2026 CVE Vulnerabilities

69,129 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-3934MEDIUM6.5Insufficient policy enforcement in ChromeDriver in Google Chrome prior to 146.0.7680.71 allowed a remote attacker to byp...
CVE-2026-3932HIGH7.5Insufficient policy enforcement in PDF in Google Chrome on Android prior to 146.0.7680.71 allowed a remote attacker to b...
CVE-2026-3931HIGH8.8Heap buffer overflow in Skia in Google Chrome prior to 146.0.7680.71 allowed a remote attacker to perform out of bounds ...
CVE-2026-3930MEDIUM5.3Unsafe navigation in Navigation in Google Chrome on iOS prior to 146.0.7680.71 allowed a remote attacker to bypass navig...
CVE-2026-3929LOW3.1Side-channel information leakage in ResourceTiming in Google Chrome prior to 146.0.7680.71 allowed a remote attacker to ...
CVE-2026-3928MEDIUM4.3Insufficient policy enforcement in Extensions in Google Chrome prior to 146.0.7680.71 allowed an attacker who convinced ...
CVE-2026-3927MEDIUM4.3Incorrect security UI in PictureInPicture in Google Chrome prior to 146.0.7680.71 allowed a remote attacker to perform U...
CVE-2026-3926HIGH8.8Out of bounds read in V8 in Google Chrome prior to 146.0.7680.71 allowed a remote attacker to perform out of bounds memo...
CVE-2026-3925MEDIUM4.3Incorrect security UI in LookalikeChecks in Google Chrome on Android prior to 146.0.7680.71 allowed a remote attacker to...
CVE-2026-3924HIGH7.5use after free in WindowDialog in Google Chrome prior to 146.0.7680.71 allowed a remote attacker who had compromised the...
CVE-2026-3923HIGH8.8Use after free in WebMIDI in Google Chrome prior to 146.0.7680.71 allowed a remote attacker to potentially exploit heap ...
CVE-2026-3922HIGH8.8Use after free in MediaStream in Google Chrome prior to 146.0.7680.71 allowed a remote attacker to potentially exploit h...
CVE-2026-3921HIGH8.8Use after free in TextEncoding in Google Chrome prior to 146.0.7680.71 allowed a remote attacker to potentially exploit ...
CVE-2026-3920HIGH8.8Out of bounds memory access in WebML in Google Chrome prior to 146.0.7680.71 allowed a remote attacker to potentially ex...
CVE-2026-3919HIGH8.8Use after free in Extensions in Google Chrome prior to 146.0.7680.71 allowed an attacker who convinced a user to install...
CVE-2026-3918HIGH8.8Use after free in WebMCP in Google Chrome prior to 146.0.7680.71 allowed a remote attacker to potentially exploit heap c...
CVE-2026-3917HIGH8.8Use after free in Agents in Google Chrome prior to 146.0.7680.71 allowed a remote attacker to potentially exploit heap c...
CVE-2026-3916CRITICAL9.6Out of bounds read in Web Speech in Google Chrome prior to 146.0.7680.71 allowed a remote attacker to potentially perfor...
CVE-2026-3915HIGH8.8Heap buffer overflow in WebML in Google Chrome prior to 146.0.7680.71 allowed a remote attacker to perform an out of bou...
CVE-2026-3914HIGH8.8Integer overflow in WebML in Google Chrome prior to 146.0.7680.71 allowed a remote attacker to potentially exploit heap ...
CVE-2026-3913HIGH8.8Heap buffer overflow in WebML in Google Chrome prior to 146.0.7680.71 allowed a remote attacker to potentially exploit h...
CVE-2026-32136CRITICAL9.8AdGuard Home is a network-wide software for blocking ads and tracking. Prior to 0.107.73, an unauthenticated remote atta...
CVE-2026-32133CRITICAL9.12FAuth is a web app to manage Two-Factor Authentication (2FA) accounts and generate their security codes. Prior to 6.1.0...
CVE-2026-32132HIGH7.4ZITADEL is an open source identity management platform. Prior to 3.4.8 and 4.12.2, a potential vulnerability exists in Z...
CVE-2026-32131HIGH7.7ZITADEL is an open source identity management platform. Prior to 3.4.8 and 4.12.2, a vulnerability in Zitadel's Manageme...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now