2026 CVE Vulnerabilities

45,067 CVEs published in 2026.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2026-50322HIGH7Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an...
CVE-2026-50321HIGH7Concurrent execution using shared resource with improper synchronization ('race condition') in Windows USB Driver allows...
CVE-2026-50317HIGH7Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Operating Systems...
CVE-2026-50315HIGH7.8Null pointer dereference in Windows Image Acquisition allows an authorized attacker to elevate privileges locally.
CVE-2026-50314HIGH7.8Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2026-50313HIGH7.8Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.
CVE-2026-50312HIGH7.8Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges loca...
CVE-2026-50309HIGH7.8Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally.
CVE-2026-50307HIGH7.8Use after free in Windows TCP/IP allows an authorized attacker to elevate privileges locally.
CVE-2026-50306HIGH7.8Use after free in Windows TCP/IP allows an authorized attacker to elevate privileges locally.
CVE-2026-50305HIGH7.8Use after free in Microsoft Brokering File System allows an authorized attacker to elevate privileges locally.
CVE-2026-50304HIGH7.5Stack-based buffer overflow in Active Directory Federation Services allows an unauthorized attacker to deny service over...
CVE-2026-50301HIGH7.8Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2026-4017HIGH7.4Buffer Overflow in the entry handler of the TraceEvent() system call could allow an attacker with local access to cause ...
CVE-2026-48368HIGH7.8Audition is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the contex...
CVE-2026-48365HIGH7.8Audition is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the contex...
CVE-2026-48309HIGH7.8Audition is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the contex...
CVE-2026-47968HIGH7.8Audition is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the contex...
CVE-2026-47967HIGH7.8Audition is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the contex...
CVE-2026-47642HIGH7.8Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
CVE-2026-47295HIGH8.8Improper neutralization of special elements used in an sql command ('sql injection') in SQL Server allows an authorized ...
CVE-2026-47290HIGH7.8Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2026-45756HIGH7.5Symfony is a PHP framework for web and console applications and a set of reusable PHP components. From 7.3.0-BETA1 until...
CVE-2026-45077HIGH8.6Symfony is a PHP framework for web and console applications and a set of reusable PHP components. Prior to 5.4.52, 6.4.4...
CVE-2026-45074HIGH8.1Symfony is a PHP framework for web and console applications and a set of reusable PHP components. From 7.1.0 until 7.4.1...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now