2026 CVE Vulnerabilities
45,440 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-47927 | MEDIUM | 5.5 | 0.2% | Jun 16, 2026 | DNG SDK versions 1.7.1 2536 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosur... |
| CVE-2026-47748 | MEDIUM | 5.5 | 0.2% | Jun 16, 2026 | stable-diffusion.cpp is a pure C/C++ library for running diffusion model (Stable Diffusion, Flux, Wan, Qwen Image, Z-Ima... |
| CVE-2026-12003 | MEDIUM | 5.3 | 0.1% | Jun 16, 2026 | To allow builds of Python to be run from an in-tree layout (rather than an installed file layout), the VPATH variable is... |
| CVE-2026-9307 | MEDIUM | 6.3 | 0.3% | Jun 16, 2026 | A sensitive information disclosure security issue exists within the affected CompactLogix controllers. The controller's ... |
| CVE-2026-10831 | MEDIUM | 6.9 | 0.3% | Jun 16, 2026 | A denial-of-service vulnerability exists in NPort devices because of improper access control on the command port. The co... |
| CVE-2026-10639 | MEDIUM | 4.8 | 0.2% | Jun 16, 2026 | In Zephyr's native IPv4 stack, icmpv4_handle_echo_request() in subsys/net/ip/icmpv4.c builds an echo-reply packet (reply... |
| CVE-2026-9507 | MEDIUM | 5.1 | 0.4% | Jun 16, 2026 | A session fixation vulnerability has been identified in osTicket v1.18.2. This security flaw allows an attacker to hijac... |
| CVE-2026-53900 | MEDIUM | 4.3 | 0.1% | Jun 16, 2026 | Firefox for iOS preserved cookies set on the initial PDF request across cross-origin HTTP redirects in TemporaryDocument... |
| CVE-2026-53899 | MEDIUM | 6.5 | 0.1% | Jun 16, 2026 | Firefox for iOS used partial domain matching when attaching cookies to PDF requests, allowing a malicious site on a suff... |
| CVE-2026-12330 | MEDIUM | 5.4 | 0.2% | Jun 16, 2026 | Incorrect boundary conditions in the Internationalization component. This vulnerability was fixed in Firefox ESR 140.12,... |
| CVE-2026-12329 | MEDIUM | 5.3 | 0.3% | Jun 16, 2026 | Memory safety bug fixed in Thunderbird ESR 140.12. This vulnerability was fixed in Firefox ESR 140.12 and Thunderbird 14... |
| CVE-2026-12325 | MEDIUM | 6.5 | 0.2% | Jun 16, 2026 | Denial-of-service in the Graphics: ImageLib component. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, ... |
| CVE-2026-12323 | MEDIUM | 5.4 | 0.2% | Jun 16, 2026 | Spoofing issue in the DOM: Core & HTML component. This vulnerability was fixed in Firefox 152 and Thunderbird 152. |
| CVE-2026-12322 | MEDIUM | 5.4 | 0.2% | Jun 16, 2026 | Clickjacking issue in the Widget: Gtk component. This vulnerability was fixed in Firefox 152 and Thunderbird 152. |
| CVE-2026-12321 | MEDIUM | 5.4 | 0.2% | Jun 16, 2026 | JIT miscompilation in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 152 and Thunderbird... |
| CVE-2026-12320 | MEDIUM | 4.3 | 0.2% | Jun 16, 2026 | Information disclosure in the Password Manager component. This vulnerability was fixed in Firefox 152 and Thunderbird 15... |
| CVE-2026-12319 | MEDIUM | 6.5 | 0.2% | Jun 16, 2026 | Denial-of-service in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 152 and Thunderbird 15... |
| CVE-2026-12313 | MEDIUM | 4.7 | 0.2% | Jun 16, 2026 | Information disclosure, sandbox escape in the Security: Process Sandboxing component. This vulnerability was fixed in Fi... |
| CVE-2026-12311 | MEDIUM | 4.7 | 0.2% | Jun 16, 2026 | Information disclosure, sandbox escape in the Security: Process Sandboxing component. This vulnerability was fixed in Fi... |
| CVE-2026-12309 | MEDIUM | 6.5 | 0.2% | Jun 16, 2026 | Memory safety bug fixed in Firefox 152. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Thunderbird 152... |
| CVE-2026-12308 | MEDIUM | 5.3 | 0.3% | Jun 16, 2026 | Memory safety bug fixed in Firefox 152. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Thunderbird 152... |
| CVE-2026-12307 | MEDIUM | 5.3 | 0.3% | Jun 16, 2026 | Memory safety bug fixed in Firefox 152. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Thunderbird 152... |
| CVE-2026-12306 | MEDIUM | 5.3 | 0.3% | Jun 16, 2026 | Memory safety bug fixed in Firefox 152. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Thunderbird 152... |
| CVE-2026-12303 | MEDIUM | 4.3 | 0.2% | Jun 16, 2026 | Information disclosure due to incorrect boundary conditions in the Graphics: WebGPU component. This vulnerability was fi... |
| CVE-2026-12302 | MEDIUM | 6.5 | 0.2% | Jun 16, 2026 | Mitigation bypass in the DOM: Security component. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Firef... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now