57,566 vulnerabilities published in 2026
Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to version
An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 12
An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor amd Wearable Processor Exynos 980, 850, 1080, 12
OpenTelemetry-Go is the Go implementation of OpenTelemetry. From 1.15.0 to 1.42.0, the fix for CVE-2026-24051 changed th
In the Linux kernel, the following vulnerability has been resolved: ACPI: EC: clean up handlers on probe failure in acp
Concurrent execution using shared resource with improper synchronization ('race condition') in Applocker Filter Driver (
Insecure storage of sensitive information in Windows Cryptographic Services allows an authorized attacker to elevate pri
Use after free in Windows Shell allows an authorized attacker to elevate privileges locally.
Double free in Windows Shell allows an authorized attacker to elevate privileges locally.
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Ancillary Functio
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Server Update Ser
Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges loca
Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges loca
Use after free in Windows TDI Translation Driver (tdx.sys) allows an authorized attacker to elevate privileges locally.
Use after free in Windows WFP NDIS Lightweight Filter Driver (wfplwfs.sys) allows an authorized attacker to elevate priv
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows TCP/IP allows an
Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges loca
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Cloud Files Mini
Time-of-check time-of-use (toctou) race condition in Windows LUAFV allows an authorized attacker to elevate privileges l
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows SSDP Service allo
Use after free in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally.
Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges loca
Use after free in Windows Universal Plug and Play (UPnP) Device Host allows an authorized attacker to elevate privileges
Use after free in Windows WalletService allows an authorized attacker to elevate privileges locally.
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows SSDP Service allo
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows SSDP Service allo
Concurrent execution using shared resource with improper synchronization ('race condition') in Function Discovery Servic
Heap-based buffer overflow in Function Discovery Service (fdwsd.dll) allows an authorized attacker to elevate privileges
Concurrent execution using shared resource with improper synchronization ('race condition') in Function Discovery Servic
Concurrent execution using shared resource with improper synchronization ('race condition') in Function Discovery Servic
Stack-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally.
Double free in Microsoft Brokering File System allows an authorized attacker to elevate privileges locally.
Use after free in Windows Server Update Service allows an authorized attacker to elevate privileges locally.
Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges loca
Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges loca
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K - GRFX all
libsixel is a SIXEL encoder/decoder implementation derived from kmiya's sixel. Versions 1.8.7 and prior contain a Use-Af
A vulnerability has been found in Mobatek MobaXterm Home Edition up to 26.1. This affects an unknown part in the library
A Time-of-Check to Time-of-Use (TOCTOU) race condition exists in the mkfifo utility of uutils coreutils. The utility cre
OpenRemote is an open-source internet-of-things platform. Prior to version 1.22.1, a user who has `write:admin` in one K
Successful exploitation of the race condition vulnerability could allow an attacker to trigger a kernel heap overflow, p
A local attacker on the same host as the application may be able to take control of the directory used by `ApplicationTe
Profile import path traversal in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service and possible code
In the Linux kernel, the following vulnerability has been resolved: atm: lec: fix use-after-free in sock_def_readable()
A security flaw has been discovered in IObit Advanced SystemCare 19. This affects an unknown part of the file ASC.exe of
Sandboxie-Plus is an open source sandbox-based isolation software for Windows. In versions 1.17.2 and earlier, a Time-of
An Improper Access Control in Ivanti EPMM before versions 12.6.1.1, 12.7.0.1, and 12.8.0.1 allows a remote unauthenticat
bubblewrap is a low-level unprivileged sandboxing tool. From version 0.11.0 to before version 0.11.2, if bubblewrap is i
Deserialization of untrusted data (CWE-502) in pgAdmin 4 FileBackedSessionManager. The session manager performed unsafe
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K - GRFX all
Scan for 2026 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started