2026 CVE Vulnerabilities
43,246 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-49179 | HIGH | 8.8 | — | Aug 11, 2026 | Improper neutralization of special elements used in a command ('command injection') in Windows Active Directory allows a... |
| CVE-2026-48442 | HIGH | 7.1 | 0.2% | Aug 11, 2026 | CAI Content Credentials is affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')... |
| CVE-2026-48440 | HIGH | 8.1 | 0.6% | Aug 11, 2026 | ColdFusion is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in th... |
| CVE-2026-48439 | HIGH | 7.5 | 0.5% | Aug 11, 2026 | CAI Content Credentials is affected by an Uncontrolled Resource Consumption vulnerability that could lead to application... |
| CVE-2026-48438 | HIGH | 7.5 | 0.5% | Aug 11, 2026 | CAI Content Credentials is affected by a NULL Pointer Dereference vulnerability that could result in an application deni... |
| CVE-2026-48386 | HIGH | 7.5 | 0.7% | Aug 11, 2026 | ColdFusion is affected by a Use of a Broken or Risky Cryptographic Algorithm vulnerability that could lead to disclosure... |
| CVE-2026-48385 | HIGH | 7.7 | 0.8% | Aug 11, 2026 | ColdFusion is affected by an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') ... |
| CVE-2026-47704 | HIGH | 7.1 | — | Aug 11, 2026 | TypeBot is a chatbot builder tool. Prior to version 3.17.0, an authenticated user who has read access to any typebot can... |
| CVE-2026-47299 | HIGH | 7.2 | 1.0% | Aug 11, 2026 | Improper neutralization of special elements used in a command ('command injection') in Azure Monitor Agent allows an aut... |
| CVE-2026-43606 | HIGH | 8.5 | 0.1% | Aug 11, 2026 | Observable Timing Discrepancy in the AMD Vitis Libraries ECDSA secp256k1 component could allow attackers with local acce... |
| CVE-2026-42976 | HIGH | 7.8 | 0.2% | Aug 11, 2026 | Missing authentication for critical function in Windows RPC API allows an authorized attacker to elevate privileges loca... |
| CVE-2026-34635 | HIGH | 8.4 | 0.2% | Aug 11, 2026 | is affected by a Use of Hard-coded Cryptographic Key vulnerability that could result in a Security feature bypass. A low... |
| CVE-2026-25652 | HIGH | 7.8 | 0.1% | Aug 11, 2026 | is affected by an Incorrect Authorization vulnerability that could result in privilege escalation. A low-privileged atta... |
| CVE-2026-24911 | HIGH | 8.3 | 0.2% | Aug 11, 2026 | Stack-based buffer overflow for some Intel(R) PROSet/Wireless WiFi Software for Windows within Ring 0: Kernel may allow ... |
| CVE-2026-22887 | HIGH | 8.3 | 0.2% | Aug 11, 2026 | Improper buffer restrictions for some Intel(R) PROSet/Wireless WiFi Software for Windows within Ring 0: Kernel may allow... |
| CVE-2026-21279 | HIGH | 8.2 | 0.4% | Aug 11, 2026 | is affected by an Improper Input Validation vulnerability that could result in a Security feature bypass. An attacker co... |
| CVE-2026-21273 | HIGH | 8.7 | 0.9% | Aug 11, 2026 | is affected by an Improper Input Validation vulnerability that could result in privilege escalation. A low-privileged at... |
| CVE-2026-20898 | HIGH | 8.5 | 0.1% | Aug 11, 2026 | Improper access control in the firmware for some in Alias Checking Trusted Module for some Intel(R) Xeon(R) processors m... |
| CVE-2026-20890 | HIGH | 7.1 | 0.1% | Aug 11, 2026 | Improper privilege management for some Intel(R) PROSet/Wireless WiFi Software for Windows within Ring 2: Privileged Proc... |
| CVE-2026-20885 | HIGH | 7 | 0.1% | Aug 11, 2026 | Improper authentication in the Intel(R) TDX module for some Intel(R) platforms within Ring 0: Trust Domain may allow an ... |
| CVE-2026-20878 | HIGH | 7.1 | 0.2% | Aug 11, 2026 | Null pointer dereference for some Intel(R) PROSet/Wireless WiFi Software for Windows within Ring 2: Device Drivers may a... |
| CVE-2026-20795 | HIGH | 7.1 | 0.2% | Aug 11, 2026 | Improper buffer restrictions for some Intel(R) PROSet/Wireless WiFi Software for Windows within Ring 2: Device Drivers m... |
| CVE-2026-20789 | HIGH | 8.4 | 0.1% | Aug 11, 2026 | Improper access control for some Intel(R) PROSet/Wireless WiFi Software for Windows within Ring 2: Device Drivers may al... |
| CVE-2026-20787 | HIGH | 7.1 | 0.2% | Aug 11, 2026 | Null pointer dereference for some Intel(R) PROSet/Wireless WiFi Software for Windows within Ring 2: Device Drivers may a... |
| CVE-2026-20778 | HIGH | 7 | 0.1% | Aug 11, 2026 | Out-of-bounds read for some Intel(R) PROSet/Wireless WiFi Software for Windows within Ring 0: Kernel may allow a denial ... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now