2026 CVE Vulnerabilities
43,274 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-16297 | MEDIUM | 4.1 | 0.2% | Aug 3, 2026 | The Clearfy Cache WordPress plugin before 2.4.3 does not restrict the classes allowed when unserializing settings-impor... |
| CVE-2026-16289 | MEDIUM | 4.3 | 0.1% | Aug 3, 2026 | The ProfileGrid WordPress plugin before 6.0.0.0 does not perform authorization checks when listing a group's pending me... |
| CVE-2026-16057 | MEDIUM | 6.5 | 0.1% | Aug 3, 2026 | The Contest Gallery WordPress plugin before 30.0.7 does not perform per-object capability or nonce checks in one of its... |
| CVE-2026-15931 | MEDIUM | 6.1 | 0.2% | Aug 3, 2026 | The Simple Membership WordPress plugin before 4.7.8 does not sanitise a subscriber name value received from an unauthent... |
| CVE-2026-15383 | MEDIUM | 6.1 | 0.2% | Aug 3, 2026 | The Blog Floating Button WordPress plugin through 1.4.20 does not sanitize or escape the visitor User-Agent header, whic... |
| CVE-2026-15260 | MEDIUM | 4.3 | 0.1% | Aug 3, 2026 | The GEO my WP WordPress plugin before 4.5.5.3 does not perform any ownership or capability check on two of its logged-in... |
| CVE-2026-15254 | MEDIUM | 6.5 | 0.1% | Aug 3, 2026 | The Simply Schedule Appointments WordPress plugin before 1.6.12.11 does not perform a capability check on an administrat... |
| CVE-2026-13340 | MEDIUM | 6.1 | 0.2% | Aug 3, 2026 | The SVG Support WordPress plugin before 2.5.17 does not apply its SVG sanitisation to uploaded files using the .svgz ext... |
| CVE-2026-6695 | MEDIUM | 5.5 | 0.2% | Aug 3, 2026 | A flaw was found in GIMP. A remote attacker could exploit this by tricking a user into opening a specially crafted PAA (... |
| CVE-2026-6694 | MEDIUM | 5.5 | 0.1% | Aug 3, 2026 | A flaw was found in GIMP's file-png plugin. A remote attacker can exploit this by crafting a malicious Animated Portable... |
| CVE-2026-18585 | MEDIUM | 5.3 | 0.3% | Aug 3, 2026 | A vulnerability was detected in GL.iNet MT3000, MT6000, BE9300, BE3600, MT3600BE, E5800, BE6500, MT5000, X3000, XE3000 a... |
| CVE-2026-18584 | MEDIUM | 5.4 | 0.2% | Aug 3, 2026 | A security vulnerability has been detected in GL.iNet E5800, E750, X2000, X3000, XE3000 and XE300 up to 20260707. Impact... |
| CVE-2026-18583 | MEDIUM | 5.5 | 0.5% | Aug 3, 2026 | A weakness has been identified in mz-automation libiec61850 up to 1.6.1. This issue affects the function checkDataSetAcc... |
| CVE-2026-13586 | MEDIUM | 5.3 | 0.3% | Aug 3, 2026 | In Bouncy Castle for Java before 1.85, PKCS#12 MAC and bag-decryption KDF iteration-count bound (DoS). This issue also a... |
| CVE-2026-58063 | MEDIUM | 5.3 | 0.3% | Aug 3, 2026 | In Bouncy Castle for Java before 1.85, BCFKS keystore load honours unbounded KDF cost from untrusted file. This issue al... |
| CVE-2026-20498 | MEDIUM | 6 | 0.1% | Aug 3, 2026 | In geniezone, there is a possible escalation of privilege due to a missing permission check. This could lead to local es... |
| CVE-2026-20497 | MEDIUM | 6 | 0.1% | Aug 3, 2026 | In geniezone, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation... |
| CVE-2026-20496 | MEDIUM | 4.4 | 0.1% | Aug 3, 2026 | In geniezone, there is a possible out of bounds read due to a missing bounds check. This could lead to local information... |
| CVE-2026-20494 | MEDIUM | 5.5 | 0.1% | Aug 3, 2026 | In wifi, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disc... |
| CVE-2026-20493 | MEDIUM | 4.4 | 0.1% | Aug 3, 2026 | In wifi, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of servi... |
| CVE-2026-20492 | MEDIUM | 5.5 | 0.1% | Aug 3, 2026 | In Audio HAL, there is a possible system becoming unresponsive due to a race condition. This could lead to local denial ... |
| CVE-2026-20491 | MEDIUM | 5.5 | 0.1% | Aug 3, 2026 | In med, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local denial of ser... |
| CVE-2026-20490 | MEDIUM | 4.4 | 0.1% | Aug 3, 2026 | In ccci, there is a possible out of bounds read due to a missing bounds check. This could lead to local denial of servic... |
| CVE-2026-20489 | MEDIUM | 4.4 | 0.1% | Aug 3, 2026 | In display, there is a possible information disclosure due to an integer overflow. This could lead to local information ... |
| CVE-2026-20488 | MEDIUM | 4.4 | 0.1% | Aug 3, 2026 | In display, there is a possible information disclosure due to a missing bounds check. This could lead to local informati... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now