2026 CVE Vulnerabilities

53,133 CVEs published in 2026.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2026-33456HIGH7.6Livestatus injection in the notification test mode in Checkmk <2.5.0b4 and <2.4.0p26 allows an authenticated user with a...
CVE-2026-6031HIGH7.3A vulnerability has been found in code-projects Simple IT Discussion Forum 1.0. This affects an unknown function of the ...
CVE-2026-5525HIGH7.8A stack-based buffer overflow vulnerability exists in Notepad++ version 8.9.3 in the file drop handler component. When a...
CVE-2026-22750HIGH7.5When configuring SSL bundles in Spring Cloud Gateway by using the configuration property spring.ssl.bundle, the configur...
CVE-2026-28704HIGH8.4Emocheck insecurely loads Dynamic Link Libraries (DLLs). If a crafted DLL file is placed to the same directory, an arbit...
CVE-2026-6016HIGH8.8A vulnerability was found in Tenda AC9 15.03.02.13. The affected element is the function decodePwd of the file /goform/W...
CVE-2026-6015HIGH8.8A vulnerability has been found in Tenda AC9 15.03.02.13. Impacted is the function formQuickIndex of the file /goform/Qui...
CVE-2026-5477HIGH7.5An integer overflow existed in the wolfCrypt CMAC implementation, that could be exploited to forge CMAC tags. The functi...
CVE-2026-6014HIGH8.8A flaw has been found in D-Link DIR-513 1.10. This issue affects the function formAdvanceSetup of the file /goform/formA...
CVE-2026-6013HIGH8.8A vulnerability was detected in D-Link DIR-513 1.10. This vulnerability affects the function formSetRoute of the file /g...
CVE-2026-6012HIGH8.8A security vulnerability has been detected in D-Link DIR-513 1.10. This affects the function formSetPassword of the file...
CVE-2026-6011HIGH8.1A weakness has been identified in OpenClaw up to 2026.1.26. Affected by this issue is some unknown functionality of the ...
CVE-2026-5501HIGH8.1wolfSSL_X509_verify_cert in the OpenSSL compatibility layer accepts a certificate chain in which the leaf's signature is...
CVE-2026-5479HIGH8.1In wolfSSL's EVP layer, the ChaCha20-Poly1305 AEAD decryption path in wolfSSL_EVP_CipherFinal (and related EVP cipher fi...
CVE-2026-5466HIGH8.1wolfSSL's ECCSI signature verifier `wc_VerifyEccsiHash` decodes the `r` and `s` scalars from the signature blob via `mp_...
CVE-2026-5188HIGH8.1An integer underflow issue exists in wolfSSL when parsing the Subject Alternative Name (SAN) extension of X.509 certific...
CVE-2026-6004HIGH7.3A vulnerability was detected in code-projects Simple IT Discussion Forum 1.0. Impacted is an unknown function of the fil...
CVE-2026-4351HIGH8.1The Perfmatters plugin for WordPress is vulnerable to arbitrary file overwrite via path traversal in all versions up to,...
CVE-2026-3360HIGH7.5The Tutor LMS – eLearning and online course solution plugin for WordPress is vulnerable to an Insecure Direct Object Ref...
CVE-2026-25203HIGH7.8Samsung MagicINFO 9 Server Incorrect Default Permissions Local Privilege Escalation Vulnerability This issue affects M...
CVE-2026-5992HIGH8.8A vulnerability was determined in Tenda F451 1.0.0.7. This affects the function fromP2pListFilter of the file /goform/P2...
CVE-2026-5991HIGH8.8A vulnerability was found in Tenda F451 1.0.0.7. Affected by this issue is the function formWrlExtraSet of the file /gof...
CVE-2026-5990HIGH8.8A vulnerability has been found in Tenda F451 1.0.0.7. Affected by this vulnerability is the function fromSafeEmailFilter...
CVE-2026-5989HIGH8.8A flaw has been found in Tenda F451 1.0.0.7. Affected is the function fromRouteStatic of the file /goform/RouteStatic. E...
CVE-2026-5988HIGH8.8A vulnerability was detected in Tenda F451 1.0.0.7. This impacts the function formWrlsafeset of the file /goform/AdvSetW...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now