2026 CVE Vulnerabilities
64,785 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-12717 | CRITICAL | 9.4 | 0.5% | Aug 26, 2026 | An Improper Input Validation vulnerability in CData JDBC driver integration in Google Cloud BigQuery Data Transfer Servi... |
| CVE-2026-80203 | CRITICAL | 9.8 | 0.4% | Aug 26, 2026 | The getgrav/grav-plugin-api plugin before 1.0.18 does not enforce API-key scope in the requireNotSuperTarget() function ... |
| CVE-2026-77557 | CRITICAL | 9.8 | 0.3% | Aug 26, 2026 | A malicious actor with access to the network could exploit an Improper Access Control vulnerability found in UniFi Prote... |
| CVE-2026-77554 | CRITICAL | 10 | 1.0% | Aug 26, 2026 | A malicious actor with access to the network could exploit an Improper Input Validation vulnerability found in UniFi Tal... |
| CVE-2026-77553 | CRITICAL | 9.9 | 0.2% | Aug 26, 2026 | A malicious actor with access to the network and low privileges could exploit an Improper Access Control vulnerability f... |
| CVE-2026-77552 | CRITICAL | 9.8 | 0.9% | Aug 26, 2026 | A malicious actor with access to the network could exploit an Improper Input Validation vulnerability found in UniFi Ent... |
| CVE-2026-77551 | CRITICAL | 9 | 0.2% | Aug 26, 2026 | A malicious actor with access to the network and under certain conditions could exploit an Improper Access Control vulne... |
| CVE-2026-77550 | CRITICAL | 10 | 0.4% | Aug 26, 2026 | A malicious actor with access to the network could exploit an Improper Neutralization of CRLF Sequences vulnerability fo... |
| CVE-2026-77549 | CRITICAL | 9 | 0.3% | Aug 26, 2026 | A malicious actor with access to the network and under certain conditions could exploit an Improper Neutralization of CR... |
| CVE-2026-77548 | CRITICAL | 9.9 | 0.8% | Aug 26, 2026 | A malicious actor with access to the network and low privileges could exploit an Improper Input Validation vulnerability... |
| CVE-2026-77547 | CRITICAL | 9.9 | 0.8% | Aug 26, 2026 | A malicious actor with access to the network and low privileges could exploit an Improper Input Validation vulnerability... |
| CVE-2026-77546 | CRITICAL | 9.9 | 0.8% | Aug 26, 2026 | A malicious actor with access to the network and low privileges could exploit an Improper Input Validation vulnerability... |
| CVE-2026-77532 | CRITICAL | 9.6 | 0.3% | Aug 26, 2026 | A malicious actor with access to an adjacent network could exploit a Buffer Overflow vulnerability found in a DHCPv6-ena... |
| CVE-2026-18080 | CRITICAL | 9.8 | — | Aug 26, 2026 | The ERP: Complete HR, Accounting & CRM Suite Built for WooCommerce plugin for WordPress is vulnerable to Unrestricted Fi... |
| CVE-2026-80349 | CRITICAL | 9.8 | 0.5% | Aug 26, 2026 | TarsWeb decides whether a request comes from a trusted local caller using a client-controlled header. app.js sets Koa's ... |
| CVE-2026-77545 | CRITICAL | 9 | 0.2% | Aug 26, 2026 | A malicious actor with access to the network, low privileges and under certain conditions could exploit an Active Debug ... |
| CVE-2026-77543 | CRITICAL | 9.9 | 0.8% | Aug 26, 2026 | A malicious actor with access to the network and low privileges could exploit an Improper Input Validation vulnerability... |
| CVE-2026-77542 | CRITICAL | 9.1 | 0.8% | Aug 26, 2026 | A malicious actor with access to the network and high privileges could exploit an Improper Input Validation vulnerabilit... |
| CVE-2026-77541 | CRITICAL | 9.1 | 0.3% | Aug 26, 2026 | A malicious actor with access to the network and high privileges could exploit an Improper Access Control vulnerability ... |
| CVE-2026-77540 | CRITICAL | 9.1 | 0.8% | Aug 26, 2026 | A malicious actor with access to the network and high privileges could exploit an Improper Input Validation vulnerabilit... |
| CVE-2026-77539 | CRITICAL | 9.1 | 0.8% | Aug 26, 2026 | A malicious actor with access to the network and high privileges could exploit an Improper Input Validation vulnerabilit... |
| CVE-2026-77537 | CRITICAL | 10 | 0.9% | Aug 26, 2026 | A malicious actor with access to the network could exploit an Improper Input Validation vulnerability found in UniFi Pro... |
| CVE-2026-77536 | CRITICAL | 9.9 | 0.2% | Aug 26, 2026 | A malicious actor with access to the network and low privileges could exploit an Improper Access Control vulnerability f... |
| CVE-2026-77535 | CRITICAL | 9.1 | 0.8% | Aug 26, 2026 | A malicious actor with access to the network and high privileges could exploit an Improper Input Validation vulnerabilit... |
| CVE-2026-77534 | CRITICAL | 9.9 | 0.2% | Aug 26, 2026 | A malicious actor with access to the network and low privileges could exploit an Improper Access Control vulnerability f... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now