2026 CVE Vulnerabilities

45,436 CVEs published in 2026.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2026-11571HIGH7.5The Everest Forms WordPress plugin before 3.5.0 does not reliably delete temporary CSV files generated during email-not...
CVE-2026-5523HIGH8.8The Divi Form Builder plugin for WordPress is vulnerable to Missing Authorization in versions up to, and including, 5.1....
CVE-2026-41857HIGH7.8A compromised or malicious BOSH Director can execute arbitrary shell commands on the operator's workstation when the ope...
CVE-2026-15137HIGH7.3A weakness has been identified in code-projects Interview Management System 1.0. This vulnerability affects unknown code...
CVE-2026-15135HIGH7.3A security flaw has been discovered in code-projects Online Food Order System 1.0. This affects an unknown part of the f...
CVE-2026-15134HIGH7.3A vulnerability was determined in CodeAstro Simple Online Leave Management System 1.0. Affected by this vulnerability is...
CVE-2026-59723HIGH8.8Cline is an autonomous coding agent as an SDK, IDE extension, or CLI assistant. Prior to 3.0.30, the Cline Hub dashboard...
CVE-2026-54784HIGH7.4CoreWCF is a port of the service side of Windows Communication Foundation (WCF) to .NET Core. In version 1.9.0, CoreWCF ...
CVE-2026-54783HIGH7.4CoreWCF is a port of the service side of Windows Communication Foundation (WCF) to .NET Core. Prior to 1.8.1 and 1.9.1, ...
CVE-2026-54781HIGH7.4CoreWCF is a port of the service side of Windows Communication Foundation (WCF) to .NET Core. Prior to 1.8.1 and 1.9.1, ...
CVE-2026-54774HIGH7.4CoreWCF is a port of the service side of Windows Communication Foundation (WCF) to .NET Core. Prior to 1.8.1 and 1.9.1, ...
CVE-2026-54772HIGH7.5CoreWCF is a port of the service side of Windows Communication Foundation (WCF) to .NET Core. Prior to 1.8.1 and 1.9.1, ...
CVE-2026-54499HIGH7.5Stanza is a Stanford NLP Python library for tokenization, sentence segmentation, NER, and parsing of many human language...
CVE-2026-15133HIGH8.8Use after free in InterestGroups in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to execute arbitrary...
CVE-2026-15132HIGH8.8Uninitialized Use in V8 in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to execute arbitrary code ins...
CVE-2026-15129HIGH8.8Use after free in Views in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to potentially exploit heap c...
CVE-2026-15126HIGH8.8Use after free in Forms in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to execute arbitrary code ins...
CVE-2026-15125HIGH8.8Inappropriate implementation in Forms in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to execute arbi...
CVE-2026-15123HIGH8.8Inappropriate implementation in DOM in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to potentially ex...
CVE-2026-15122HIGH8.3Insufficient validation of untrusted input in Codecs in Google Chrome on Windows prior to 150.0.7871.115 allowed a remot...
CVE-2026-15121HIGH8.8Use after free in WebRTC in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to execute arbitrary code in...
CVE-2026-15120HIGH8.3Use after free in Core in Google Chrome on Windows prior to 150.0.7871.115 allowed a remote attacker who had compromised...
CVE-2026-15119HIGH8.3Race in GetUserMedia in Google Chrome prior to 150.0.7871.115 allowed a remote attacker who had compromised the renderer...
CVE-2026-15118HIGH8.8Use after free in Input in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to execute arbitrary code ins...
CVE-2026-15117HIGH7.5Use after free in Payments in Google Chrome prior to 150.0.7871.115 allowed a remote attacker who convinced a user to en...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now