2026 CVE Vulnerabilities
61,208 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-0142 | MEDIUM | 4 | 0.1% | Jun 16, 2026 | In iavb_parse_key_data of avb_rsa.c, there is a possible out of bounds read due to improper input validation. This could... |
| CVE-2026-0141 | MEDIUM | 5.3 | 0.2% | Jun 16, 2026 | In decodeAppPacket of RtcpAppPacket.cpp, there is a possible OOB read due to a missing bounds check. This could lead to ... |
| CVE-2026-0140 | MEDIUM | 4.3 | 0.2% | Jun 16, 2026 | In RtpPacket::decodePacket, there is a possible out-of-bounds read due to an integer overflow. This could lead to remote... |
| CVE-2026-0139 | HIGH | 8.8 | 0.3% | Jun 16, 2026 | In Modem, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code executio... |
| CVE-2026-0138 | HIGH | 7.8 | 0.1% | Jun 16, 2026 | In lwis_io_buffer_write of lwis_io_buffer.c, there is a possible out of bounds write due to memory corruption. This coul... |
| CVE-2026-0137 | HIGH | 7.8 | 0.1% | Jun 16, 2026 | In edgetpu_sync_fence_group_shutdown() of edgetpu-dmabuf.c, there is a possible elevation of privilege due to a use afte... |
| CVE-2026-0136 | HIGH | 7.5 | 0.3% | Jun 16, 2026 | In Modem, there is a possible out of bounds read due to a missing bounds check. This could lead to remote denial of serv... |
| CVE-2026-0135 | HIGH | 7.8 | 0.1% | Jun 16, 2026 | In Modem, there is a possible out of bounds read due to a missing bounds check. This could lead to remote code execution... |
| CVE-2026-0134 | MEDIUM | 4 | 0.1% | Jun 16, 2026 | In PostWipeData of recovery_ui.cpp, there is a possible data persistence issue after a factory reset due to a logic erro... |
| CVE-2026-0133 | HIGH | 7.8 | 0.1% | Jun 16, 2026 | In smmu_attach_dev of arm-smmu-v3.c, there is a possible way to sign malicious Android Runtime bootclass artifacts due t... |
| CVE-2026-0132 | HIGH | 8.8 | 0.3% | Jun 16, 2026 | In Modem, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote code executio... |
| CVE-2026-0131 | HIGH | 7.3 | 0.1% | Jun 16, 2026 | In RtpPacket::decodePacket, there is a possible out of bounds access due to an integer overflow. This could lead to loca... |
| CVE-2026-0130 | MEDIUM | 4.3 | 0.2% | Jun 16, 2026 | In RtcpChunk::decodeRtcpChunk, there is a possible out of bounds read due to a heap buffer overflow. This could lead to ... |
| CVE-2026-0129 | MEDIUM | 4.3 | 0.2% | Jun 16, 2026 | In RtcpByePacket::decodeByePacket, there is a possible due to a missing bounds check. This could lead to remote informa... |
| CVE-2026-0128 | MEDIUM | 6.5 | 0.2% | Jun 16, 2026 | In RtcpFbPacket::decodeRtcpFbPacket, there is a possible out of bounds read due to an integer overflow. This could lead ... |
| CVE-2026-0127 | MEDIUM | 6.5 | 0.3% | Jun 16, 2026 | In NrmmMsgCodec::DecodeUPUTransparentContext of cn_NrmmDecoder.cpp, there is a possible out-of-bounds read due to memory... |
| CVE-2026-0126 | CRITICAL | 9.8 | 0.3% | Jun 16, 2026 | In WC-Radio, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execu... |
| CVE-2026-0125 | HIGH | 7 | 0.1% | Jun 16, 2026 | In multiple functions of vpu_ioctl.c, there is a possible use after free due to a race condition. This could lead to loc... |
| CVE-2026-53866 | HIGH | 8.1 | 0.3% | Jun 16, 2026 | OpenClaw before 2026.5.12 contains an allowlist bypass vulnerability in shell inline-command parsing that allows authent... |
| CVE-2026-53865 | HIGH | 7.2 | 0.1% | Jun 16, 2026 | OpenClaw before 2026.5.2 contains a path traversal vulnerability in maintenance task execution that allows workspace-der... |
| CVE-2026-53864 | HIGH | 8.1 | 0.2% | Jun 16, 2026 | OpenClaw before 2026.5.26 contains an insufficient sanitization vulnerability in the host environment sanitizer that all... |
| CVE-2026-53863 | MEDIUM | 6.5 | 0.2% | Jun 16, 2026 | OpenClaw before 2026.4.25 contains an input validation vulnerability in tool group policy callers that accept unvalidate... |
| CVE-2026-53862 | MEDIUM | 5.4 | 0.1% | Jun 16, 2026 | OpenClaw before 2026.5.12 contains a bootstrap token replay vulnerability allowing callers with pending token access to ... |
| CVE-2026-53861 | CRITICAL | 9.8 | 0.2% | Jun 16, 2026 | OpenClaw before 2026.5.6 contains an allowlist bypass vulnerability in the macOS Swift exec feature that misses combined... |
| CVE-2026-53860 | MEDIUM | 5.4 | 0.2% | Jun 16, 2026 | OpenClaw before 2026.5.7 contains a sender policy bypass vulnerability in BlueBubbles that allows participants to match ... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now