2026 CVE Vulnerabilities

61,369 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-47915HIGH7.8Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by a Use After Free vulnerability that could...
CVE-2026-47914HIGH7.8Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by a Use After Free vulnerability that could...
CVE-2026-47913HIGH7.8Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by a Use After Free vulnerability that could...
CVE-2026-47912HIGH7.8Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by a Use After Free vulnerability that could...
CVE-2026-47911HIGH7.8Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by an out-of-bounds write vulnerability that...
CVE-2026-34416MEDIUM6.1OSCAL-GUI contains a reflected cross-site scripting vulnerability that allows unauthenticated attackers to execute arbit...
CVE-2026-25557MEDIUM5.4Evoluted PHP Directory Listing Script through 4.0.5 contains a reflected cross-site scripting vulnerability in index.php...
CVE-2026-11799HIGH7.5UXSS in Focus for iOS / Klar Webkit navigation. This vulnerability was fixed in Focus for iOS 151.3.1 and Klar for iOS 1...
CVE-2026-6445HIGH8.7A flaw exists in FlashArray Purity where insufficient filtering of certain data paths could expose sensitive information...
CVE-2026-6444HIGH8.6A flaw exists in the FlashArray Purity management interface where an authenticated low-privileged user may, under specif...
CVE-2026-48306HIGH7.8Substance3D - Sampler versions 6.0.0 and earlier are affected by an out-of-bounds write vulnerability that could result ...
CVE-2026-48305HIGH7.8Substance3D - Sampler versions 6.0.0 and earlier are affected by an out-of-bounds write vulnerability that could result ...
CVE-2026-47910MEDIUM6.3Dreamweaver Desktop versions 21.7 and earlier are affected by an Incorrect Authorization vulnerability that could lead t...
CVE-2026-47909MEDIUM6.3Dreamweaver Desktop versions 21.7 and earlier are affected by an Improper Input Validation vulnerability that could lead...
CVE-2026-47908HIGH7.8Dreamweaver Desktop versions 21.7 and earlier are affected by an Access of Uninitialized Pointer vulnerability that coul...
CVE-2026-47907HIGH8.6Dreamweaver Desktop versions 21.7 and earlier are affected by an Improper Access Control vulnerability that could result...
CVE-2026-47906HIGH8.6Dreamweaver Desktop versions 21.7 and earlier are affected by a Dependency on Vulnerable Third-Party Component vulnerabi...
CVE-2026-47106MEDIUM5.4Ellucian Banner Self-Service before the April T2 release (2025-04-23) contains a stored cross-site scripting vulnerabili...
CVE-2026-34710HIGH7.8Substance3D - Sampler versions 6.0.0 and earlier are affected by an out-of-bounds write vulnerability that could result ...
CVE-2026-34709HIGH7.8Substance3D - Sampler versions 6.0.0 and earlier are affected by an out-of-bounds write vulnerability that could result ...
CVE-2026-32856MEDIUM6.1Ellucian Banner Self-Service before the April T2 release (2025-04-23) contains a reflected cross-site scripting vulnerab...
CVE-2026-11824HIGH8.5SQLite before 3.53.2 contains a heap-based buffer overflow vulnerability in the FTS5 full-text search extension that all...
CVE-2026-11822HIGH8.5SQLite before 3.53.2 contains memory corruption vulnerabilities in the FTS5 full-text search extension that allow attack...
CVE-2026-8863HIGH7.8Multiple Microsoft-sigend UEFI SHIM bootloaders are vulnerable to SecureBoot bypass. An attacker with administrative pri...
CVE-2026-40639MEDIUM5.7Dell Client Platform BIOS contains a Weak Encoding for Password vulnerability. An unauthenticated attacker with physical...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now