2026 CVE Vulnerabilities
64,760 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-91728 | CRITICAL | 9.6 | 0.4% | Sep 15, 2026 | Integer overflow in V8 in Google Chrome prior to 153.0.8010.47 allowed a remote attacker to execute arbitrary code insid... |
| CVE-2026-91718 | CRITICAL | 9.6 | 0.2% | Sep 15, 2026 | Use after free in Core in Google Chrome prior to 153.0.8010.47 allowed a remote attacker to execute arbitrary code outsi... |
| CVE-2026-91716 | CRITICAL | 9.6 | 0.2% | Sep 15, 2026 | Use after free in Auth in Google Chrome prior to 153.0.8010.47 allowed a remote attacker to execute arbitrary code outsi... |
| CVE-2026-91710 | CRITICAL | 9.6 | 0.2% | Sep 15, 2026 | Use after free in WebAppInstalls in Google Chrome prior to 153.0.8010.47 allowed a remote attacker to execute arbitrary ... |
| CVE-2026-68491 | CRITICAL | 9.4 | 0.3% | Sep 15, 2026 | An insufficient check allowed for the overwrite of arbitrary files via a symlink. |
| CVE-2026-66890 | CRITICAL | 9.6 | 0.2% | Sep 15, 2026 | The affected products use hard-coded credentials, which could allow remote access to files with root privileges where FT... |
| CVE-2026-66887 | CRITICAL | 9.6 | 0.2% | Sep 15, 2026 | The affected products are missing authorization on state-changing CGIs and session checks are not performed. |
| CVE-2026-61568 | CRITICAL | 9.6 | 0.3% | Sep 15, 2026 | `@zereight/mcp-gitlab` is a Model Context Protocol server for GitLab. Versions prior to 2.1.30 expose the Streamable HTT... |
| CVE-2026-61559 | CRITICAL | 9.6 | 0.3% | Sep 15, 2026 | `@zereight/mcp-gitlab` is a Model Context Protocol server for GitLab. Starting in version 0.0.1 and prior to version 2.1... |
| CVE-2026-54337 | CRITICAL | 9.8 | 0.4% | Sep 15, 2026 | Fireshare facilitates self-hosted media and link sharing. Prior to version 1.6.14, an argument Injection in the video up... |
| CVE-2026-92240 | CRITICAL | 9.1 | 0.7% | Sep 15, 2026 | A malicious or compromised IMAP server can trigger an out-of-bounds read in the IMAP response parser by sending an untag... |
| CVE-2026-92238 | CRITICAL | 9.8 | 0.6% | Sep 15, 2026 | A maliciously constructed mail header could lead to multiple fields being parsed as one, or potential memory safety viol... |
| CVE-2026-89040 | CRITICAL | 9.8 | 0.9% | Sep 15, 2026 | Tencent Mass Service Engine in Cluster (MSEC) allows a remote, unauthenticated attacker to send a crafted POST request i... |
| CVE-2026-87230 | CRITICAL | 10 | 0.4% | Sep 15, 2026 | Vulnerability in the Oracle Hyperion Financial Management product of Oracle Hyperion (component: Security). The suppor... |
| CVE-2026-87223 | CRITICAL | 9.1 | 0.3% | Sep 15, 2026 | Vulnerability in the Oracle Hyperion Financial Management product of Oracle Hyperion (component: Security). The suppor... |
| CVE-2026-87217 | CRITICAL | 9.1 | 0.4% | Sep 15, 2026 | Vulnerability in the Oracle Hyperion Financial Management product of Oracle Hyperion (component: Security). The suppor... |
| CVE-2026-87214 | CRITICAL | 9.1 | 0.3% | Sep 15, 2026 | Vulnerability in the Oracle Hyperion Financial Management product of Oracle Hyperion (component: Security). The suppor... |
| CVE-2026-87189 | CRITICAL | 9.1 | 0.5% | Sep 15, 2026 | Vulnerability in the Oracle Hyperion Financial Management product of Oracle Hyperion (component: Security). The suppor... |
| CVE-2026-87188 | CRITICAL | 9.8 | 0.4% | Sep 15, 2026 | Vulnerability in the Oracle Hyperion Financial Management product of Oracle Hyperion (component: Security). The suppor... |
| CVE-2026-87186 | CRITICAL | 9.6 | 0.2% | Sep 15, 2026 | Vulnerability in the Oracle Hyperion Financial Management product of Oracle Hyperion (component: Security). The suppor... |
| CVE-2026-87184 | CRITICAL | 9.8 | 0.5% | Sep 15, 2026 | Vulnerability in the Oracle Hyperion Financial Management product of Oracle Hyperion (component: Security). The suppor... |
| CVE-2026-87176 | CRITICAL | 9.1 | 0.4% | Sep 15, 2026 | Vulnerability in the Oracle Hyperion Financial Management product of Oracle Hyperion (component: Security). The suppor... |
| CVE-2026-87175 | CRITICAL | 9.1 | 0.3% | Sep 15, 2026 | Vulnerability in the Oracle Hyperion Financial Management product of Oracle Hyperion (component: Security). The suppor... |
| CVE-2026-87173 | CRITICAL | 9.1 | 0.4% | Sep 15, 2026 | Vulnerability in the Oracle Hyperion Financial Management product of Oracle Hyperion (component: Security). The suppor... |
| CVE-2026-87172 | CRITICAL | 9.9 | 0.3% | Sep 15, 2026 | Vulnerability in the Oracle Hyperion Financial Management product of Oracle Hyperion (component: Security). The suppor... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now