2026 CVE Vulnerabilities

43,869 CVEs published in 2026.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2026-62656MEDIUM5.4A security flaw was found in certain NETGEAR RAX models that could allow a logged-in user to send specially crafted requ...
CVE-2026-62655MEDIUM5.7A security flaw was found in certain NETGEAR Orbi models that could allow an unauthorized user to cause the device to st...
CVE-2026-58638MEDIUM5.5Missing cryptographic step in Windows Boot Loader allows an authorized attacker to bypass a security feature locally.
CVE-2026-58546MEDIUM6.5Use of uninitialized resource in Windows RDP allows an unauthorized attacker to disclose information over a network.
CVE-2026-58545MEDIUM5.5Improper access control in Windows Kernel allows an authorized attacker to bypass a security feature locally.
CVE-2026-58543MEDIUM6.3Concurrent execution using shared resource with improper synchronization ('race condition') in Windows USB Print Driver ...
CVE-2026-58528MEDIUM4.6Out-of-bounds read in Windows USB Audio Class driver (usbaudio.sys) allows an unauthorized attacker to disclose informat...
CVE-2026-57982MEDIUM6.5Use of uninitialized resource in Windows RDP allows an authorized attacker to disclose information over a network.
CVE-2026-57973MEDIUM4.7Time-of-check time-of-use (toctou) race condition in Windows Subsystem for Linux allows an authorized attacker to perfor...
CVE-2026-57101MEDIUM6.1Improper neutralization of input during web page generation ('cross-site scripting') in Visual Studio Code allows an una...
CVE-2026-57084MEDIUM5.5Use of uninitialized resource in Windows File Explorer allows an unauthorized attacker to disclose information locally.
CVE-2026-57083MEDIUM5.5Use of uninitialized resource in Microsoft Windows Codecs Library allows an unauthorized attacker to disclose informatio...
CVE-2026-56195MEDIUM5.5Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.
CVE-2026-56192MEDIUM5.5Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.
CVE-2026-56186MEDIUM6.5Out-of-bounds read in Windows Schannel allows an authorized attacker to disclose information over a network.
CVE-2026-56184MEDIUM5.5Exposure of sensitive information to an unauthorized actor in Windows Win32K allows an authorized attacker to disclose i...
CVE-2026-56168MEDIUM6.5Null pointer dereference in Windows SMB Server allows an authorized attacker to deny service over a network.
CVE-2026-56157MEDIUM5.4Improper access control in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.
CVE-2026-55142MEDIUM5.5Numeric truncation error in Microsoft Office Word allows an unauthorized attacker to disclose information locally.
CVE-2026-55138MEDIUM5.5Untrusted pointer dereference in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.
CVE-2026-55135MEDIUM5.4Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allo...
CVE-2026-55126MEDIUM5.4Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allo...
CVE-2026-55124MEDIUM5.5Improper validation of specified type of input in Microsoft Office Word allows an unauthorized attacker to disclose info...
CVE-2026-55121MEDIUM5.5Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.
CVE-2026-55057MEDIUM5.5Integer overflow or wraparound in Microsoft Office allows an unauthorized attacker to disclose information locally.

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now