2026 CVE Vulnerabilities
50,000 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-32958 | MEDIUM | 6.9 | 0.2% | Apr 20, 2026 | SD-330AC and AMC Manager provided by silex technology, Inc. use a hard-coded cryptographic key. An administrative user m... |
| CVE-2026-32957 | MEDIUM | 6.9 | 0.3% | Apr 20, 2026 | SD-330AC and AMC Manager provided by silex technology, Inc. contain a missing authentication for critical function issue... |
| CVE-2026-6591 | MEDIUM | 4.3 | 0.4% | Apr 20, 2026 | A flaw has been found in ComfyUI up to 0.13.0. Affected is the function folder_paths.get_annotated_filepath of the file ... |
| CVE-2026-6590 | MEDIUM | 4.3 | 0.4% | Apr 20, 2026 | A vulnerability was detected in ComfyUI up to 0.13.0. This impacts the function get_model_preview of the file app/model_... |
| CVE-2026-6589 | MEDIUM | 4.3 | 0.2% | Apr 20, 2026 | A security vulnerability has been detected in ComfyUI up to 0.13.0. This affects the function create_origin_only_middlew... |
| CVE-2026-6588 | MEDIUM | 6.5 | 0.4% | Apr 20, 2026 | A weakness has been identified in serge-chat serge up to 1.4TB. The impacted element is the function download_model/dele... |
| CVE-2026-6587 | MEDIUM | 6.3 | 0.3% | Apr 20, 2026 | A security flaw has been discovered in vibrantlabsai RAGAS up to 0.4.3. The affected element is the function _try_proces... |
| CVE-2026-6586 | MEDIUM | 6.3 | 0.3% | Apr 20, 2026 | A vulnerability was identified in TransformerOptimus SuperAGI up to 0.0.14. Impacted is the function get_budget/update_b... |
| CVE-2026-6585 | MEDIUM | 5.4 | 0.3% | Apr 20, 2026 | A vulnerability was determined in TransformerOptimus SuperAGI up to 0.0.14. This issue affects the function update_organ... |
| CVE-2026-6584 | MEDIUM | 5.4 | 0.3% | Apr 20, 2026 | A vulnerability was found in TransformerOptimus SuperAGI up to 0.0.14. This vulnerability affects the function update_us... |
| CVE-2026-6583 | MEDIUM | 5.4 | 0.3% | Apr 19, 2026 | A vulnerability has been found in TransformerOptimus SuperAGI up to 0.0.14. This affects the function delete_api_key/edi... |
| CVE-2026-6579 | MEDIUM | 6.5 | 0.4% | Apr 19, 2026 | A weakness has been identified in liangliangyy DjangoBlog up to 2.1.0.0. This impacts an unknown function of the file bl... |
| CVE-2026-6578 | MEDIUM | 5.6 | 0.3% | Apr 19, 2026 | A security flaw has been discovered in liangliangyy DjangoBlog up to 2.1.0.0. This affects an unknown function of the fi... |
| CVE-2026-6576 | MEDIUM | 6.3 | 1.5% | Apr 19, 2026 | A vulnerability was determined in liangliangyy DjangoBlog up to 2.1.0.0. The affected element is the function CommandHan... |
| CVE-2026-6573 | MEDIUM | 6.3 | 0.3% | Apr 19, 2026 | A vulnerability was detected in PHPEMS 11.0. This affects the function temppage of the file /app/exam/controller/exams.m... |
| CVE-2026-6572 | MEDIUM | 5.6 | 0.3% | Apr 19, 2026 | A security vulnerability has been detected in Collabora KodExplorer up to 4.52. Affected by this issue is some unknown f... |
| CVE-2026-6571 | MEDIUM | 6.3 | 0.3% | Apr 19, 2026 | A weakness has been identified in kodcloud KodExplorer up to 4.52. Affected by this vulnerability is the function roleGr... |
| CVE-2026-6564 | MEDIUM | 4.3 | 0.3% | Apr 19, 2026 | A vulnerability was found in EMQ EMQX Enterprise up to 6.1.0. The impacted element is an unknown function of the compone... |
| CVE-2026-6561 | MEDIUM | 4.7 | 0.3% | Apr 19, 2026 | A vulnerability was detected in EyouCMS up to 1.7.1. This issue affects the function edit_adminlogo of the file applicat... |
| CVE-2026-6559 | MEDIUM | 5.3 | 0.3% | Apr 19, 2026 | A weakness has been identified in Wavlink WL-WN579A3 220323. This affects the function sub_401F80 of the file /cgi-bin/l... |
| CVE-2026-0868 | MEDIUM | 6.4 | 0.2% | Apr 19, 2026 | The EMC – Easily Embed Calendly Scheduling Features plugin for WordPress is vulnerable to Stored Cross-Site Scripting vi... |
| CVE-2026-40948 | MEDIUM | 5.4 | 0.3% | Apr 18, 2026 | The Keycloak authentication manager in `apache-airflow-providers-keycloak` did not generate or validate the OAuth 2.0 `s... |
| CVE-2026-2986 | MEDIUM | 6.4 | 0.3% | Apr 18, 2026 | The Contextual Related Posts plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'other_attributes... |
| CVE-2026-2505 | MEDIUM | 5.4 | 0.2% | Apr 18, 2026 | The Categories Images plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including... |
| CVE-2026-0894 | MEDIUM | 6.4 | 0.2% | Apr 18, 2026 | The Content Blocks (Custom Post Widget) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now