2026 CVE Vulnerabilities
51,445 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-31694 | HIGH | 7.8 | 0.1% | May 1, 2026 | In the Linux kernel, the following vulnerability has been resolved: fuse: reject oversized dirents in page cache fuse_... |
| CVE-2026-7579 | HIGH | 7.3 | 0.3% | May 1, 2026 | A security vulnerability has been detected in AstrBotDevs AstrBot up to 4.16.0. This issue affects some unknown processi... |
| CVE-2026-3772 | HIGH | 8.8 | 0.2% | May 1, 2026 | The WP Editor plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.2... |
| CVE-2026-42404 | HIGH | 7.2 | 0.5% | May 1, 2026 | Apache Neethi does not impose any restrictions on URIs when manually fetching remote policy references through the Polic... |
| CVE-2026-43003 | HIGH | 7.5 | 0.8% | May 1, 2026 | An issue was discovered in OpenStack ironic-python-agent 1.0.0 through 11.5.0. Ironic Python Agent (IPA) sometimes execu... |
| CVE-2026-43001 | HIGH | 8 | 0.5% | May 1, 2026 | An issue was discovered in OpenStack Keystone before 29.0.2. POST /v3/credentials did not validate that the caller-suppl... |
| CVE-2026-42403 | HIGH | 7.5 | 0.8% | May 1, 2026 | Apache Neethi does not properly detect circular references in policy definitions. When a WS-Policy document contains cir... |
| CVE-2026-42402 | HIGH | 7.5 | 0.7% | May 1, 2026 | Apache Neethi is vulnerable to a Denial of Service attack through algorithmic complexity in policy normalization. Specia... |
| CVE-2026-7584 | HIGH | 8.4 | 0.3% | May 1, 2026 | The LabOne Q serialization framework uses a class-loading mechanism (import_cls) to dynamically import and instantiate P... |
| CVE-2026-7555 | HIGH | 7.3 | 0.3% | May 1, 2026 | A vulnerability was identified in itsourcecode Electronic Judging System 1.0. This affects an unknown part of the file /... |
| CVE-2026-7554 | HIGH | 8.1 | 1.1% | May 1, 2026 | A vulnerability was determined in D-Link M60 up to 1.20B02. Affected by this issue is some unknown functionality of the ... |
| CVE-2026-7550 | HIGH | 7.3 | 0.3% | May 1, 2026 | A vulnerability has been found in SourceCodester Pharmacy Sales and Inventory System 1.0. Affected is an unknown functio... |
| CVE-2026-7549 | HIGH | 7.3 | 0.3% | May 1, 2026 | A flaw has been found in SourceCodester Pharmacy Sales and Inventory System 1.0. This impacts an unknown function of the... |
| CVE-2026-7548 | HIGH | 8.8 | 1.5% | May 1, 2026 | A vulnerability was detected in Totolink NR1800X 9.1.0u.6279_B20210910. This affects the function sub_41A68C of the file... |
| CVE-2026-7545 | HIGH | 7.3 | 0.3% | May 1, 2026 | A weakness has been identified in SourceCodester Advanced School Management System 1.0. The affected element is an unkno... |
| CVE-2026-7519 | HIGH | 7.3 | 0.4% | May 1, 2026 | A vulnerability has been found in Fujian Apex LiveBOS up to 2.0. Impacted is an unknown function of the file /feed/Uploa... |
| CVE-2026-7513 | HIGH | 8.8 | 0.5% | May 1, 2026 | A vulnerability has been found in UTT HiPER 1200GW up to 2.5.3-170306. The impacted element is the function strcpy of th... |
| CVE-2026-7512 | HIGH | 8.8 | 0.5% | May 1, 2026 | A flaw has been found in UTT HiPER 1200GW up to 2.5.3-1703. The affected element is the function strcpy of the file /gof... |
| CVE-2026-5656 | HIGH | 7.8 | 0.2% | May 1, 2026 | Profile import path traversal in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service and possible code... |
| CVE-2026-5405 | HIGH | 7.8 | 0.2% | May 1, 2026 | RDP protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service and possible code ... |
| CVE-2026-5403 | HIGH | 7.8 | 0.2% | May 1, 2026 | SBC codec crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service and possible code execution |
| CVE-2026-7506 | HIGH | 7.3 | 0.3% | Apr 30, 2026 | A vulnerability has been found in SourceCodester Hotel Management System 1.0. This impacts an unknown function of the fi... |
| CVE-2026-7505 | HIGH | 7.3 | 0.4% | Apr 30, 2026 | A flaw has been found in nextlevelbuilder GoClaw and GoClaw Lite up to 3.8.5. This affects an unknown function of the co... |
| CVE-2026-7551 | HIGH | 8.8 | 0.6% | Apr 30, 2026 | HKUDS OpenHarness contains a remote code execution vulnerability in the /bridge slash command that allows remote senders... |
| CVE-2026-7503 | HIGH | 8.8 | 0.4% | Apr 30, 2026 | A vulnerability was detected in code-projects for Plugin 4.1.2cu.5137. The impacted element is the function setWiFiMulti... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now