2026 CVE Vulnerabilities
48,280 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-56245 | HIGH | 8.8 | 0.3% | Jun 24, 2026 | Supabase Capgo before 12.128.2 contains an authorization bypass vulnerability in the SECURITY DEFINER record_build_time ... |
| CVE-2026-56244 | HIGH | 7.1 | 0.2% | Jun 24, 2026 | Capgo before 12.128.2 allows non-admin API keys to read webhook signing secrets via Supabase REST due to insufficient ro... |
| CVE-2026-56232 | HIGH | 8.8 | 0.3% | Jun 24, 2026 | Capgo before 12.128.2 fails to enforce limited_to_orgs and limited_to_apps constraints on subkeys provided via x-limited... |
| CVE-2026-56231 | HIGH | 7.6 | 0.2% | Jun 24, 2026 | Capgo before 12.128.2 contains a broken object level authorization (BOLA) vulnerability in the POST /build/start/:jobId ... |
| CVE-2026-12242 | HIGH | 8.8 | 0.5% | Jun 24, 2026 | The AdRotate Banner Manager plugin for WordPress is vulnerable to PHP Code Injection in all versions up to, and includin... |
| CVE-2026-52943 | HIGH | 7.8 | 0.2% | Jun 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: net: skbuff: fix missing zerocopy reference in pskb... |
| CVE-2026-10745 | HIGH | 7.9 | 0.3% | Jun 24, 2026 | Improper output neutralization for logs vulnerability in upKeeper Solutions upKeeper Instant Privilege Access on Windows... |
| CVE-2026-7761 | HIGH | 8.8 | 0.5% | Jun 24, 2026 | The Ultimate Member plugin for WordPress is vulnerable to Account Takeover via Password Reset Link Disclosure in all ver... |
| CVE-2026-56052 | HIGH | 7.6 | 0.2% | Jun 24, 2026 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in FunnelKit Funnel B... |
| CVE-2026-52942 | HIGH | 7.1 | 0.1% | Jun 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_log: validate MAC header was set befo... |
| CVE-2026-52935 | HIGH | 7.8 | 0.1% | Jun 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: xfrm: espintcp: do not reuse an in-progress partial... |
| CVE-2026-52934 | HIGH | 8.8 | 0.2% | Jun 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: batman-adv: tvlv: reject oversized TVLV packets ba... |
| CVE-2026-52933 | HIGH | 7.8 | 0.1% | Jun 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: io_uring/poll: fix signed comparison in io_poll_get... |
| CVE-2026-52932 | HIGH | 7.5 | 0.3% | Jun 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: xfrm: ipcomp: Free destination pages on acomp error... |
| CVE-2026-52929 | HIGH | 7.5 | 0.4% | Jun 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: sctp: stream: fully roll back denied add-stream sta... |
| CVE-2026-52927 | HIGH | 7.8 | 0.1% | Jun 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: netfilter: ebtables: fix OOB read in compat_mtw_fro... |
| CVE-2026-52923 | HIGH | 7.8 | 0.1% | Jun 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: ipc: limit next_id allocation to the valid ID range... |
| CVE-2026-52922 | HIGH | 7.5 | 0.4% | Jun 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: batman-adv: dat: handle forward allocation error b... |
| CVE-2026-52920 | HIGH | 8.3 | 0.3% | Jun 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: netfilter: xt_policy: fix strict mode inbound polic... |
| CVE-2026-52919 | HIGH | 7.8 | 0.1% | Jun 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: batman-adv: fix tp_meter counter underflow during s... |
| CVE-2026-52918 | HIGH | 8.8 | 0.3% | Jun 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: serialize accept_q access bt_sock_poll(... |
| CVE-2026-52917 | HIGH | 7.1 | 0.1% | Jun 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: sctp: diag: reject stale associations in dump_one p... |
| CVE-2026-52915 | HIGH | 7.1 | 0.1% | Jun 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: netfilter: ip6t_hbh: reject oversized option lists ... |
| CVE-2026-52912 | HIGH | 7.8 | 0.1% | Jun 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_queue: hold bridge skb->dev while que... |
| CVE-2026-9710 | HIGH | 7.7 | 0.2% | Jun 24, 2026 | The Cornerstone WordPress plugin before 7.8.8 does not enforce capability checks on one of its CSS-preview request handl... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now