57,566 vulnerabilities published in 2026
SteelSeries Nahimic 3 1.10.7 allows Directory traversal.
The issue was addressed with improved bounds checks. This issue is fixed in iOS 18.1 and iPadOS 18.1, macOS Sequoia 15.1
DiskBoss Service 12.2.18 contains an unquoted service path vulnerability in its binary path configuration that allows lo
Acer ePowerSvc 6.0.3008.0 contains an unquoted service path vulnerability that allows local users to potentially execute
Acer Updater Service 1.2.3500.0 contains an unquoted service path vulnerability that allows local users to execute code
Acer Backup Manager 3.0.0.99 contains an unquoted service path vulnerability in the NTI IScheduleSvc service that allows
BOOTP Turbo 2.0.0.1253 contains an unquoted service path vulnerability in its Windows service configuration. Attackers c
DHCP Broadband 4.1.0.1503 contains an unquoted service path vulnerability in its service configuration that allows local
WifiHotSpot 1.0.0.0 contains an unquoted service path vulnerability in its WifiHotSpotService.exe that allows local atta
Spy Emergency 25.0.650 contains an unquoted service path vulnerability in its Windows service configurations that allows
Disk Sorter Server 13.6.12 contains an unquoted service path vulnerability in its binary path configuration that allows
In cpm_fwtp_msg_handler of cpm/google/lib/tracepoint/cpm_fwtp_ipc.c, there is a possible memory overwrite due to imprope
NVIDIA Merlin Transformers4Rec for all platforms contains a vulnerability where an attacker could cause code injection.
The installer of ServerView Agents for Windows provided by Fsas Technologies Inc. may insecurely load Dynamic Link Libra
ActivIdentity 8.2 contains an unquoted service path vulnerability in the ac.sharedstore service that allows local attack
Event Log Explorer 4.9.3 contains an unquoted service path vulnerability that allows local users to potentially execute
Hi-Rez Studios 5.1.6.3 contains an unquoted service path vulnerability in the HiPatchService that allows local attackers
MacPaw Encrypto 1.0.1 contains an unquoted service path vulnerability in its Encrypto Service configuration that allows
OSAS Traverse Extension 11 contains an unquoted service path vulnerability in the TravExtensionHostSvc service running w
WIN-PACK PRO 4.8 contains an unquoted service path vulnerability in the GuardTourService that allows local users to pote
WIN-PACK PRO4.8 contains an unquoted service path vulnerability in the ScheduleService that allows local users to potent
WIN-PACK PRO 4.8 contains an unquoted service path vulnerability in the WPCommandFileService that allows local users to
Brother BRAdmin Professional 3.75 contains an unquoted service path vulnerability in the BRA_Scheduler service that allo
VFS for Git 1.0.21014.1 contains an unquoted service path vulnerability in the GVFS.Service Windows service that allows
eBeam Education Suite 2.5.0.9 contains an unquoted service path vulnerability in the eBeam Device Service that allows lo
eBeam Interactive Suite 3.6 contains an unquoted service path vulnerability in the eBeam Stylus Driver service that allo
Realtek Wireless LAN Utility 700.1631 contains an unquoted service path vulnerability that allows local users to potenti
FreeLAN 2.2 contains an unquoted service path vulnerability in its Windows service configuration that allows local attac
Sandboxie Plus 0.7.2 contains an unquoted service path vulnerability in the SbieSvc service that allows local attackers
OKI Configuration Tool 1.6.53 contains an unquoted service path vulnerability in the OKI Local Port Manager service that
Pingzapper 2.3.1 contains an unquoted service path vulnerability in the PingzapperSvc service that allows local attacker
OKI Print Job Accounting 4.4.10 contains an unquoted service path vulnerability in the OkiJaSvc service that allows loca
Invalid memory access in Sentencepiece versions less than 0.2.1 when using a vulnerable model file, which is not created
The ArchiveReader.extractContents() function used by cctl image load and container image load performs no pathname valid
7-Zip ZIP File Parsing Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attacke
GIMP PSP File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote a
Trimble SketchUp SKP File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote a
Anritsu ShockLine CHX File Parsing Deserialization of Untrusted Data Remote Code Execution Vulnerability. This vulnerabi
Anritsu VectorStar CHX File Parsing Deserialization of Untrusted Data Remote Code Execution Vulnerability. This vulnerab
Anritsu VectorStar CHX File Parsing Deserialization of Untrusted Data Remote Code Execution Vulnerability. This vulnerab
mcp-server-siri-shortcuts shortcutName Command Injection Privilege Escalation Vulnerability. This vulnerability allows l
In the Linux kernel, the following vulnerability has been resolved: usb: phy: isp1301: fix non-OF device reference imba
In the Linux kernel, the following vulnerability has been resolved: net: dsa: properly keep track of conduit reference
In the Linux kernel, the following vulnerability has been resolved: KVM: s390: Fix gmap_helper_zap_one_page() again A
In the Linux kernel, the following vulnerability has been resolved: gve: defer interrupt enabling until NAPI registrati
In the Linux kernel, the following vulnerability has been resolved: RDMA/core: always drop device refcount in ib_del_su
In the Linux kernel, the following vulnerability has been resolved: gpio: mpsse: ensure worker is torn down When an IR
In the Linux kernel, the following vulnerability has been resolved: nfsd: provide locking for v4_end_grace Writing to
In the Linux kernel, the following vulnerability has been resolved: arp: do not assume dev_hard_header() does not chang
In the Linux kernel, the following vulnerability has been resolved: ublk: fix use-after-free in ublk_partition_scan_wor
Scan for 2026 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started