57,566 vulnerabilities published in 2026
A flaw was found in InstructLab. A local attacker could exploit a path traversal vulnerability in the chat session handl
In the Linux kernel, the following vulnerability has been resolved: virt: tdx-guest: Fix handling of host controlled 'q
In the Linux kernel, the following vulnerability has been resolved: io_uring/fdinfo: fix OOB read in SQE_MIXED wrap che
In the Linux kernel, the following vulnerability has been resolved: hwmon: (pmbus/core) Protect regulator operations wi
A vulnerability in uutils coreutils mkfifo allows for the unauthorized modification of permissions on existing files. Wh
Xerte Online Toolkits versions 3.15 and earlier contain a relative path traversal vulnerability in the elFinder connecto
Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.0, the Chatflow co
Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.0, a Server-Side R
Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.0, the core securi
radare2 prior to 6.1.4 contains a path traversal vulnerability in project deletion that allows local attackers to recurs
OpenClaw before 2026.3.31 lacks browser-origin validation in HTTP operator endpoints when operating in trusted-proxy mod
OpenClaw before 2026.3.28 contains a privilege escalation vulnerability allowing authenticated operators with write perm
OpenClaw before 2026.3.28 contains an SSRF guard bypass vulnerability that fails to block four IPv6 special-use ranges.
In the Linux kernel, the following vulnerability has been resolved: s390/mm: Add missing secure storage access fixups f
In the Linux kernel, the following vulnerability has been resolved: smb: client: fix off-by-8 bounds check in check_wsl
In the Linux kernel, the following vulnerability has been resolved: staging: rtl8723bs: initialize le_tmp64 in rtw_BIP_
In the Linux kernel, the following vulnerability has been resolved: netfilter: ip6t_rt: reject oversized addrnr in rt_m
In the Linux kernel, the following vulnerability has been resolved: openvswitch: validate MPLS set/set_masked payload l
A weak key generation vulnerability exists in specific firmware versions of Milesight AIOT cameras allows authorization
OpenClaw before 2026.3.28 contains a privilege escalation vulnerability allowing authenticated operators with write perm
OpenClaw versions before 2026.4.8 fail to enforce integrity verification on downloaded plugin archives. Attackers can in
OpenClaw before 2026.4.8 contains a privilege escalation vulnerability in the gateway plugin HTTP authentication mechani
Dell iDRAC10, versions 1.20.70.50 and 1.30.05.10, contains an Insufficiently Protected Credentials vulnerability. A race
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wpeverest User Reg
All versions of the package django-mdeditor are vulnerable to Missing Authentication for Critical Function in the image
ColorOS Assistant has an unauthenticated start-download channel, leading to file path traversal.
In the Linux kernel, the following vulnerability has been resolved: crypto: ccp: Don't attempt to copy ID to userspace
In the Linux kernel, the following vulnerability has been resolved: crypto: ccp: Don't attempt to copy PDH cert to user
In the Linux kernel, the following vulnerability has been resolved: crypto: ccp: Don't attempt to copy CSR to userspace
In the Linux kernel, the following vulnerability has been resolved: ksmbd: validate response sizes in ipc_validate_msg(
In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: validate doorbell_offset in user queue
In the Linux kernel, the following vulnerability has been resolved: io_uring/net: fix slab-out-of-bounds read in io_bun
In the Linux kernel, the following vulnerability has been resolved: ALSA: caiaq: fix stack out-of-bounds read in init_c
Two heap-based out-of-bounds read vulnerabilities in the STL ASCII file parser in Open CASCADE Technology (OCCT) V8_0_0_
A heap-based out-of-bounds read vulnerability in RWObj_Reader::read in the OBJ file parser in Open CASCADE Technology (O
In the Linux kernel, the following vulnerability has been resolved: hwmon: (tps53679) Fix array access with zero-length
In the Linux kernel, the following vulnerability has been resolved: io_uring/rsrc: reject zero-length fixed buffer impo
In the Linux kernel, the following vulnerability has been resolved: netfilter: x_tables: ensure names are nul-terminate
In the Linux kernel, the following vulnerability has been resolved: net: ipv6: ndisc: fix ndisc_ra_useropt to initializ
In the Linux kernel, the following vulnerability has been resolved: mpls: add seqcount to protect the platform_label{,s
In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: check tdls flag in ieee80211_tdls_o
AGL agl-service-can-low-level thru 17.1.12 contains a heap buffer over-read in the isotp-c library. In isotp_continue_re
openxc/isotp-c thru commit 5a5d19245f65189202719321facd49ce6f5d46ac (2021-08-09) contains an out-of-bounds read in the I
The Paid Memberships Pro plugin for WordPress is vulnerable to unauthorized modification and disruption of Stripe webhoo
Detect-It-Easy prior to 3.21 contains a path traversal vulnerability that allows attackers to write arbitrary files to t
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: Fix type confusion in l2cap_ecred
In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: handle attr_set_size() errors when trunca
In the Linux kernel, the following vulnerability has been resolved: ntb: ntb_hw_switchtec: Fix shift-out-of-bounds for
In the Linux kernel, the following vulnerability has been resolved: erofs: fix interlaced plain identification for enco
In the Linux kernel, the following vulnerability has been resolved: ntb: ntb_hw_switchtec: Fix array-index-out-of-bound
Scan for 2026 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started