57,566 vulnerabilities published in 2026
iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of ICC color
iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of ICC color
iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of ICC color
iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of ICC color
iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of ICC color
iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of ICC color
The deploy-stub component in Panda3D versions up to and including 1.10.16 contains a denial of service vulnerability due
User interface (ui) misrepresentation of critical information in Microsoft Edge for Android allows an authorized attacke
An issue was discovered in Nitro PDF Pro for Windows before 14.42.0.34. In certain cases, it displays signer information
OPEXUS eCASE Audit allows an authenticated attacker to save JavaScript as a comment within the Document Check Out functi
OPEXUS eCASE Audit allows an authenticated attacker to save JavaScript in the "A or SIC Number" field within the Project
OPEXUS eCASE Audit allows an authenticated attacker to save JavaScript as a comment in the "Estimated Staff Hours" field
Ideagen DevonWay contains a stored cross site scripting vulnerability. A remote, authenticated attacker could craft a pa
Improper input validation in SecSettings prior to SMR Jan-2026 Release 1 allows local attacker to access file with syste
Improper handling of insufficient permission in Samsung Cloud prior to version 5.6.11 allows local attackers to access s
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Tahoe 26.2. An app may be a
Cosign provides code signing and transparency for containers and binaries. Prior to versions 2.6.2 and 3.0.4, Cosign bun
Avahi is a system which facilitates service discovery on a local network via the mDNS/DNS-SD protocol suite. In 0.9-rc2
Zohocorp ManageEngine ADManager Plus versions below 7230 are vulnerable to Path Traversal in the User Management module
In the Linux kernel, the following vulnerability has been resolved: ublk: fix deadlock when reading partition table Wh
In the Linux kernel, the following vulnerability has been resolved: drm/xe/oa: Limit num_syncs to prevent oversized all
In the Linux kernel, the following vulnerability has been resolved: tpm: Cap the number of PCR banks tpm2_get_pcr_allo
In the Linux kernel, the following vulnerability has been resolved: net: nfc: fix deadlock between nfc_unregister_devic
In the Linux kernel, the following vulnerability has been resolved: ASoC: stm32: sai: fix OF node leak on probe The re
In the Linux kernel, the following vulnerability has been resolved: drm/ttm: Avoid NULL pointer deref for evicted BOs
In the Linux kernel, the following vulnerability has been resolved: RDMA/cm: Fix leaking the multicast GID table refere
In the Linux kernel, the following vulnerability has been resolved: iavf: fix off-by-one issues in iavf_config_rss_reg(
In the Linux kernel, the following vulnerability has been resolved: mptcp: fallback earlier on simult connection Syzka
In the Linux kernel, the following vulnerability has been resolved: net: usb: asix: validate PHY address before use Th
In the Linux kernel, the following vulnerability has been resolved: RDMA/core: Check for the presence of LS_NLA_TYPE_DG
In the Linux kernel, the following vulnerability has been resolved: ipv4: Fix reference count leak when using error rou
In the Linux kernel, the following vulnerability has been resolved: ip6_gre: make ip6gre_header() robust Over the year
Exposure of sensitive information to an unauthorized actor in Desktop Windows Manager allows an authorized attacker to d
Untrusted pointer dereference in Windows Virtualization-Based Security (VBS) Enclave allows an authorized attacker to di
Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to dis
Protection mechanism failure in Windows Remote Assistance allows an unauthorized attacker to bypass a security feature l
Exposure of sensitive information to an unauthorized actor in Tablet Windows User Interface (TWINUI) Subsystem allows an
Out-of-bounds read in Windows TPM allows an authorized attacker to disclose information locally.
Use of a broken or risky cryptographic algorithm in Windows Kerberos allows an authorized attacker to disclose informati
Out-of-bounds read in Capability Access Management Service (camsvc) allows an authorized attacker to disclose informatio
Generation of error message containing sensitive information in Windows Kernel allows an authorized attacker to disclose
Improper access control in Windows Client-Side Caching (CSC) Service allows an authorized attacker to disclose informati
Exposure of sensitive information to an unauthorized actor in Windows Management Services allows an authorized attacker
Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to dis
Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to dis
Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to dis
InDesign Desktop versions 21.0, 19.5.5 and earlier are affected by an Out-of-bounds Read vulnerability that could lead t
Illustrator versions 29.8.3, 30.0 and earlier are affected by a NULL Pointer Dereference vulnerability that could lead t
Substance3D - Designer versions 15.0.3 and earlier are affected by an Out-of-bounds Read vulnerability that could lead t
Substance3D - Modeler versions 1.22.4 and earlier are affected by a NULL Pointer Dereference vulnerability that could le
Scan for 2026 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started