2026 CVE Vulnerabilities

45,091 CVEs published in 2026.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2026-54992HIGH7.8Heap-based buffer overflow in Windows Message Queuing Queue Manager allows an unauthorized attacker to execute code loca...
CVE-2026-54991HIGH7Concurrent execution using shared resource with improper synchronization ('race condition') in Windows USB Print Driver ...
CVE-2026-54990HIGH8.8Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
CVE-2026-54989HIGH7.8Use after free in Quality Windows Audio/Video Experience (QWAVE) service allows an authorized attacker to elevate privil...
CVE-2026-54987HIGH7.8Heap-based buffer overflow in Windows Overlay Filter allows an authorized attacker to elevate privileges locally.
CVE-2026-54986HIGH7.8Heap-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges locally.
CVE-2026-54983HIGH7.5Stack-based buffer overflow in Active Directory Federation Services (AD FS) allows an unauthorized attacker to deny serv...
CVE-2026-54982HIGH8.8Integer underflow (wrap or wraparound) in Reliable Multicast Transport Driver (RMCAST) allows an unauthorized attacker t...
CVE-2026-54129HIGH7.8Use after free in Windows Hyper-V allows an authorized attacker to elevate privileges locally.
CVE-2026-54127HIGH8.4Use after free in Windows Hyper-V allows an unauthorized attacker to elevate privileges locally.
CVE-2026-54122HIGH8.4Heap-based buffer overflow in Windows GDI+ allows an unauthorized attacker to execute code locally.
CVE-2026-54119HIGH7.5Loop with unreachable exit condition ('infinite loop') in Windows Active Directory allows an unauthorized attacker to de...
CVE-2026-54118HIGH8.8Deserialization of untrusted data in SQL Server allows an authorized attacker to execute code over a network.
CVE-2026-54117HIGH8.8Deserialization of untrusted data in SQL Server allows an authorized attacker to execute code over a network.
CVE-2026-54114HIGH7.8Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally.
CVE-2026-54112HIGH7Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K allows an ...
CVE-2026-54111HIGH7Concurrent execution using shared resource with improper synchronization ('race condition') in Windows USB Print Driver ...
CVE-2026-54109HIGH7.8Integer overflow or wraparound in Windows Resilient File System (ReFS) allows an authorized attacker to execute code loc...
CVE-2026-54107HIGH7Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K allows an ...
CVE-2026-50697HIGH7.8Exposure of sensitive information to an unauthorized actor in Windows Common Log File System Driver allows an authorized...
CVE-2026-50696HIGH7.5Heap-based buffer overflow in Windows Internet Key Exchange (IKE) Protocol allows an unauthorized attacker to deny servi...
CVE-2026-50695HIGH7.5Stack-based buffer overflow in Active Directory Federation Services allows an unauthorized attacker to deny service over...
CVE-2026-50675HIGH7.8Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
CVE-2026-50663HIGH8.8Relative path traversal in Age of Empires II: Definitive Edition Game allows an unauthorized attacker to execute code ov...
CVE-2026-50653HIGH7.5Loop with unreachable exit condition ('infinite loop') in Azure Active Directory allows an unauthorized attacker to deny...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now