57,566 vulnerabilities published in 2026
FOG is a free open-source cloning/imaging/rescue suite/inventory management system. Prior to versions 1.5.10.1832 and 1.
mcp-webresearch 0.1.7 contains a server-side request forgery vulnerability that allows attackers to access internal netw
Vulnerability in the Oracle Enterprise Manager Base Platform product of Oracle Enterprise Manager (component: Agent Next
Vulnerability in the RDBMS component of Oracle Database Server. Supported versions that are affected are 23.4.0-23.26.2
Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Supported versions that ar
Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Supported versions that ar
Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: X Plugin). Supported versi
Vulnerability in the Oracle Unified Directory product of Oracle Fusion Middleware (component: OUD Core). Supported vers
Vulnerability in the Oracle Unified Directory product of Oracle Fusion Middleware (component: OUD Core). Supported vers
Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Content Server). Supporte
Vulnerability in the Oracle SOA Suite product of Oracle Fusion Middleware (component: B2B Engine). Supported versions t
Vulnerability in the PeopleSoft Enterprise CS Campus Community product of Oracle PeopleSoft (component: Security). The
Vulnerability in the PeopleSoft Enterprise HCM Global Payroll Switzerland product of Oracle PeopleSoft (component: Globa
Vulnerability in the PeopleSoft Enterprise HCM Human Resources product of Oracle PeopleSoft (component: French Public Se
Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: BI Platform
Vulnerability in the Oracle Supply Chain Trading Connector product of Oracle E-Business Suite (component: Collaboration
Vulnerability in the Oracle Quality product of Oracle E-Business Suite (component: Internal Operations). Supported vers
Vulnerability in the PeopleSoft Enterprise SCM Inventory product of Oracle PeopleSoft (component: Security). The suppo
Vulnerability in the Oracle MES for Process Manufacturing product of Oracle E-Business Suite (component: Internal Operat
Vulnerability in the PeopleSoft Enterprise SCM Purchasing product of Oracle PeopleSoft (component: Purchasing). The su
Vulnerability in the PeopleSoft Enterprise FIN Common Objects Argentina product of Oracle PeopleSoft (component: eSettle
Vulnerability in the Oracle HRMS (UK) product of Oracle E-Business Suite (component: Internal Operations). Supported ve
Chatwoot before 4.16.0 contains an authentication bypass vulnerability in the direct uploads controller that allows unau
The affected product is vulnerable to an Out-of-bounds read, which may allow an attacker to crash the parsing process an
Skipper contains an incomplete fix for CVE-2026-50197 in which oversized request bodies bypass Open Policy Agent (OPA) d
In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: Clear __hyp_running_vcpu when flushing
In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: Bound used_lrs when flushing the pKVM h
In the Linux kernel, the following vulnerability has been resolved: smb: client: harden POSIX SID length parsing posix
In the Linux kernel, the following vulnerability has been resolved: ksmbd: validate NTLMv2 response before updating ses
In the Linux kernel, the following vulnerability has been resolved: audit: Fix data races of skb_queue_len() readers on
In the Linux kernel, the following vulnerability has been resolved: smb: client: restrict implied bcc[0] exemption to r
The bookingpress-appointment-booking-pro WordPress plugin before 5.7.3 does not correctly invoke its REST permission cal
Next.js is a React framework for building full-stack web applications. In versions 16.0.0 through 16.2.10, crafted reque
A path traversal issue was addressed with improved input validation. This issue is fixed in macOS Sequoia 15.7.8, macOS
An authorization issue was addressed with improved state management. This issue is fixed in macOS Sequoia 15.7.8, macOS
Appium Java Client is the Java language binding for writing Appium tests that conform to the W3C WebDriver protocol. Fro
NVIDIA DCGM Exporter for all platforms contains a vulnerability in the /debug/pprof endpoints, where an attacker could c
Bridge is affected by an Incorrect Authorization vulnerability that could result in privilege escalation. An attacker co
Bridge is affected by an Untrusted Search Path vulnerability that could result in arbitrary code execution in the contex
IBM Aspera Faspex 5 5.0.0 through 5.0.15.4 has addressed a vulnerability related to session management.
datamodel-code-generator generates Pydantic v2 models, dataclasses, TypedDict, and msgspec.Struct from OpenAPI, JSON Sch
datamodel-code-generator generates Python data models from schema definitions. From 0.9.1 until 0.61.0, src/datamodel_co
Regular Expression without Anchors vulnerability in Apache Traffic Server. This issue affects Apache Traffic Server: fr
Apache Traffic Server can bypass IP access controls on UDS listeners and through ACL matching errors. This issue affect
The Apache Traffic Server header_rewrite plugin can crash or corrupt memory during cookie operations and CIDR condition
Several Apache Traffic Server experimental plugins have memory-safety and limit-bypass errors. This issue affects Apach
proot-distro is a utility for managing proot containers. Prior to version 5.1.5, proot-distro install extracted plain ta
proot-distro is a utility for managing proot containers. Prior to version 5.1.6, proot-distro restore accepted hardlink
Missing authentication for critical function vulnerability in FTC Software IT Services FTC E-Commerce Management Panel a
ComfyUI is a modular diffusion model GUI, api and backend with a graph/nodes interface. Prior to 0.28.0, the /view endpo
Scan for 2026 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started