2026 CVE Vulnerabilities
55,803 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-0008 | HIGH | 8.4 | 0.1% | Mar 2, 2026 | In multiple functions of FaceEnroll.kt, there is a possible privilege escalation due to a confused deputy. This could le... |
| CVE-2026-0007 | HIGH | 8.6 | 0.1% | Mar 2, 2026 | In writeToParcel of WindowInfo.cpp, there is a possible way to trick a user into accepting a permission due to a tapjack... |
| CVE-2026-3180 | HIGH | 7.5 | 0.7% | Mar 2, 2026 | The Contest Gallery – Upload & Vote Photos, Media, Sell with PayPal & Stripe plugin for WordPress is vulnerable to blind... |
| CVE-2026-3132 | HIGH | 8.8 | 0.6% | Mar 2, 2026 | The Master Addons for Elementor Premium plugin for WordPress is vulnerable to Remote Code Execution in all versions up t... |
| CVE-2026-0655 | HIGH | 8 | 0.3% | Mar 2, 2026 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in TP-Link Deco BE25 v1.0 (... |
| CVE-2026-0654 | HIGH | 8 | 0.3% | Mar 2, 2026 | Improper input handling in the administration web interface on TP-Link Deco BE25 v1.0 allows crafted input to be execute... |
| CVE-2026-28399 | HIGH | 8.8 | 0.3% | Mar 2, 2026 | NocoDB is software for building databases as spreadsheets. Prior to version 0.301.3, an authenticated user with Creator ... |
| CVE-2026-21385 | HIGH | 7.8 | 1.1% | Mar 2, 2026 | Memory corruption while using alignments for memory allocation. |
| CVE-2026-28412 | HIGH | 7.5 | 0.3% | Mar 2, 2026 | Textream is a free macOS teleprompter app. Prior to version 1.5.1, the `DirectorServer` WebSocket server imposes no limi... |
| CVE-2026-28403 | HIGH | 7.6 | 0.1% | Mar 2, 2026 | Textream is a free macOS teleprompter app. Prior to version 1.5.1, the `DirectorServer` WebSocket server (`ws://127.0.0.... |
| CVE-2026-26699 | HIGH | 7.2 | 0.6% | Mar 2, 2026 | sourcecodester Personnel Property Equipment System v1.0 is vulnerable to arbitrary code execution in ip/ppes/admin/admin... |
| CVE-2026-20434 | HIGH | 7.5 | 0.2% | Mar 2, 2026 | In Modem, there is a possible out of bounds write due to a missing bounds check. This could lead to remote escalation of... |
| CVE-2026-20430 | HIGH | 8.8 | 0.2% | Mar 2, 2026 | In wlan AP FW, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote (prox... |
| CVE-2026-20423 | HIGH | 7.8 | 0.1% | Mar 2, 2026 | In wlan STA driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local esca... |
| CVE-2026-20416 | HIGH | 7.2 | 0.2% | Mar 2, 2026 | In pcie, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of p... |
| CVE-2026-3409 | HIGH | 7.3 | 0.3% | Mar 2, 2026 | A security flaw has been discovered in eosphoros-ai db-gpt 0.7.5. Affected is the function importlib.machinery.SourceFil... |
| CVE-2026-3405 | HIGH | 8.1 | 0.6% | Mar 2, 2026 | A vulnerability has been found in thinkgem JeeSite up to 5.15.1. The affected element is an unknown function of the comp... |
| CVE-2026-3404 | HIGH | 8.1 | 0.4% | Mar 2, 2026 | A flaw has been found in thinkgem JeeSite up to 5.15.1. Impacted is an unknown function of the file /com/jeesite/common/... |
| CVE-2026-3399 | HIGH | 8.8 | 0.9% | Mar 1, 2026 | A vulnerability was identified in Tenda F453 1.0.0.3. Affected by this vulnerability is the function fromGstDhcpSetSer o... |
| CVE-2026-3398 | HIGH | 8.8 | 0.6% | Mar 1, 2026 | A vulnerability was determined in Tenda F453 1.0.0.3. Affected is the function fromAdvSetWan of the file /goform/AdvSetW... |
| CVE-2026-3394 | HIGH | 7.8 | 0.2% | Mar 1, 2026 | A vulnerability was detected in jarikomppa soloud up to 20200207. This affects the function SoLoud::Wav::loadwav of the ... |
| CVE-2026-3393 | HIGH | 7.8 | 0.2% | Mar 1, 2026 | A security vulnerability has been detected in jarikomppa soloud up to 20200207. The impacted element is the function SoL... |
| CVE-2026-3386 | HIGH | 7.1 | 0.2% | Mar 1, 2026 | A flaw has been found in wren-lang wren up to 0.4.0. Affected by this vulnerability is the function emitOp of the file s... |
| CVE-2026-3380 | HIGH | 8.8 | 0.8% | Mar 1, 2026 | A vulnerability was found in Tenda F453 1.0.0.3. This issue affects the function frmL7ImForm of the file /goform/L7Im. T... |
| CVE-2026-3379 | HIGH | 8.8 | 0.7% | Mar 1, 2026 | A vulnerability has been found in Tenda F453 1.0.0.3. This vulnerability affects the function fromSetIpBind of the file ... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now