2026 CVE Vulnerabilities

55,803 CVEs published in 2026.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2026-0008HIGH8.4In multiple functions of FaceEnroll.kt, there is a possible privilege escalation due to a confused deputy. This could le...
CVE-2026-0007HIGH8.6In writeToParcel of WindowInfo.cpp, there is a possible way to trick a user into accepting a permission due to a tapjack...
CVE-2026-3180HIGH7.5The Contest Gallery – Upload & Vote Photos, Media, Sell with PayPal & Stripe plugin for WordPress is vulnerable to blind...
CVE-2026-3132HIGH8.8The Master Addons for Elementor Premium plugin for WordPress is vulnerable to Remote Code Execution in all versions up t...
CVE-2026-0655HIGH8Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in TP-Link Deco BE25 v1.0 (...
CVE-2026-0654HIGH8Improper input handling in the administration web interface on TP-Link Deco BE25 v1.0 allows crafted input to be execute...
CVE-2026-28399HIGH8.8NocoDB is software for building databases as spreadsheets. Prior to version 0.301.3, an authenticated user with Creator ...
CVE-2026-21385HIGH7.8Memory corruption while using alignments for memory allocation.
CVE-2026-28412HIGH7.5Textream is a free macOS teleprompter app. Prior to version 1.5.1, the `DirectorServer` WebSocket server imposes no limi...
CVE-2026-28403HIGH7.6Textream is a free macOS teleprompter app. Prior to version 1.5.1, the `DirectorServer` WebSocket server (`ws://127.0.0....
CVE-2026-26699HIGH7.2sourcecodester Personnel Property Equipment System v1.0 is vulnerable to arbitrary code execution in ip/ppes/admin/admin...
CVE-2026-20434HIGH7.5In Modem, there is a possible out of bounds write due to a missing bounds check. This could lead to remote escalation of...
CVE-2026-20430HIGH8.8In wlan AP FW, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote (prox...
CVE-2026-20423HIGH7.8In wlan STA driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local esca...
CVE-2026-20416HIGH7.2In pcie, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of p...
CVE-2026-3409HIGH7.3A security flaw has been discovered in eosphoros-ai db-gpt 0.7.5. Affected is the function importlib.machinery.SourceFil...
CVE-2026-3405HIGH8.1A vulnerability has been found in thinkgem JeeSite up to 5.15.1. The affected element is an unknown function of the comp...
CVE-2026-3404HIGH8.1A flaw has been found in thinkgem JeeSite up to 5.15.1. Impacted is an unknown function of the file /com/jeesite/common/...
CVE-2026-3399HIGH8.8A vulnerability was identified in Tenda F453 1.0.0.3. Affected by this vulnerability is the function fromGstDhcpSetSer o...
CVE-2026-3398HIGH8.8A vulnerability was determined in Tenda F453 1.0.0.3. Affected is the function fromAdvSetWan of the file /goform/AdvSetW...
CVE-2026-3394HIGH7.8A vulnerability was detected in jarikomppa soloud up to 20200207. This affects the function SoLoud::Wav::loadwav of the ...
CVE-2026-3393HIGH7.8A security vulnerability has been detected in jarikomppa soloud up to 20200207. The impacted element is the function SoL...
CVE-2026-3386HIGH7.1A flaw has been found in wren-lang wren up to 0.4.0. Affected by this vulnerability is the function emitOp of the file s...
CVE-2026-3380HIGH8.8A vulnerability was found in Tenda F453 1.0.0.3. This issue affects the function frmL7ImForm of the file /goform/L7Im. T...
CVE-2026-3379HIGH8.8A vulnerability has been found in Tenda F453 1.0.0.3. This vulnerability affects the function fromSetIpBind of the file ...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now