Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

22,671 of 57,566 · Page 450/454
7.0
CVE-2026-34331

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K - GRFX all

7.0
CVE-2026-34340

Use after free in Windows Projected File System allows an authorized attacker to elevate privileges locally.

7.0
CVE-2026-34341

Double free in Windows Link-Layer Discovery Protocol (LLDP) allows an authorized attacker to elevate privileges locally.

7.0
CVE-2026-34342

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Print Spooler Com

7.0
CVE-2026-34345

Access of resource using incompatible type ('type confusion') in Windows Ancillary Function Driver for WinSock allows an

7.0
CVE-2026-34347

Use after free in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally.

7.0
CVE-2026-35416

Access of resource using incompatible type ('type confusion') in Windows Ancillary Function Driver for WinSock allows an

7.0
CVE-2026-40410

Use after free in Windows SMB Client allows an authorized attacker to elevate privileges locally.

7.0
CVE-2026-42825

Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges locally.

7.0
CVE-2025-54518

Improper isolation of shared resources within the CPU operation cache on Zen 2-based products could allow an attacker to

7.0
CVE-2026-45036

Tabby (formerly Terminus) is a highly configurable terminal emulator. Prior to 1.0.233, Tabby before 1.0.233 automatical

7.0
CVE-2026-29518

Rsync versions before 3.4.3 contain a time-of-check to time-of-use (TOCTOU) race condition in daemon file handling that

7.0
CVE-2025-71215

A time-of-check time-of-use vulnerability in the Trend Micro Apex One (mac) agent iCore service signature verification c

7.0
CVE-2026-24200

NVIDIA vGPU software contains a vulnerability in the virtual GPU manager, where an attacker could cause a use-after-free

7.0
CVE-2025-46284

A race condition was addressed with additional validation. This issue is fixed in macOS Sequoia 15.7, macOS Tahoe 26. An

7.0
CVE-2026-49000

An insecure password scheme refers to vulnerabilities arising from improper selection of encryption algorithms, inadequa

7.0
CVE-2026-46029

In the Linux kernel, the following vulnerability has been resolved: mm/slab: return NULL early from kmalloc_nolock() in

7.0
CVE-2026-44604

A command injection vulnerability was discovered in the `rpmuncompress` utility of RPM. When extracting certain archive

7.0
CVE-2026-46154

In the Linux kernel, the following vulnerability has been resolved: sched_ext: Read scx_root under scx_cgroup_ops_rwsem

7.0
CVE-2026-46164

In the Linux kernel, the following vulnerability has been resolved: btrfs: fix double free in create_space_info_sub_gro

7.0
CVE-2026-46299

In the Linux kernel, the following vulnerability has been resolved: hfsplus: fix held lock freed on hfsplus_fill_super(

7.0
CVE-2026-46309

In the Linux kernel, the following vulnerability has been resolved: drm/xe/uapi: Reject coh_none PAT index for CPU cach

7.0
CVE-2026-34335

Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges loca

7.0
CVE-2026-41108

Heap-based buffer overflow in Microsoft Windows DNS allows an authorized attacker to elevate privileges locally.

7.0
CVE-2026-42836

Concurrent execution using shared resource with improper synchronization ('race condition') in Function Discovery Servic

7.0
CVE-2026-42911

Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges loca

7.0
CVE-2026-42912

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Telephony Service

7.0
CVE-2026-42984

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

7.0
CVE-2026-44818

Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Office Excel al

7.0
CVE-2026-45596

Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges loca

7.0
CVE-2026-45597

Concurrent execution using shared resource with improper synchronization ('race condition') in UI Automation Manager (ui

7.0
CVE-2026-45598

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Ancillary Functio

7.0
CVE-2026-45601

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Ancillary Functio

7.0
CVE-2026-45603

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Ancillary Functio

7.0
CVE-2026-45640

Use after free in Windows Bluetooth Port Driver allows an authorized attacker to elevate privileges locally.

7.0
CVE-2026-45653

Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally.

7.0
CVE-2026-47293

Use after free in Microsoft Office Click-To-Run allows an authorized attacker to elevate privileges locally.

7.0
CVE-2026-47648

Untrusted search path in Windows Storage allows an authorized attacker to elevate privileges locally.

7.0
CVE-2026-6090

A potential authentication bypass was reported in Lenovo Smart Connect for Windows that could allow a local authenticate

7.0
CVE-2026-42462

Fedify is a TypeScript library for building federated server apps powered by ActivityPub. Prior to versions 1.9.11, 1.10

7.0
CVE-2026-44495

Axios is a promise based HTTP client for the browser and Node.js. From 0.19.0 to before 0.31.1 and 1.15.2, Axios contain

7.0
CVE-2026-54229

A race condition was found in the abrt-dbus D-Bus service's ChownProblemDir method. ChownProblemDir opens the dump direc

7.0
CVE-2026-54230

A symlink following vulnerability was found in the ABRT post-create event handler scripts in libreport. Event scripts wr

7.0
CVE-2024-38487

api-gateway container running with root privilege would allow an attacker to escape the container and access host system

7.0
CVE-2026-0125

In multiple functions of vpu_ioctl.c, there is a possible use after free due to a race condition. This could lead to loc

7.0
CVE-2026-0083

In Nfc::eventCallback() of Nfc.h, there is a possible use after free due to a race condition. This could lead to local e

7.0
CVE-2026-54321

Daytona is a secure and elastic infrastructure runtime for AI-generated code execution and agent workflows. From 0.101.0

7.0
CVE-2026-49417

Second, the audio buffer backing a mapping could be freed when the device was closed even though the mapping remained va

7.0
CVE-2026-58050

libssh2 through 1.11.1 reads an attacker-controlled 32-bit attribute count from a publickey-subsystem response and uses

7.0
CVE-2026-53329

In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Use krealloc_array() in dal_vector

Scan for 2026 Vulnerabilities

CyberStrike detects these CVEs across your infrastructure automatically.

Get Started