2026 CVE Vulnerabilities

56,271 CVEs published in 2026.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2026-25564HIGH7.5WeKan versions prior to 8.19 contain an insecure direct object reference (IDOR) in checklist creation and related checkl...
CVE-2026-25563HIGH7.5WeKan versions prior to 8.19 contain an insecure direct object reference (IDOR) in checklist creation and related checkl...
CVE-2026-25561HIGH7.5WeKan versions prior to 8.19 contain an authorization weakness in the attachment upload API. The API does not fully vali...
CVE-2026-2110HIGH8.1A security flaw has been discovered in Tasin1025 SwiftBuy up to 0f5011372e8d1d7edfd642d57d721c9fadc54ec7. Affected by th...
CVE-2026-2109HIGH8.1A vulnerability was identified in jsbroks COCO Annotator up to 0.11.1. Affected is an unknown function of the file /api/...
CVE-2026-2108HIGH7.5A vulnerability was determined in jsbroks COCO Annotator up to 0.11.1. This impacts an unknown function of the file /api...
CVE-2026-2107HIGH8.8A vulnerability was found in yeqifu warehouse up to aaf29962ba407d22d991781de28796ee7b4670e4. This affects the function ...
CVE-2026-2106HIGH8.8A vulnerability has been found in yeqifu warehouse up to aaf29962ba407d22d991781de28796ee7b4670e4. The impacted element ...
CVE-2026-2105HIGH8.8A flaw has been found in yeqifu warehouse up to aaf29962ba407d22d991781de28796ee7b4670e4. The affected element is the fu...
CVE-2026-2086HIGH8.8A vulnerability was detected in UTT HiPER 810G up to 1.7.7-171114. Affected by this vulnerability is the function strcpy...
CVE-2026-2085HIGH7.3A security vulnerability has been detected in D-Link DWR-M921 1.1.50. Affected is the function sub_419F20 of the file /b...
CVE-2026-2084HIGH7.3A weakness has been identified in D-Link DIR-823X 250416. This impacts an unknown function of the file /goform/set_langu...
CVE-2026-2082HIGH7.2A vulnerability was identified in D-Link DIR-823X 250416. The impacted element is an unknown function of the file /gofor...
CVE-2026-2081HIGH7.2A vulnerability was determined in D-Link DIR-823X 250416. The affected element is an unknown function of the file /gofor...
CVE-2026-2080HIGH7.3A vulnerability has been found in UTT HiPER 810 1.7.4-141218. This issue affects the function setSysAdm of the file /gof...
CVE-2026-2079HIGH8.8A flaw has been found in yeqifu warehouse up to aaf29962ba407d22d991781de28796ee7b4670e4. This vulnerability affects the...
CVE-2026-2078HIGH8.8A vulnerability was detected in yeqifu warehouse up to aaf29962ba407d22d991781de28796ee7b4670e4. This affects the functi...
CVE-2026-2077HIGH8.8A security vulnerability has been detected in yeqifu warehouse up to aaf29962ba407d22d991781de28796ee7b4670e4. Affected ...
CVE-2026-2076HIGH8.8A weakness has been identified in yeqifu warehouse up to aaf29962ba407d22d991781de28796ee7b4670e4. Affected by this vuln...
CVE-2026-2075HIGH8.8A security flaw has been discovered in yeqifu warehouse up to aaf29962ba407d22d991781de28796ee7b4670e4. Affected is the ...
CVE-2026-2071HIGH8.8A vulnerability was found in UTT 进取 520W 1.7.7-180627. The impacted element is the function strcpy of the file /goform/f...
CVE-2026-2070HIGH8.8A vulnerability has been found in UTT 进取 520W 1.7.7-180627. The affected element is the function strcpy of the file /gof...
CVE-2026-25793HIGH8.1Nebula is a scalable overlay networking tool. In versions from 1.7.0 to 1.10.2, when using P256 certificates (which is n...
CVE-2026-25762HIGH7.5AdonisJS is a TypeScript-first web framework. Prior to versions 10.1.3 and 11.0.0-next.9, a denial of service (DoS) vuln...
CVE-2026-25754HIGH7.2AdonisJS is a TypeScript-first web framework. Prior to versions 10.1.3 and 11.0.0-next.9, a prototype pollution vulnerab...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now