2026 CVE Vulnerabilities

55,518 CVEs published in 2026.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2026-3701HIGH8.8A security vulnerability has been detected in H3C Magic B1 up to 100R004. Affected by this vulnerability is the function...
CVE-2026-3704HIGH7.2A vulnerability has been found in Wavlink NU516U1 251208. This vulnerability affects the function sub_405B2C of the file...
CVE-2026-3700HIGH8.8A weakness has been identified in UTT HiPER 810G up to 1.7.7-171114. Affected is the function strcpy of the file /goform...
CVE-2026-3699HIGH8.8A security flaw has been discovered in UTT HiPER 810G up to 1.7.7-171114. This impacts the function strcpy of the file /...
CVE-2026-3698HIGH8.8A vulnerability was identified in UTT HiPER 810G up to 1.7.7-171114. This affects the function strcpy of the file /gofor...
CVE-2026-30910HIGH7.5Crypt::Sodium::XS versions through 0.001000 for Perl has potential integer overflows. Combined aead encryption, combine...
CVE-2026-3693HIGH7.3A flaw has been found in Shy2593666979 AgentChat up to 2.3.0. This issue affects the function get_user_info/update_user_...
CVE-2026-3679HIGH8.8A vulnerability was identified in Tenda FH451 1.0.0.9. Affected by this vulnerability is the function formQuickIndex of ...
CVE-2026-3678HIGH8.8A vulnerability was determined in Tenda FH451 1.0.0.9. Affected is the function sub_3C434 of the file /goform/AdvSetWan....
CVE-2026-3677HIGH8.8A vulnerability was found in Tenda FH451 1.0.0.9. This impacts the function fromSetCfm of the file /goform/setcfm. The m...
CVE-2026-30861HIGH8.8WeKnora is an LLM-powered framework designed for deep document understanding and semantic retrieval. From version 0.2.5 ...
CVE-2026-30858HIGH7.5WeKnora is an LLM-powered framework designed for deep document understanding and semantic retrieval. Prior to version 0....
CVE-2026-30856HIGH7.6WeKnora is an LLM-powered framework designed for deep document understanding and semantic retrieval. Prior to version 0....
CVE-2026-30855HIGH8.8WeKnora is an LLM-powered framework designed for deep document understanding and semantic retrieval. Prior to version 0....
CVE-2026-30852HIGH7.5Caddy is an extensible server platform that uses TLS by default. From version 2.7.5 to before version 2.11.2, the vars_r...
CVE-2026-30851HIGH8.8Caddy is an extensible server platform that uses TLS by default. From version 2.10.0 to before version 2.11.2, forward_a...
CVE-2026-30834HIGH7.5PinchTab is a standalone HTTP server that gives AI agents direct control over a Chrome browser. Prior to version 0.7.7, ...
CVE-2026-29784HIGH8.8Ghost is a Node.js content management system. From version 5.101.6 to 6.19.2, incomplete CSRF protections around /sessio...
CVE-2026-29779HIGH7.5UptimeFlare is a serverless uptime monitoring & status page solution, powered by Cloudflare Workers. Prior to commit 377...
CVE-2026-29194HIGH8.1Netmaker makes networks with WireGuard. Prior to version 1.5.0, the Authorize middleware in Netmaker incorrectly validat...
CVE-2026-3663HIGH7.1A vulnerability was found in xlnt-community xlnt up to 1.6.1. This issue affects the function xlnt::detail::compound_doc...
CVE-2026-29193HIGH8.2ZITADEL is an open source identity management platform. From version 4.0.0 to 4.12.0, a vulnerability in Zitadel's login...
CVE-2026-29192HIGH7.7ZITADEL is an open source identity management platform. From version 4.0.0 to 4.11.1, a vulnerability in Zitadel's login...
CVE-2026-3662HIGH7.2A vulnerability has been found in Wavlink WL-NU516U1 240425. This vulnerability affects the function usb_p910 of the fil...
CVE-2026-3661HIGH7.2A flaw has been found in Wavlink WL-NU516U1 240425. This affects the function ota_new_upgrade of the file /cgi-bin/adm.c...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now