2026 CVE Vulnerabilities

43,246 CVEs published in 2026.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2026-49179HIGH8.8Improper neutralization of special elements used in a command ('command injection') in Windows Active Directory allows a...
CVE-2026-48442HIGH7.1CAI Content Credentials is affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')...
CVE-2026-48440HIGH8.1ColdFusion is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in th...
CVE-2026-48439HIGH7.5CAI Content Credentials is affected by an Uncontrolled Resource Consumption vulnerability that could lead to application...
CVE-2026-48438HIGH7.5CAI Content Credentials is affected by a NULL Pointer Dereference vulnerability that could result in an application deni...
CVE-2026-48386HIGH7.5ColdFusion is affected by a Use of a Broken or Risky Cryptographic Algorithm vulnerability that could lead to disclosure...
CVE-2026-48385HIGH7.7ColdFusion is affected by an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') ...
CVE-2026-47704HIGH7.1TypeBot is a chatbot builder tool. Prior to version 3.17.0, an authenticated user who has read access to any typebot can...
CVE-2026-47299HIGH7.2Improper neutralization of special elements used in a command ('command injection') in Azure Monitor Agent allows an aut...
CVE-2026-43606HIGH8.5Observable Timing Discrepancy in the AMD Vitis Libraries ECDSA secp256k1 component could allow attackers with local acce...
CVE-2026-42976HIGH7.8Missing authentication for critical function in Windows RPC API allows an authorized attacker to elevate privileges loca...
CVE-2026-34635HIGH8.4is affected by a Use of Hard-coded Cryptographic Key vulnerability that could result in a Security feature bypass. A low...
CVE-2026-25652HIGH7.8is affected by an Incorrect Authorization vulnerability that could result in privilege escalation. A low-privileged atta...
CVE-2026-24911HIGH8.3Stack-based buffer overflow for some Intel(R) PROSet/Wireless WiFi Software for Windows within Ring 0: Kernel may allow ...
CVE-2026-22887HIGH8.3Improper buffer restrictions for some Intel(R) PROSet/Wireless WiFi Software for Windows within Ring 0: Kernel may allow...
CVE-2026-21279HIGH8.2is affected by an Improper Input Validation vulnerability that could result in a Security feature bypass. An attacker co...
CVE-2026-21273HIGH8.7is affected by an Improper Input Validation vulnerability that could result in privilege escalation. A low-privileged at...
CVE-2026-20898HIGH8.5Improper access control in the firmware for some in Alias Checking Trusted Module for some Intel(R) Xeon(R) processors m...
CVE-2026-20890HIGH7.1Improper privilege management for some Intel(R) PROSet/Wireless WiFi Software for Windows within Ring 2: Privileged Proc...
CVE-2026-20885HIGH7Improper authentication in the Intel(R) TDX module for some Intel(R) platforms within Ring 0: Trust Domain may allow an ...
CVE-2026-20878HIGH7.1Null pointer dereference for some Intel(R) PROSet/Wireless WiFi Software for Windows within Ring 2: Device Drivers may a...
CVE-2026-20795HIGH7.1Improper buffer restrictions for some Intel(R) PROSet/Wireless WiFi Software for Windows within Ring 2: Device Drivers m...
CVE-2026-20789HIGH8.4Improper access control for some Intel(R) PROSet/Wireless WiFi Software for Windows within Ring 2: Device Drivers may al...
CVE-2026-20787HIGH7.1Null pointer dereference for some Intel(R) PROSet/Wireless WiFi Software for Windows within Ring 2: Device Drivers may a...
CVE-2026-20778HIGH7Out-of-bounds read for some Intel(R) PROSet/Wireless WiFi Software for Windows within Ring 0: Kernel may allow a denial ...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now