57,566 vulnerabilities published in 2026
A security vulnerability has been detected in GPAC up to 2.4.0. Affected by this issue is the function Media_GetSample o
In the Linux kernel, the following vulnerability has been resolved: landlock: Fix LOG_SUBDOMAINS_OFF inheritance across
pypdf is a free and open-source pure-python PDF library. Prior to 6.12.0, an attacker who uses this vulnerability can cr
Ubuntu Linux 6.8, 6.17 and 7.0 contain SAUCE patches with a possible NULL pointer dereference in the handling of AppArmo
Ubuntu Linux 6.8, 6.17 and 7.0 contain SAUCE patches which fail to validate invalid sizes of the name field in AppAmor n
Ubuntu Linux 6.8, 7.17 and 7.0 contain AppArmor SAUCE patches which can, under certain circumstances, use an uninitializ
Ubuntu Linux 6.8 contains SAUCE patches with a possible use of an uninitialized variable in AppArmor AF_INET/AF_INET6 so
Ubuntu Linux 6.8, 6.17 and 7.0 contain SAUCE patches with a possible NULL pointer dereference in the handling of AF_INET
In JetBrains IntelliJ IDEA before 2026.1 xXE in the UI Designer form parser was possible
Rizin is a UNIX-like reverse engineering framework and command-line toolset. There is a double free in librz/core/cmd/cm
Rizin is a UNIX-like reverse engineering framework and command-line toolset. There is a heap-buffer-overflow in librz/bi
A vulnerability was detected in Assimp up to 6.0.4. Affected is the function glTF2Importer::ImportEmbeddedTextures in th
A flaw has been found in Assimp up to 6.0.4. Affected by this vulnerability is the function Assimp::glTFImporter::Import
A vulnerability has been found in Assimp up to 6.0.4. Affected by this issue is the function glTF2::LazyDict in the libr
A vulnerability was determined in Assimp up to 6.0.4. This vulnerability affects the function FBXExporter::WriteObjects
A security vulnerability has been detected in Assimp up to 6.0.4. Affected by this issue is the function HL1MDLLoader::r
A security flaw has been discovered in janet-lang janet up to 1.41.0. This affects the function doframe of the file src/
A weakness has been identified in janet-lang janet up to 1.41.0. This vulnerability affects the function unmarshal_one_f
Nextcloud is an open source content collaboration platform. Prior to version 2.7.2, authenticated users can check if arb
Nextcloud is an open source content collaboration platform. From version 6.1.0 to before version 8.2.2, an attacker can
In multiple functions of KeyguardViewMediator.java , there is a possible way to bypass lockdown mode with screen pinning
In updateProvidersWhenServiceRemoved of CredentialManagerService.java, there is a possible way to override settings acro
In handleBondStateChanged of AdapterService.java, there is a possible sensitive information disclosure due to a permissi
In setTo of ResourceTypes.cpp, there is a possible read out of bounds due to an incorrect bounds check. This could lead
In multiple functions of AppOpsService.java, there is a possible missing permission check due to a permissions bypass. T
A vulnerability was found in SourceCodester Customer Review App 1.0. Affected by this vulnerability is the function add_
A security flaw has been discovered in ggml-org whisper.cpp up to 1.8.2. This vulnerability affects the function whisper
A security flaw has been discovered in Orthanc DICOM Server up to 1.12.11. This issue affects the function DcmItem::read
A vulnerability has been found in cilium ebpf up to 0.21.0. This affects the function loadRawSpec of the file btf/btf.go
HCL BigFix Cloud Lifecycle Management is affected by lack of input validation. This low-level flaw allows unauthorized
A vulnerability was found in bytedance InfiniStore up to 0.2.33. The impacted element is the function purge_kv_map in th
Improper export of android application components in ImsSettings prior to SMR Jun-2026 Release 1 allows local attackers
Improper export of android application components in Samsung Auto prior to version 3.1.2.61 in Android 15 and 3.2.0.38 i
A security vulnerability has been detected in SecureAge CatchPulse up to 10.9.3. Impacted is an unknown function in the
A flaw has been found in kokke tiny-regex-c up to f2632c6d9ed25272987471cdb8b70395c2460bdb. This vulnerability affects t
A heap buffer overflow flaw was found in 389 Directory Server. When audit logging is enabled, the create_masked_entry_st
Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.
Protection mechanism failure in Microsoft Office Excel allows an unauthorized attacker to bypass a security feature loca
Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to disclose information locally.
Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.
Ghidra before 12.1 contains a path traversal vulnerability in SameDirDebugInfoProvider that fails to validate filenames
Dulwich is a pure-Python implementation of the Git file formats and protocols. Starting in version 0.24.0 and prior to v
In PostWipeData of recovery_ui.cpp, there is a possible data persistence issue after a factory reset due to a logic erro
In iavb_parse_key_data of avb_rsa.c, there is a possible out of bounds read due to improper input validation. This could
In keymint, there is a possible Permission Bypass due to a logic error in the code. This could lead to local information
In Camera, there is a possible unauthorized way to access photos due to a missing permission check. This could lead to l
In Contacts Provider, there is a possible way to access an incoming call's phone number and associated metadata due to a
A security flaw has been discovered in Browserbase Skills up to 20260526. This impacts an unknown function of the compon
pypdf is a free and open-source pure-python PDF library. Prior to 6.12.2, an attacker who uses this vulnerability can cr
ImageMagick before 7.1.2-19 contains an out-of-bounds access vulnerability in ConnectedComponentsImage() when processing
Scan for 2026 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started