57,566 vulnerabilities published in 2026
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Wikimedia F
Vulnerability in Wikimedia Foundation MediaWiki. This vulnerability is associated with program files includes/auth/AuthM
Vulnerability in Wikimedia Foundation MediaWiki. This vulnerability is associated with program files includes/specials/p
continuwuity is a Matrix homeserver written in Rust. This vulnerability allows an attacker with a malicious remote serve
Vulnerability in Wikimedia Foundation ConfirmEdit. This vulnerability is associated with program files includes/FancyCap
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Wikimedia F
Vulnerability in Wikimedia Foundation CheckUser. This vulnerability is associated with program files src/Api/Rest/Handle
Vulnerability in Wikimedia Foundation OATHAuth. This vulnerability is associated with program files src/Special/OATHMana
Vulnerability in Wikimedia Foundation CheckUser. This vulnerability is associated with program files src/Services/CheckU
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Wikimedia F
Vulnerability in Wikimedia Foundation DiscussionTools.This issue affects DiscussionTools: from * before 1.43.4, 1.44.1.
Vulnerability in Wikimedia Foundation TextExtracts. This vulnerability is associated with program files includes/ApiQuer
Vulnerability in Wikimedia Foundation Thanks. This vulnerability is associated with program files includes/ThanksQueryHe
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Wikimedia F
Vulnerability in Wikimedia Foundation MediaWiki, Wikimedia Foundation Cite. This vulnerability is associated with progra
Vulnerability in Wikimedia Foundation Scribunto, Wikimedia Foundation luasandbox. This vulnerability is associated with
: Out-of-bounds Write vulnerability in Xquic Project Xquic Server xquic on Linux (QUIC protocol implementation, packet p
Stored Cross-Site Scripting (XSS) vulnerability type in LUNA software v7.5.5.6. This vulnerability allows an attacker to
HTML injection vulnerability in NICE Chat. This vulnerability allows an attacker to inject and render arbitrary HTML con
In mObywatel iOS application an unauthorized user can use the App Switcher to view the account owner's personal informat
SQL injection vulnerability in the Buroweb platform version 2505.0.12, specifically in the 'tablon' component. This vuln
Summary An Insecure Direct Object Reference has been found to exist in `createHeaderBasedEmailResolver()` function with
Rapid7 Nexpose versions 6.4.50 and later are vulnerable to an insufficient entropy issue in the CredentialsKeyStorePassw
When configured as L2TP/IPSec VPN server, Archer AXE75 V1 may accept connections using L2TP without IPSec protection, ev
A relative path traversal vulnerability has been identified in the Embedded Solutions Framework in various Lexmark devic
An untrusted search path vulnerability has been identified in the Embedded Solutions Framework in various Lexmark device
A heap-based buffer overflow vulnerability has been identified in the Postscript interpreter in various Lexmark devices.
A type confusion vulnerability has been identified in the Postscript interpreter in various Lexmark devices. This vulner
An out-of-bounds read vulnerability has been identified in the Postscript interpreter in various Lexmark devices. This v
Avation Light Engine Pro exposes its configuration and control interface without any authentication or access control.
Easy Transfer Wifi Transfer v1.7 for iOS contains a persistent cross-site scripting vulnerability that allows remote att
Access of Resource Using Incompatible Type ('Type Confusion') vulnerability in Hancom Inc. Hancom Office 2018, Hancom In
Improper handling of insufficient permission in Galaxy Wearable installed on non-Samsung Device prior to version 2.2.68
Improper input validation in GalaxyDiagnostics prior to version 3.5.050 allows local privileged attackers to execute pri
Stored Cross-Site Scripting (XSS) vulnerability type in Apidog in the version 2.7.15, where SVG image uploads are not p
Neo4j Enterprise and Community editions versions prior to 2026.01.3 and 5.26.21 are vulnerable to a potential informatio
On a Cryptobox platform where administrator segregation based on entities is used, some vulnerabilities in Ercom Cryptob
In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211_hwsim: fix typo in frequency notific
In the Linux kernel, the following vulnerability has been resolved: bnxt_en: Fix NULL pointer crash in bnxt_ptp_enable
In the Linux kernel, the following vulnerability has been resolved: idpf: fix aux device unplugging when rdma is not su
In the Linux kernel, the following vulnerability has been resolved: btrfs: fix NULL pointer dereference in do_abort_log
In the Linux kernel, the following vulnerability has been resolved: PM: hibernate: Fix crash when freeing invalid crypt
In the Linux kernel, the following vulnerability has been resolved: net/ena: fix missing lock when update devlink param
In the Linux kernel, the following vulnerability has been resolved: virtio_net: fix device mismatch in devm_kzalloc/dev
In the Linux kernel, the following vulnerability has been resolved: libceph: make calc_target() set t->paused, not just
In the Linux kernel, the following vulnerability has been resolved: udp: call skb_orphan() before skb_attempt_defer_fre
In the Linux kernel, the following vulnerability has been resolved: phy: qcom-qusb2: Fix NULL pointer dereference on ea
In the Linux kernel, the following vulnerability has been resolved: btrfs: fix deadlock in wait_current_trans() due to
In the Linux kernel, the following vulnerability has been resolved: dmaengine: xilinx: xdma: Fix regmap max_register T
In the Linux kernel, the following vulnerability has been resolved: phy: stm32-usphyc: Fix off by one in probe() The "
Scan for 2026 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started