2026 CVE Vulnerabilities

53,423 CVEs published in 2026.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2026-4493HIGH8.8A vulnerability was determined in Tenda A18 Pro 02.03.02.28. The impacted element is the function sub_423B50 of the file...
CVE-2026-4492HIGH8.8A vulnerability was found in Tenda A18 Pro 02.03.02.28. The affected element is the function set_qosMib_list of the file...
CVE-2026-31836HIGH8.1Checkmate is an open-source, self-hosted tool designed to track and monitor server hardware, uptime, response times, and...
CVE-2026-4491HIGH8.8A vulnerability has been found in Tenda A18 Pro 02.03.02.28. Impacted is the function fromSetIpMacBind of the file /gofo...
CVE-2026-4490HIGH8.8A flaw has been found in Tenda A18 Pro 02.03.02.28. This issue affects the function setSchedWifi of the file /goform/ope...
CVE-2026-4489HIGH8.8A vulnerability was detected in Tenda A18 Pro 02.03.02.28. This vulnerability affects the function form_fast_setting_wif...
CVE-2026-4488HIGH8.8A vulnerability was identified in UTT HiPER 1250GW up to 3.2.7-210907-180535. Affected is the function strcpy of the fil...
CVE-2026-32989HIGH8.8Precurio Intranet Portal 4.4 contains a cross-site request forgery vulnerability that allows attackers to induce authent...
CVE-2026-4487HIGH8.8A vulnerability was determined in UTT HiPER 1200GW up to 2.5.3-170306. This impacts the function strcpy of the file /gof...
CVE-2026-4486HIGH8.8A vulnerability was found in D-Link DIR-513 1.10. This affects the function formEasySetPassword of the file /goform/form...
CVE-2026-4434HIGH8.1Improper certificate validation in the PAM propagation WinRM connections allows a network attacker to perform a man-in-...
CVE-2026-33134HIGH8.8WeGIA is a web manager for charitable institutions. Versions 3.6.5 and below contain an authenticated SQL Injection vuln...
CVE-2026-33133HIGH7.2WeGIA is a web manager for charitable institutions. In versions 3.6.5 and 3.6.6, the loadBackupDB() function imports SQL...
CVE-2026-33125HIGH8.1Frigate is a network video recorder (NVR) with realtime local object detection for IP cameras. In versions 0.16.2 and be...
CVE-2026-33124HIGH8.8Frigate is a network video recorder (NVR) with realtime local object detection for IP cameras. Versions prior to 0.17.0-...
CVE-2026-22324HIGH8.1Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in...
CVE-2026-33075HIGH8.8FastGPT is an AI Agent building platform. In versions 4.14.8.3 and below, the fastgpt-preview-image.yml workflow is vuln...
CVE-2026-33072HIGH7.5FileRise is a self-hosted web file manager / WebDAV server. In versions prior to 3.9.0, a hardcoded default encryption k...
CVE-2026-33071HIGH8.8FileRise is a self-hosted web file manager / WebDAV server. In versions prior to 3.8.0, the WebDAV upload endpoint accep...
CVE-2026-33069HIGH7.5PJSIP is a free and open source multimedia communication library written in C. Versions 2.16 and below have a cascading ...
CVE-2026-33068HIGH8.8Claude Code is an agentic coding tool. Versions prior to 2.1.53 resolved the permission mode from settings files, includ...
CVE-2026-32701HIGH7.5Qwik is a performance-focused JavaScript framework. Versions prior to 1.19.2 improperly inferred arrays from dotted form...
CVE-2026-23278HIGH7.8In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: always walk all pending catch...
CVE-2026-23275HIGH7.8In the Linux kernel, the following vulnerability has been resolved: io_uring: ensure ctx->rings is stable for task work...
CVE-2026-23274HIGH7.8In the Linux kernel, the following vulnerability has been resolved: netfilter: xt_IDLETIMER: reject rev0 reuse of ALARM...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now