2026 CVE Vulnerabilities

55,897 CVEs published in 2026.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2026-2882HIGH8.8A vulnerability was found in D-Link DWR-M960 1.01.07. This issue affects the function sub_46385C of the file /boafrm/for...
CVE-2026-2881HIGH8.8A vulnerability has been found in D-Link DWR-M960 1.01.07. This vulnerability affects the function sub_425FF8 of the fil...
CVE-2026-2877HIGH8.8A vulnerability has been found in Tenda A18 15.13.07.13. This affects the function strcpy of the file /goform/WifiExtraS...
CVE-2026-2876HIGH8.8A vulnerability was determined in Tenda A18 15.13.07.13. This affects the function parse_macfilter_rule of the file /gof...
CVE-2026-2874HIGH8.8A flaw has been found in Tenda A21 1.0.0.0. Impacted is the function form_fast_setting_wifi_set of the file /goform/fast...
CVE-2026-2873HIGH8.8A vulnerability was detected in Tenda A21 1.0.0.0. This issue affects the function setSchedWifi of the file /goform/open...
CVE-2026-2872HIGH8.8A security vulnerability has been detected in Tenda A21 1.0.0.0. This vulnerability affects the function set_device_name...
CVE-2026-2871HIGH8.8A weakness has been identified in Tenda A21 1.0.0.0. This affects the function fromSetIpMacBind of the file /goform/SetI...
CVE-2026-2870HIGH8.8A security flaw has been discovered in Tenda A21 1.0.0.0. Affected by this issue is the function set_qosMib_list of the ...
CVE-2026-27579HIGH7.4CollabPlatform is a full-stack, real-time doc collaboration platform. In all versions of CollabPlatform, the Appwrite pr...
CVE-2026-27488HIGH7.3OpenClaw is a personal AI assistant. In versions 2026.2.17 and below, Cron webhook delivery in src/gateway/server-cron.t...
CVE-2026-27487HIGH8OpenClaw is a personal AI assistant. In versions 2026.2.13 and below, when using macOS, the Claude CLI keychain credenti...
CVE-2026-27479HIGH7.7Wallos is an open-source, self-hostable personal subscription tracker. Versions 4.6.0 and below contain a Server-Side Re...
CVE-2026-27470HIGH8.8ZoneMinder is a free, open source closed-circuit television software application. In versions 1.36.37 and below and 1.37...
CVE-2026-27466HIGH8.2BigBlueButton is an open-source virtual classroom. In versions 3.0.21 and below, the official documentation for "Server ...
CVE-2026-27206HIGH8.1Zumba Json Serializer is a library to serialize PHP variables in JSON format. In versions 3.2.2 and below, the library a...
CVE-2026-27212HIGH7.8Swiper is a free and mobile touch slider with hardware accelerated transitions and native behavior. Versions 6.5.1 throu...
CVE-2026-27198HIGH8.8Formwork is a flat file-based Content Management System (CMS). In versions 2.0.0 through 2.3.3, the application fails to...
CVE-2026-26046HIGH7.2A vulnerability was found in a Moodle TeX filter administrative setting where insufficient sanitization of configuration...
CVE-2026-26045HIGH7.2A flaw was identified in Moodle’s backup restore functionality where specially crafted backup files were not properly va...
CVE-2026-27192HIGH8.1Feathersjs is a framework for creating web APIs and real-time applications with TypeScript or JavaScript. In versions 5....
CVE-2026-27203HIGH8.3eBay API MCP Server is an open source local MCP server providing AI assistants with comprehensive access to eBay's Sell ...
CVE-2026-27202HIGH7.5GetSimple CMS is a content management system. All versions of GetSimple CMS have a flaw in the Uploaded Files feature th...
CVE-2026-27170HIGH7.1OpenSift is an AI study tool that sifts through large datasets using semantic search and generative AI. In versions 1.1....
CVE-2026-27169HIGH8.9OpenSift is an AI study tool that sifts through large datasets using semantic search and generative AI. Versions 1.1.2-a...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now