2026 CVE Vulnerabilities
45,436 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-11571 | HIGH | 7.5 | 0.1% | Jul 9, 2026 | The Everest Forms WordPress plugin before 3.5.0 does not reliably delete temporary CSV files generated during email-not... |
| CVE-2026-5523 | HIGH | 8.8 | 0.3% | Jul 9, 2026 | The Divi Form Builder plugin for WordPress is vulnerable to Missing Authorization in versions up to, and including, 5.1.... |
| CVE-2026-41857 | HIGH | 7.8 | 0.1% | Jul 9, 2026 | A compromised or malicious BOSH Director can execute arbitrary shell commands on the operator's workstation when the ope... |
| CVE-2026-15137 | HIGH | 7.3 | 0.3% | Jul 9, 2026 | A weakness has been identified in code-projects Interview Management System 1.0. This vulnerability affects unknown code... |
| CVE-2026-15135 | HIGH | 7.3 | 0.3% | Jul 9, 2026 | A security flaw has been discovered in code-projects Online Food Order System 1.0. This affects an unknown part of the f... |
| CVE-2026-15134 | HIGH | 7.3 | 0.3% | Jul 9, 2026 | A vulnerability was determined in CodeAstro Simple Online Leave Management System 1.0. Affected by this vulnerability is... |
| CVE-2026-59723 | HIGH | 8.8 | 0.1% | Jul 8, 2026 | Cline is an autonomous coding agent as an SDK, IDE extension, or CLI assistant. Prior to 3.0.30, the Cline Hub dashboard... |
| CVE-2026-54784 | HIGH | 7.4 | 0.2% | Jul 8, 2026 | CoreWCF is a port of the service side of Windows Communication Foundation (WCF) to .NET Core. In version 1.9.0, CoreWCF ... |
| CVE-2026-54783 | HIGH | 7.4 | 0.1% | Jul 8, 2026 | CoreWCF is a port of the service side of Windows Communication Foundation (WCF) to .NET Core. Prior to 1.8.1 and 1.9.1, ... |
| CVE-2026-54781 | HIGH | 7.4 | 0.2% | Jul 8, 2026 | CoreWCF is a port of the service side of Windows Communication Foundation (WCF) to .NET Core. Prior to 1.8.1 and 1.9.1, ... |
| CVE-2026-54774 | HIGH | 7.4 | 0.1% | Jul 8, 2026 | CoreWCF is a port of the service side of Windows Communication Foundation (WCF) to .NET Core. Prior to 1.8.1 and 1.9.1, ... |
| CVE-2026-54772 | HIGH | 7.5 | 0.5% | Jul 8, 2026 | CoreWCF is a port of the service side of Windows Communication Foundation (WCF) to .NET Core. Prior to 1.8.1 and 1.9.1, ... |
| CVE-2026-54499 | HIGH | 7.5 | 0.3% | Jul 8, 2026 | Stanza is a Stanford NLP Python library for tokenization, sentence segmentation, NER, and parsing of many human language... |
| CVE-2026-15133 | HIGH | 8.8 | 0.2% | Jul 8, 2026 | Use after free in InterestGroups in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to execute arbitrary... |
| CVE-2026-15132 | HIGH | 8.8 | 0.2% | Jul 8, 2026 | Uninitialized Use in V8 in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to execute arbitrary code ins... |
| CVE-2026-15129 | HIGH | 8.8 | 0.2% | Jul 8, 2026 | Use after free in Views in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to potentially exploit heap c... |
| CVE-2026-15126 | HIGH | 8.8 | 0.2% | Jul 8, 2026 | Use after free in Forms in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to execute arbitrary code ins... |
| CVE-2026-15125 | HIGH | 8.8 | 0.2% | Jul 8, 2026 | Inappropriate implementation in Forms in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to execute arbi... |
| CVE-2026-15123 | HIGH | 8.8 | 0.2% | Jul 8, 2026 | Inappropriate implementation in DOM in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to potentially ex... |
| CVE-2026-15122 | HIGH | 8.3 | 0.2% | Jul 8, 2026 | Insufficient validation of untrusted input in Codecs in Google Chrome on Windows prior to 150.0.7871.115 allowed a remot... |
| CVE-2026-15121 | HIGH | 8.8 | 0.2% | Jul 8, 2026 | Use after free in WebRTC in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to execute arbitrary code in... |
| CVE-2026-15120 | HIGH | 8.3 | 0.2% | Jul 8, 2026 | Use after free in Core in Google Chrome on Windows prior to 150.0.7871.115 allowed a remote attacker who had compromised... |
| CVE-2026-15119 | HIGH | 8.3 | 0.2% | Jul 8, 2026 | Race in GetUserMedia in Google Chrome prior to 150.0.7871.115 allowed a remote attacker who had compromised the renderer... |
| CVE-2026-15118 | HIGH | 8.8 | 0.2% | Jul 8, 2026 | Use after free in Input in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to execute arbitrary code ins... |
| CVE-2026-15117 | HIGH | 7.5 | 0.2% | Jul 8, 2026 | Use after free in Payments in Google Chrome prior to 150.0.7871.115 allowed a remote attacker who convinced a user to en... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now