2026 CVE Vulnerabilities
51,458 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-32344 | MEDIUM | 4.3 | 0.1% | Mar 13, 2026 | Cross-Site Request Forgery (CSRF) vulnerability in desertthemes Corpiva corpiva allows Cross Site Request Forgery.This i... |
| CVE-2026-32343 | MEDIUM | 4.3 | 0.1% | Mar 13, 2026 | Cross-Site Request Forgery (CSRF) vulnerability in Magazine3 Easy Table of Contents easy-table-of-contents allows Cross ... |
| CVE-2026-32342 | MEDIUM | 4.3 | 0.1% | Mar 13, 2026 | Cross-Site Request Forgery (CSRF) vulnerability in Ays Pro Quiz Maker quiz-maker allows Cross Site Request Forgery.This ... |
| CVE-2026-32341 | MEDIUM | 5.3 | 0.2% | Mar 13, 2026 | Missing Authorization vulnerability in raratheme Benevolent benevolent allows Exploiting Incorrectly Configured Access C... |
| CVE-2026-32340 | MEDIUM | 5.3 | 0.2% | Mar 13, 2026 | Missing Authorization vulnerability in raratheme Business One Page business-one-page allows Exploiting Incorrectly Confi... |
| CVE-2026-32339 | MEDIUM | 5.3 | 0.2% | Mar 13, 2026 | Missing Authorization vulnerability in raratheme Bakes And Cakes bakes-and-cakes allows Exploiting Incorrectly Configure... |
| CVE-2026-32338 | MEDIUM | 5.3 | 0.2% | Mar 13, 2026 | Missing Authorization vulnerability in raratheme Construction Landing Page construction-landing-page allows Exploiting I... |
| CVE-2026-32337 | MEDIUM | 5.3 | 0.2% | Mar 13, 2026 | Missing Authorization vulnerability in raratheme Preschool and Kindergarten preschool-and-kindergarten allows Exploiting... |
| CVE-2026-32336 | MEDIUM | 5.3 | 0.2% | Mar 13, 2026 | Missing Authorization vulnerability in raratheme Rara Business rara-business allows Exploiting Incorrectly Configured Ac... |
| CVE-2026-32335 | MEDIUM | 5.3 | 0.2% | Mar 13, 2026 | Missing Authorization vulnerability in raratheme The Conference the-conference allows Exploiting Incorrectly Configured ... |
| CVE-2026-32334 | MEDIUM | 5.3 | 0.2% | Mar 13, 2026 | Missing Authorization vulnerability in raratheme JobScout jobscout allows Exploiting Incorrectly Configured Access Contr... |
| CVE-2026-32332 | MEDIUM | 5.3 | 0.2% | Mar 13, 2026 | Missing Authorization vulnerability in Ays Pro Easy Form easy-form allows Exploiting Incorrectly Configured Access Contr... |
| CVE-2026-32331 | MEDIUM | 5.4 | 0.2% | Mar 13, 2026 | Missing Authorization vulnerability in Israpil Textmetrics webtexttool allows Exploiting Incorrectly Configured Access C... |
| CVE-2026-32330 | MEDIUM | 4.3 | 0.1% | Mar 13, 2026 | Cross-Site Request Forgery (CSRF) vulnerability in 10Web Photo Gallery by 10Web photo-gallery allows Cross Site Request ... |
| CVE-2026-32329 | MEDIUM | 5.3 | 0.2% | Mar 13, 2026 | Missing Authorization vulnerability in Ays Pro Advanced Related Posts advanced-related-posts allows Exploiting Incorrect... |
| CVE-2026-32328 | MEDIUM | 5.4 | 0.1% | Mar 13, 2026 | Cross-Site Request Forgery (CSRF) vulnerability in shufflehound Lemmony lemmony allows Cross Site Request Forgery.This i... |
| CVE-2026-32322 | MEDIUM | 5.3 | 0.3% | Mar 13, 2026 | soroban-sdk is a Rust SDK for Soroban contracts. Prior to 22.0.11, 23.5.3, and 25.3.0, The Fr (scalar field) types for B... |
| CVE-2026-31949 | MEDIUM | 6.5 | 0.4% | Mar 13, 2026 | LibreChat is a ChatGPT clone with additional features. Prior to 0.8.3-rc1, a Denial of Service (DoS) vulnerability exist... |
| CVE-2026-31919 | MEDIUM | 4.3 | 0.3% | Mar 13, 2026 | Missing Authorization vulnerability in Josh Kohlbach Advanced Coupons for WooCommerce Coupons advanced-coupons-for-wooco... |
| CVE-2026-31918 | MEDIUM | 6.5 | 0.2% | Mar 13, 2026 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in immonex immonex Ki... |
| CVE-2026-31916 | MEDIUM | 5.3 | 0.2% | Mar 13, 2026 | Missing Authorization vulnerability in Iulia Cazan Latest Post Shortcode latest-post-shortcode allows Exploiting Incorre... |
| CVE-2026-31915 | MEDIUM | 5.3 | 0.2% | Mar 13, 2026 | Missing Authorization vulnerability in UX-themes Flatsome flatsome allows Exploiting Incorrectly Configured Access Contr... |
| CVE-2026-31864 | MEDIUM | 6.8 | 0.3% | Mar 13, 2026 | JumpServer is an open source bastion host and an operation and maintenance security audit system. a Server-Side Template... |
| CVE-2026-31798 | MEDIUM | 5 | 0.1% | Mar 13, 2026 | JumpServer is an open source bastion host and an operation and maintenance security audit system. Prior to v4.10.16-lts,... |
| CVE-2026-30961 | MEDIUM | 4.3 | 0.3% | Mar 13, 2026 | Gokapi is a self-hosted file sharing server with automatic expiration and encryption support. Prior to 2.2.4, the chunke... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now