2026 CVE Vulnerabilities
64,775 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-40300 | MEDIUM | 6.5 | 0.2% | May 12, 2026 | Zulip is an open-source team collaboration tool. Prior to 12.0, With message_edit_history_visibility_policy set to "move... |
| CVE-2026-25431 | MEDIUM | 5.3 | 0.2% | May 12, 2026 | Missing Authorization vulnerability in WPMU DEV Hustle allows Exploiting Incorrectly Configured Access Control Security ... |
| CVE-2026-20914 | MEDIUM | 5.5 | 0.1% | May 12, 2026 | Null pointer dereference for some Intel(R) QAT software drivers for Windows before version 2.6.0 within Ring 3: User App... |
| CVE-2026-20905 | MEDIUM | 6.6 | 0.1% | May 12, 2026 | Improper input validation for some Intel(R) QAT software drivers for Windows before version 2.6 within Ring 3: User Appl... |
| CVE-2026-20887 | HIGH | 7.5 | 0.5% | May 12, 2026 | Improper access control for some Intel Vision software for all versions within Ring 3: User Applications may allow a den... |
| CVE-2026-20881 | MEDIUM | 5.5 | 0.1% | May 12, 2026 | Divide by zero for some Intel(R) QAT software drivers for Windows before version 1.13 within Ring 3: User Applications m... |
| CVE-2026-20879 | HIGH | 8.3 | 0.1% | May 12, 2026 | Out-of-bounds write for the Intel(R) Data Center Graphics Driver for VMware ESXi software before version 2.0.2 within Ri... |
| CVE-2026-20794 | CRITICAL | 9.3 | 0.1% | May 12, 2026 | Buffer overflow for the Intel(R) Data Center Graphics Driver for VMware ESXi software before version 2.0.2 within Ring 1... |
| CVE-2026-20793 | LOW | 3.3 | 0.1% | May 12, 2026 | Unchecked return value for some Intel(R) QAT software drivers for Windows before version 1.13 within Ring 3: User Applic... |
| CVE-2026-20782 | MEDIUM | 6.6 | 0.1% | May 12, 2026 | Buffer overflow for some Intel(R) QAT software drivers for Windows before version 1.13 within Ring 3: User Applications ... |
| CVE-2026-20772 | MEDIUM | 6.7 | 0.1% | May 12, 2026 | Uncontrolled search path for some Intel(R) Connectivity Performance Suite software installers before version 50.25.1121.... |
| CVE-2026-20771 | MEDIUM | 6.1 | 0.1% | May 12, 2026 | Null pointer dereference for some Intel(R) QAT software drivers for Windows before version 1.13 within Ring 3: User Appl... |
| CVE-2026-20754 | MEDIUM | 6.9 | 0.1% | May 12, 2026 | Improper conditions check in some firmware for some Intel(R) NPU Drivers within Ring 1: Device Drivers may allow a denia... |
| CVE-2026-20753 | HIGH | 8.7 | 0.1% | May 12, 2026 | Integer overflow in the UEFI firmware for the Slim Bootloader may allow an escalation of privilege. System software adve... |
| CVE-2026-20751 | HIGH | 8.3 | 0.1% | May 12, 2026 | Out-of-bounds read for the Intel(R) Data Center Graphics Driver for VMware ESXi software before version 2.0.2 within Rin... |
| CVE-2026-20738 | HIGH | 8.5 | 0.1% | May 12, 2026 | Untrusted pointer dereference for some Intel(R) QuickAssist Adapter 8960 software before version 1.13 within Ring 3: Use... |
| CVE-2026-20718 | MEDIUM | 5.4 | 0.1% | May 12, 2026 | Incorrect default permissions for some Intel(R) NPU Driver software installers before version 32.0.100.4511 within Ring ... |
| CVE-2026-20717 | MEDIUM | 6.6 | 0.1% | May 12, 2026 | Improper input validation for some Intel(R) QAT software drivers for Windows before version 1.13 within Ring 3: User App... |
| CVE-2026-43515 | CRITICAL | 9.1 | 0.8% | May 12, 2026 | Improper Authorization vulnerability when multiple method constraints define an HTTP method for the same extension in Ap... |
| CVE-2026-43514 | LOW | 3.7 | 0.4% | May 12, 2026 | Observable Timing Discrepancy vulnerability when comparing AJP secret in Apache Tomcat. This issue affects Apache Tomca... |
| CVE-2026-43513 | HIGH | 7.5 | 0.5% | May 12, 2026 | Improper Handling of Case Sensitivity vulnerability in LockOutRealm in Apache Tomcat. This issue affects Apache Tomcat:... |
| CVE-2026-43512 | CRITICAL | 9.8 | 0.9% | May 12, 2026 | DEPRECATED: Authentication Bypass Issues vulnerability in digest authentication in Apache Tomcat. This issue affects Ap... |
| CVE-2026-42498 | HIGH | 7.3 | 0.5% | May 12, 2026 | Exposure of HTTP Authentication Header to unexpected hosts during WebSocket authentication vulnerability in Apache Tomca... |
| CVE-2026-41293 | CRITICAL | 9.8 | 1.0% | May 12, 2026 | Improper Input Validation vulnerability in Apache Tomcat. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0... |
| CVE-2026-41284 | HIGH | 7.5 | 0.8% | May 12, 2026 | Allocation of Resources Without Limits or Throttling vulnerability in Apache Tomcat. This issue affects Apache Tomcat: ... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now