57,566 vulnerabilities published in 2026
A deserialization vulnerability in PRISMAproduction Version 6.5 or earlier that may lead to arbitrary code execution.
In Bouncy Castle for Java before 1.85, CMS verifySignatures returns true for SignedData with zero signers. This issue al
In Bouncy Castle for Java before 1.85, CMS AuthenticatedData content not bound to MAC when authAttrs present. This issue
In Bouncy Castle for Java before 1.85, OER parser recurses without depth limit on self-referential IEEE 1609.2 schema. T
In Bouncy Castle for Java before 1.85, DTLS handshake reassembler allocates buffer from unchecked 24-bit length. This is
In Modem, there is a possible out of bounds read due to a missing bounds check. This could lead to remote denial of serv
In Bouncy Castle for Java before 1.85, MLS wire decoder allocates attacker-declared opaque length before bounds check.
In Bouncy Castle for Java before 1.85, Lazy ASN.1 sequence forcing resets nesting-depth guard. This issue also affects B
In Bouncy Castle for Java before 1.85, PKCS#12 MAC and bag-decryption KDF iteration-count bound (DoS). This issue also a
In Bouncy Castle for Java before 1.85, Possible OOM from unbounded up-front allocation on a definite-length read. This i
A flaw has been found in Wavlink WL-NU516U1 708c073-mt7628. The impacted element is an unknown function of the component
In nr modem, there is a possible improper input validation. This could lead to remote denial of service with System exec
In modem, there is a possible improper input validation. This could lead to remote denial of service with no additional
In modem, there is a possible improper input validation. This could lead to remote denial of service with no additional
In modem, there is a possible improper input validation. This could lead to remote denial of service with no additional
In modem, there is a possible improper input validation. This could lead to remote denial of service with no additional
In modem, there is a possible improper input validation. This could lead to remote denial of service with no additional
In modem, there is a possible improper input validation. This could lead to remote denial of service with no additional
In modem, there is a possible improper input validation. This could lead to remote denial of service with no additional
Net::SAML2 versions before 0.86 for Perl allow SAML authentication bypass by verifying responses against the response-em
Grav CMS 2.0.10 contains a path traversal vulnerability in ImageMedium::watermark(), which passes its unsanitized $image
Admidio before 5.0.11 contains an authentication bypass vulnerability in the forum module when configured in login-only
OpenWrt luci-app-bmx7 before commit 5890760a454dad2cb00389dba2cdc5e779e0ffdd contains a path traversal vulnerability in
XML::Sig versions from 0.29 before 0.72 for Perl allow signature verification bypass because verify returns true when ev
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Apache Jena Fuseki. Thi
The brace-expansion library generates arbitrary strings containing a common prefix and suffix. Prior to 1.1.18, 2.1.4, 3
A cryptographic weakness exists in the Omada adoption protocol. The protocol relies on hard-coded cryptographic keys to
Affected Omada devices rely on embedded certificates that are shared across deployments to establish trust between contr
A cryptographic weakness exists in the Omada adoption protocol where session encryption keys used to protect communicati
Apache NiFi 1.5.0 through 2.10.0 support gzip-encoded HTTP requests for the application REST API using a Jersey encoding
Socket.IO enables bidirectional and low-latency communication for every platform. Prior to 4.2.7, 3.4.5, and 3.3.6, a sp
An issue in the CF_CFDP_RecvMd() component of NASA cFS v7.0.1 allows attackers to contrl where received content and data
The Ref::SignalGen component of fprime framework v4.2.2 does not validate the safety of user-controlled parameters, allo
An issue in the HS_MonitorApplications() component of NASA cFS v7.0.1 allows attackers to force the processor to reset v
Incorrect access control in the DS_SetDestPathCmd() component of NASA cFS v7.0.1 allows attackers to access sensitive co
An issue in the CFDP receive path of NASA cFS v7.0.1 allows attackers to cause a Denial of Service (DoS) via replaying f
A parser boundary flaw in the Software Bus Network (SBN) application's peer subscription message handling in NASA cFS v7
Incorrect access control in NASA cFS v7.0.1 allows attackers to arbitrarily remove low-index subscriptions and add new s
An integer overflow in the Svc::FileDownlink::SendPartial component of fprime framework v4.2.2 allows attackers to cause
Adobe Campaign Classic (ACC) is affected by a Violation of Secure Design Principles vulnerability that could result in a
An issue in the SBN UDP interface of NASA cFS v7.0.1 allows attackers to cause a Denial of Service (DoS) via transmittin
Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.
An unauthenticated path traversal (LFI) vulnerability exists under /custom-sounds/ when CustomSounds storage is configur
A flaw in Node.js HTTP/2 handling can cause HTTP/2 retained header blocks evade maxSessionMemory and enable remote memor
In Eclipse Milo versions 1.0.0 through 1.1.4, monitored-item quota accounting is not exception-safe: if item creation fa
In Eclipse Milo versions 1.0.0 through 1.1.4, the Call service dispatches the original mixed batch to address-space hand
In Eclipse Milo versions 0.6.0 through 1.1.4, UASC server transport handlers fail to release retained partial message ch
Perspective 5.0.0 contains a denial-of-service vulnerability in the VirtualServer protocol dispatcher that allows unauth
Perspective 5.0.0 contains a path traversal vulnerability that allows unauthenticated remote attackers to read arbitrary
Weak configuration when UE does not verify the consistency of its additional security capabilities with the replayed cap
Scan for 2026 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started