57,566 vulnerabilities published in 2026
Stack-based buffer overflow in Active Directory Federation Services allows an unauthorized attacker to deny service over
Uncaught exception in Windows Server Update Service allows an unauthorized attacker to perform tampering over a network.
Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to elevate privileges over a network
Stack-based buffer overflow in Active Directory Federation Services allows an unauthorized attacker to deny service over
Stack-based buffer overflow in Active Directory Federation Services allows an unauthorized attacker to deny service over
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Media allows an a
Stack-based buffer overflow in Active Directory Federation Services (AD FS) allows an unauthorized attacker to deny serv
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Media allows an a
Untrusted pointer dereference in Windows Domain Controller allows an unauthorized attacker to deny service over a networ
Out-of-bounds read in Windows Kernel allows an unauthorized attacker to disclose information over a network.
Out-of-bounds read in Windows Network Policy Server SNMP allows an unauthorized attacker to disclose information over a
Out-of-bounds read in Windows Network Policy Server SNMP allows an unauthorized attacker to disclose information over a
Use after free in Windows Netlogon allows an authorized attacker to elevate privileges over a network.
Use after free in Windows Message Queuing allows an authorized attacker to execute code over a network.
Loop with unreachable exit condition ('infinite loop') in Active Directory Federation Services (AD FS) allows an unautho
Double free in Windows DHCP Server allows an authorized attacker to execute code over a network.
Time-of-check time-of-use (toctou) race condition in Windows Network File System allows an authorized attacker to elevat
Use after free in Windows SMB Server Network Transport Driver (srvnet.sys) allows an unauthorized attacker to execute co
Access of resource using incompatible type ('type confusion') in .NET Core allows an unauthorized attacker to deny servi
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows SMB allows an aut
Uncontrolled resource consumption in Windows DHCP Server allows an unauthorized attacker to deny service over a network.
Improper authorization in the PAM SSH key and certificate retrieval endpoints in Devolutions Server 2026.2.11, 2026.1.2
Symfony is a PHP framework for web and console applications and a set of reusable PHP components. Prior to 5.4.52, 6.4.4
Symfony is a PHP framework for web and console applications and a set of reusable PHP components. Prior to 5.4.52, 6.4.4
Symfony is a PHP framework for web and console applications and a set of reusable PHP components. Prior to 5.4.52, 6.4.4
Allocation of resources without limits or throttling in .NET allows an unauthorized attacker to deny service over a netw
A flaw was found in libsoup's WebSocket implementation when using the permessage-deflate extension. The extension's deco
A vulnerability was found in libsoup's WebSocket frame parsing implementation. The library fails to validate length rule
Symfony is a PHP framework for web and console applications and a set of reusable PHP components. Prior to 5.4.52, 6.4.4
Symfony is a PHP framework for web and console applications and a set of reusable PHP components. Prior to 5.4.52, 6.4.4
NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker can cause uncontrolled resource cons
NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker can cause a stack-based buffer overf
NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker can cause the use of an expired file
NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker can cause uncontrolled resource cons
NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker can cause an uncaught exception. A s
NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker can cause missing release of memory
Puma is a Ruby/Rack web server built for parallelism. From 5.5.0 until 7.2.1 and 8.0.2, when PROXY protocol v1 support i
Puma is a Ruby/Rack web server built for parallelism. From 5.5.0 until 7.2.1 and 8.0.2, Puma is vulnerable to source IP
@grpc/grps-js implements the core functionality of gRPC purely in JavaScript, without a C++ addon. Prior to 1.9.16, 1.10
@grpc/grps-js implements the core functionality of gRPC purely in JavaScript, without a C++ addon. Prior to 1.9.16, 1.10
Symfony is a PHP framework for web and console applications and a set of reusable PHP components. Prior to 5.4.53, 6.4.4
Improper validation of specified type of input in .NET Framework allows an unauthorized attacker to deny service over a
Allocation of resources without limits or throttling in .NET allows an unauthorized attacker to deny service over a netw
Stack-based buffer overflow in .NET Framework allows an unauthorized attacker to deny service over a network.
Allocation of resources without limits or throttling in .NET Framework allows an unauthorized attacker to deny service o
Allocation of resources without limits or throttling in .NET allows an unauthorized attacker to deny service over a netw
Use after free in Ozone in Google Chrome on Linux prior to 150.0.7871.125 allowed a remote attacker who convinced a user
Use after free in Ozone in Google Chrome prior to 150.0.7871.125 allowed a remote attacker who convinced a user to engag
Use after free in UI in Google Chrome on Linux prior to 150.0.7871.125 allowed a remote attacker who convinced a user to
NVIDIA TensorRT-LLM for any platform contains a vulnerability in tensor deserialization, where an attacker could cause a
Scan for 2026 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started