57,566 vulnerabilities published in 2026
Trilium is an open-source hierarchical note-taking application. In versions prior to 0.104.0, the default-on "Safe impor
Trilium is an open-source hierarchical note-taking application. In versions up to and including 0.103.0, the default-on
Trilium is an open-source hierarchical note-taking application. In versions up to and including 0.103.0, the default-on
Trilium is an open-source hierarchical note-taking application. In versions up to and including 0.103.0, the default-on
n8n-nodes-sqlite3 is a node for operating a local SQLite database from n8n. Prior to 1.0.0, nodes/SqliteNode/v1/SqliteV1
CC: Tweaked is a mod for Minecraft which adds programmable computers, turtles, and more to the game. Prior to 1.120.0, t
Spring for GraphQL applications are vulnerable to Unsafe Deserialization when processing paginated GraphQL queries. Spri
The GraphiQL page bundled with Spring for GraphQL loads JavaScript libraries from a public CDN, without Subresource Inte
Spring for GraphQL is vulnerable to Denial of Service attacks when using the WebSocket client with keepAlive enabled. Sp
The GraphiQL page bundled with Spring for GraphQL sends requests to the GraphQL endpoints of the application. An attacke
Spring for GraphQL's Spring Data pagination support resolves arguments of a scrollable query and forwards the client-sup
Applications that build a Content-Disposition header value from untrusted input may be vulnerable to HTTP response split
LimeSurvey Community Edition 7.0.5 contains an authenticated improper authorization vulnerability in the survey menu ent
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in woylie doggo allow
ServiceNow has remediated a sandbox escape security issue that was identified in the Now Platform. This security issue c
ServiceNow has remediated a SQL injection vulnerability that was identified in in the ServiceNow AI platform. This vulne
Unrestricted Upload of File with Dangerous Type in the product photo upload in Roskus Prospero Flow CRM before 5.16.0 al
In SiSDK v2026.6.0 and earlier, high network traffic loads can cause a dropped ACK leading to a denial of service. This
An integer overflow in the libavfilter/vf_scale.c component of FFmpeg N-122528-gdd2976b9e1 allows attackers to cause a D
A NULL pointer dereference in the get_min_buffer_size function (/libswscale/slice.c) of FFmpeg N-122528-gdd2976b9e1 allo
A Division-by-Zero vulnerability in the ff_sws_init_single_context function (/libswscale/utils.c) of FFmpeg N-122528-gdd
A heap overflow in the ff_sws_alphablendaway function (libswscale/alphablend.c) of FFmpeg git-master commit 722a217 allo
In Bluetooth Mesh SDK 6.1.4 and earlier, malformed extended advertisements can trigger out-of-bounds writes leading to s
Wazuh is an open-source security platform providing unified XDR and SIEM protection for endpoints and cloud workloads. I
FastGPT is an open-source LLM platform for building AI applications on a knowledge base. In versions prior to 4.15.2, th
cpp-httplib is a C++ header-only HTTP/HTTPS library. In version 0.49.0, the chunked-response trailer output path writes
cpp-httplib is a C++ header-only HTTP/HTTPS library. In versions 0.33.0 through 0.50.0, the TLS-enabled WebSocket client
A heap-based buffer overflow vulnerability in Fireware OS's iked process allows an authenticated administrator to crash
A stack-based buffer overflow in the epm (Endpoint Protection Manager) service used by the deprecated Mobile Security fe
WatchGuard Dimension is susceptible to a denial-of-service condition when an attacker sends a high volume of TCP SYN pac
An heap overflow vulnerability in the WatchGuard Fireware OS iked process allows a remote unauthenticated attacker to ex
An integer underflow vulnerability in the WatchGuard Fireware OS iked process allows a remote unauthenticated attacker t
A type confusion vulnerability in the iked process of WatchGuard Fireware OS allows a remote unauthenticated attacker to
A double-free vulnerability in the WatchGuard Fireware OS iked process allows a remote unauthenticated attacker to creat
An out-of-bounds read vulnerability in the WatchGuard Fireware OS iked process allows a remote unauthenticated attacker
A stack-based buffer overflow vulnerability in the WatchGuard Fireware OS iked process allows a remote unauthenticated a
A buffer overflow vulnerability in the WatchGuard Fireware OS Management Web UI allows an authenticated administrator wi
An out-of-bounds read vulnerability in the WatchGuard Fireware OS iked process allows a remote unauthenticated attacker
A stack-based buffer overflow vulnerability in the WatchGuard Fireware OS iked process iallows a remote unauthenticated
An integer underflow vulnerability in the WatchGuard Fireware OS iked process allows a remote unauthenticated attacker t
A stored cross-site scripting (XSS) vulnerability in WatchGuard Dimension's task scheduling feature allows a low-privile
WatchGuard Dimension provides a client-side lock/unlock UI control for management changes. The server-side configuration
WatchGuard Dimension records unredacted session identifiers for logged-in users in its web UI diagnostic log. A low-priv
A Cross-Site Scripting (XSS) vulnerability in the WatchGuard Dimension Backup Historical Data feature allows an authenti
A server-side request forgery (SSRF) vulnerability WatchGuard Dimension Remote Backup Connection Test configuration allo
A server-side request forgery (SSRF) vulnerability WatchGuard Dimension Email Server Test configuration allows an authen
A server-side request forgery (SSRF) vulnerability WatchGuard Dimension FTP Server Test configuration allows an authenti
A blind server-side request forgery (SSRF) vulnerability WatchGuard Dimension Database Server Test configuration allows
WatchGuard Dimension's Web UI exposes an administrator passphrase change action that lacks CSRF protection. An attacker
WatchGuard Dimension contains an authenticated SQL injection vulnerability in the scheduled report feature which allows
Scan for 2026 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started