2026 CVE Vulnerabilities
43,261 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-14238 | MEDIUM | 4.1 | 0.2% | Aug 10, 2026 | The vitepos WordPress plugin before 3.6.0 does not sanitize or parameterize an identifier taken from a REST request body... |
| CVE-2026-13701 | MEDIUM | 4.8 | 0.2% | Aug 10, 2026 | The Advanced Excerpt WordPress plugin before 4.5 does not sanitise and escape one of its settings before outputting it o... |
| CVE-2026-12570 | MEDIUM | 5.5 | 0.1% | Aug 10, 2026 | A vulnerability in keras-team/keras versions <= 3.15.0 allows for a denial of service (DoS) attack when loading maliciou... |
| CVE-2026-72522 | MEDIUM | 6.2 | 0.2% | Aug 10, 2026 | libexpat before 2.8.3 has an out-of-bounds read and resultant infinite loop because low surrogates are treated the same ... |
| CVE-2026-19383 | MEDIUM | 4.7 | 0.2% | Aug 10, 2026 | A security vulnerability has been detected in saithink/saigroup SaiAdmin up to 5.0.1. This impacts the function shell_ex... |
| CVE-2026-19378 | MEDIUM | 4.3 | 0.3% | Aug 10, 2026 | A vulnerability was found in code-projects Task Management System 1.0. This issue affects some unknown processing of the... |
| CVE-2026-19375 | MEDIUM | 6.3 | 0.4% | Aug 10, 2026 | A vulnerability was detected in dmitriiweb article-scraper-mcp 1.0.0. This vulnerability affects the function fetch_arti... |
| CVE-2026-19373 | MEDIUM | 5.3 | 0.1% | Aug 9, 2026 | A weakness has been identified in PhialsBasement KoboldCPP-MCP-Server 1.0.0. Affected by this issue is the function make... |
| CVE-2026-19372 | MEDIUM | 5.3 | 0.1% | Aug 9, 2026 | A security flaw has been discovered in Handwriting-OCR handwriting-ocr-mcp-server 0.1.0. Affected by this vulnerability ... |
| CVE-2026-19371 | MEDIUM | 5.3 | 0.1% | Aug 9, 2026 | A vulnerability was identified in Nikolaibibo claude-comfyui-mcp 1.0.0. Affected is the function copyFileSync of the fil... |
| CVE-2026-19370 | MEDIUM | 5.3 | 0.1% | Aug 9, 2026 | A vulnerability was determined in bartekke8it56w2 new-mcp 0.1.0. This impacts the function fs.writeFileSync/fs.existsSyn... |
| CVE-2026-19369 | MEDIUM | 5.3 | 0.1% | Aug 9, 2026 | A vulnerability was found in KS-GEN-AI jira-mcp-server 0.2.0. This affects the function axios.get of the file src/index.... |
| CVE-2026-19368 | MEDIUM | 4.8 | 0.1% | Aug 9, 2026 | A vulnerability was found in PV-Bhat gemsuite-mcp 1.0.0. Affected by this issue is some unknown functionality of the fil... |
| CVE-2026-19367 | MEDIUM | 6.3 | 0.2% | Aug 9, 2026 | A vulnerability has been found in NocteDefensor LudusMCP 1.0.24. Affected by this vulnerability is an unknown functional... |
| CVE-2026-19366 | MEDIUM | 5.3 | 0.1% | Aug 9, 2026 | A flaw has been found in NocteDefensor LudusMCP up to 1.0.24. Affected is an unknown function of the file src/tools/inse... |
| CVE-2026-19365 | MEDIUM | 5.3 | 0.1% | Aug 9, 2026 | A vulnerability was identified in Ichigo3766 image-gen-mcp 0.1.0. The impacted element is an unknown function of the fil... |
| CVE-2026-69659 | MEDIUM | 5.9 | 0.1% | Aug 9, 2026 | Uncontrolled Resource Consumption vulnerability in ash-project ash allows an attacker to exhaust the memory of the node ... |
| CVE-2026-19364 | MEDIUM | 6.3 | 0.2% | Aug 9, 2026 | A vulnerability was determined in itsourcecode Hospital Management System 1.0. The affected element is an unknown functi... |
| CVE-2026-19363 | MEDIUM | 5.5 | 0.4% | Aug 9, 2026 | A vulnerability was found in lmammino oidc-authorizer up to 0.4.0. Impacted is an unknown function of the file src/handl... |
| CVE-2026-19362 | MEDIUM | 5.5 | 0.4% | Aug 9, 2026 | A vulnerability has been found in lmammino oidc-authorizer 0.4.0. This issue affects the function parse_token_from_heade... |
| CVE-2026-15534 | MEDIUM | 5.7 | 0.2% | Aug 9, 2026 | Perl versions through 5.45.1 have out-of-bounds heap reads and writes during regular expression matching via an undersiz... |
| CVE-2026-19360 | MEDIUM | 5.1 | 0.2% | Aug 9, 2026 | A vulnerability was detected in wongcyrus ExcelLexBot up to 0.0.3. This affects the function ExcelLexBotS3TriggerFunctio... |
| CVE-2026-19359 | MEDIUM | 5.1 | 0.4% | Aug 9, 2026 | A security vulnerability has been detected in nxp-auto-goldvip gvip up to 1.4.0. Affected by this issue is the function ... |
| CVE-2026-19358 | MEDIUM | 6.3 | 0.2% | Aug 9, 2026 | A weakness has been identified in 3CORESec Trapdoor up to 1.2.2. Affected by this vulnerability is the function DefaultF... |
| CVE-2026-19357 | MEDIUM | 5.5 | 0.3% | Aug 9, 2026 | A security flaw has been discovered in MingSoft MCMS up to 3.0.6. Affected is an unknown function of the file /mdiy/form... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now