57,566 vulnerabilities published in 2026
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution'), Use of Password Hash With Ins
OpenClaw versions prior to 2026.2.14 contain a denial of service vulnerability in the extractArchive function within src
OpenClaw versions prior to 2026.2.14 decode base64-backed media inputs into buffers before enforcing decoded-size budget
Sensitive information disclosure due to improper configuration of a headless browser. The following products are affecte
Binutils objdump contains a denial-of-service vulnerability when processing a crafted binary with malformed DWARF debug
Binutils objdump contains a denial-of-service vulnerability when processing a crafted binary with malformed DWARF debug_
GNU Binutils thru 2.46 readelf contains a vulnerability that leads to an invalid pointer free when processing a crafted
eml_parser serves as a python module for parsing eml files and returning various information found in the e-mail as well
In the Linux kernel, the following vulnerability has been resolved: fs/xattr: missing fdput() in fremovexattr error pat
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-1
node-tar is a full-featured Tar for Node.js. Prior to version 7.5.11, tar (npm) can be tricked into creating a symlink t
Multiple i-フィルター products are configured with improper file access permission settings. Files may be created or overwrit
Out-of-bounds read in Push Message Routing Service allows an authorized attacker to disclose information locally.
Out-of-bounds read in Microsoft Graphics Component allows an unauthorized attacker to disclose information locally.
Exposure of sensitive information to an unauthorized actor in Windows Accessibility Infrastructure (ATBroker.exe) allows
iccDEV provides a set of libraries and tools for working with ICC color management profiles. Prior to 2.3.1.5, there is
iccDEV provides a set of libraries and tools for working with ICC color management profiles. Prior to 2.3.1.5, there is
iccDEV provides a set of libraries and tools for working with ICC color management profiles. Prior to 2.3.1.5, there is
iccDEV provides a set of libraries and tools for working with ICC color management profiles. Prior to 2.3.1.5, there is
Substance3D - Painter versions 11.1.2 and earlier are affected by a NULL Pointer Dereference vulnerability that could le
Substance3D - Painter versions 11.1.2 and earlier are affected by a NULL Pointer Dereference vulnerability that could le
Substance3D - Painter versions 11.1.2 and earlier are affected by an out-of-bounds read vulnerability that could lead to
Substance3D - Painter versions 11.1.2 and earlier are affected by a NULL Pointer Dereference vulnerability that could le
Substance3D - Painter versions 11.1.2 and earlier are affected by a NULL Pointer Dereference vulnerability that could le
Substance3D - Painter versions 11.1.2 and earlier are affected by an out-of-bounds read vulnerability that could lead to
Substance3D - Painter versions 11.1.2 and earlier are affected by a NULL Pointer Dereference vulnerability that could le
Substance3D - Painter versions 11.1.2 and earlier are affected by a NULL Pointer Dereference vulnerability that could le
Substance3D - Painter versions 11.1.2 and earlier are affected by an Out-of-bounds Read vulnerability that could lead to
DNG SDK versions 1.7.1 2471 and earlier are affected by an Integer Overflow or Wraparound vulnerability that could lead
Cwe is not in rca categories in Microsoft Authenticator allows an unauthorized attacker to disclose information locally.
Acrobat Reader versions 24.001.30307, 24.001.30308, 25.001.21265 and earlier are affected by an Improper Certificate Val
pypdf is a free and open-source pure-python PDF library. Prior to 6.8.0, an attacker who uses this vulnerability can cra
Illustrator versions 29.8.4, 30.1 and earlier are affected by an Out-of-bounds Read vulnerability that could lead to mem
Illustrator versions 29.8.4, 30.1 and earlier are affected by an Out-of-bounds Read vulnerability that could lead to mem
Adobe Commerce versions 2.4.9-alpha3, 2.4.8-p3, 2.4.7-p8, 2.4.6-p13, 2.4.5-p15, 2.4.4-p16 and earlier are affected by a
Adobe Commerce versions 2.4.9-alpha3, 2.4.8-p3, 2.4.7-p8, 2.4.6-p13, 2.4.5-p15, 2.4.4-p16 and earlier are affected by a
InputMapper 1.6.10 contains a buffer overflow vulnerability in the username field that allows local attackers to crash t
Quill provides simple mac binary signing and notarization from any platform. Quill before version v0.7.1 contains an unb
A potential divide by zero vulnerability was reported in the Lenovo Virtual Bus driver used in Smart Connect that could
An input validation vulnerability was reported in the LenovoProductivitySystemAddin used in Lenovo Vantage and Lenovo Ba
During an internal security assessment, a potential vulnerability was discovered in Lenovo PC Manager that could allow a
Inspektor Gadget is a set of tools and framework for data collection and system inspection on Kubernetes clusters and Li
The authentication mechanism for a specific feature in the EasyShare module contains a vulnerability. If specific condit
wpDiscuz before 7.6.47 contains a cross-site scripting vulnerability in the customCss field that allows administrators t
ZKTeco ZKBioSecurity 3.0 contains a local authorization bypass vulnerability in visLogin.jsp that allows attackers to au
in OpenHarmony v5.1.0 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through o
in OpenHarmony v5.1.0 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through o
Improper export of android application components in Samsung Assistant prior to version 9.3.10.7 allows local attacker t
Improper access control in Galaxy Store prior to version 4.6.03.8 allows local attacker to create file with Galaxy Store
Path traversal in Galaxy Store prior to version 4.6.03.8 allows local attacker to create file with Galaxy Store privileg
Scan for 2026 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started