2026 CVE Vulnerabilities
47,565 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-14429 | HIGH | 8.3 | 0.2% | Jul 1, 2026 | Insufficient validation of untrusted input in Skia in Google Chrome prior to 150.0.7871.46 allowed a remote attacker who... |
| CVE-2026-14428 | HIGH | 8.3 | 0.2% | Jul 1, 2026 | Insufficient validation of untrusted input in Dawn in Google Chrome on Android prior to 150.0.7871.46 allowed a remote a... |
| CVE-2026-14427 | HIGH | 8.3 | 0.2% | Jul 1, 2026 | Heap buffer overflow in Skia in Google Chrome prior to 150.0.7871.46 allowed a remote attacker who had compromised the r... |
| CVE-2026-14426 | HIGH | 7.5 | 0.2% | Jul 1, 2026 | Use after free in V8 in Google Chrome prior to 150.0.7871.46 allowed a remote attacker who convinced a user to engage in... |
| CVE-2026-14422 | HIGH | 8.8 | 0.2% | Jul 1, 2026 | Out of bounds read and write in Tint in Google Chrome prior to 150.0.7871.46 allowed a remote attacker to potentially pe... |
| CVE-2026-14415 | HIGH | 8.8 | 0.2% | Jul 1, 2026 | Inappropriate implementation in V8 in Google Chrome prior to 150.0.7871.46 allowed a remote attacker who convinced a use... |
| CVE-2026-14413 | HIGH | 8.3 | 0.2% | Jul 1, 2026 | Uninitialized Use in ANGLE in Google Chrome prior to 150.0.7871.46 allowed a remote attacker who had compromised the ren... |
| CVE-2026-14412 | HIGH | 8.3 | 0.2% | Jul 1, 2026 | Insufficient validation of untrusted input in ANGLE in Google Chrome prior to 150.0.7871.46 allowed a remote attacker wh... |
| CVE-2026-14409 | HIGH | 7.5 | 0.2% | Jul 1, 2026 | Inappropriate implementation in V8 in Google Chrome prior to 150.0.7871.46 allowed a remote attacker who convinced a use... |
| CVE-2026-14407 | HIGH | 8.8 | 0.3% | Jul 1, 2026 | Inappropriate implementation in V8 in Google Chrome prior to 150.0.7871.46 allowed a remote attacker to execute arbitrar... |
| CVE-2026-14403 | HIGH | 8.8 | 0.2% | Jul 1, 2026 | Use after free in V8 in Google Chrome prior to 150.0.7871.46 allowed a remote attacker to execute arbitrary code inside ... |
| CVE-2026-14401 | HIGH | 8.3 | 0.2% | Jul 1, 2026 | Insufficient validation of untrusted input in ANGLE in Google Chrome on Android prior to 150.0.7871.46 allowed a remote ... |
| CVE-2026-14400 | HIGH | 8.3 | 0.2% | Jul 1, 2026 | Out of bounds write in ANGLE in Google Chrome prior to 150.0.7871.46 allowed a remote attacker who had compromised the r... |
| CVE-2026-14395 | HIGH | 8.8 | 0.2% | Jul 1, 2026 | Out of bounds write in V8 in Google Chrome prior to 150.0.7871.46 allowed a remote attacker to execute arbitrary code in... |
| CVE-2026-14394 | HIGH | 8.8 | 0.2% | Jul 1, 2026 | Use after free in V8 in Google Chrome prior to 150.0.7871.46 allowed a remote attacker to potentially exploit heap corru... |
| CVE-2026-14393 | HIGH | 8.8 | 0.2% | Jul 1, 2026 | Use after free in V8 in Google Chrome prior to 150.0.7871.46 allowed a remote attacker to execute arbitrary code inside ... |
| CVE-2026-14389 | HIGH | 8.3 | 0.2% | Jul 1, 2026 | Integer overflow in Skia in Google Chrome prior to 150.0.7871.46 allowed a remote attacker who had compromised the rende... |
| CVE-2026-14385 | HIGH | 8.8 | 0.2% | Jul 1, 2026 | Heap buffer overflow in ANGLE in Google Chrome on Mac prior to 150.0.7871.46 allowed a remote attacker to perform out of... |
| CVE-2026-14383 | HIGH | 8.8 | 0.3% | Jul 1, 2026 | Inappropriate implementation in V8 in Google Chrome prior to 150.0.7871.46 allowed a remote attacker to execute arbitrar... |
| CVE-2026-54712 | HIGH | 7.5 | 0.2% | Jul 1, 2026 | OpenTelemetry Java Instrumentation provides OpenTelemetry auto-instrumentation and instrumentation libraries for Java. I... |
| CVE-2026-54263 | HIGH | 7.3 | 0.2% | Jul 1, 2026 | Wagtail is an open source content management system built on Django. In versions prior to 7.0.8, 7.3.3 and 7.4.2, reflec... |
| CVE-2026-52190 | HIGH | 7.5 | 0.2% | Jul 1, 2026 | Buffer Overflow vulnerability in UTT nv518G nv518GV3v3.2.7-210919-161313 allows a remote attacker to cause a denial of s... |
| CVE-2026-38891 | HIGH | 7.5 | 0.2% | Jul 1, 2026 | An improper input validation in the gazebo_ros_diff_drive.cpp component of gazebo_plugins v3.9.0 allows attackers to cau... |
| CVE-2026-36912 | HIGH | 7.5 | 0.2% | Jul 1, 2026 | A NULL pointer dereference in the AP4_AtomSampleTable::GetSample() function of Aleksoid1978 MPC-BE before commit 4341cb3... |
| CVE-2026-58263 | HIGH | 7.2 | 0.2% | Jul 1, 2026 | Jodit Editor is a WYSIWYG editor with a built-in file browser & image editor. In versions prior to 4.12.28, the built-in... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now