57,566 vulnerabilities published in 2026
Bytello Share (Windows Edition) installer executable provided by Bytello insecurely loads Dynamic Link Libraries. If the
Privilege escalation in the mk_mysql agent plugin on Windows in Checkmk <2.4.0p29, <2.3.0p47, and 2.2.0 (EOL) allows a l
IObit Uninstaller 9.5.0.15 contains an unquoted service path vulnerability in the IObitUnSvr service that allows local a
protobufjs-cli is the command line add-on for protobuf.js. Prior to 1.2.1 and 2.0.2, pbts invoked JSDoc by building a sh
In the Linux kernel, the following vulnerability has been resolved: iio: chemical: sps30_i2c: fix buffer size in sps30_
In the Linux kernel, the following vulnerability has been resolved: net-shapers: don't free reply skb after genlmsg_rep
The Claude Desktop app gives you Claude Code with a graphical interface built for running multiple sessions side by side
GitHub Copilot CLI brings AI-powered coding assistance directly to your command line. Prior to 1.0.43, a security vulne
An improper protection of alternate path vulnerability in Palo Alto Networks Prisma® Browser on macOS fails to properly
A code injection vulnerability in Palo Alto Networks Prisma® Browser on macOS fails to properly restrict access to its A
A vulnerability with a privilege management mechanism in the Palo Alto Networks Prisma Access Agent® enables a locally a
Multiple authorization bypass vulnerabilities in the Endpoint DLP component of Prisma Access Agent® allow a local attack
Multiple local privilege escalation vulnerabilities in the Palo Alto Networks GlobalProtect™ app allow a local user to e
External Control of File Name or Path in the Zoom Workplace VDI Plugin Windows Universal Installer before version 6.6.11
Untrusted search path in the installer for Zoom Rooms for Windows before version 7.0.0 may allow an authenticated user t
gitoxide is an implementation of git written in Rust. Prior to 0.21.1, a malicious tree can be constructed that will, wh
OpenImageIO is a toolset for reading, writing, and manipulating image files of any image file format relevant to VFX / a
OpenImageIO is a toolset for reading, writing, and manipulating image files of any image file format relevant to VFX / a
OpenImageIO is a toolset for reading, writing, and manipulating image files of any image file format relevant to VFX / a
OpenImageIO is a toolset for reading, writing, and manipulating image files of any image file format relevant to VFX / a
A DLL hijacking vulnerability in the AMD Cleanup Utility could allow an attacker to achieve privilege escalation potenti
VMware Fusion contains a TOCTOU (Time-of-check Time-of-use) vulnerability that occurs during an operation performed by a
Turborepo is a high-performance build system for JavaScript and TypeScript codebases. Prior to 2.9.14000, the Turborepo
Tabby (formerly Terminus) is a highly configurable terminal emulator. Prior to 1.0.233, since Tabby does not escape cont
OKI sPSV Port Manager 1.0.41 contains an unquoted service path vulnerability in the sPSVOpLclSrv service that allows loc
Syncplify.me Server! 5.0.37 contains an unquoted service path vulnerability in the SMWebRestServicev5 service that allow
Privacy Drive 3.17.0 contains an unquoted service path vulnerability in the pdsvc.exe service binary that allows local a
Advanced System Care Service 13.0.0.157 contains an unquoted service path vulnerability in the AdvancedSystemCareService
Kite 4.2.0.1 U1 contains an unquoted service path vulnerability in the KiteService Windows service that allows local att
VX Search 13.5.28 contains an unquoted service path vulnerability in both VX Search Server and VX Search Enterprise serv
Claude HUD through 0.0.12, patched in commit 234d9aa, contains a command injection vulnerability that allows local attac
In mlflow/mlflow versions prior to 3.11.0, the `get_or_create_nfs_tmp_dir()` function in `mlflow/utils/file_utils.py` cr
Use after free vulnerability in Samsung Open Source Escargot allows Pointer Manipulation. This issue affects Escargot:
Heap-based buffer overflow vulnerability in Samsung Open Source Escargot allows Overflow Buffers. This issue affects Es
Out-of-bounds write vulnerability in Samsung Open Source Escargot allows Overflow Buffers. This issue affects Escargot:
The adjustments made for XSA-379 as well as those subsequently becoming XSA-387 still left a race window, when a HVM or
In `src/havegecmd.c`, the `socket_handler` function performs a credential check on the abstract UNIX socket (`\0/sys/ent
`PluginScript` attempts to `chroot` the plugin to the `repoManagerRoot`, this root is frequently `/` (the system root) i
Improper Access Control vulnerability in Mesalvo Meona Client Launcher Component, Mesalvo Meona Server Component enables
Improper link resolution before file access ('link following') in Microsoft Defender allows an authorized attacker to el
Improper access control in Windows Admin Center allows an authorized attacker to elevate privileges over a network.
MediaArea MediaInfoLib Channel Splitting heap-based buffer overflow vulnerability
NVIDIA BioNemo for Linux contains a vulnerability where a user could cause a deserialization of untrusted data. A succes
A potential security vulnerability has been identified in the HP Linux Imaging and Printing Software. This potential vul
The setcred(2) system call is only available to privileged users. However, before the privilege level of the caller is
MediaArea MediaInfoLib LXF element parsing heap-based buffer overflow vulnerability
A file descriptor can be closed while a thread is blocked in a poll(2) or select(2) call waiting for that descriptor. B
In the Linux kernel, the following vulnerability has been resolved: net/rds: reset op_nents when zerocopy page pin fail
In the Linux kernel, the following vulnerability has been resolved: accel/ivpu: Disallow re-exporting imported GEM obje
In the Linux kernel, the following vulnerability has been resolved: rtmutex: Use waiter::task instead of current in rem
Scan for 2026 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started