2026 CVE Vulnerabilities
69,558 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-27276 | HIGH | 7.8 | 0.2% | Mar 10, 2026 | Substance3D - Stager versions 3.1.7 and earlier are affected by a Use After Free vulnerability that could result in arbi... |
| CVE-2026-27275 | HIGH | 7.8 | 0.1% | Mar 10, 2026 | Substance3D - Stager versions 3.1.7 and earlier are affected by an out-of-bounds write vulnerability that could result i... |
| CVE-2026-27274 | HIGH | 7.8 | 0.1% | Mar 10, 2026 | Substance3D - Stager versions 3.1.7 and earlier are affected by an out-of-bounds write vulnerability that could result i... |
| CVE-2026-27273 | HIGH | 7.8 | 0.1% | Mar 10, 2026 | Substance3D - Stager versions 3.1.7 and earlier are affected by an out-of-bounds write vulnerability that could result i... |
| CVE-2026-27269 | HIGH | 7.8 | 0.2% | Mar 10, 2026 | Premiere Pro versions 25.5 and earlier are affected by an out-of-bounds read vulnerability when parsing a crafted file, ... |
| CVE-2026-27219 | MEDIUM | 5.5 | 0.1% | Mar 10, 2026 | Substance3D - Painter versions 11.1.2 and earlier are affected by an Out-of-bounds Read vulnerability that could lead to... |
| CVE-2026-27218 | MEDIUM | 5.5 | 0.1% | Mar 10, 2026 | Substance3D - Painter versions 11.1.2 and earlier are affected by a NULL Pointer Dereference vulnerability that could le... |
| CVE-2026-27217 | MEDIUM | 5.5 | 0.1% | Mar 10, 2026 | Substance3D - Painter versions 11.1.2 and earlier are affected by a NULL Pointer Dereference vulnerability that could le... |
| CVE-2026-27216 | MEDIUM | 5.5 | 0.1% | Mar 10, 2026 | Substance3D - Painter versions 11.1.2 and earlier are affected by an out-of-bounds read vulnerability that could lead to... |
| CVE-2026-27215 | MEDIUM | 5.5 | 0.1% | Mar 10, 2026 | Substance3D - Painter versions 11.1.2 and earlier are affected by a NULL Pointer Dereference vulnerability that could le... |
| CVE-2026-27214 | MEDIUM | 5.5 | 0.1% | Mar 10, 2026 | Substance3D - Painter versions 11.1.2 and earlier are affected by a NULL Pointer Dereference vulnerability that could le... |
| CVE-2026-26801 | HIGH | 7.5 | 0.5% | Mar 10, 2026 | Server-Side Request Forgery (SSRF) vulnerability in pdfmake versions 0.3.0-beta.2 through 0.3.5 allows a remote attacker... |
| CVE-2026-26742 | HIGH | 8.1 | 0.3% | Mar 10, 2026 | PX4 Autopilot versions 1.12.x through 1.15.x contain a protection mechanism failure in the "Re-arm Grace Period" logic. ... |
| CVE-2026-26741 | HIGH | 8.1 | 0.3% | Mar 10, 2026 | PX4 Autopilot versions 1.12.x through 1.15.x contain a logic flaw in the mode switching mechanism. When switching from A... |
| CVE-2026-21365 | MEDIUM | 5.5 | 0.1% | Mar 10, 2026 | Substance3D - Painter versions 11.1.2 and earlier are affected by an out-of-bounds read vulnerability that could lead to... |
| CVE-2026-21364 | MEDIUM | 5.5 | 0.1% | Mar 10, 2026 | Substance3D - Painter versions 11.1.2 and earlier are affected by a NULL Pointer Dereference vulnerability that could le... |
| CVE-2026-21363 | MEDIUM | 5.5 | 0.1% | Mar 10, 2026 | Substance3D - Painter versions 11.1.2 and earlier are affected by a NULL Pointer Dereference vulnerability that could le... |
| CVE-2026-3862 | MEDIUM | 4.8 | 0.2% | Mar 10, 2026 | Cross-site Scripting (XSS) allows an attacker to submit specially crafted data to the application which is returned unal... |
| CVE-2026-3854 | HIGH | 8.8 | 24.5% | Mar 10, 2026 | An improper neutralization of special elements vulnerability was identified in GitHub Enterprise Server that allowed an ... |
| CVE-2026-3847 | HIGH | 8.8 | 0.3% | Mar 10, 2026 | Memory safety bugs present in Firefox 148.0.2. Some of these bugs showed evidence of memory corruption and we presume th... |
| CVE-2026-3846 | MEDIUM | 6.5 | 0.1% | Mar 10, 2026 | Same-origin policy bypass in the CSS Parsing and Computation component. This vulnerability was fixed in Firefox 148.0.2. |
| CVE-2026-3845 | HIGH | 8.8 | 0.4% | Mar 10, 2026 | Heap buffer overflow in the Audio/Video: Playback component in Firefox for Android. This vulnerability was fixed in Fire... |
| CVE-2026-3843 | CRITICAL | 9.8 | 0.8% | Mar 10, 2026 | Nefteprodukttekhnika BUK TS-G Gas Station Automation System 2.9.1 on Linux contains a SQL Injection vulnerability (CWE-8... |
| CVE-2026-3483 | HIGH | 7.8 | 0.4% | Mar 10, 2026 | An exposed dangerous method in Ivanti DSM before version 2026.1.1 allows a local authenticated attacker to escalate thei... |
| CVE-2026-3315 | HIGH | 7.8 | 0.1% | Mar 10, 2026 | Incorrect Default Permissions, : Execution with Unnecessary Privileges, : Incorrect Permission Assignment for Critical R... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now