2026 CVE Vulnerabilities
56,359 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-0786 | HIGH | 8.8 | 1.2% | Jan 23, 2026 | ALGO 8180 IP Audio Alerter SCI Command Injection Remote Code Execution Vulnerability. This vulnerability allows remote a... |
| CVE-2026-0785 | HIGH | 8.8 | 1.3% | Jan 23, 2026 | ALGO 8180 IP Audio Alerter API Command Injection Remote Code Execution Vulnerability. This vulnerability allows remote a... |
| CVE-2026-0784 | HIGH | 8.8 | 1.5% | Jan 23, 2026 | ALGO 8180 IP Audio Alerter Web UI Command Injection Remote Code Execution Vulnerability. This vulnerability allows remot... |
| CVE-2026-0783 | HIGH | 8.8 | 1.5% | Jan 23, 2026 | ALGO 8180 IP Audio Alerter Web UI Command Injection Remote Code Execution Vulnerability. This vulnerability allows remot... |
| CVE-2026-0782 | HIGH | 8.8 | 1.5% | Jan 23, 2026 | ALGO 8180 IP Audio Alerter Web UI Command Injection Remote Code Execution Vulnerability. This vulnerability allows remot... |
| CVE-2026-0781 | HIGH | 8.8 | 1.5% | Jan 23, 2026 | ALGO 8180 IP Audio Alerter Web UI Command Injection Remote Code Execution Vulnerability. This vulnerability allows remot... |
| CVE-2026-0780 | HIGH | 8.8 | 1.5% | Jan 23, 2026 | ALGO 8180 IP Audio Alerter Web UI Command Injection Remote Code Execution Vulnerability. This vulnerability allows remot... |
| CVE-2026-0779 | HIGH | 8.8 | 1.5% | Jan 23, 2026 | ALGO 8180 IP Audio Alerter Ping Command Injection Remote Code Execution Vulnerability. This vulnerability allows remote ... |
| CVE-2026-0778 | HIGH | 8.8 | 0.6% | Jan 23, 2026 | Enel X JuiceBox 40 Telnet Service Missing Authentication Remote Code Execution Vulnerability. This vulnerability allows ... |
| CVE-2026-0776 | HIGH | 7.3 | 0.4% | Jan 23, 2026 | Discord Client Uncontrolled Search Path Element Local Privilege Escalation Vulnerability. This vulnerability allows loca... |
| CVE-2026-0775 | HIGH | 7 | 0.3% | Jan 23, 2026 | npm cli Incorrect Permission Assignment Local Privilege Escalation Vulnerability. This vulnerability allows local attack... |
| CVE-2026-0774 | HIGH | 8.8 | 0.7% | Jan 23, 2026 | WatchYourLAN Configuration Page Argument Injection Remote Code Execution Vulnerability. This vulnerability allows networ... |
| CVE-2026-0772 | HIGH | 7.5 | 0.9% | Jan 23, 2026 | Langflow Disk Cache Deserialization of Untrusted Data Remote Code Execution Vulnerability. This vulnerability allows rem... |
| CVE-2026-0771 | HIGH | 7.1 | 0.6% | Jan 23, 2026 | Langflow PythonFunction Code Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers t... |
| CVE-2026-0762 | HIGH | 8.1 | 0.7% | Jan 23, 2026 | GPT Academic stream_daas Deserialization of Untrusted Data Remote Code Execution Vulnerability. This vulnerability allow... |
| CVE-2026-0758 | HIGH | 7.8 | 0.7% | Jan 23, 2026 | mcp-server-siri-shortcuts shortcutName Command Injection Privilege Escalation Vulnerability. This vulnerability allows l... |
| CVE-2026-0757 | HIGH | 8.8 | 1.3% | Jan 23, 2026 | MCP Manager for Claude Desktop execute-command Command Injection Sandbox Escape Vulnerability. This vulnerability allows... |
| CVE-2026-0710 | HIGH | 8.4 | 0.2% | Jan 23, 2026 | A flaw was found in SIPp. A remote attacker could exploit this by sending specially crafted Session Initiation Protocol ... |
| CVE-2026-24138 | HIGH | 7.5 | 0.4% | Jan 23, 2026 | FOG is a free open-source cloning/imaging/rescue suite/inventory management system. Versions 1.5.10.1754 and below conta... |
| CVE-2026-20613 | HIGH | 7.8 | 0.2% | Jan 23, 2026 | The ArchiveReader.extractContents() function used by cctl image load and container image load performs no pathname valid... |
| CVE-2026-24307 | HIGH | 7.5 | 0.8% | Jan 22, 2026 | Improper validation of specified type of input in M365 Copilot allows an unauthorized attacker to disclose information o... |
| CVE-2026-24129 | HIGH | 8.8 | 0.5% | Jan 22, 2026 | Runtipi is a Docker-based, personal homeserver orchestrator that facilitates multiple services on a single server. Versi... |
| CVE-2026-21524 | HIGH | 7.4 | 0.5% | Jan 22, 2026 | Exposure of sensitive information to an unauthorized actor in Azure Data Explorer allows an unauthorized attacker to dis... |
| CVE-2026-21521 | HIGH | 7.4 | 0.5% | Jan 22, 2026 | Improper neutralization of escape, meta, or control sequences in Copilot allows an unauthorized attacker to disclose inf... |
| CVE-2026-21520 | HIGH | 7.5 | 1.4% | Jan 22, 2026 | Exposure of Sensitive Information to an Unauthorized Actor in Copilot Studio allows a unauthenticated attacker to view s... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now