2026 CVE Vulnerabilities

69,114 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-3979MEDIUM5.3A flaw has been found in quickjs-ng quickjs up to 0.12.1. This affects the function js_iterator_concat_return of the fil...
CVE-2026-3978HIGH8.8A vulnerability was detected in D-Link DIR-513 1.10. The impacted element is an unknown function of the file /goform/for...
CVE-2026-3977MEDIUM6.3A security vulnerability has been detected in projectsend up to r1945. The affected element is an unknown function of th...
CVE-2026-3976HIGH8.8A weakness has been identified in Tenda W3 1.0.0.3(2204). Impacted is the function formWifiMacFilterSet of the file /gof...
CVE-2026-3975HIGH8.8A security flaw has been discovered in Tenda W3 1.0.0.3(2204). This issue affects the function formWifiMacFilterGet of t...
CVE-2026-3974HIGH8.8A vulnerability was identified in Tenda W3 1.0.0.3(2204). This vulnerability affects the function formexeCommand of the ...
CVE-2026-3657HIGH7.5The My Sticky Bar plugin for WordPress is vulnerable to SQL injection via the `stickymenu_contact_lead_form` AJAX action...
CVE-2026-3226MEDIUM4.3The LearnPress – WordPress LMS Plugin plugin for WordPress is vulnerable to unauthorized email notification triggering d...
CVE-2026-1878MEDIUM5.4An Insufficient Integrity Verification vulnerability in the ASUS ROG peripheral driver installation process allows privi...
CVE-2026-3973HIGH8.8A vulnerability was determined in Tenda W3 1.0.0.3(2204). This affects the function formSetAutoPing of the file /goform/...
CVE-2026-3972HIGH8.8A vulnerability was found in Tenda W3 1.0.0.3(2204). Affected by this issue is the function formSetCfm of the file /gofo...
CVE-2026-1182MEDIUM4.3GitLab has remediated an issue in GitLab CE/EE affecting all versions from 8.14 before 18.7.6, 18.8 before 18.8.6, and 1...
CVE-2026-3971HIGH8.8A vulnerability has been found in Tenda i3 1.0.0.6(2204). Affected by this vulnerability is the function formwrlSSIDset ...
CVE-2026-3970HIGH8.8A flaw has been found in Tenda i3 1.0.0.6(2204). Affected is the function formwrlSSIDget of the file /goform/wifiSSIDget...
CVE-2026-3969HIGH7.3A vulnerability was detected in FeMiner wms up to 1.0. This impacts an unknown function of the file /wms-master/src/basi...
CVE-2026-3968MEDIUM6.3A vulnerability has been found in AutohomeCorp frostmourne up to 1.0. This affects the function scriptEngine.eval of the...
CVE-2026-3967MEDIUM6.3A flaw has been found in Alfresco Activiti up to 7.19/8.8.0. Affected by this issue is the function deserialize/createOb...
CVE-2026-3966MEDIUM6.3A vulnerability was detected in 648540858 wvp-GB28181-pro up to 2.7.4-20260107. Affected by this vulnerability is the fu...
CVE-2026-3965MEDIUM6.3A security vulnerability has been detected in whyour qinglong up to 2.20.1. Affected is an unknown function of the file ...
CVE-2026-2808MEDIUM6.8HashiCorp Consul and Consul Enterprise 1.18.20 up to 1.21.10 and 1.22.4 are vulnerable to arbitrary file read when confi...
CVE-2026-3964MEDIUM5.3A weakness has been identified in OpenAkita up to 1.24.3. This impacts the function run of the file src/openakita/tools/...
CVE-2026-3963LOW3.7A security flaw has been discovered in perfree go-fastdfs-web up to 1.3.7. This affects the function rememberMeManager o...
CVE-2026-3962MEDIUM4.3A vulnerability was identified in Jcharis Machine-Learning-Web-Apps up to a6996b634d98ccec4701ac8934016e8175b60eb5. The ...
CVE-2026-31988MEDIUM6.9yauzl (aka Yet Another Unzip Library) version 3.2.0 for Node.js contains an off-by-one error in the NTFS extended timest...
CVE-2026-3961MEDIUM6.3A vulnerability was determined in zyddnys manga-image-translator up to beta-0.3. The affected element is the function to...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now