2026 CVE Vulnerabilities

64,775 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-40300MEDIUM6.5Zulip is an open-source team collaboration tool. Prior to 12.0, With message_edit_history_visibility_policy set to "move...
CVE-2026-25431MEDIUM5.3Missing Authorization vulnerability in WPMU DEV Hustle allows Exploiting Incorrectly Configured Access Control Security ...
CVE-2026-20914MEDIUM5.5Null pointer dereference for some Intel(R) QAT software drivers for Windows before version 2.6.0 within Ring 3: User App...
CVE-2026-20905MEDIUM6.6Improper input validation for some Intel(R) QAT software drivers for Windows before version 2.6 within Ring 3: User Appl...
CVE-2026-20887HIGH7.5Improper access control for some Intel Vision software for all versions within Ring 3: User Applications may allow a den...
CVE-2026-20881MEDIUM5.5Divide by zero for some Intel(R) QAT software drivers for Windows before version 1.13 within Ring 3: User Applications m...
CVE-2026-20879HIGH8.3Out-of-bounds write for the Intel(R) Data Center Graphics Driver for VMware ESXi software before version 2.0.2 within Ri...
CVE-2026-20794CRITICAL9.3Buffer overflow for the Intel(R) Data Center Graphics Driver for VMware ESXi software before version 2.0.2 within Ring 1...
CVE-2026-20793LOW3.3Unchecked return value for some Intel(R) QAT software drivers for Windows before version 1.13 within Ring 3: User Applic...
CVE-2026-20782MEDIUM6.6Buffer overflow for some Intel(R) QAT software drivers for Windows before version 1.13 within Ring 3: User Applications ...
CVE-2026-20772MEDIUM6.7Uncontrolled search path for some Intel(R) Connectivity Performance Suite software installers before version 50.25.1121....
CVE-2026-20771MEDIUM6.1Null pointer dereference for some Intel(R) QAT software drivers for Windows before version 1.13 within Ring 3: User Appl...
CVE-2026-20754MEDIUM6.9Improper conditions check in some firmware for some Intel(R) NPU Drivers within Ring 1: Device Drivers may allow a denia...
CVE-2026-20753HIGH8.7Integer overflow in the UEFI firmware for the Slim Bootloader may allow an escalation of privilege. System software adve...
CVE-2026-20751HIGH8.3Out-of-bounds read for the Intel(R) Data Center Graphics Driver for VMware ESXi software before version 2.0.2 within Rin...
CVE-2026-20738HIGH8.5Untrusted pointer dereference for some Intel(R) QuickAssist Adapter 8960 software before version 1.13 within Ring 3: Use...
CVE-2026-20718MEDIUM5.4Incorrect default permissions for some Intel(R) NPU Driver software installers before version 32.0.100.4511 within Ring ...
CVE-2026-20717MEDIUM6.6Improper input validation for some Intel(R) QAT software drivers for Windows before version 1.13 within Ring 3: User App...
CVE-2026-43515CRITICAL9.1Improper Authorization vulnerability when multiple method constraints define an HTTP method for the same extension in Ap...
CVE-2026-43514LOW3.7Observable Timing Discrepancy vulnerability when comparing AJP secret in Apache Tomcat. This issue affects Apache Tomca...
CVE-2026-43513HIGH7.5Improper Handling of Case Sensitivity vulnerability in LockOutRealm in Apache Tomcat. This issue affects Apache Tomcat:...
CVE-2026-43512CRITICAL9.8DEPRECATED: Authentication Bypass Issues vulnerability in digest authentication in Apache Tomcat. This issue affects Ap...
CVE-2026-42498HIGH7.3Exposure of HTTP Authentication Header to unexpected hosts during WebSocket authentication vulnerability in Apache Tomca...
CVE-2026-41293CRITICAL9.8Improper Input Validation vulnerability in Apache Tomcat. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0...
CVE-2026-41284HIGH7.5Allocation of Resources Without Limits or Throttling vulnerability in Apache Tomcat. This issue affects Apache Tomcat: ...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now