2026 CVE Vulnerabilities

64,952 CVEs published in 2026.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2026-68831MEDIUM5.5Files or directories accessible to external parties in Windows Defender Firewall Service allows an authorized attacker t...
CVE-2026-68830MEDIUM5.5Improper link resolution before file access ('link following') in Windows Universal Plug and Play (UPnP) Device Host all...
CVE-2026-68785MEDIUM4.9Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network.
CVE-2026-68784MEDIUM6.5Out-of-bounds read in SQL Server allows an authorized attacker to disclose information over a network.
CVE-2026-68781MEDIUM6.5Out-of-bounds read in SQL Server allows an authorized attacker to disclose information over a network.
CVE-2026-68780MEDIUM6.5Out-of-bounds read in SQL Server allows an authorized attacker to disclose information over a network.
CVE-2026-68779MEDIUM6.5Out-of-bounds read in SQL Server allows an authorized attacker to disclose information over a network.
CVE-2026-68778MEDIUM6.5Out-of-bounds read in SQL Server allows an authorized attacker to disclose information over a network.
CVE-2026-68777MEDIUM6.5Out-of-bounds read in SQL Server allows an authorized attacker to disclose information over a network.
CVE-2026-68776MEDIUM6.5Use of uninitialized resource in SQL Server allows an authorized attacker to disclose information over a network.
CVE-2026-67648MEDIUM6.5Use of uninitialized resource in SQL Server allows an authorized attacker to disclose information over a network.
CVE-2026-67645MEDIUM6.5Out-of-bounds read in SQL Server allows an authorized attacker to disclose information over a network.
CVE-2026-67641MEDIUM6.5Integer overflow or wraparound in SQL Server allows an authorized attacker to deny service over a network.
CVE-2026-67633MEDIUM6.5Out-of-bounds read in SQL Server allows an authorized attacker to deny service over a network.
CVE-2026-67630MEDIUM6.5Out-of-bounds read in SQL Server allows an authorized attacker to disclose information over a network.
CVE-2026-67629MEDIUM6.5Out-of-bounds read in SQL Server allows an authorized attacker to disclose information over a network.
CVE-2026-67624MEDIUM6.5Out-of-bounds read in SQL Server allows an authorized attacker to disclose information over a network.
CVE-2026-67393MEDIUM6.5Buffer over-read in SQL Server allows an authorized attacker to disclose information over a network.
CVE-2026-67390MEDIUM6.5Buffer over-read in SQL Server allows an authorized attacker to disclose information over a network.
CVE-2026-67389MEDIUM6.5Out-of-bounds read in SQL Server allows an authorized attacker to disclose information over a network.
CVE-2026-67386MEDIUM6.5Use of uninitialized resource in SQL Server allows an authorized attacker to disclose information over a network.
CVE-2026-67383MEDIUM6.5Generation of error message containing sensitive information in SQL Server allows an authorized attacker to disclose inf...
CVE-2026-67369MEDIUM6.5Out-of-bounds read in SQL Server allows an authorized attacker to disclose information over a network.
CVE-2026-66816MEDIUM6.5Insufficient logging in SQL Server allows an authorized attacker to bypass a security feature over a network.
CVE-2026-65812MEDIUM6.8Insertion of sensitive information into sent data in Microsoft Teams for Android allows an authorized attacker to disclo...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now