57,566 vulnerabilities published in 2026
Use after free in Updater in Google Chrome on Windows prior to 150.0.7871.47 allowed a local attacker to perform OS-leve
Insufficient validation of untrusted input in CustomTabs in Google Chrome on Android prior to 150.0.7871.47 allowed a lo
Insufficient validation of untrusted input in UI in Google Chrome on Android prior to 150.0.7871.47 allowed a local atta
Use after free in Updater in Google Chrome on Windows prior to 150.0.7871.47 allowed a local attacker to perform OS-leve
Insufficient validation of untrusted input in Chromoting in Google Chrome on Windows prior to 150.0.7871.47 allowed a lo
Use after free in Installer in Google Chrome on Windows prior to 150.0.7871.47 allowed a local attacker to perform OS-le
Inappropriate implementation in CredentialProvider in Google Chrome on Windows prior to 150.0.7871.47 allowed a local at
electron-updater allows for automatic updates for Electron apps. Prior to 26.15.0, AppImage targets built by app-builder
An out-of-bounds heap write exists in the RAR5 recovery-volume (.rev) parser in WinRAR and UnRAR (RecVolumes5::ReadHeade
In the Linux kernel, the following vulnerability has been resolved: fhandle: fix UAF due to unlocked ->mnt_ns read in m
In the Linux kernel, the following vulnerability has been resolved: drm/i915/gem: Fix phys BO pread/pwrite with offset
NVIDIA Megatron Bridge for Linux contains a vulnerability where an attacker could cause deserialization of untrusted dat
NVIDIA Megatron Bridge for Linux contains a vulnerability where an attacker could cause server-side request forgery. A s
NVIDIA Megatron Bridge for Linux contains a vulnerability where an attacker could cause deserialization of untrusted dat
NVIDIA Megatron Bridge for Linux contains a vulnerability where an attacker could cause deserialization of untrusted dat
NVIDIA Megatron Bridge for Linux contains a vulnerability where an attacker could cause deserialization of untrusted dat
NVIDIA Megatron Bridge for Linux contains a vulnerability where an attacker could cause improper control of dynamically
NVIDIA Megatron Bridge for Linux contains a vulnerability where an attacker could cause deserialization of untrusted dat
NVIDIA Megatron Bridge for Linux contains a vulnerability where an attacker could cause improper control of code generat
NVIDIA Megatron Bridge for Linux contains a vulnerability where an attacker could cause deserialization of untrusted dat
NVIDIA Megatron Bridge for Linux contains a vulnerability where an attacker could cause improper validation of allowed i
NVIDIA Megatron Bridge for Linux contains a vulnerability where an attacker could cause improper control of dynamically
containerd is an open-source container runtime. In versions prior to 1.7.32, 2.0.9, 2.2.4 and 2.3.1, containers launched
Tina is a headless content management system. @tinacms/cli versions prior to 2.4.3 contain a Remote Code Execution vulne
The Minifilter communication port for driver `GFAC_Sys_x64.sys` in Little Orbit GFAC allows a local attacker to access p
An improper validation vulnerability for driver `GFAC_Sys_x64.sys` in Little Orbit GFAC allows a local attacker to escal
Notepad3 through 6.25.822.1 contains a DLL search-order hijacking vulnerability in the About-dialog code path in src/Not
A local privilege escalation vulnerability in the WatchGuard Mobile VPN with SSL client for Windows allows a local attac
A vulnerability was identified in RT-Thread up to 5.0.2. Affected by this vulnerability is the function recvmsg in the l
A security flaw has been discovered in RT-Thread up to 5.0.2. Affected by this issue is the function CAN_Receive in the
In nltk/nltk versions 3.9.3 and earlier, five Stanford interface classes (StanfordPOSTagger, StanfordNERTagger, Stanford
In the Linux kernel, the following vulnerability has been resolved: ipv6: account for fraggap on the paged allocation p
Missing Authorization vulnerability in TUBITAK BILGEM Software Technologies Research Institute Pardus Update allows Priv
Memory Corruption when allocating memory with sizes that exceed the maximum allowed value.
Memory Corruption when processing asynchronous input parameters due to improper handling of modified values between chec
MSI Feature Manager contains a local privilege escalation vulnerability in the KernCoreLib64.sys kernel driver that allo
The application contains a use-after-free vulnerability that can be exploited to cause memory corruption while parsing s
The application contains a stack-based buffer overflow vulnerability that can be exploited by an attacker to execute arb
Uncontrolled search path element issue exists in Pupsman versions prior to 3.9.0. If a crafted DLL file is placed in the
Incorrect default permissions issue exists in Pupsman versions prior to 3.9.0. An attacker can place a malicious executa
The embedded JavaScript in the PDF deleted the pages, making the object invalid. The application attempted to perform a
The application opens the PDF file. JavaScript then rewrites the document to modify the page structure, resulting in the
Embedding JavaScript within a PDF file will cause the page to be deleted. Subsequent scripts will continue to access the
When the application opens a PDF file, JavaScript uses the damaged field tree to trigger field traversal, resulting in t
Local attackers with a X connection able to provide GLX commit to the X server xorg-server before 21.2.24 and xwayland b
When the application opens a PDF and JavaScript modifies the properties of form fields, it causes the state of the under
After the application opened the PDF, JavaScript deleted the form field object. Subsequently, it attempted to access the
When the application opens a PDF file and JavaScript deletes the PDF fields, the subsequent logic still uses the old fie
The application opens the PDF, and JavaScript modifies the form. However, the related objects on the page lack complete
After JavaScript resetting the form, the synchronization process lacks re-entry protection and object lifecycle verifica
Scan for 2026 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started