | Jul 9, 2026 | New API is a large language mode (LLM) gateway and artificial intelligence (AI) asset management system. Prior to 0.12.0... |
| CVE-2026-58143 | HIGH | 8.8 | 0.2% | Jul 9, 2026 | Cotonti Siena 0.9.26 and earlier contains a cross-site request forgery vulnerability that allows unauthenticated attacke... |
| CVE-2026-57032 | HIGH | 7.1 | 0.4% | Jul 9, 2026 | An Improper Handling of Undefined Parameters vulnerability in the packet forwarding engine (pfe) of Juniper Networks Jun... |
| CVE-2026-57030 | HIGH | 8.2 | 0.4% | Jul 9, 2026 | A Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') vulnerability in the packe... |
| CVE-2026-57028 | HIGH | 7.3 | 0.3% | Jul 9, 2026 | An Improper Restriction of Communication Channel to Intended Endpoints vulnerability in Juniper Networks Junos OS Evolve... |
| CVE-2026-57027 | HIGH | 7.1 | 0.3% | Jul 9, 2026 | A Missing Release of Memory after Effective Lifetime vulnerability in the packet forwarding engine (pfe) of Juniper Netw... |
| CVE-2026-57026 | HIGH | 8.7 | 0.5% | Jul 9, 2026 | An Improper Validation of Syntactic Correctness of Input vulnerability in the SIP plugin of Juniper Networks Junos OS on... |
| CVE-2026-57023 | HIGH | 8.7 | 0.5% | Jul 9, 2026 | An Improper Validation of Specified Quantity in Input vulnerability in the TCP proxy plugin of Juniper Networks Junos OS... |
| CVE-2026-57022 | HIGH | 8.2 | 0.4% | Jul 9, 2026 | An Improper Check for Unusual or Exceptional Conditions vulnerability in the Packet Forwarding Engine (PFE) of Juniper N... |
| CVE-2026-57020 | HIGH | 7.1 | 0.3% | Jul 9, 2026 | An Improper Check for Unusual or Exceptional Conditions vulnerability in the packet forwarding engine (pfe) of Juniper N... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now