2026 CVE Vulnerabilities
56,124 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-26732 | HIGH | 8.8 | 0.3% | Feb 17, 2026 | TOTOLINK A3002RU V2.1.1-B20211108.1455 was discovered to contain a stack-based buffer overflow via the vpnUser or vpnPas... |
| CVE-2026-26731 | HIGH | 8.8 | 0.5% | Feb 17, 2026 | TOTOLINK A3002RU V2.1.1-B20211108.1455 was discovered to contain a stack-based buffer overflow via the routernamer`param... |
| CVE-2026-24734 | HIGH | 7.5 | 0.5% | Feb 17, 2026 | Improper Input Validation vulnerability in Apache Tomcat Native, Apache Tomcat. When using an OCSP responder, Tomcat Na... |
| CVE-2026-2618 | HIGH | 7.4 | 0.3% | Feb 17, 2026 | A vulnerability was determined in Beetel 777VR1 up to 01.00.09. This impacts an unknown function of the component SSH Se... |
| CVE-2026-23648 | HIGH | 8.5 | 0.1% | Feb 17, 2026 | Glory RBG-100 recycler systems using the ISPK-08 software component contain multiple system binaries with overly permiss... |
| CVE-2026-2617 | HIGH | 8.8 | 0.6% | Feb 17, 2026 | A vulnerability was found in Beetel 777VR1 up to 01.00.09. This affects an unknown function of the component Telnet Serv... |
| CVE-2026-25087 | HIGH | 7 | 0.8% | Feb 17, 2026 | Use After Free vulnerability in Apache Arrow C++. This issue affects Apache Arrow C++ from 15.0.0 through 23.0.0. It ca... |
| CVE-2026-2615 | HIGH | 7.3 | 10.3% | Feb 17, 2026 | A flaw has been found in Wavlink WL-NU516U1 up to 20251208. The affected element is the function singlePortForwardDelete... |
| CVE-2026-2247 | HIGH | 8.3 | 0.2% | Feb 17, 2026 | SQL injection vulnerability (SQLi) in Clicldeu SaaS, specifically in the generation of reports, which occurs when a prev... |
| CVE-2026-1216 | HIGH | 7.2 | 0.2% | Feb 17, 2026 | The RSS Aggregator plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'template' parameter in ... |
| CVE-2026-2592 | HIGH | 7.7 | 0.3% | Feb 17, 2026 | The Zarinpal Gateway for WooCommerce plugin for WordPress is vulnerable to Improper Access Control to Payment Status Upd... |
| CVE-2026-2474 | HIGH | 7.5 | 0.3% | Feb 16, 2026 | Crypt::URandom versions from 0.41 before 0.55 for Perl is vulnerable to a heap buffer overflow in the XS function crypt_... |
| CVE-2026-2001 | HIGH | 8.8 | 0.4% | Feb 16, 2026 | The WowRevenue plugin for WordPress is vulnerable to unauthorized plugin installation due to a missing capability check ... |
| CVE-2026-2567 | HIGH | 7.3 | 0.7% | Feb 16, 2026 | A vulnerability was detected in Wavlink WL-NU516U1 20251208. This vulnerability affects the function sub_401218 of the f... |
| CVE-2026-2566 | HIGH | 7.3 | 0.5% | Feb 16, 2026 | A security vulnerability has been detected in Wavlink WL-NU516U1 up to 130/260. This affects the function sub_406194 of ... |
| CVE-2026-2101 | HIGH | 8.7 | 0.3% | Feb 16, 2026 | A Reflected Cross-site Scripting (XSS) vulnerability affecting ENOVIAvpm Web Access from ENOVIAvpm Version 1 Release 16 ... |
| CVE-2026-26930 | HIGH | 7.2 | 0.3% | Feb 16, 2026 | SmarterTools SmarterMail before 9526 allows XSS via MAPI requests. |
| CVE-2026-2563 | HIGH | 8.8 | 0.4% | Feb 16, 2026 | A vulnerability was identified in JingDong JD Cloud Box AX6600 up to 4.5.1.r4533. Affected is the function set_stcreenen... |
| CVE-2026-2562 | HIGH | 8.8 | 0.3% | Feb 16, 2026 | A vulnerability was determined in JingDong JD Cloud Box AX6600 up to 4.5.1.r4533. This impacts the function cast_streen ... |
| CVE-2026-2561 | HIGH | 8.8 | 0.3% | Feb 16, 2026 | A vulnerability was found in JingDong JD Cloud Box AX6600 up to 4.5.1.r4533. This affects the function web_get_ddns_upti... |
| CVE-2026-2447 | HIGH | 8.8 | 0.6% | Feb 16, 2026 | Heap buffer overflow in libvpx. This vulnerability was fixed in Firefox 147.0.4, Firefox ESR 140.7.1, Firefox ESR 115.32... |
| CVE-2026-1335 | HIGH | 7.8 | 0.2% | Feb 16, 2026 | An Out-Of-Bounds Write vulnerability affecting the EPRT file reading procedure in SOLIDWORKS eDrawings from Release SOLI... |
| CVE-2026-1334 | HIGH | 7.8 | 0.2% | Feb 16, 2026 | An Out-Of-Bounds Read vulnerability affecting the EPRT file reading procedure in SOLIDWORKS eDrawings from Release SOLID... |
| CVE-2026-1333 | HIGH | 7.8 | 0.2% | Feb 16, 2026 | A Use of Uninitialized Variable vulnerability affecting the EPRT file reading procedure in SOLIDWORKS eDrawings from Rel... |
| CVE-2026-2555 | HIGH | 7.5 | 0.3% | Feb 16, 2026 | A weakness has been identified in JeecgBoot 3.9.1. This vulnerability affects the function importDocumentFromZip of the ... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now