57,566 vulnerabilities published in 2026
In the Linux kernel, the following vulnerability has been resolved: drm/xe/guc: Hold device ref until queue teardown co
In the Linux kernel, the following vulnerability has been resolved: drm/xe/guc: Keep scheduler timeline name alive The
In the Linux kernel, the following vulnerability has been resolved: drm/xe/vf: Fix VF CCS attach/detach race with in-fl
In the Linux kernel, the following vulnerability has been resolved: can: raw: add locking for raw flags bitfield With
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: mgmt: hold reference for hci_conn in mgm
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: mgmt: fix locking in unpair_device/disco
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: MGMT: revalidate LOAD_CONN_PARAM queued
In the Linux kernel, the following vulnerability has been resolved: ppp: defer channel free to an RCU grace period to f
In the Linux kernel, the following vulnerability has been resolved: bpf: Fix UAF in sock clone early bailouts Similar
In the Linux kernel, the following vulnerability has been resolved: firmware: arm_ffa: Fix Endpoint Memory Access Descr
In the Linux kernel, the following vulnerability has been resolved: firmware: arm_ffa: Fix out-of-bound writes in ffa_s
In the Linux kernel, the following vulnerability has been resolved: wifi: cfg80211: use wiphy work for socket owner aut
In the Linux kernel, the following vulnerability has been resolved: xfrm: clear mode callbacks after failed mode setup
In the Linux kernel, the following vulnerability has been resolved: RDMA/siw: publish QP after initialization siw_crea
In the Linux kernel, the following vulnerability has been resolved: RDMA/irdma: Prevent rereg_mr for non-mem regions W
In the Linux kernel, the following vulnerability has been resolved: gpu: host1x: Fix use-after-free in host1x_bo_clear_
A flaw was found in libvirt. A local attacker, specifically a process running as the confined `swtpm` user, could exploi
`openvt -u` is intended to identify the owner of the current VT and then execute `login` as that user from a privileged
A vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 15), Solid Edge SE2026 (All versi
A vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 15), Solid Edge SE2026 (All versi
A vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 15), Solid Edge SE2026 (All versi
A vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 15), Solid Edge SE2026 (All versi
A vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 15), Solid Edge SE2026 (All versi
A vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 15), Solid Edge SE2026 (All versi
A vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 15), Solid Edge SE2026 (All versi
A vulnerability has been identified in Simcenter Femap (All versions < V2606), Simcenter Nastran (All versions < V2606).
A vulnerability has been identified in Simcenter Femap (All versions < V2606.0001). The affected applications contains a
A vulnerability has been identified in Simcenter Femap (All versions < V2606.0001). The affected applications contains a
A vulnerability has been identified in Parasolid V38.0 (All versions < V38.0.235), Parasolid V38.1 (All versions < V38.1
Genkit does not properly validate host request headers. Any host on the developer's network, and any website the develop
Improper access control for some Intel(R) PROSet/Wireless WiFi Software for Windows within Ring 2: Device Drivers may al
is affected by an Incorrect Authorization vulnerability that could result in privilege escalation. A low-privileged atta
Missing authentication for critical function in Windows RPC API allows an authorized attacker to elevate privileges loca
Inclusion of functionality from untrusted control sphere in Visual Studio Code - Python extension allows an unauthorized
Heap-based buffer overflow in Windows Imaging Component allows an unauthorized attacker to execute code locally.
Untrusted search path in Windows Narrator Braille allows an authorized attacker to elevate privileges locally.
Integer overflow or wraparound in .NET allows an unauthorized attacker to elevate privileges locally.
Authorization bypass through user-controlled key in Visual Studio Code allows an unauthorized attacker to bypass a secur
Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally.
Integer overflow or wraparound in Windows Installer allows an authorized attacker to elevate privileges locally.
Use after free in Windows Work Folder Service allows an authorized attacker to elevate privileges locally.
Heap-based buffer overflow in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
Heap-based buffer overflow in Windows Sensor Data Service allows an authorized attacker to elevate privileges locally.
Missing authentication for critical function in Windows Remote Desktop Services allows an authorized attacker to elevate
Use after free in Application Information Services allows an authorized attacker to elevate privileges locally.
Improper link resolution before file access ('link following') in Windows Accessibility Infrastructure (ATBroker.exe) al
Heap-based buffer overflow in Windows Storage allows an authorized attacker to elevate privileges locally.
Missing authentication for critical function in Windows Remote Desktop Services allows an authorized attacker to elevate
Missing authentication for critical function in Windows Remote Desktop Services allows an authorized attacker to elevate
Missing authentication for critical function in Windows Remote Desktop Services allows an authorized attacker to elevate
Scan for 2026 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started