2026 CVE Vulnerabilities

48,018 CVEs published in 2026.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2026-13546HIGH7.3A vulnerability was found in Feehi CMS up to 2.1.1. This vulnerability affects unknown code of the file /api/articles of...
CVE-2026-13545HIGH8.8A vulnerability has been found in D-Link DCS-935L 1.10.01. This affects the function sub_400E40 of the file setconf.cgi ...
CVE-2026-13539HIGH8.8A vulnerability was identified in Wavlink WL-NU516U1-A M16U1_V240425. The impacted element is the function sub_407504 of...
CVE-2026-10083HIGH7.5The APCu Manager WordPress plugin before 4.5.0 does not escape APCu object-cache keys before rendering them in an admin-...
CVE-2026-13528HIGH7.3A vulnerability was found in YunaiV/zhijiantianya ruoyi-vue-pro up to 2026.04-jdk8-SNAPSHOT. The impacted element is the...
CVE-2026-13527HIGH7.3A vulnerability has been found in SourceCodester Class and Exam Timetabling System 1.0. The affected element is an unkno...
CVE-2026-13526HIGH7.3A flaw has been found in SourceCodester Class and Exam Timetabling System 1.0. Impacted is an unknown function of the fi...
CVE-2026-13521HIGH7.3A vulnerability was identified in SourceCodester Class and Exam Timetabling System 1.0/5.php. Affected by this vulnerabi...
CVE-2026-13519HIGH8.8A vulnerability was found in Tenda JD12L 16.03.53.23. This impacts the function fromNatStaticSetting of the file /goform...
CVE-2026-13518HIGH8.8A vulnerability has been found in Tenda JD12L 16.03.53.23. This affects the function fromAddressNat of the file /goform/...
CVE-2026-13517HIGH8.8A flaw has been found in Tenda JD12L 16.03.53.23. The impacted element is the function formWifiBasicSet of the file /gof...
CVE-2026-13516HIGH8.8A vulnerability was detected in Tenda JD12L 16.03.53.23. The affected element is the function fromSetWifiGusetBasic of t...
CVE-2026-13515HIGH8.8A security vulnerability has been detected in Tenda JD12L 16.03.53.23. Impacted is the function formSetPPTPServer of the...
CVE-2026-13500HIGH7.3A weakness has been identified in antlr ANTLR4 up to 4.13.2. Affected is an unknown function of the file tool/src/org/an...
CVE-2026-13498HIGH7.3A vulnerability was identified in yashpokharna2555 restaurent-management-system. This affects an unknown function of the...
CVE-2026-13488HIGH7.3A security flaw has been discovered in SourceCodester Class and Exam Timetabling System 1.0/7.php. Affected by this vuln...
CVE-2026-13487HIGH7.3A vulnerability was identified in SourceCodester Class and Exam Timetabling System 1.0. Affected is an unknown function ...
CVE-2026-13486HIGH7.3A vulnerability was determined in SourceCodester Class and Exam Timetabling System 1.0/6.php. This impacts an unknown fu...
CVE-2026-13485HIGH7.3A vulnerability was found in SourceCodester Class and Exam Timetabling System 1.0. This affects an unknown function of t...
CVE-2026-13484HIGH8.8A vulnerability has been found in MLflow up to 4666cffc7912ea606d592fc38d6a75e2935f65e7. The impacted element is an unkn...
CVE-2026-10646HIGH7.4Zephyr's BSD-sockets getaddrinfo() implementation (subsys/net/lib/sockets/getaddrinfo.c) passes a pointer to a stack-all...
CVE-2026-58056HIGH7.6RustDesk gates incoming control messages on per-capability flags rather than on the session's authorized connection type...
CVE-2026-58051HIGH8.3libssh2 through 1.11.1 grows its publickey list with SSH2_REALLOC but does not zero-initialize new entries before parsin...
CVE-2026-58050HIGH7.5libssh2 through 1.11.1 reads an attacker-controlled 32-bit attribute count from a publickey-subsystem response and uses ...
CVE-2026-58049HIGH8.6FFmpeg's RASC video decoder (decode_dlta in libavcodec/rasc.c) performs 32-bit reads and writes at the row cursor before...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now