2026 CVE Vulnerabilities
66,714 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-23403 | MEDIUM | 5.5 | 0.2% | Apr 1, 2026 | In the Linux kernel, the following vulnerability has been resolved: apparmor: fix memory leak in verify_header The fun... |
| CVE-2026-23402 | MEDIUM | 5.5 | 0.2% | Apr 1, 2026 | In the Linux kernel, the following vulnerability has been resolved: KVM: x86/mmu: Only WARN in direct MMUs when overwri... |
| CVE-2026-23401 | MEDIUM | 5.5 | 0.2% | Apr 1, 2026 | In the Linux kernel, the following vulnerability has been resolved: KVM: x86/mmu: Drop/zap existing present SPTE even w... |
| CVE-2026-5259 | MEDIUM | 6.3 | 0.2% | Apr 1, 2026 | A vulnerability was determined in AutohomeCorp frostmourne up to 1.0. The affected element is an unknown function of the... |
| CVE-2026-28265 | HIGH | 7.1 | 0.1% | Apr 1, 2026 | PowerStore, contains a Path Traversal vulnerability in the Service user. A low privileged attacker with local access cou... |
| CVE-2026-27101 | HIGH | 7.2 | 0.4% | Apr 1, 2026 | Dell Secure Connect Gateway (SCG) 5.0 Appliance and Application version(s) 5.28.00.xx to 5.32.00.xx, contain(s) an Impro... |
| CVE-2026-5258 | HIGH | 7.3 | 0.6% | Apr 1, 2026 | A vulnerability was found in Sanster IOPaint 1.5.3. Impacted is the function _get_file of the file iopaint/file_manager/... |
| CVE-2026-4748 | HIGH | 7.5 | 0.3% | Apr 1, 2026 | A regression in the way hashes were calculated caused rules containing the address range syntax (x.x.x.x - y.y.y.y) that... |
| CVE-2026-5257 | CRITICAL | 9.8 | 0.3% | Apr 1, 2026 | A vulnerability has been found in code-projects Simple Laundry System 1.0. This issue affects some unknown processing of... |
| CVE-2026-5256 | CRITICAL | 9.8 | 0.3% | Apr 1, 2026 | A flaw has been found in code-projects Simple Laundry System 1.0. This vulnerability affects unknown code of the file /m... |
| CVE-2026-5255 | MEDIUM | 6.1 | 0.3% | Apr 1, 2026 | A vulnerability was detected in code-projects Simple Laundry System 1.0. This affects an unknown part of the file /delst... |
| CVE-2026-2696 | MEDIUM | 5.3 | 0.3% | Apr 1, 2026 | The Export All URLs WordPress plugin before 5.1 generates CSV filenames containing posts URLS (including private posts) ... |
| CVE-2026-5292 | HIGH | 8.8 | 0.2% | Apr 1, 2026 | Out of bounds read in WebCodecs in Google Chrome prior to 146.0.7680.178 allowed a remote attacker to perform an out of ... |
| CVE-2026-5291 | MEDIUM | 6.5 | 0.2% | Apr 1, 2026 | Inappropriate implementation in WebGL in Google Chrome prior to 146.0.7680.178 allowed a remote attacker to obtain poten... |
| CVE-2026-5290 | CRITICAL | 9.6 | 0.2% | Apr 1, 2026 | Use after free in Compositing in Google Chrome prior to 146.0.7680.178 allowed a remote attacker who had compromised the... |
| CVE-2026-5289 | CRITICAL | 9.6 | 0.3% | Apr 1, 2026 | Use after free in Navigation in Google Chrome prior to 146.0.7680.178 allowed a remote attacker who had compromised the ... |
| CVE-2026-5288 | CRITICAL | 9.6 | 0.2% | Apr 1, 2026 | Use after free in WebView in Google Chrome on Android prior to 146.0.7680.178 allowed a remote attacker who had compromi... |
| CVE-2026-5287 | HIGH | 8.8 | 0.4% | Apr 1, 2026 | Use after free in PDF in Google Chrome prior to 146.0.7680.178 allowed a remote attacker to execute arbitrary code insid... |
| CVE-2026-5286 | HIGH | 8.8 | 0.3% | Apr 1, 2026 | Use after free in Dawn in Google Chrome prior to 146.0.7680.178 allowed a remote attacker to execute arbitrary code via ... |
| CVE-2026-5285 | HIGH | 8.8 | 0.4% | Apr 1, 2026 | Use after free in WebGL in Google Chrome prior to 146.0.7680.178 allowed a remote attacker to execute arbitrary code ins... |
| CVE-2026-5284 | HIGH | 7.5 | 0.3% | Apr 1, 2026 | Use after free in Dawn in Google Chrome prior to 146.0.7680.178 allowed a remote attacker who had compromised the render... |
| CVE-2026-5283 | MEDIUM | 6.5 | 0.2% | Apr 1, 2026 | Inappropriate implementation in ANGLE in Google Chrome prior to 146.0.7680.178 allowed a remote attacker to leak cross-o... |
| CVE-2026-5282 | HIGH | 8.1 | 0.2% | Apr 1, 2026 | Out of bounds read in WebCodecs in Google Chrome prior to 146.0.7680.178 allowed a remote attacker to perform an out of ... |
| CVE-2026-5281 | HIGH | 8.8 | 5.0% | Apr 1, 2026 | Use after free in Dawn in Google Chrome prior to 146.0.7680.178 allowed a remote attacker who had compromised the render... |
| CVE-2026-5280 | HIGH | 8.8 | 0.4% | Apr 1, 2026 | Use after free in WebCodecs in Google Chrome prior to 146.0.7680.178 allowed a remote attacker to execute arbitrary code... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now