57,566 vulnerabilities published in 2026
A Null Pointer Dereference vulnerability exists in the referer header check of the web portal of TP-Link TL-WR841N v14,
A vulnerability in Palo Alto Networks PAN-OS software enables an unauthenticated attacker to cause a denial of service (
Svelte devalue is a JavaScript library that serializes values into strings when JSON.stringify isn't sufficient for the
Svelte devalue is a JavaScript library that serializes values into strings when JSON.stringify isn't sufficient for the
SvelteKit is a framework for rapidly developing robust, performant web applications using Svelte. From 2.49.0 to 2.49.4,
NanoMQ v0.22.7 is vulnerable to Denial of Service (DoS) due to improper resource throttling. A crafted sequence of reque
A Buffer Over-read vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved
A Loop with Unreachable Exit Condition ('Infinite Loop') vulnerability in the SIP application layer gateway (ALG) of Jun
An Improper Handling of Exceptional Conditions vulnerability in the packet forwarding engine (PFE) of Juniper Networks J
An Incorrect Initialization of Resource vulnerability in the Internal Device Manager (IDM) of Juniper Networks Junos OS
An Improper Locking vulnerability in the GTP plugin of Juniper Networks Junos OS on SRX Series allows an unauthenticated
An Improper Validation of Syntactic Correctness of Input vulnerability in the Web-Filtering module of Juniper Networks J
A Double Free vulnerability in the flow processing daemon (flowd) of Juniper Networks Junos OS on SRX and MX Series allo
An Unchecked Return Value vulnerability in the DNS module of Juniper Networks Junos OS on SRX Series allows an unauthent
Calling getnetbyaddr or getnetbyaddr_r with a configured nsswitch.conf that specifies the library's DNS backend for netw
Deno is a JavaScript, TypeScript, and WebAssembly runtime. Before 2.6.0, node:crypto doesn't finalize cipher. The vulner
SmarterTrack 7922 contains an information disclosure vulnerability in the Chat Management search form that reveals agent
Redragon Gaming Mouse driver contains a kernel-level vulnerability that allows attackers to trigger a denial of service
Yenkee Hornet Gaming Mouse driver GM312Fltr.sys contains a buffer overrun vulnerability that allows attackers to crash t
SmartFTP Client 10.0.2909.0 contains multiple denial of service vulnerabilities that allow attackers to crash the applic
Telegram Desktop 2.9.2 contains a denial of service vulnerability that allows attackers to crash the application by send
Leawo Prof. Media 11.0.0.1 contains a denial of service vulnerability that allows attackers to crash the application by
Backup Key Recovery 2.2.7 contains a denial of service vulnerability that allows attackers to crash the application by o
NBMonitor 1.6.8 contains a denial of service vulnerability that allows attackers to crash the application by overflowing
Nsauditor 3.2.3 contains a denial of service vulnerability in the registration code input field that allows attackers to
Statistics Database System developed by Gotac has an Arbitrary File Read vulnerability, allowing unauthenticated remote
Statistics Database System developed by Gotac has a Missing Authentication vulnerability, allowing unauthenticated remot
In Apache Airflow versions before 3.1.6, when rendered template fields in a Dag exceed [core] max_templated_field_length
In Apache Airflow versions before 3.1.6, and 2.11.1 the proxies and proxy fields within a Connection may include proxy U
The Librarian contains a information leakage vulnerability through the `web_fetch` tool, which can be used to retrieve a
The Librarian contains an internal port scanning vulnerability, facilitated by the `web_fetch` tool, which can be used w
TheLibrarians web_fetch tool can be used to retrieve the Adminer interface content, which can then be used to log into t
Tenda AX-1806 v1.0.0.1 was discovered to contain a stack overflow in the timeZone parameter of the fromSetSysTime functi
Tenda AX-1806 v1.0.0.1 was discovered to contain a stack overflow in the security parameter of the sub_4C408 function. T
RustFS is a distributed object storage system built in Rust. From >= 1.0.0-alpha.1 to 1.0.0-alpha.79, invalid RPC signat
DupTerminator 1.4.5639.37199 contains a denial of service vulnerability that allows attackers to crash the application b
RarmaRadio 2.72.8 contains a denial of service vulnerability that allows attackers to crash the application by overflowi
iDailyDiary 4.30 contains a denial of service vulnerability that allows attackers to crash the application by overflowin
WebSSH for iOS 14.16.10 contains a denial of service vulnerability in the mashREPL tool that allows attackers to crash t
Sandboxie 5.49.7 contains a denial of service vulnerability that allows attackers to crash the application by overflowin
In Umbraco UmbracoForms through 8.13.16, an authenticated attacker can supply a malicious WSDL (aka Webservice) URL as a
pyasn1 is a generic ASN.1 library for Python. Prior to 0.6.2, a Denial-of-Service issue has been found that leads to mem
CVE-2026-0517 is a denial-of-service vulnerability in versions of Secure Access Server prior to 14.20. An attacker can
The Demo Importer Plus plugin for WordPress is vulnerable to XML External Entity Injection (XXE) in all versions up to,
esm.sh is a no-build content delivery network (CDN) for web development. Prior to Go pseeudoversion 0.0.0-20260116051925
HarfBuzz::Shaper versions before 0.032 for Perl contains a bundled library with a null pointer dereference vulnerability
A vulnerability in Apache Linkis. Problem Description When using the JDBC engine and da When using the JDBC engine and
Quicly, an IETF QUIC protocol implementation, is susceptible to a denial-of-service attack prior to commit d9d3df6a8530a
WeasyPrint helps web developers to create PDF documents. Prior to version 68.0, a server-side request forgery (SSRF) pro
FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.21.0, FastGlyph parsing trusts `cbDa
Scan for 2026 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started