2026 CVE Vulnerabilities
69,014 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-32346 | MEDIUM | 5.3 | 0.2% | Mar 13, 2026 | Missing Authorization vulnerability in raratheme Travel Agency travel-agency allows Exploiting Incorrectly Configured Ac... |
| CVE-2026-32345 | MEDIUM | 5.3 | 0.2% | Mar 13, 2026 | Missing Authorization vulnerability in raratheme Perfect Portfolio perfect-portfolio allows Exploiting Incorrectly Confi... |
| CVE-2026-32344 | MEDIUM | 4.3 | 0.1% | Mar 13, 2026 | Cross-Site Request Forgery (CSRF) vulnerability in desertthemes Corpiva corpiva allows Cross Site Request Forgery.This i... |
| CVE-2026-32343 | MEDIUM | 4.3 | 0.1% | Mar 13, 2026 | Cross-Site Request Forgery (CSRF) vulnerability in Magazine3 Easy Table of Contents easy-table-of-contents allows Cross ... |
| CVE-2026-32342 | MEDIUM | 4.3 | 0.1% | Mar 13, 2026 | Cross-Site Request Forgery (CSRF) vulnerability in Ays Pro Quiz Maker quiz-maker allows Cross Site Request Forgery.This ... |
| CVE-2026-32341 | MEDIUM | 5.3 | 0.2% | Mar 13, 2026 | Missing Authorization vulnerability in raratheme Benevolent benevolent allows Exploiting Incorrectly Configured Access C... |
| CVE-2026-32340 | MEDIUM | 5.3 | 0.2% | Mar 13, 2026 | Missing Authorization vulnerability in raratheme Business One Page business-one-page allows Exploiting Incorrectly Confi... |
| CVE-2026-32339 | MEDIUM | 5.3 | 0.2% | Mar 13, 2026 | Missing Authorization vulnerability in raratheme Bakes And Cakes bakes-and-cakes allows Exploiting Incorrectly Configure... |
| CVE-2026-32338 | MEDIUM | 5.3 | 0.2% | Mar 13, 2026 | Missing Authorization vulnerability in raratheme Construction Landing Page construction-landing-page allows Exploiting I... |
| CVE-2026-32337 | MEDIUM | 5.3 | 0.2% | Mar 13, 2026 | Missing Authorization vulnerability in raratheme Preschool and Kindergarten preschool-and-kindergarten allows Exploiting... |
| CVE-2026-32336 | MEDIUM | 5.3 | 0.2% | Mar 13, 2026 | Missing Authorization vulnerability in raratheme Rara Business rara-business allows Exploiting Incorrectly Configured Ac... |
| CVE-2026-32335 | MEDIUM | 5.3 | 0.2% | Mar 13, 2026 | Missing Authorization vulnerability in raratheme The Conference the-conference allows Exploiting Incorrectly Configured ... |
| CVE-2026-32334 | MEDIUM | 5.3 | 0.2% | Mar 13, 2026 | Missing Authorization vulnerability in raratheme JobScout jobscout allows Exploiting Incorrectly Configured Access Contr... |
| CVE-2026-32332 | MEDIUM | 5.3 | 0.2% | Mar 13, 2026 | Missing Authorization vulnerability in Ays Pro Easy Form easy-form allows Exploiting Incorrectly Configured Access Contr... |
| CVE-2026-32331 | MEDIUM | 5.4 | 0.2% | Mar 13, 2026 | Missing Authorization vulnerability in Israpil Textmetrics webtexttool allows Exploiting Incorrectly Configured Access C... |
| CVE-2026-32330 | MEDIUM | 4.3 | 0.1% | Mar 13, 2026 | Cross-Site Request Forgery (CSRF) vulnerability in 10Web Photo Gallery by 10Web photo-gallery allows Cross Site Request ... |
| CVE-2026-32329 | MEDIUM | 5.3 | 0.2% | Mar 13, 2026 | Missing Authorization vulnerability in Ays Pro Advanced Related Posts advanced-related-posts allows Exploiting Incorrect... |
| CVE-2026-32328 | MEDIUM | 5.4 | 0.1% | Mar 13, 2026 | Cross-Site Request Forgery (CSRF) vulnerability in shufflehound Lemmony lemmony allows Cross Site Request Forgery.This i... |
| CVE-2026-32322 | MEDIUM | 5.3 | 0.3% | Mar 13, 2026 | soroban-sdk is a Rust SDK for Soroban contracts. Prior to 22.0.11, 23.5.3, and 25.3.0, The Fr (scalar field) types for B... |
| CVE-2026-32320 | HIGH | 7.5 | 0.2% | Mar 13, 2026 | Ella Core is a 5G core designed for private networks. Prior to 1.5.1, Ella Core panics when processing a PathSwitchReque... |
| CVE-2026-32319 | HIGH | 7.5 | 0.3% | Mar 13, 2026 | Ella Core is a 5G core designed for private networks. Prior to 1.5.1, Ella Core panics when processing a malformed integ... |
| CVE-2026-32308 | HIGH | 7.6 | 0.3% | Mar 13, 2026 | OneUptime is a solution for monitoring and managing online services. Prior to 10.0.23, the Markdown viewer component ren... |
| CVE-2026-32306 | CRITICAL | 9.9 | 0.9% | Mar 13, 2026 | OneUptime is a solution for monitoring and managing online services. Prior to 10.0.23, the telemetry aggregation API acc... |
| CVE-2026-32304 | CRITICAL | 9.8 | 0.6% | Mar 13, 2026 | Locutus brings stdlibs of other programming languages to JavaScript for educational purposes. Prior to 3.0.14, the creat... |
| CVE-2026-32302 | HIGH | 8.1 | 0.2% | Mar 13, 2026 | OpenClaw is a personal AI assistant. Prior to 2026.3.11, browser-originated WebSocket connections could bypass origin va... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now