2026 CVE Vulnerabilities

61,653 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-11650HIGH8.8Use after free in V8 in Google Chrome prior to 149.0.7827.103 allowed a remote attacker to execute arbitrary code inside...
CVE-2026-11649HIGH8.8Use after free in V8 in Google Chrome prior to 149.0.7827.103 allowed a remote attacker to execute arbitrary code inside...
CVE-2026-11648HIGH8.8Use after free in FullScreen in Google Chrome on Windows prior to 149.0.7827.103 allowed a remote attacker to potentiall...
CVE-2026-11647HIGH8.3Use after free in Printing in Google Chrome on Android prior to 149.0.7827.103 allowed a remote attacker who had comprom...
CVE-2026-11646HIGH8.8Use after free in ViewTransitions in Google Chrome prior to 149.0.7827.103 allowed a remote attacker to execute arbitrar...
CVE-2026-11645HIGH8.8Out of bounds read and write in V8 in Google Chrome prior to 149.0.7827.103 allowed a remote attacker to execute arbitra...
CVE-2026-11644HIGH7.5Use after free in Views in Google Chrome on Linux prior to 149.0.7827.103 allowed an attacker who convinced a user to in...
CVE-2026-11643HIGH8.1Use after free in Proxy in Google Chrome prior to 149.0.7827.103 allowed a remote attacker to execute arbitrary code via...
CVE-2026-11642HIGH8.3Use after free in Web Apps in Google Chrome prior to 149.0.7827.103 allowed a remote attacker who had compromised the re...
CVE-2026-11641HIGH7.5Use after free in Bluetooth in Google Chrome on Windows prior to 149.0.7827.103 allowed a remote attacker who convinced ...
CVE-2026-11640HIGH8.3Integer overflow in libyuv in Google Chrome prior to 149.0.7827.103 allowed a remote attacker who had compromised the re...
CVE-2026-11639HIGH7.5Use after free in Compositing in Google Chrome on Mac prior to 149.0.7827.103 allowed a remote attacker to execute arbit...
CVE-2026-11638CRITICAL9.6Use after free in Printing in Google Chrome prior to 149.0.7827.103 allowed a remote attacker to potentially perform a s...
CVE-2026-11637HIGH8.8Use after free in Views in Google Chrome on Mac prior to 149.0.7827.103 allowed a remote attacker to execute arbitrary c...
CVE-2026-11636HIGH7.5Use after free in Autofill in Google Chrome on Windows prior to 149.0.7827.103 allowed a remote attacker who convinced a...
CVE-2026-11635HIGH8.3Use after free in Bluetooth in Google Chrome on Mac prior to 149.0.7827.103 allowed a remote attacker who had compromise...
CVE-2026-11634CRITICAL9.6Use after free in Gamepad in Google Chrome on Windows prior to 149.0.7827.103 allowed a remote attacker to potentially p...
CVE-2026-11633HIGH8.8Use after free in Bluetooth in Google Chrome on Mac prior to 149.0.7827.103 allowed a remote attacker to execute arbitra...
CVE-2026-11632HIGH7.5Use after free in TabStrip in Google Chrome prior to 149.0.7827.103 allowed a remote attacker who convinced a user to en...
CVE-2026-11631HIGH8.3Use after free in Aura in Google Chrome on Windows prior to 149.0.7827.103 allowed a remote attacker who had compromised...
CVE-2026-11630HIGH8.8Use after free in File Input in Google Chrome prior to 149.0.7827.103 allowed a remote attacker to potentially exploit h...
CVE-2026-11629HIGH8.8Use after free in Ozone in Google Chrome prior to 149.0.7827.103 allowed a remote attacker to potentially exploit heap c...
CVE-2026-11628MEDIUM6.8Use after free in Ozone in Google Chrome prior to 149.0.7827.103 allowed a local attacker to potentially exploit heap co...
CVE-2026-9669HIGH8.2bz2.BZ2Decompressor objects could be reused after a decompression error. If an application caught the resulting OSError ...
CVE-2026-44541HIGH7Fides is an open-source privacy engineering platform. From version 2.33.0 to before version 2.84.5, there is a DOM-based...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now