57,566 vulnerabilities published in 2026
In the Linux kernel, the following vulnerability has been resolved: media: verisilicon: AV1: Fix tile info buffer size
In the Linux kernel, the following vulnerability has been resolved: drm/atmel-hlcdc: fix use-after-free of drm_crtc_com
In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Refactor amdgpu_gem_va_ioctl for Handli
In the Linux kernel, the following vulnerability has been resolved: vhost: move vdpa group bound check to vhost_vdpa R
In the Linux kernel, the following vulnerability has been resolved: usb: chipidea: udc: fix DMA and SG cleanup in _ep_n
In the Linux kernel, the following vulnerability has been resolved: media: qcom: camss: vfe: Fix out-of-bounds access i
In the Linux kernel, the following vulnerability has been resolved: alpha: fix user-space corruption during memory comp
In the Linux kernel, the following vulnerability has been resolved: bnxt_en: Fix RSS context delete logic We need to f
In the Linux kernel, the following vulnerability has been resolved: media: chips-media: wave5: Fix Null reference while
In the Linux kernel, the following vulnerability has been resolved: net: mana: Fix double destroy_workqueue on service
In the Linux kernel, the following vulnerability has been resolved: dm: clear cloned request bio pointer when last clon
In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Add sanity check for OOB writes at
Incorrect permission assignment for a resource in the patch management component of the WatchGuard Agent on Windows allo
The MongoDB C Driver's Cyrus SASL integration performs unsafe string copying during username canonicalization, enabling
Use of Hard-coded Cryptographic Key vulnerability in WatchGuard Agent on Windows allows Inclusion of Code in Existing Pr
Uncontrolled Search Path Element vulnerability in WatchGuard Agent on Windows allows Using Malicious Files.
Insufficient policy enforcement in DevTools in Google Chrome on Android prior to 148.0.7778.96 allowed a local attacker
Use after free in Chromoting in Google Chrome on Windows prior to 148.0.7778.96 allowed a local attacker to perform OS-l
Insufficient validation of untrusted input in Updater in Google Chrome on Windows prior to 148.0.7778.96 allowed a local
Inappropriate implementation in Chromoting in Google Chrome on Windows prior to 148.0.7778.96 allowed a local attacker t
Insufficient validation of untrusted input in Updater in Google Chrome on Mac prior to 148.0.7778.96 allowed a local att
OpenClaw before 2026.4.20 fails to properly reserve the OPENCLAW_ runtime-control environment namespace in workspace dot
OpenClaw before 2026.4.22 derives loopback MCP owner context from spoofable server-issued bearer tokens in request heade
Out-of-bounds write vulnerability in The Document Foundation LibreOffice via crafted OOXML documents with mismatched enc
An improper input validation, together with an overly permissive default CORS configuration in Open Notebook v1.8.1 allo
Notepad Next is a cross-platform, reimplementation of Notepad++. Prior to version 0.14, NotepadNext's detectLanguageFrom
GitPython is a python library used to interact with Git repositories. Prior to version 3.1.49, GitConfigParser.set_value
electerm is an open-sourced terminal/ssh/sftp/telnet/serialport/RDP/VNC/Spice/ftp client. Prior to version 3.7.9, a code
The socket connection handler in aswArPot.sys in the Avast and AVG Windows Anti Rootkit driver before 22.1 allows local
NAVER MYBOX Explorer for Windows before 3.0.11.160 allows a local attacker to escalate privileges to NT AUTHORITY\SYSTEM
PredatorSense version 3.00.3136 to 3.00.3196 contain Local Privilege Escalation (LPE) vulnerability.The program exposes
In the Linux kernel, the following vulnerability has been resolved: Revert "arm64: zynqmp: Add an OP-TEE node to the de
In the Linux kernel, the following vulnerability has been resolved: drm/panthor: fix for dma-fence safe access rules C
In the Linux kernel, the following vulnerability has been resolved: media: uvcvideo: Return queued buffers on start_str
In the Linux kernel, the following vulnerability has been resolved: mm/page_alloc: clear page->private in free_pages_pr
In the Linux kernel, the following vulnerability has been resolved: iio: accel: adxl380: Avoid reading more entries tha
In the Linux kernel, the following vulnerability has been resolved: bpf: Properly mark live registers for indirect jump
In the Linux kernel, the following vulnerability has been resolved: USB: dummy-hcd: Fix interrupt synchronization error
In the Linux kernel, the following vulnerability has been resolved: cpufreq: governor: fix double free in cpufreq_dbs_g
In the Linux kernel, the following vulnerability has been resolved: netfilter: flowtable: strictly check for maximum nu
In the Linux kernel, the following vulnerability has been resolved: crypto: caam - fix overflow on long hmac keys When
In the Linux kernel, the following vulnerability has been resolved: thermal: core: Fix thermal zone device registration
In the Linux kernel, the following vulnerability has been resolved: ipv6: prevent possible UaF in addrconf_permanent_ad
PHPUnit is a testing framework for PHP. In versions 12.5.21 and 13.1.5, PHPUnit forwards PHP INI settings to child proce
In the Linux kernel, the following vulnerability has been resolved: i3c: mipi-i3c-hci: Correct RING_CTRL_ABORT handling
In the Linux kernel, the following vulnerability has been resolved: i3c: mipi-i3c-hci: Fix race in DMA ring dequeue Th
In the Linux kernel, the following vulnerability has been resolved: io_uring/kbuf: check if target buffer list is still
In the Linux kernel, the following vulnerability has been resolved: drm/i915: Fix potential overflow of shmem scatterli
In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Fix use-after-free race in VM acquire
In the Linux kernel, the following vulnerability has been resolved: net: nexthop: fix percpu use-after-free in remove_n
Scan for 2026 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started