2026 CVE Vulnerabilities
55,833 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-3201 | HIGH | 7.5 | 0.2% | Feb 25, 2026 | USB HID protocol dissector memory exhaustion in Wireshark 4.6.0 to 4.6.3 and 4.4.0 to 4.4.13 allows denial of service |
| CVE-2026-27692 | HIGH | 7.1 | 0.2% | Feb 25, 2026 | iccDEV provides a set of libraries and tools for working with ICC color management profiles. In versions up to and inclu... |
| CVE-2026-25701 | HIGH | 7 | 0.1% | Feb 25, 2026 | An Insecure Temporary File vulnerability in openSUSE sdbootutil allows local users to pre-create a directory to achieve ... |
| CVE-2026-26103 | HIGH | 7.1 | 0.1% | Feb 25, 2026 | A flaw was found in the udisks storage management daemon that exposes a privileged D-Bus API for restoring LUKS encrypti... |
| CVE-2026-2416 | HIGH | 7.5 | 1.4% | Feb 25, 2026 | The Geo Mashup plugin for WordPress is vulnerable to SQL Injection via the 'sort' parameter in all versions up to, and i... |
| CVE-2026-1929 | HIGH | 8.8 | 0.6% | Feb 25, 2026 | The Advanced Woo Labels plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including... |
| CVE-2026-1916 | HIGH | 7.5 | 0.4% | Feb 25, 2026 | The WPGSI: Spreadsheet Integration plugin for WordPress is vulnerable to unauthorized modification and loss of data due ... |
| CVE-2026-3169 | HIGH | 8.8 | 0.6% | Feb 25, 2026 | A security vulnerability has been detected in Tenda F453 1.0.0.3. This impacts the function fromSafeEmailFilter of the f... |
| CVE-2026-3168 | HIGH | 8.8 | 3.2% | Feb 25, 2026 | A weakness has been identified in Tenda F453 1.0.0.3. This affects the function fromNatStaticSetting of the file /goform... |
| CVE-2026-3167 | HIGH | 8.8 | 0.6% | Feb 25, 2026 | A security flaw has been discovered in Tenda F453 1.0.0.3. The impacted element is the function formWebTypeLibrary of th... |
| CVE-2026-3166 | HIGH | 8.8 | 0.6% | Feb 25, 2026 | A vulnerability was identified in Tenda F453 1.0.0.3. The affected element is the function fromRouteStatic of the file /... |
| CVE-2026-3179 | HIGH | 8.1 | 0.5% | Feb 25, 2026 | The FTP Backup on the ADM does not properly sanitize filenames received from the FTP server when parsing directory listi... |
| CVE-2026-3165 | HIGH | 8.8 | 0.6% | Feb 25, 2026 | A vulnerability was determined in Tenda F453 1.0.0.3. Impacted is the function fromSetWifiGusetBasic of the file /goform... |
| CVE-2026-3163 | HIGH | 7.5 | 0.3% | Feb 25, 2026 | A vulnerability has been found in SourceCodester Website Link Extractor 1.0. This vulnerability affects the function fil... |
| CVE-2026-3150 | HIGH | 8.8 | 0.3% | Feb 25, 2026 | A security vulnerability has been detected in itsourcecode College Management System 1.0. This affects an unknown part o... |
| CVE-2026-3149 | HIGH | 8.8 | 0.3% | Feb 25, 2026 | A weakness has been identified in itsourcecode College Management System 1.0. Affected by this issue is some unknown fun... |
| CVE-2026-27696 | HIGH | 8.6 | 0.4% | Feb 25, 2026 | changedetection.io is a free open source web page change detection tool. In versions prior to 0.54.1, changedetection.io... |
| CVE-2026-3147 | HIGH | 7.8 | 0.2% | Feb 25, 2026 | A vulnerability was found in libvips up to 8.18.0. This affects the function vips_foreign_load_csv_build of the file lib... |
| CVE-2026-27747 | HIGH | 8.8 | 0.4% | Feb 25, 2026 | The SPIP interface_traduction_objets plugin versions prior to 2.2.2 contain an authenticated SQL injection vulnerability... |
| CVE-2026-27745 | HIGH | 8.8 | 0.8% | Feb 25, 2026 | The SPIP interface_traduction_objets plugin versions prior to 2.2.2 contain an authenticated remote code execution vulne... |
| CVE-2026-27640 | HIGH | 7.5 | 0.3% | Feb 25, 2026 | tfplan2md is software for converting Terraform plan JSON files into human-readable Markdown reports. Prior to version 1.... |
| CVE-2026-27636 | HIGH | 8.8 | 2.1% | Feb 25, 2026 | FreeScout is a free help desk and shared inbox built with PHP's Laravel framework. Prior to version 1.8.206, FreeScout's... |
| CVE-2026-3145 | HIGH | 7.8 | 0.2% | Feb 25, 2026 | A flaw has been found in libvips up to 8.18.0. The affected element is the function vips_foreign_load_matrix_file_is_a/v... |
| CVE-2026-27629 | HIGH | 8.8 | 0.3% | Feb 25, 2026 | InvenTree is an Open Source Inventory Management System. Prior to version 1.2.3, insecure server-side templates can be h... |
| CVE-2026-27628 | HIGH | 7.5 | 0.3% | Feb 25, 2026 | pypdf is a free and open-source pure-python PDF library. Prior to 6.7.2, an attacker who uses this vulnerability can cra... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now