2026 CVE Vulnerabilities
47,841 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-0070 | MEDIUM | 5.5 | 0.1% | Jun 1, 2026 | In multiple functions of DevicePolicyManagerService.java, there is a possible way to hide a system critical package due ... |
| CVE-2026-0069 | MEDIUM | 5.5 | 0.1% | Jun 1, 2026 | In verifySignature of ApkChecksums.java, there is a possible way to cause a crash due to resource exhaustion. This could... |
| CVE-2026-0067 | MEDIUM | 5.5 | 0.1% | Jun 1, 2026 | In multiple functions of ubsan_throwing_runtime.cpp, there is a possible way to cause a permanent denial of service due ... |
| CVE-2026-0061 | MEDIUM | 5.9 | 0.1% | Jun 1, 2026 | In multiple functions of WindowState.java, there is a possible way to trick a user into accepting a permission due to a ... |
| CVE-2026-0060 | MEDIUM | 5.5 | 0.1% | Jun 1, 2026 | In updateState of GraphicsDriverEnableAngleAsSystemDriverController.java, there is a possible persistent dos issue due t... |
| CVE-2026-0055 | MEDIUM | 6.2 | 0.1% | Jun 1, 2026 | In createSessionInternal of PackageInstallerService.java, there is a possible to update a Device Policy Controller (DPC)... |
| CVE-2026-0052 | MEDIUM | 6.5 | 0.3% | Jun 1, 2026 | In multiple functions of ubsan_throwing_runtime.cpp, there is a possible way to cause a crash due to an integer overflow... |
| CVE-2026-0051 | MEDIUM | 6.5 | 0.3% | Jun 1, 2026 | In multiple functions of ubsan_throwing_runtime.cpp, there is a possible way to cause a system crash due to improper inp... |
| CVE-2026-0048 | MEDIUM | 6.8 | 0.1% | Jun 1, 2026 | In hide of WindowState.java, there is a possible way to trick the user into approving permissions due to a tapjacking/ov... |
| CVE-2026-0046 | MEDIUM | 6.2 | 0.1% | Jun 1, 2026 | In InputInterceptor of Letterbox.java, there is a possible way to trick a user into accepting a permission due to a tapj... |
| CVE-2026-0044 | MEDIUM | 6.5 | 0.3% | Jun 1, 2026 | In multiple functions of ubsan_throwing_runtime.cpp, there is a possible way to cause the system to crash due to an inte... |
| CVE-2026-0043 | MEDIUM | 5.5 | 0.1% | Jun 1, 2026 | In multiple functions of ubsan_throwing_runtime.cpp, there is a possible persistent denial of service due to an integer ... |
| CVE-2026-0042 | MEDIUM | 5.5 | 0.1% | Jun 1, 2026 | In multiple functions of ubsan_throwing_runtime.cpp, there is a possible persistent denial of service due to resource ex... |
| CVE-2026-0041 | MEDIUM | 6.5 | 0.3% | Jun 1, 2026 | In multiple functions of ubsan_throwing_runtime.cpp, there is a possible UBSan failure due to an integer overflow. This ... |
| CVE-2026-0040 | MEDIUM | 6.5 | 0.3% | Jun 1, 2026 | In multiple functions of ubsan_throwing_runtime.cpp, there is a possible way to cause a crash due to an integer overflow... |
| CVE-2026-0039 | MEDIUM | 6.5 | 0.3% | Jun 1, 2026 | In multiple functions of ubsan_throwing_runtime.cpp, there is a possible persistent denial of service due to an integer ... |
| CVE-2026-0018 | MEDIUM | 5.5 | 0.1% | Jun 1, 2026 | In multiple functions of AccessibilityManagerService.java, there is a possible persistent denial of service due to impro... |
| CVE-2026-49433 | MEDIUM | 5 | 0.1% | Jun 1, 2026 | The DeepAI endpoint 'https://api.deepai.org/change_user_email' accepts POST requests without any CSRF protection. If an ... |
| CVE-2026-49140 | MEDIUM | 5.3 | 0.3% | Jun 1, 2026 | Nanobot prior to version 0.2.1 contains a denial of service vulnerability in the Matrix channel media download handler t... |
| CVE-2026-49138 | MEDIUM | 5.3 | 0.3% | Jun 1, 2026 | Nanobot prior to version 0.2.1 contains a server-side request forgery vulnerability in the web_fetch tool that allows re... |
| CVE-2026-10289 | MEDIUM | 4.3 | 0.3% | Jun 1, 2026 | A security flaw has been discovered in code-projects Hotel and Tourism Reservation System 1.0. Impacted is an unknown fu... |
| CVE-2026-10286 | MEDIUM | 6.3 | 0.2% | Jun 1, 2026 | A vulnerability was found in CodeAstro Payroll System 1.0. This affects an unknown part of the file /home_employee.php. ... |
| CVE-2026-10285 | MEDIUM | 5.4 | 0.2% | Jun 1, 2026 | A vulnerability has been found in DevaslanPHP project-management up to 2.0.0-beta1. Affected by this issue is the functi... |
| CVE-2026-10284 | MEDIUM | 5.4 | 0.2% | Jun 1, 2026 | A flaw has been found in DevaslanPHP project-management up to 2.0.0-beta1. Affected by this vulnerability is the functio... |
| CVE-2026-45810 | MEDIUM | 6.8 | 0.3% | Jun 1, 2026 | Nextcloud is an open source content collaboration platform. In Nextcloud Server from versions 31.0.0 to before 31.0.12, ... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now