2026 CVE Vulnerabilities
67,228 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-4707 | HIGH | 7.5 | 0.6% | Mar 24, 2026 | Incorrect boundary conditions in the Graphics: Canvas2D component. This vulnerability was fixed in Firefox 149, Firefox ... |
| CVE-2026-4706 | HIGH | 7.5 | 0.5% | Mar 24, 2026 | Incorrect boundary conditions in the Graphics: Canvas2D component. This vulnerability was fixed in Firefox 149, Firefox ... |
| CVE-2026-4705 | CRITICAL | 9.8 | 0.4% | Mar 24, 2026 | Undefined behavior in the WebRTC: Signaling component. This vulnerability was fixed in Firefox 149, Firefox ESR 140.9, T... |
| CVE-2026-4704 | HIGH | 7.5 | 0.4% | Mar 24, 2026 | Denial-of-service in the WebRTC: Signaling component. This vulnerability was fixed in Firefox 149, Firefox ESR 140.9, Th... |
| CVE-2026-4702 | CRITICAL | 9.8 | 0.5% | Mar 24, 2026 | JIT miscompilation in the JavaScript Engine component. This vulnerability was fixed in Firefox 149, Firefox ESR 140.9, T... |
| CVE-2026-4701 | CRITICAL | 9.8 | 0.5% | Mar 24, 2026 | Use-after-free in the JavaScript Engine component. This vulnerability was fixed in Firefox 149, Firefox ESR 140.9, Thund... |
| CVE-2026-4700 | CRITICAL | 9.8 | 0.5% | Mar 24, 2026 | Mitigation bypass in the Networking: HTTP component. This vulnerability was fixed in Firefox 149, Firefox ESR 140.9, Thu... |
| CVE-2026-4699 | HIGH | 7.5 | 0.7% | Mar 24, 2026 | Incorrect boundary conditions in the Layout: Text and Fonts component. This vulnerability was fixed in Firefox 149, Fire... |
| CVE-2026-4698 | CRITICAL | 9.8 | 0.8% | Mar 24, 2026 | JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 149, Firefox ESR 115... |
| CVE-2026-4697 | HIGH | 7.5 | 0.7% | Mar 24, 2026 | Incorrect boundary conditions in the Audio/Video: Web Codecs component. This vulnerability was fixed in Firefox 149, Fir... |
| CVE-2026-4696 | CRITICAL | 9.8 | 0.5% | Mar 24, 2026 | Use-after-free in the Layout: Text and Fonts component. This vulnerability was fixed in Firefox 149, Firefox ESR 115.34,... |
| CVE-2026-4695 | HIGH | 7.5 | 0.7% | Mar 24, 2026 | Incorrect boundary conditions in the Audio/Video: Web Codecs component. This vulnerability was fixed in Firefox 149, Fir... |
| CVE-2026-4694 | HIGH | 7.5 | 0.8% | Mar 24, 2026 | Incorrect boundary conditions, integer overflow in the Graphics component. This vulnerability was fixed in Firefox 149, ... |
| CVE-2026-4693 | HIGH | 7.5 | 0.7% | Mar 24, 2026 | Incorrect boundary conditions in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 149, Firef... |
| CVE-2026-4692 | CRITICAL | 10 | 0.5% | Mar 24, 2026 | Sandbox escape in the Responsive Design Mode component. This vulnerability was fixed in Firefox 149, Firefox ESR 115.34,... |
| CVE-2026-4691 | CRITICAL | 9.8 | 0.5% | Mar 24, 2026 | Use-after-free in the CSS Parsing and Computation component. This vulnerability was fixed in Firefox 149, Firefox ESR 11... |
| CVE-2026-4690 | HIGH | 8.6 | 0.8% | Mar 24, 2026 | Sandbox escape due to incorrect boundary conditions, integer overflow in the XPCOM component. This vulnerability was fix... |
| CVE-2026-4689 | CRITICAL | 10 | 0.7% | Mar 24, 2026 | Sandbox escape due to incorrect boundary conditions, integer overflow in the XPCOM component. This vulnerability was fix... |
| CVE-2026-4688 | CRITICAL | 10 | 0.5% | Mar 24, 2026 | Sandbox escape due to use-after-free in the Disability Access APIs component. This vulnerability was fixed in Firefox 14... |
| CVE-2026-4687 | HIGH | 8.6 | 0.5% | Mar 24, 2026 | Sandbox escape due to incorrect boundary conditions in the Telemetry component. This vulnerability was fixed in Firefox ... |
| CVE-2026-4686 | HIGH | 7.5 | 0.7% | Mar 24, 2026 | Incorrect boundary conditions in the Graphics: Canvas2D component. This vulnerability was fixed in Firefox 149, Firefox ... |
| CVE-2026-4685 | HIGH | 7.5 | 0.7% | Mar 24, 2026 | Incorrect boundary conditions in the Graphics: Canvas2D component. This vulnerability was fixed in Firefox 149, Firefox ... |
| CVE-2026-4684 | HIGH | 7.5 | 0.4% | Mar 24, 2026 | Race condition, use-after-free in the Graphics: WebRender component. This vulnerability was fixed in Firefox 149, Firefo... |
| CVE-2026-33475 | CRITICAL | 9.1 | 3.0% | Mar 24, 2026 | Langflow is a tool for building and deploying AI-powered agents and workflows. An unauthenticated remote shell injection... |
| CVE-2026-33309 | CRITICAL | 9.9 | 1.4% | Mar 24, 2026 | Langflow is a tool for building and deploying AI-powered agents and workflows. Versions 1.2.0 through 1.8.1 have a bypas... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now