57,566 vulnerabilities published in 2026
A DLL hijacking vulnerability in Wassimulator (GitHub) CactusViewer v2.3.0 allows attackers to escalate privileges and e
OP-TEE is a Trusted Execution Environment (TEE) designed as companion to a non-secure Linux kernel running on Arm; Corte
In the Linux kernel, the following vulnerability has been resolved: power: supply: pm8916_lbc: Fix use-after-free for e
In the Linux kernel, the following vulnerability has been resolved: pstore/ram: fix buffer overflow in persistent_ram_s
In the Linux kernel, the following vulnerability has been resolved: procfs: fix missing RCU protection when reading rea
In the Linux kernel, the following vulnerability has been resolved: ipv6: Fix out-of-bound access in fib6_add_rt2node()
In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix out-of-bounds stream encoder i
In the Linux kernel, the following vulnerability has been resolved: nfc: hci: shdlc: Stop timers and work before freein
In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: do WoW offloads only on primary link
A network man-in-the-middle between nats-sync and the BOSH director can steal the director credentials (Basic auth heade
Unchecked public access permissions on a core Broadcast Receiver allow unauthorized local software components to invoke
The system Binder boundary accepts unverified pass-through AT commands, giving local applications the power to read base
Broadcast events allow malicious software to rewrite the device's default Mobile Device Management (MDM) endpoint addres
A local privilege escalation vulnerability exists in Forcepoint VPN Client that allows a local non-administrative user t
Seagull Software BarTender 2021 R1 through 12.0.1 contains an insecure deserialization vulnerability that allows low-pri
Inappropriate implementation in UI in Google Chrome on Windows prior to 149.0.7827.53 allowed a local attacker to perfor
Use after free in WebView in Google Chrome on Android prior to 149.0.7827.53 allowed a local attacker to execute arbitra
Inappropriate implementation in Installer in Google Chrome on Windows prior to 149.0.7827.53 allowed a local attacker to
A vulnerability in the CLI of Cisco Catalyst SD-WAN Controller, formerly SD-WAN vSmart, Cisco Catalyst SD-WAN Manager, f
A flaw was found in ansible-core. The ansible-galaxy role install command processes dependency specifications from a rol
Improper export of android application components in Galaxy Editing Service prior to SMR Jun-2026 Release 1 allows local
Improper access control in MediaTek Audio HAL prior to SMR Jun-2026 Release 1 allows local attackers to trigger privileg
Improper authorization in AppBlock prior to SMR Jun-2026 Release 1 allows local attacker to launch arbitrary activity. U
A stack-based buffer overflow flaw was found in the X.Org X server and Xwayland. A mismatch between the X server and the
A use-after-free flaw was found in the X.Org X server and Xwayland in miSyncDestroyFence(). A client that sets up multip
A stack-based buffer overflow flaw was found in the X.Org X server and Xwayland. The X server has multiple stack buffers
A stack-based buffer overflow flaw was found in the X.Org X server and Xwayland. _XkbSetMapChecks() declares a fixed-siz
A use-after-free flaw was found in the X.Org X server and Xwayland in FreeCounter(). A client that sets up multiple Sync
A use-after-free flaw was found in the X.Org X server and Xwayland in SyncChangeCounter(). A client that sets up multipl
An out-of-bounds write flaw was found in the X.Org X server and Xwayland in DRIGetBuffers/DRIGetBuffersWithFormat. A cli
In the Linux kernel, the following vulnerability has been resolved: io-wq: check that the predecessor is hashed in io_w
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_uart: fix UAFs and race conditions i
In the Linux kernel, the following vulnerability has been resolved: mm/zone_device: do not touch device folio after cal
In the Linux kernel, the following vulnerability has been resolved: mm/alloc_tag: clear codetag for pages allocated bef
In the Linux kernel, the following vulnerability has been resolved: lib: test_hmm: evict device pages on file close to
In the Linux kernel, the following vulnerability has been resolved: vmalloc: fix buffer overflow in vrealloc_node_align
In the Linux kernel, the following vulnerability has been resolved: mtd: docg3: fix use-after-free in docg3_release()
In the Linux kernel, the following vulnerability has been resolved: dm: fix a buffer overflow in ioctl processing Tony
In the Linux kernel, the following vulnerability has been resolved: spi: topcliff-pch: fix use-after-free on unbind Gi
In the Linux kernel, the following vulnerability has been resolved: pmdomain: mediatek: fix use-after-free in scpsys_ge
In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu/userq: fix access to stale wptr mapping
A YAML injection vulnerability exists in the Windows.Collectors.Remapping artifact of Rapid7 Velociraptor before version
In the Linux kernel, the following vulnerability has been resolved: net/sched: act_ct: Only release RCU read lock after
In the Linux kernel, the following vulnerability has been resolved: net: gro: don't merge zcopy skbs skb_gro_receive()
In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: use list_del_rcu for netlink
In the Linux kernel, the following vulnerability has been resolved: dm: fix unlocked test for dm_suspended_md The func
In the Linux kernel, the following vulnerability has been resolved: Revert "net/smc: Introduce TCP ULP support" This r
In the Linux kernel, the following vulnerability has been resolved: media: rockchip: rkcif: fix off by one bugs Change
Waves Central for macOS versions 13.0.9 through 16.5.5 contain a local privilege escalation vulnerability. A trusted XPC
Omnissa Workspace ONE® Assist for macOS contains a Local Privilege Escalation Vulnerability.
Scan for 2026 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started