57,566 vulnerabilities published in 2026
An integer overflow vulnerability existed in the static function wolfssl_add_to_chain, that caused heap corruption when
OpenClaw versions prior to 2026.2.22 contain a symlink traversal vulnerability in avatar handling that allows attackers
In the Linux kernel, the following vulnerability has been resolved: net: add xmit recursion limit to tunnel xmit functi
In the Linux kernel, the following vulnerability has been resolved: net/sched: teql: fix NULL pointer dereference in ip
A weak authentication vulnerability has been reported to affect QHora. If an attacker gains local network access, they c
libde265 is an open source implementation of the h.265 video codec. Prior to version 1.0.17, a crafted HEVC bitstream ca
libfuse is the reference implementation of the Linux FUSE. From version 3.18.0 to before version 3.18.2, a NULL pointer
Halloy is an IRC application written in Rust. In versions on \*nix and macOS prior to commit f180e41061db393acf65bc99f5c
WWBN AVideo is an open source video platform. Prior to version 26.0, the Scheduler plugin's `run()` function in `plugin/
OpenClaw versions prior to 2026.3.2 contain an archive extraction vulnerability in the tar.bz2 installer path that bypas
The Multi Functional Flexi Lightbox plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the `arv_lb[me
Tomabo MP4 Converter 3.25.22 contains a denial of service vulnerability that allows local attackers to crash the applica
SpotPaltalk 1.1.5 contains a denial of service vulnerability in the registration code input field that allows local atta
jetAudio 8.1.7 contains a buffer overflow vulnerability in the video converter component that allows local attackers to
PCHelpWareV2 1.0.0.5 contains a denial of service vulnerability that allows local attackers to crash the application by
RealTerm Serial Terminal 2.0.0.70 contains a denial of service vulnerability that allows local attackers to crash the ap
SeoToaster Ecommerce 3.0.0 contains a local file inclusion vulnerability that allows authenticated attackers to read arb
jetCast Server 2.0 contains a denial of service vulnerability that allows local attackers to crash the application by su
GSearch 1.0.1.0 contains a denial of service vulnerability that allows local attackers to crash the application by input
Fast AVI MPEG Joiner 1.2.0812 contains a buffer overflow vulnerability that allows local attackers to crash the applicat
The Sprig Plugin for Craft CMS is a reactive Twig component framework for Craft CMS. Starting in version 2.0.0 and prior
systemd, a system and service manager, (as PID 1) hits an assert and freezes execution when an unprivileged IPC API call
NULL Pointer Dereference vulnerability in MolotovCherry Android-ImageMagick7.This issue affects Android-ImageMagick7: be
Integer Overflow or Wraparound vulnerability in MolotovCherry Android-ImageMagick7.This issue affects Android-ImageMagic
This issue was addressed with improved handling of symlinks. This issue is fixed in macOS Sequoia 15.7.5, macOS Sonoma 1
A logging issue was addressed with improved data redaction. This issue is fixed in iOS 18.7.7 and iPadOS 18.7.7, iOS 26.
An authorization issue was addressed with improved state management. This issue is fixed in macOS Sequoia 15.7.4, macOS
This issue was addressed with improved handling of symlinks. This issue is fixed in iOS 26.3 and iPadOS 26.3, macOS Sequ
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.7.5, macOS Sonom
An authorization issue was addressed with improved state management. This issue is fixed in macOS Sequoia 15.7.5, macOS
An authorization issue was addressed with improved state management. This issue is fixed in macOS Tahoe 26.4. An app may
A stack overflow was addressed with improved input validation. This issue is fixed in iOS 18.7.7 and iPadOS 18.7.7, iOS
A logging issue was addressed with improved data redaction. This issue is fixed in iOS 18.7.7 and iPadOS 18.7.7, iOS 26.
An information leakage was addressed with additional validation. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, iO
An authorization issue was addressed with improved state management. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9
A privacy issue was addressed by moving sensitive data. This issue is fixed in macOS Tahoe 26.4. An app may be able to a
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in Xcode 26.4. An app may be able
A permissions issue was addressed by removing the vulnerable code. This issue is fixed in macOS Sequoia 15.7.5, macOS So
In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: fix NULL pointer dereference in mes
In the Linux kernel, the following vulnerability has been resolved: smb: client: fix oops due to uninitialised var in s
In the Linux kernel, the following vulnerability has been resolved: regulator: fp9931: Fix PM runtime reference leak in
In the Linux kernel, the following vulnerability has been resolved: net: ethernet: mtk_eth_soc: Reset prog ptr to old_p
In the Linux kernel, the following vulnerability has been resolved: drbd: fix null-pointer dereference on local read er
In the Linux kernel, the following vulnerability has been resolved: atm: lec: fix null-ptr-deref in lec_arp_clear_vccs
In the Linux kernel, the following vulnerability has been resolved: irqchip/sifive-plic: Fix frozen interrupt due to af
In the Linux kernel, the following vulnerability has been resolved: IB/mthca: Add missed mthca_unmap_user_db() for mthc
In the Linux kernel, the following vulnerability has been resolved: net: usb: pegasus: validate USB endpoints The pega
In the Linux kernel, the following vulnerability has been resolved: nfc: pn533: properly drop the usb interface referen
In the Linux kernel, the following vulnerability has been resolved: scsi: target: Fix recursive locking in __configfs_o
In the Linux kernel, the following vulnerability has been resolved: net: vxlan: fix nd_tbl NULL dereference when IPv6 i
Scan for 2026 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started