2026 CVE Vulnerabilities
56,998 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-61952 | MEDIUM | 4.9 | 0.3% | Jul 13, 2026 | Missing Authorization vulnerability in Jose Vega WooCommerce Bulk Edit Products – WP Sheet Editor woo-bulk-edit-products... |
| CVE-2026-59523 | MEDIUM | 6.5 | 0.3% | Jul 13, 2026 | Missing Authorization vulnerability in NSquared Simply Schedule Appointments simply-schedule-appointments allows Exploit... |
| CVE-2026-59521 | HIGH | 7.2 | 0.5% | Jul 13, 2026 | Deserialization of Untrusted Data vulnerability in ShapedPlugin LLC Real Testimonials testimonial-free allows Object Inj... |
| CVE-2026-59518 | CRITICAL | 9.8 | 0.6% | Jul 13, 2026 | Deserialization of Untrusted Data vulnerability in wpWax Directorist directorist allows Object Injection.This issue affe... |
| CVE-2026-59516 | HIGH | 7.1 | 0.3% | Jul 13, 2026 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Room 34 Creative S... |
| CVE-2026-59515 | CRITICAL | 9.3 | 0.4% | Jul 13, 2026 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Sergey AIWU ai-cop... |
| CVE-2026-57816 | HIGH | 7.1 | 0.3% | Jul 13, 2026 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in FunnelKit Funnel B... |
| CVE-2026-57815 | HIGH | 7.5 | 0.5% | Jul 13, 2026 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in WPMU DEV - Your All-in-O... |
| CVE-2026-57814 | HIGH | 7.1 | 0.3% | Jul 13, 2026 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WPMU DEV - Your Al... |
| CVE-2026-57813 | CRITICAL | 9.8 | 0.5% | Jul 13, 2026 | Incorrect Privilege Assignment vulnerability in properfraction MailOptin mailoptin allows Privilege Escalation.This issu... |
| CVE-2026-57812 | MEDIUM | 6.5 | 0.3% | Jul 13, 2026 | Missing Authorization vulnerability in NSquared Simply Schedule Appointments simply-schedule-appointments allows Exploit... |
| CVE-2026-57811 | CRITICAL | 10 | 0.6% | Jul 13, 2026 | Improper Control of Generation of Code ('Code Injection') vulnerability in Realtyna Realtyna Organic IDX plugin real-est... |
| CVE-2026-57810 | HIGH | 8.5 | 0.4% | Jul 13, 2026 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Saad Iqbal APIExpe... |
| CVE-2026-57805 | HIGH | 7.5 | 0.5% | Jul 13, 2026 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2026-57804 | HIGH | 7.5 | 0.4% | Jul 13, 2026 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2026-57803 | HIGH | 7.5 | 0.4% | Jul 13, 2026 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2026-57802 | HIGH | 7.5 | 0.4% | Jul 13, 2026 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2026-57801 | HIGH | 7.5 | 0.5% | Jul 13, 2026 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2026-57800 | HIGH | 7.5 | 0.5% | Jul 13, 2026 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2026-57799 | HIGH | 7.5 | 0.5% | Jul 13, 2026 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2026-57798 | HIGH | 7.5 | 0.5% | Jul 13, 2026 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2026-57797 | MEDIUM | 4.3 | 0.3% | Jul 13, 2026 | Missing Authorization vulnerability in ThemeMove EduMall edumall allows Exploiting Incorrectly Configured Access Control... |
| CVE-2026-57796 | HIGH | 7.5 | 0.5% | Jul 13, 2026 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2026-57795 | HIGH | 7.5 | 0.5% | Jul 13, 2026 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2026-57794 | HIGH | 7.5 | 0.5% | Jul 13, 2026 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now