2026 CVE Vulnerabilities

45,590 CVEs published in 2026.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2026-58294HIGH7.5Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.
CVE-2026-58293HIGH7.5External control of file name or path in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code...
CVE-2026-58292HIGH7.5Improper input validation in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a netw...
CVE-2026-58290HIGH7.5Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based) allows an unauthorized ...
CVE-2026-58289HIGH8.3Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based) allows an unauthorized ...
CVE-2026-58288HIGH8.3Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.
CVE-2026-58287HIGH8.3Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.
CVE-2026-58285HIGH8.3Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based) allows an unauthorized ...
CVE-2026-58284HIGH8.3Improper authorization in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network...
CVE-2026-58276HIGH7.5Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.
CVE-2026-57993HIGH7.4Server-side request forgery (ssrf) in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofin...
CVE-2026-57992HIGH7.5Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.
CVE-2026-57991HIGH7.4Improper link resolution before file access ('link following') in Microsoft Edge (Chromium-based) allows an unauthorized...
CVE-2026-57988HIGH7.1Relative path traversal in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a networ...
CVE-2026-57986HIGH7.5Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.
CVE-2026-57985HIGH8.8Improper input validation in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a netw...
CVE-2026-57984HIGH7.5Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.
CVE-2026-57981HIGH8.8Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.
CVE-2026-57977HIGH7.1Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Edge (Chromium-based) ...
CVE-2026-57975HIGH7.5Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based) allows an unauthorized ...
CVE-2026-57974HIGH8.8Integer overflow or wraparound in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a...
CVE-2026-56645HIGH8.8Heap-based buffer overflow in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a net...
CVE-2026-28744HIGH8.1Gitea versions up to and including 1.26.1 allow Git smart HTTP requests authenticated with bearer tokens to bypass repos...
CVE-2026-28740HIGH7.1Gitea versions up to and including 1.26.2 allow Git LFS object reuse to authorize private source objects for users who h...
CVE-2026-28737HIGH8.7Gitea versions from 1.25.0 before 1.26.0 allow stored cross-site scripting through the extensionsRequired field in glTF ...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now