57,566 vulnerabilities published in 2026
decompress before 4.2.2 allows arbitrary hardlink creation during archive extraction, enabling file read disclosure and
A Return of Pointer Value Outside of Expected Range vulnerability in the fileio library of Juniper Networks Junos OS and
Vim is an open source, command line text editor. Prior to 9.2.0725, the single-byte branch of spell_soundfold_sal() in s
OpenStack Ironic through before 37.0.1 allows creation or modification of nodes cross-project without authorization.
PraisonAI (pip package praisonaiagents) before 1.6.78 automatically loads defaults from a project-local .praisonai/confi
PraisonAI before 4.6.78 contains a path traversal vulnerability in ContextGatherer that fails to validate include paths
PraisonAI before 4.6.78 fails to validate file path references in custom command templates, allowing attackers to read f
Integer overflow or wraparound vulnerability in Samsung Open Source rlottie allows Overflow Buffers. This issue affects
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_conn: Fix memory leak in hci_le_big_
In the Linux kernel, the following vulnerability has been resolved: vsock/virtio: fix zerocopy completion for multi-skb
AnyDesk Screen Recording Link Following Denial-of-Service Vulnerability. This vulnerability allows local attackers to cr
AnyDesk Support Information Link Following Denial-of-Service Vulnerability. This vulnerability allows local attackers to
SAP S/4HANA application Project Management (PPM-PRO) allows an attacker with high privileges to execute crafted database
The CONFIG_USERSPACE verification handler for the k_thread_name_copy() system call (z_vrfy_k_thread_name_copy() in kerne
A improper limitation of a pathname to a restricted directory ('path traversal') vulnerability in Fortinet FortiOS 7.6.0
Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to dis
Exposure of sensitive information to an unauthorized actor in Windows Audio Service allows an authorized attacker to dis
Cleartext transmission of sensitive information in Windows Ancillary Function Driver for WinSock allows an authorized at
Exposure of sensitive information to an unauthorized actor in Windows Media allows an authorized attacker to disclose in
Use of uninitialized resource in Windows File Explorer allows an authorized attacker to disclose information locally.
Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to dis
Improper limitation of a pathname to a restricted directory ('path traversal') in Visual Studio Code allows an unauthori
Improper link resolution before file access ('link following') in Universal Plug and Play (upnp.dll) allows an authorize
Use of uninitialized resource in Windows SMB allows an authorized attacker to disclose information locally.
Improper privilege management in Microsoft Windows DNS allows an authorized attacker to bypass a security feature locall
Integer underflow (wrap or wraparound) in Windows Kernel allows an authorized attacker to disclose information locally.
Use of a cryptographic primitive with a risky implementation in Windows Key Guard allows an authorized attacker to bypas
Insertion of sensitive information into log file in Windows Kernel allows an authorized attacker to disclose information
Exposure of sensitive information to an unauthorized actor in Windows Trusted Runtime Interface Driver allows an authori
Access of resource using incompatible type ('type confusion') in Composite Image File System Driver allows an authorized
Use of uninitialized resource in Windows SMB allows an authorized attacker to disclose information locally.
Out-of-bounds read in Windows Kernel allows an authorized attacker to bypass a security feature locally.
Audition is affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attack
Untrusted pointer dereference in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.
Out-of-bounds read in Windows TCP/IP allows an authorized attacker to disclose information locally.
Exposure of sensitive information to an unauthorized actor in Windows Notification allows an authorized attacker to disc
Exposure of sensitive information to an unauthorized actor in Windows Push Notifications allows an authorized attacker t
Buffer over-read in Windows NTFS allows an authorized attacker to disclose information locally.
Exposure of sensitive information to an unauthorized actor in Windows Cryptographic Services allows an authorized attack
Out-of-bounds read in Windows Kernel allows an authorized attacker to elevate privileges locally.
Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to dis
Exposure of sensitive information to an unauthorized actor in Windows Media allows an authorized attacker to disclose in
Out-of-bounds read in Windows Cloud Files Mini Filter Driver allows an authorized attacker to disclose information local
Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.
Exposure of sensitive information to an unauthorized actor in Windows Overlay Filter allows an authorized attacker to di
Exposure of sensitive information to an unauthorized actor in Windows Push Notifications allows an authorized attacker t
Windows Quality of Service (QoS) Packet Scheduler Information Disclosure Vulnerability
Exposure of sensitive information to an unauthorized actor in Windows Push Notifications allows an authorized attacker t
Out-of-bounds read in Windows DWM Core Library allows an authorized attacker to disclose information locally.
Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to dis
Scan for 2026 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started