2026 CVE Vulnerabilities

69,764 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-28292CRITICAL9.8`simple-git`, an interface for running git commands in any node.js application, has an issue in versions 3.15.0 through ...
CVE-2026-27826HIGH8.2MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to version 0....
CVE-2026-27281MEDIUM5.5DNG SDK versions 1.7.1 2471 and earlier are affected by an Integer Overflow or Wraparound vulnerability that could lead ...
CVE-2026-27280HIGH7.8DNG SDK versions 1.7.1 2471 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitr...
CVE-2026-27279HIGH7.8Substance3D - Stager versions 3.1.7 and earlier are affected by an out-of-bounds write vulnerability that could result i...
CVE-2026-27277HIGH7.8Substance3D - Stager versions 3.1.7 and earlier are affected by a Use After Free vulnerability that could result in arbi...
CVE-2026-27276HIGH7.8Substance3D - Stager versions 3.1.7 and earlier are affected by a Use After Free vulnerability that could result in arbi...
CVE-2026-27275HIGH7.8Substance3D - Stager versions 3.1.7 and earlier are affected by an out-of-bounds write vulnerability that could result i...
CVE-2026-27274HIGH7.8Substance3D - Stager versions 3.1.7 and earlier are affected by an out-of-bounds write vulnerability that could result i...
CVE-2026-27273HIGH7.8Substance3D - Stager versions 3.1.7 and earlier are affected by an out-of-bounds write vulnerability that could result i...
CVE-2026-27269HIGH7.8Premiere Pro versions 25.5 and earlier are affected by an out-of-bounds read vulnerability when parsing a crafted file, ...
CVE-2026-27219MEDIUM5.5Substance3D - Painter versions 11.1.2 and earlier are affected by an Out-of-bounds Read vulnerability that could lead to...
CVE-2026-27218MEDIUM5.5Substance3D - Painter versions 11.1.2 and earlier are affected by a NULL Pointer Dereference vulnerability that could le...
CVE-2026-27217MEDIUM5.5Substance3D - Painter versions 11.1.2 and earlier are affected by a NULL Pointer Dereference vulnerability that could le...
CVE-2026-27216MEDIUM5.5Substance3D - Painter versions 11.1.2 and earlier are affected by an out-of-bounds read vulnerability that could lead to...
CVE-2026-27215MEDIUM5.5Substance3D - Painter versions 11.1.2 and earlier are affected by a NULL Pointer Dereference vulnerability that could le...
CVE-2026-27214MEDIUM5.5Substance3D - Painter versions 11.1.2 and earlier are affected by a NULL Pointer Dereference vulnerability that could le...
CVE-2026-26801HIGH7.5Server-Side Request Forgery (SSRF) vulnerability in pdfmake versions 0.3.0-beta.2 through 0.3.5 allows a remote attacker...
CVE-2026-26742HIGH8.1PX4 Autopilot versions 1.12.x through 1.15.x contain a protection mechanism failure in the "Re-arm Grace Period" logic. ...
CVE-2026-26741HIGH8.1PX4 Autopilot versions 1.12.x through 1.15.x contain a logic flaw in the mode switching mechanism. When switching from A...
CVE-2026-21365MEDIUM5.5Substance3D - Painter versions 11.1.2 and earlier are affected by an out-of-bounds read vulnerability that could lead to...
CVE-2026-21364MEDIUM5.5Substance3D - Painter versions 11.1.2 and earlier are affected by a NULL Pointer Dereference vulnerability that could le...
CVE-2026-21363MEDIUM5.5Substance3D - Painter versions 11.1.2 and earlier are affected by a NULL Pointer Dereference vulnerability that could le...
CVE-2026-3862MEDIUM4.8Cross-site Scripting (XSS) allows an attacker to submit specially crafted data to the application which is returned unal...
CVE-2026-3854HIGH8.8An improper neutralization of special elements vulnerability was identified in GitHub Enterprise Server that allowed an ...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now