57,566 vulnerabilities published in 2026
Access of resource using incompatible type ('type confusion') in Microsoft Office Word allows an unauthorized attacker t
A vulnerability has been identified in [Rancher's Extensions](https://ranchermanager.docs.rancher.com/integrations-in-ra
Atomic Alarm Clock 6.3 contains a stack overflow vulnerability that allows local attackers to execute arbitrary code by
Permission control vulnerability in the web. Impact: Successful exploitation of this vulnerability may affect availabili
Allok Fast AVI MPEG Splitter 1.2 contains a stack based buffer overflow vulnerability that allows local attackers to exe
Allok AVI DivX MPEG to DVD Converter 2.6.1217 contains a structured exception handler buffer overflow vulnerability that
VX Search 10.6.18 contains a local buffer overflow vulnerability that allows attackers to overwrite the instruction poin
in OpenHarmony v6.0 and prior versions allow a local attacker cause DOS and it cannot be recovered.
An improper authentication vulnerability was discovered in the Motorola Factory Test component (com.motorola.motocit). T
Improper input validation, Unrestricted upload of file with dangerous type vulnerability in Gmission Web Fax allows Remo
ptrace(PT_SC_REMOTE) failed to properly validate parameters for the syscall(2) and __syscall(2) meta-system calls. As a
Zohocorp ManageEngine ADSelfService Plus version before 6525, DataSecurity Plus before 6264 and RecoveryManager Plus bef
10-Strike Network Inventory Explorer 8.54 contains a stack-based buffer overflow vulnerability in the registration key i
10-Strike Network Scanner 3.0 contains a local buffer overflow vulnerability in the host name field that allows attacker
Audiograbber 1.83 contains a local buffer overflow vulnerability that allows attackers to execute arbitrary code by expl
SIPp 3.6 and earlier contains a local buffer overflow vulnerability in command-line argument handling that allows local
Splinterware System Scheduler Pro 5.12 contains an insecure file permissions vulnerability that allows low-privilege use
AgataSoft Auto PingMaster 1.5 contains a stack-based buffer overflow vulnerability in the Trace Route host name field th
CuteFTP 5.0 XP contains a buffer overflow vulnerability that allows local attackers to execute arbitrary code by injecti
SocuSoft DVD Photo Slideshow Professional 8.07 contains a stack-based buffer overflow vulnerability in the registration
SocuSoft iPod Photo Slideshow 8.05 contains a buffer overflow vulnerability in the registration dialog that allows local
Socusoft 3GP Photo Slideshow 8.05 contains a buffer overflow vulnerability in the registration dialog that allows local
Flash Slideshow Maker Professional 5.20 contains a buffer overflow vulnerability in the registration dialog that allows
A local attacker can perform a confusion attack on the cfgparser via a specially crafted file on an USB stick leading to
IBM Operations Analytics - Log Analysis and IBM SmartCloud Analytics - Log Analysis uses default passwords default pass
Himmelblau is an interoperability suite for Microsoft Azure Entra ID and Intune. From 2.0.0 to before 3.1.5 and 2.3.11,
An issue was discovered in Canonical Multipass before version 1.16.3. The host-side SFTP server component (sshfs_server)
Free MP3 CD Ripper 2.8 contains a stack-based buffer overflow vulnerability in WMA file processing that allows local att
A stored cross-site scripting (XSS) vulnerability exists in certain 1xxx series NVR devices due to insufficient sanitiza
Arm Whois 3.11 contains a buffer overflow vulnerability that allows local attackers to execute arbitrary code by overwri
In multiple locations, there is a possible way to achieve code execution due to an integer overflow. This could lead to
Dräger Infinity Explorer C700 contains a privilege escalation vulnerability that allows attackers to break out of kiosk
In the Linux kernel, the following vulnerability has been resolved: btrfs: fix block_group_tree dirty_list corruption
In the Linux kernel, the following vulnerability has been resolved: power: supply: rt9455: Fix use-after-free in power_
NetShareWatcher 1.5.8.0 contains a structured exception handler buffer overflow vulnerability that allows local attacker
AllPlayer 7.4 contains a local buffer overflow vulnerability in URL handling that allows attackers to overwrite structur
LabF nfsAxe 3.7 Ping Client contains a buffer overflow vulnerability that allows local attackers to execute arbitrary co
clash-verge-service-ipc before 2.3.0 has a world-reachable IPC endpoint, leading to local privilege escalation.
In the Linux kernel, the following vulnerability has been resolved: of: unittest: fix use-after-free in of_unittest_cha
In the Linux kernel, the following vulnerability has been resolved: iio: pressure: mprls0025pa: fix spi_transfer struct
Improper neutralization of input during web page generation ('cross-site scripting') in Azure Stack Edge allows an autho
Improper authentication in Windows Cryptographic Services allows an unauthorized attacker to elevate privileges locally.
Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to exe
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
Integer underflow (wrap or wraparound) in Microsoft Office allows an unauthorized attacker to execute code locally.
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
Improper limitation of a pathname to a restricted directory ('path traversal') in GitHub Copilot and Visual Studio Code
Out-of-bounds read in Windows Hyper-V allows an unauthorized attacker to execute code locally.
Scan for 2026 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started