2026 CVE Vulnerabilities

66,719 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-5284HIGH7.5Use after free in Dawn in Google Chrome prior to 146.0.7680.178 allowed a remote attacker who had compromised the render...
CVE-2026-5283MEDIUM6.5Inappropriate implementation in ANGLE in Google Chrome prior to 146.0.7680.178 allowed a remote attacker to leak cross-o...
CVE-2026-5282HIGH8.1Out of bounds read in WebCodecs in Google Chrome prior to 146.0.7680.178 allowed a remote attacker to perform an out of ...
CVE-2026-5281HIGH8.8Use after free in Dawn in Google Chrome prior to 146.0.7680.178 allowed a remote attacker who had compromised the render...
CVE-2026-5280HIGH8.8Use after free in WebCodecs in Google Chrome prior to 146.0.7680.178 allowed a remote attacker to execute arbitrary code...
CVE-2026-5279HIGH8.8Object corruption in V8 in Google Chrome prior to 146.0.7680.178 allowed a remote attacker to execute arbitrary code ins...
CVE-2026-5278HIGH8.8Use after free in Web MIDI in Google Chrome on Android prior to 146.0.7680.178 allowed a remote attacker to execute arbi...
CVE-2026-5277HIGH7.5Integer overflow in ANGLE in Google Chrome on Windows prior to 146.0.7680.178 allowed a remote attacker who had compromi...
CVE-2026-5276MEDIUM6.5Insufficient policy enforcement in WebUSB in Google Chrome prior to 146.0.7680.178 allowed a remote attacker to obtain p...
CVE-2026-5275HIGH8.8Heap buffer overflow in ANGLE in Google Chrome on Mac prior to 146.0.7680.178 allowed a remote attacker to execute arbit...
CVE-2026-5274HIGH8.8Integer overflow in Codecs in Google Chrome prior to 146.0.7680.178 allowed a remote attacker to perform arbitrary read/...
CVE-2026-5273MEDIUM6.3Use after free in CSS in Google Chrome prior to 146.0.7680.178 allowed a remote attacker to execute arbitrary code insid...
CVE-2026-5272HIGH8.8Heap buffer overflow in GPU in Google Chrome prior to 146.0.7680.178 allowed a remote attacker to execute arbitrary code...
CVE-2026-5254LOW3.5A security vulnerability has been detected in welovemedia FFmate up to 2.0.15. Affected by this issue is some unknown fu...
CVE-2026-5253LOW3.5A weakness has been identified in bufanyun HotGo 1.0/2.0. Affected by this vulnerability is an unknown functionality of ...
CVE-2026-5252LOW3.5A security flaw has been discovered in z-9527 admin 1.0/2.0. Affected is an unknown function of the file /server/routes/...
CVE-2026-5251MEDIUM6.3A vulnerability was identified in z-9527 admin 1.0/2.0. This impacts an unknown function of the file /server/routes/user...
CVE-2026-5249LOW3.5A vulnerability was found in gougucms 4.08.18. This impacts an unknown function of the file \gougucms-master\app\admin\v...
CVE-2026-4947HIGH7.1Addressed a potential insecure direct object reference (IDOR) vulnerability in the signing invitation acceptance process...
CVE-2026-4374CRITICAL9.1Improper Restriction of XML External Entity Reference vulnerability in RTI Connext Professional (Recording Service,Routi...
CVE-2026-3831MEDIUM4.3The Database for Contact Form 7, WPforms, Elementor forms plugin for WordPress is vulnerable to unauthorized access of d...
CVE-2026-3780HIGH7.8The application's installer runs with elevated privileges but resolves system executables and DLLs using untrusted searc...
CVE-2026-3779HIGH7.8The application's list box calculate array logic keeps stale references to page or form objects after they are deleted o...
CVE-2026-3778MEDIUM5.5The application does not detect or guard against cyclic PDF object references while handling JavaScript in PDF. When pag...
CVE-2026-3777HIGH7.8The application does not properly validate the lifetime and validity of internal view cache pointers after JavaScript ch...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now