2026 CVE Vulnerabilities
62,196 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-6324 | MEDIUM | 4.8 | 0.9% | May 29, 2026 | A flaw was found in libsoup. A remote attacker could exploit an unsigned to signed conversion error in the `soup_body_in... |
| CVE-2026-6275 | MEDIUM | 6.4 | 0.3% | May 29, 2026 | The StatCounter – Free Real Time Visitor Stats plugin for WordPress is vulnerable to Stored Cross-Site Scripting in vers... |
| CVE-2026-2128 | MEDIUM | 5.3 | 0.3% | May 29, 2026 | The Breeze plugin for WordPress is vulnerable to Exposure of Sensitive Information to an Unauthorized Actor in all versi... |
| CVE-2026-8995 | MEDIUM | 4.3 | 0.3% | May 29, 2026 | The Poll Maker – Versus Polls, Anonymous Polls, Image Polls plugin for WordPress is vulnerable to Sensitive Information ... |
| CVE-2026-7430 | MEDIUM | 4.4 | 0.2% | May 29, 2026 | The Post Snippets plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, and including... |
| CVE-2026-8070 | HIGH | 7.3 | 0.1% | May 29, 2026 | Incorrect permission assignment for a critical resource in Armoury Crate allows a local user to bypass the driver’s vali... |
| CVE-2026-7480 | HIGH | 7.3 | 0.1% | May 29, 2026 | An Incorrect Permission Assignment for Critical Resource vulnerability in ASUS System Control Interface allows a local u... |
| CVE-2026-6892 | MEDIUM | 5.1 | 0.1% | May 29, 2026 | Improper handling of symbolic links in the installer of CUPS Printer Driver for macOS(*) may allow a local attacker with... |
| CVE-2026-6891 | MEDIUM | 5.1 | 0.1% | May 29, 2026 | Improper handling of symbolic links in the installer of My Image Garden for macOS Version 3.6.8 or earlier may allow a l... |
| CVE-2026-9999 | HIGH | 8.8 | 0.2% | May 28, 2026 | Inappropriate implementation in ANGLE in Google Chrome on Mac prior to 148.0.7778.216 allowed a remote attacker to execu... |
| CVE-2026-9998 | HIGH | 8.3 | 0.2% | May 28, 2026 | Integer overflow in Skia in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had compromised the rend... |
| CVE-2026-9997 | HIGH | 8.3 | 0.2% | May 28, 2026 | Use after free in Input in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had compromised the rende... |
| CVE-2026-9996 | MEDIUM | 6.5 | 0.2% | May 28, 2026 | Out of bounds read in WebRTC in Google Chrome on Mac prior to 148.0.7778.216 allowed a remote attacker to obtain potenti... |
| CVE-2026-9995 | HIGH | 8.8 | 0.3% | May 28, 2026 | Use after free in WebXR in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to execute arbitrary code ins... |
| CVE-2026-9994 | HIGH | 8.3 | 0.2% | May 28, 2026 | Use after free in Core in Google Chrome on Windows prior to 148.0.7778.216 allowed a remote attacker who had compromised... |
| CVE-2026-9993 | HIGH | 8.3 | 0.2% | May 28, 2026 | Use after free in Views in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had compromised the rende... |
| CVE-2026-9992 | HIGH | 8.8 | 0.2% | May 28, 2026 | Use after free in Network in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to execute arbitrary code i... |
| CVE-2026-9991 | LOW | 3.1 | 0.1% | May 28, 2026 | Inappropriate implementation in Media in Google Chrome on Windows prior to 148.0.7778.216 allowed a remote attacker who ... |
| CVE-2026-9990 | HIGH | 7.5 | 0.2% | May 28, 2026 | Use after free in WebAppInstalls in Google Chrome on Mac prior to 148.0.7778.216 allowed a remote attacker who convinced... |
| CVE-2026-9989 | MEDIUM | 6.3 | 0.1% | May 28, 2026 | Inappropriate implementation in Media in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to bypass same ... |
| CVE-2026-9988 | HIGH | 8.3 | 0.2% | May 28, 2026 | Use after free in WebRTC in Google Chrome on Linux prior to 148.0.7778.216 allowed a remote attacker to potentially perf... |
| CVE-2026-9987 | HIGH | 7.8 | 0.1% | May 28, 2026 | Insufficient validation of untrusted input in WebAppInstalls in Google Chrome on Android prior to 148.0.7778.216 allowed... |
| CVE-2026-9986 | MEDIUM | 4.2 | 0.1% | May 28, 2026 | Insufficient validation of untrusted input in OptimizationGuide in Google Chrome prior to 148.0.7778.216 allowed a remot... |
| CVE-2026-9985 | MEDIUM | 5.3 | 0.2% | May 28, 2026 | Insufficient validation of untrusted input in Media in Google Chrome on ChromeOS prior to 148.0.7778.216 allowed a remot... |
| CVE-2026-9984 | HIGH | 8.8 | 0.2% | May 28, 2026 | Use after free in UI in Google Chrome on Windows prior to 148.0.7778.216 allowed a remote attacker to execute arbitrary ... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now