57,566 vulnerabilities published in 2026
In ExecuteGraph command handler of EdgeTPU firmware, there is a possible out of bounds write due to an integer overflow.
In OSMMapPMRGeneric of pmr_os.c, there is a possible way to leverage a system call to system call to maliciously expand
In Write of msg_to_host_buffer.cc, there is a possible out of bounds write due to an incorrect bounds check. This could
stable-diffusion.cpp is a pure C/C++ library for running diffusion model (Stable Diffusion, Flux, Wan, Qwen Image, Z-Ima
stable-diffusion.cpp is a pure C/C++ library for running diffusion model (Stable Diffusion, Flux, Wan, Qwen Image, Z-Ima
Vulnerability in the Siebel CRM Deployment product of Oracle Siebel CRM (component: Database Upgrade). Supported versio
In overrideConfig of CarrierConfigLoader.java, there is a possible way to bypass UID check due to a permissions bypass.
In multiple locations there is a possible provisioning bypass due to improper input validation. This could lead to local
In SettingsLib, there is a possible way to disable system components due to a logic error in the code. This could lead t
In setAllowedCarriers of PhoneInterfaceManager.java, there is a possible way to disable carrier restrictions due to a lo
In createSessionInternal of PackageInstallerService.java, there is a possible method to remove a DPC app from a managed
In SettingsLib, there is a possible missing permission check due to a logic error in the code. This could lead to local
In NFC, there is a possible way to spoof an NFC event due to a missing permission check. This could lead to local escala
In tryStartActivity of NfcDispatcher.java, there is a possible automatic special app access permission assignment due to
Use after free in Chromoting in Google Chrome on Windows prior to 149.0.7827.155 allowed a local attacker to perform OS-
In Telecomm, there is a possible way to initiate an unauthorized phone call due to a permissions bypass. This could lead
Dell AIOps Collector versions prior to 1.18.3 contain a "Use of Default Credentials" vulnerability. A low privileged att
A flaw was found in the cifs-utils package where the cifs.upcall helper fails to securely drop its root privileges befor
In AzeoTech DAQFactory versions 21.1 and prior, a Type Confusion vulnerability can be exploited by an attacker using spe
Punto Switcher through 4.5.0.583 contains an unquoted search path element vulnerability that allows local attackers to e
Dell Server Hardware Manager, versions prior to 3.2.2, contains an Improper Access Control vulnerability. A low privileg
Realtek High Definition Audio Driver 6.0.1.6730 contains an unquoted service path vulnerability that allows local attack
Vembu StoreGrid 4.0 contains an unquoted service path vulnerability in the RemoteBackup and RemoteBackup_webServer servi
Fortitude HTTP 1.0.4.0 contains an unquoted service path vulnerability that allows local users to execute arbitrary code
Comodo Chromodo Browser 52.15.25.664 contains an unquoted service path vulnerability in the ChromodoUpdater service that
Iperius Remote 1.7.0 contains an unquoted service path vulnerability that allows local users to execute arbitrary code w
Comodo Dragon Browser versions up to 52.15.25.663 contain a privilege escalation vulnerability in the DragonUpdater serv
Windows Firewall Control 4.8.6.0 contains an unquoted service path vulnerability that allows local attackers to escalate
NetDrive 2.6.12 contains an unquoted service path vulnerability in the Netdrive2_Service_Netdrive2 service that allows l
Wise Care 365 4.27 and Wise Disk Cleaner 9.29 contain unquoted service path vulnerabilities in the WiseBootAssistant and
AnyDesk 2.5.0 contains an unquoted service path vulnerability that allows local users to execute arbitrary code with SYS
Matrix42 Remote Control Host 3.20.0031 contains an unquoted service path vulnerability in the FastViewerRemoteService an
Network Inventory Advisor 5.0.26.0 installs the niaservice service with an unquoted binary path that allows local attack
TFTP Broadband 4.3.0.1465 contains an unquoted service path vulnerability in the tftpt.exe service binary that allows lo
RealTimes Desktop Service 18.1.4 contains an unquoted service path vulnerability in the rpdsvc.exe binary that allows lo
Realtek Audio Service 1.0.0.55 contains an unquoted service path vulnerability in RtkAudioService64.exe that allows loca
Winstep 18.06.0096 contains an unquoted service path vulnerability in the Winstep Xtreme Service that allows local attac
Wondershare PDFelement 5.2.9 contains a privilege escalation vulnerability due to an unquoted service path in the WsAppS
Brother SAPSprint 7.60 contains an unquoted service path vulnerability in the SAPSprint service binary that allows local
Malwarebytes 4.5 contains an unquoted service path vulnerability in the MBAMService executable that allows local attacke
Chromacam 4.0.3.0 contains an unquoted service path vulnerability in the PsyFrameGrabberService that allows local attack
AVAST Antivirus 25.11 contains an unquoted service path vulnerability in the SecureLine service that allows local non-pr
In the Linux kernel, the following vulnerability has been resolved: RDMA: During rereg_mr ensure that REREG_ACCESS is c
In the Linux kernel, the following vulnerability has been resolved: ip6_vti: set netns_immutable on the fallback device
In the Linux kernel, the following vulnerability has been resolved: bpf: Free reuseport cBPF prog after RCU grace perio
A vulnerability has been found in AOMEI Partition Assistant up to 10.10.1. This vulnerability affects unknown code in th
A vulnerability was found in AOMEI Dynamic Disk Manager up to 10.10.1. This issue affects some unknown processing in the
A vulnerability was determined in AOMEI Backupper up to 8.3.0. Impacted is an unknown function in the library amwrtdrv.s
A vulnerability was identified in EaseUS Partition Master up to 14.5. The affected element is an unknown function in the
A security flaw has been discovered in EaseUS Partition Master up to 14.5. The impacted element is an unknown function i
Scan for 2026 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started