2026 CVE Vulnerabilities
51,080 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-8260 | HIGH | 8.8 | 1.0% | May 11, 2026 | A vulnerability was found in D-Link DCS-935L up to 1.10.01. The impacted element is the function SetDeviceSettings of th... |
| CVE-2026-8259 | HIGH | 7.2 | 4.4% | May 11, 2026 | A vulnerability has been found in Tenda AC6 2.0/15.03.06.23. The affected element is an unknown function of the file /go... |
| CVE-2026-8177 | HIGH | 7.5 | 0.6% | May 10, 2026 | XML::LibXML versions through 2.0210 for Perl read out-of-bounds heap memory when parsing XML node names containing trunc... |
| CVE-2026-45180 | HIGH | 7.5 | 0.2% | May 10, 2026 | Catalyst::Plugin::Statsd versions through 0.10.0 for Perl may leak session ids. If the communication channel to the sta... |
| CVE-2026-8234 | HIGH | 8.8 | 0.5% | May 10, 2026 | A security vulnerability has been detected in EFM ipTIME A8004T 14.18.2. This vulnerability affects the function formWif... |
| CVE-2026-45186 | HIGH | 7.5 | 0.4% | May 10, 2026 | In libexpat before 2.8.1, the computational complexity of attribute name collision checks allows a denial of service via... |
| CVE-2026-7263 | HIGH | 7.5 | 0.4% | May 10, 2026 | In PHP versions 8.4.* before 8.4.21 and 8.5.* before 8.5.6, DOMNode::C14N() method may process the XML data incorrectly,... |
| CVE-2026-8230 | HIGH | 8.8 | 4.9% | May 10, 2026 | A flaw has been found in Wavlink NU516U1 240425. The impacted element is the function sys_login1 of the file /cgi-bin/lo... |
| CVE-2026-8229 | HIGH | 8.8 | 4.9% | May 10, 2026 | A vulnerability was detected in Wavlink NU516U1 240425. The affected element is the function WifiBasic of the file /cgi-... |
| CVE-2026-8228 | HIGH | 8.8 | 4.8% | May 10, 2026 | A security vulnerability has been detected in Wavlink NU516U1 240425. Impacted is the function advance of the file /cgi-... |
| CVE-2026-8227 | HIGH | 8.8 | 4.9% | May 10, 2026 | A weakness has been identified in Wavlink NU516U1 240425. This issue affects the function wzdapMesh of the file /cgi-bin... |
| CVE-2026-8226 | HIGH | 7.5 | 0.5% | May 10, 2026 | A security flaw has been discovered in Open5GS up to 2.7.7. This vulnerability affects the function ogs_pcc_rule_install... |
| CVE-2026-8225 | HIGH | 7.5 | 0.5% | May 10, 2026 | A vulnerability was identified in Open5GS up to 2.7.7. This affects the function pcf_npcf_smpolicycontrol_handle_delete ... |
| CVE-2026-7568 | HIGH | 7.5 | 0.5% | May 10, 2026 | In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.21, and 8.5.* before 8.5.6, the metaphone() f... |
| CVE-2026-7262 | HIGH | 7.5 | 0.8% | May 10, 2026 | In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.21, and 8.5.* before 8.5.6, when a SOAP serve... |
| CVE-2026-7258 | HIGH | 7.5 | 0.3% | May 10, 2026 | In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.21, and 8.5.* before 8.5.6, some functions, i... |
| CVE-2026-8224 | HIGH | 7.5 | 0.5% | May 10, 2026 | A vulnerability was determined in Open5GS up to 2.7.7. Affected by this issue is the function pcf_sess_set_ipv6prefix of... |
| CVE-2026-8223 | HIGH | 7.5 | 0.5% | May 10, 2026 | A vulnerability was found in Open5GS up to 2.7.7. Affected by this vulnerability is the function pcf_sess_sbi_discover_a... |
| CVE-2026-8222 | HIGH | 7.5 | 0.5% | May 10, 2026 | A vulnerability has been found in Open5GS up to 2.7.7. Affected is the function pcf_nbsf_management_handle_register of t... |
| CVE-2026-8216 | HIGH | 7.3 | 0.4% | May 10, 2026 | A vulnerability was identified in Industrial Application Software IAS Canias ERP 8.03. This issue affects the function i... |
| CVE-2026-42606 | HIGH | 8.8 | 0.5% | May 9, 2026 | AzuraCast is a self-hosted, all-in-one web radio management suite. Prior to version 0.23.6, the ApplyXForwarded middlewa... |
| CVE-2026-42605 | HIGH | 8.8 | 0.8% | May 9, 2026 | AzuraCast is a self-hosted, all-in-one web radio management suite. Prior to version 0.23.6, the currentDirectory request... |
| CVE-2026-42575 | HIGH | 7.5 | 0.2% | May 9, 2026 | apko allows users to build and publish OCI container images built from apk packages. Prior to version 1.2.7, apko verifi... |
| CVE-2026-42574 | HIGH | 7.5 | 0.4% | May 9, 2026 | apko allows users to build and publish OCI container images built from apk packages. From version 0.14.8 to before versi... |
| CVE-2026-42562 | HIGH | 8.3 | 0.3% | May 9, 2026 | Plainpad is a self hosted note taking app. Prior to version 1.1.1, Plainpad allows a low-privilege authenticated user to... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now