2026 CVE Vulnerabilities
53,401 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-33479 | HIGH | 8.8 | 0.5% | Mar 23, 2026 | WWBN AVideo is an open source video platform. In versions up to and including 26.0, the Gallery plugin's `saveSort.json.... |
| CVE-2026-31847 | HIGH | 8.8 | 0.4% | Mar 23, 2026 | Hidden functionality in the /goform/setSysTools endpoint in Nexxt Solutions Nebula 300+ firmware through version 12.01.0... |
| CVE-2026-1958 | HIGH | 8.7 | 0.3% | Mar 23, 2026 | Use of hard-coded credentials in Klinika XP and KlinikaXP Insertino allowed an unauthorized attacker access to several i... |
| CVE-2026-32969 | HIGH | 7.5 | 0.4% | Mar 23, 2026 | An unauthenticated remote attacker can exploit a Pre-Auth blind SQL Injection vulnerability in the userinfo endpoint’s a... |
| CVE-2026-31846 | HIGH | 7.1 | 0.3% | Mar 23, 2026 | Missing authentication in the /goform/ate endpoint in Nexxt Solutions Nebula 300+ firmware through version 12.01.01.37 a... |
| CVE-2026-23555 | HIGH | 7.1 | 0.2% | Mar 23, 2026 | Any guest issuing a Xenstore command accessing a node using the (illegal) node path "/local/domain/", will crash xenstor... |
| CVE-2026-23554 | HIGH | 7.8 | 0.1% | Mar 23, 2026 | The Intel EPT paging code uses an optimization to defer flushing of any cached EPT state until the p2m lock is dropped, ... |
| CVE-2026-4602 | HIGH | 7.5 | 0.5% | Mar 23, 2026 | Versions of the package jsrsasign before 11.1.1 are vulnerable to Incorrect Conversion between Numeric Types due to hand... |
| CVE-2026-4598 | HIGH | 7.5 | 0.5% | Mar 23, 2026 | Versions of the package jsrsasign before 11.1.1 are vulnerable to Infinite loop via the bnModInverse function in ext/jsb... |
| CVE-2026-4570 | HIGH | 8.8 | 0.3% | Mar 23, 2026 | A vulnerability was identified in SourceCodester Sales and Inventory System 1.0. Affected is an unknown function of the ... |
| CVE-2026-4566 | HIGH | 8.8 | 0.7% | Mar 23, 2026 | A flaw has been found in Belkin F9K1122 1.00.33. The affected element is the function formWISP5G of the file /goform/for... |
| CVE-2026-4565 | HIGH | 8.8 | 0.9% | Mar 23, 2026 | A vulnerability was detected in Tenda AC21 16.03.08.16. Impacted is the function formSetQosBand of the file /goform/SetN... |
| CVE-2026-4562 | HIGH | 7.3 | 0.5% | Mar 23, 2026 | A security flaw has been discovered in MacCMS 2025.1000.4052. This affects an unknown part of the file application/api/c... |
| CVE-2026-2580 | HIGH | 7.5 | 0.4% | Mar 23, 2026 | The WP Maps – Store Locator,Google Maps,OpenStreetMap,Mapbox,Listing,Directory & Filters plugin for WordPress is vulnera... |
| CVE-2026-4558 | HIGH | 8.8 | 3.6% | Mar 22, 2026 | A flaw has been found in Linksys MR9600 2.0.6.206937. Affected is the function smartConnectConfigure of the file SmartCo... |
| CVE-2026-4555 | HIGH | 8.8 | 0.7% | Mar 22, 2026 | A weakness has been identified in D-Link DIR-513 1.10. The impacted element is the function formEasySetTimezone of the f... |
| CVE-2026-4554 | HIGH | 8.8 | 3.4% | Mar 22, 2026 | A security flaw has been discovered in Tenda F453 1.0.0.3. The affected element is the function FormWriteFacMac of the f... |
| CVE-2026-33319 | HIGH | 7.5 | 0.3% | Mar 22, 2026 | WWBN AVideo is an open source video platform. Prior to version 26.0, the `uploadVideoToLinkedIn()` method in the SocialM... |
| CVE-2026-33293 | HIGH | 8.1 | 0.5% | Mar 22, 2026 | WWBN AVideo is an open source video platform. Prior to version 26.0, the `deleteDump` parameter in `plugin/CloneSite/clo... |
| CVE-2026-33292 | HIGH | 7.5 | 0.7% | Mar 22, 2026 | WWBN AVideo is an open source video platform. Prior to version 26.0, the HLS streaming endpoint (`view/hls.php`) is vuln... |
| CVE-2026-4553 | HIGH | 8.8 | 0.7% | Mar 22, 2026 | A vulnerability was identified in Tenda F453 1.0.0.3. Impacted is the function fromNatlimit of the file /goform/Natlimit... |
| CVE-2026-4552 | HIGH | 8.8 | 0.6% | Mar 22, 2026 | A vulnerability was determined in Tenda F453 1.0.0.3. This issue affects the function fromVirtualSer of the file /goform... |
| CVE-2026-4551 | HIGH | 8.8 | 0.6% | Mar 22, 2026 | A vulnerability was found in Tenda F453 1.0.0.3. This vulnerability affects the function fromSafeClientFilter of the fil... |
| CVE-2026-4546 | HIGH | 7.3 | 0.2% | Mar 22, 2026 | A weakness has been identified in Flos Freeware Notepad2 4.2.25. This impacts an unknown function in the library TextSha... |
| CVE-2026-4545 | HIGH | 7.3 | 0.1% | Mar 22, 2026 | A security flaw has been discovered in Flos Freeware Notepad2 4.2.25. This affects an unknown function in the library PR... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now