2026 CVE Vulnerabilities
64,779 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-51736 | CRITICAL | 9.1 | 0.2% | Aug 31, 2026 | Incorrect access control in the clearSyslog function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attacke... |
| CVE-2026-51734 | CRITICAL | 9.8 | 0.2% | Aug 31, 2026 | Incorrect access control in the informSlaveUpdate function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated a... |
| CVE-2026-51733 | CRITICAL | 9.8 | 0.2% | Aug 31, 2026 | Incorrect access control in the FirmwareUpgrade function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated att... |
| CVE-2026-51731 | CRITICAL | 9.1 | 0.2% | Aug 31, 2026 | Incorrect access control in the delVlanCfg function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attacker... |
| CVE-2026-53552 | CRITICAL | 9.6 | 0.2% | Aug 31, 2026 | Goploy is an open-source automation deployment system. In versions 1.17.5 and prior, Project.AddFile, Project.EditFile, ... |
| CVE-2026-79748 | CRITICAL | 9.9 | 0.3% | Aug 31, 2026 | MCPHub is a unified hub for centrally managing and dynamically orchestrating multiple MCP servers/APIs into separate end... |
| CVE-2026-51730 | CRITICAL | 9.1 | — | Aug 31, 2026 | Incorrect access control in the delWiFiAclRules function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated att... |
| CVE-2026-51729 | CRITICAL | 9.1 | 0.2% | Aug 31, 2026 | Incorrect access control in the delDevice function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers... |
| CVE-2026-51728 | CRITICAL | 9.8 | 0.2% | Aug 31, 2026 | Incorrect access control in the UploadFirmwareFile function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated ... |
| CVE-2026-51726 | CRITICAL | 9.1 | 0.2% | Aug 31, 2026 | Incorrect access control in the delParentalRules function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated at... |
| CVE-2026-51725 | CRITICAL | 9.1 | — | Aug 31, 2026 | Incorrect access control in the NTPSyncWithHost function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated att... |
| CVE-2026-51724 | CRITICAL | 9.8 | 0.2% | Aug 31, 2026 | Incorrect access control in the delSmartQosCfg function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated atta... |
| CVE-2026-51723 | CRITICAL | 9.1 | 0.2% | Aug 31, 2026 | Incorrect access control in the UploadCustomModule function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated ... |
| CVE-2026-51722 | CRITICAL | 9.1 | 0.2% | Aug 31, 2026 | Incorrect access control in the setWiFiRepeaterCfg function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated ... |
| CVE-2026-51721 | CRITICAL | 9.1 | 0.2% | Aug 31, 2026 | Incorrect access control in the setPairCfg function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attacker... |
| CVE-2026-51720 | CRITICAL | 9.1 | — | Aug 31, 2026 | Incorrect access control in the delIpPortFilterRules function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticate... |
| CVE-2026-76133 | CRITICAL | 9.8 | 0.4% | Aug 31, 2026 | The affected Ebyte product uses a deprecated hashing algorithm in an authentication-related operation. Under conditi... |
| CVE-2026-73819 | CRITICAL | 9.8 | 0.5% | Aug 31, 2026 | The affected Ebyte product's vendor configuration utility permits access to administrative functions without verifyin... |
| CVE-2026-51718 | CRITICAL | 9.8 | — | Aug 31, 2026 | Incorrect access control in the delStaticDhcpRules function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated ... |
| CVE-2026-51717 | CRITICAL | 9.1 | — | Aug 31, 2026 | Incorrect access control in the setOpModeCfg function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attack... |
| CVE-2026-51715 | CRITICAL | 9.8 | 0.2% | Aug 31, 2026 | Incorrect access control in the delMacFilterRules function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated a... |
| CVE-2026-51713 | CRITICAL | 9.1 | 0.2% | Aug 31, 2026 | Incorrect access control in the setManualDialCfg function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated at... |
| CVE-2026-51711 | CRITICAL | 9.1 | — | Aug 31, 2026 | Incorrect access control in the setWiFiWpsStart function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated att... |
| CVE-2026-51710 | CRITICAL | 9.1 | — | Aug 31, 2026 | Incorrect access control in the setParentalRules function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated at... |
| CVE-2026-51709 | CRITICAL | 9.8 | — | Aug 31, 2026 | Incorrect access control in the setWiFiBasicCfg function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated att... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now