2026 CVE Vulnerabilities
67,286 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-4457 | HIGH | 8.8 | 0.3% | Mar 20, 2026 | Type Confusion in V8 in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to potentially exploit heap corr... |
| CVE-2026-4456 | HIGH | 8.8 | 0.3% | Mar 20, 2026 | Use after free in Digital Credentials API in Google Chrome prior to 146.0.7680.153 allowed a remote attacker who had com... |
| CVE-2026-4455 | HIGH | 8.8 | 0.3% | Mar 20, 2026 | Heap buffer overflow in PDFium in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to potentially exploit... |
| CVE-2026-4454 | HIGH | 8.8 | 0.3% | Mar 20, 2026 | Use after free in Network in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to potentially exploit heap... |
| CVE-2026-4453 | MEDIUM | 4.3 | 0.2% | Mar 20, 2026 | Integer overflow in Dawn in Google Chrome on Mac prior to 146.0.7680.153 allowed a remote attacker to leak cross-origin ... |
| CVE-2026-4452 | HIGH | 8.8 | 0.3% | Mar 20, 2026 | Integer overflow in ANGLE in Google Chrome on Windows prior to 146.0.7680.153 allowed a remote attacker to potentially e... |
| CVE-2026-4451 | HIGH | 8.8 | 0.3% | Mar 20, 2026 | Insufficient validation of untrusted input in Navigation in Google Chrome prior to 146.0.7680.153 allowed a remote attac... |
| CVE-2026-4450 | HIGH | 8.8 | 0.3% | Mar 20, 2026 | Out of bounds write in V8 in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to potentially exploit heap... |
| CVE-2026-4449 | HIGH | 8.8 | 0.3% | Mar 20, 2026 | Use after free in Blink in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to potentially exploit heap c... |
| CVE-2026-4448 | HIGH | 8.8 | 0.3% | Mar 20, 2026 | Heap buffer overflow in ANGLE in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to potentially exploit ... |
| CVE-2026-4447 | HIGH | 8.8 | 0.4% | Mar 20, 2026 | Inappropriate implementation in V8 in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to execute arbitra... |
| CVE-2026-4446 | HIGH | 8.8 | 0.3% | Mar 20, 2026 | Use after free in WebRTC in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to potentially exploit heap ... |
| CVE-2026-4445 | HIGH | 8.8 | 0.3% | Mar 20, 2026 | Use after free in WebRTC in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to potentially exploit heap ... |
| CVE-2026-4444 | HIGH | 8.8 | 0.3% | Mar 20, 2026 | Stack buffer overflow in WebRTC in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to potentially exploi... |
| CVE-2026-4443 | HIGH | 8.8 | 0.4% | Mar 20, 2026 | Heap buffer overflow in WebAudio in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to execute arbitrary... |
| CVE-2026-4442 | HIGH | 8.8 | 0.3% | Mar 20, 2026 | Heap buffer overflow in CSS in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to potentially exploit he... |
| CVE-2026-4441 | HIGH | 8.8 | 0.3% | Mar 20, 2026 | Use after free in Base in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to potentially exploit heap co... |
| CVE-2026-4440 | HIGH | 8.8 | 0.3% | Mar 20, 2026 | Out of bounds read and write in WebGL in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to perform arbi... |
| CVE-2026-4439 | HIGH | 8.8 | 0.3% | Mar 20, 2026 | Out of bounds memory access in WebGL in Google Chrome on Android prior to 146.0.7680.153 allowed a remote attacker to po... |
| CVE-2026-32881 | MEDIUM | 5.3 | 0.4% | Mar 20, 2026 | ewe is a Gleam web server. ewe is a Gleam web server. Versions 0.6.0 through 3.0.4 are vulnerable to authentication bypa... |
| CVE-2026-32880 | MEDIUM | 6.4 | 0.3% | Mar 20, 2026 | ChurchCRM is an open-source church management system. Versions prior to 7.0.2 allow an admin user to edit JSON type syst... |
| CVE-2026-32875 | HIGH | 7.5 | 0.5% | Mar 20, 2026 | UltraJSON is a fast JSON encoder and decoder written in pure C with bindings for Python 3.7+. Versions 5.10 through 5.11... |
| CVE-2026-32874 | HIGH | 7.5 | 0.5% | Mar 20, 2026 | UltraJSON is a fast JSON encoder and decoder written in pure C with bindings for Python 3.7+. Versions 5.4.0 through 5.1... |
| CVE-2026-32873 | HIGH | 7.5 | 0.6% | Mar 20, 2026 | ewe is a Gleam web server. Versions 0.8.0 through 3.0.4 contain a bug in the handle_trailers function where rejected tra... |
| CVE-2026-32817 | CRITICAL | 9.1 | 0.3% | Mar 20, 2026 | Admidio is an open-source user management solution. In versions 5.0.0 through 5.0.6, the documents and files module does... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now