2026 CVE Vulnerabilities
53,359 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-24928 | MEDIUM | 5.5 | 0.1% | Feb 6, 2026 | Out-of-bounds write vulnerability in the file system module. Impact: Successful exploitation of this vulnerability may a... |
| CVE-2026-24927 | MEDIUM | 5.5 | 0.1% | Feb 6, 2026 | Out-of-bounds access vulnerability in the frequency modulation module. Impact: Successful exploitation of this vulnerabi... |
| CVE-2026-24924 | MEDIUM | 5.5 | 0.1% | Feb 6, 2026 | Vulnerability of improper permission control in the print module. Impact: Successful exploitation of this vulnerability ... |
| CVE-2026-24920 | MEDIUM | 5.5 | 0.1% | Feb 6, 2026 | Permission control vulnerability in the AMS module. Impact: Successful exploitation of this vulnerability may affect ava... |
| CVE-2026-24931 | MEDIUM | 5.5 | 0.1% | Feb 6, 2026 | Vulnerability of improper criterion security check in the card module. Impact: Successful exploitation of this vulnerabi... |
| CVE-2026-24930 | MEDIUM | 5.5 | 0.1% | Feb 6, 2026 | UAF concurrency vulnerability in the graphics module. Impact: Successful exploitation of this vulnerability may affect a... |
| CVE-2026-24929 | MEDIUM | 4.4 | 0.1% | Feb 6, 2026 | Out-of-bounds read vulnerability in the graphics module. Impact: Successful exploitation of this vulnerability may affec... |
| CVE-2026-24926 | MEDIUM | 5.5 | 0.1% | Feb 6, 2026 | Out-of-bounds write vulnerability in the camera module. Impact: Successful exploitation of this vulnerability may affect... |
| CVE-2026-24925 | MEDIUM | 5.5 | 0.1% | Feb 6, 2026 | Heap-based buffer overflow vulnerability in the image module. Impact: Successful exploitation of this vulnerability may ... |
| CVE-2026-24923 | MEDIUM | 5.5 | 0.1% | Feb 6, 2026 | Permission control vulnerability in the HDC module. Impact: Successful exploitation of this vulnerability may affect ser... |
| CVE-2026-24922 | MEDIUM | 5.5 | 0.1% | Feb 6, 2026 | Buffer overflow vulnerability in the HDC module. Impact: Successful exploitation of this vulnerability may affect availa... |
| CVE-2026-24919 | MEDIUM | 5.5 | 0.1% | Feb 6, 2026 | Out-of-bounds write vulnerability in the DFX module. Impact: Successful exploitation of this vulnerability may affect av... |
| CVE-2026-24918 | MEDIUM | 5.5 | 0.1% | Feb 6, 2026 | Address read vulnerability in the communication module. Impact: Successful exploitation of this vulnerability may affect... |
| CVE-2026-24917 | MEDIUM | 5.5 | 0.1% | Feb 6, 2026 | UAF vulnerability in the security module. Impact: Successful exploitation of this vulnerability may affect availability. |
| CVE-2026-24916 | MEDIUM | 5.5 | 0.1% | Feb 6, 2026 | Identity authentication bypass vulnerability in the window module. Impact: Successful exploitation of this vulnerability... |
| CVE-2026-24914 | MEDIUM | 5.5 | 0.1% | Feb 6, 2026 | Type confusion vulnerability in the camera module. Impact: Successful exploitation of this vulnerability may affect avai... |
| CVE-2026-1785 | MEDIUM | 4.3 | 0.2% | Feb 6, 2026 | The Code Snippets plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including,... |
| CVE-2026-1252 | MEDIUM | 6.4 | 0.2% | Feb 6, 2026 | The Events Listing Widget plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'Event URL' paramete... |
| CVE-2026-2010 | MEDIUM | 4.2 | 0.3% | Feb 6, 2026 | A vulnerability has been found in Sanluan PublicCMS up to 4.0.202506.d/5.202506.d/6.202506.d. Impacted is the function P... |
| CVE-2026-2009 | MEDIUM | 6.5 | 0.3% | Feb 6, 2026 | A flaw has been found in SourceCodester Gas Agency Management System 1.0. This issue affects some unknown processing of ... |
| CVE-2026-1279 | MEDIUM | 6.4 | 0.2% | Feb 6, 2026 | The Employee Directory plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'form_title' parameter ... |
| CVE-2026-1998 | MEDIUM | 5.5 | 0.2% | Feb 6, 2026 | A flaw has been found in micropython up to 1.27.0. This vulnerability affects the function mp_import_all of the file py/... |
| CVE-2026-1909 | MEDIUM | 6.4 | 0.2% | Feb 6, 2026 | The WaveSurfer-WP plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's audio shortcode in ... |
| CVE-2026-1888 | MEDIUM | 6.4 | 0.2% | Feb 6, 2026 | The Docus – YouTube Video Playlist plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'docusplayl... |
| CVE-2026-1808 | MEDIUM | 6.4 | 0.2% | Feb 6, 2026 | The Orange Confort+ accessibility toolbar for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scriptin... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now