2026 CVE Vulnerabilities

48,521 CVEs published in 2026.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2026-35272HIGH8.4Vulnerability in the PeopleSoft Enterprise PT PeopleTools product of Oracle PeopleSoft (component: Deployment Package). ...
CVE-2026-35271HIGH8.7Vulnerability in the PeopleSoft Enterprise PT PeopleTools product of Oracle PeopleSoft (component: Weblogic). Supported...
CVE-2026-35269HIGH7.5Vulnerability in the Identity Manager product of Oracle Fusion Middleware (component: REST WebServices). Supported vers...
CVE-2026-35267HIGH8.8Vulnerability in the Identity Manager product of Oracle Fusion Middleware (component: REST WebServices). Supported vers...
CVE-2026-35265HIGH8.8Vulnerability in the Identity Manager product of Oracle Fusion Middleware (component: Security). Supported versions tha...
CVE-2026-35262HIGH8.3Vulnerability in the Oracle Data Integrator product of Oracle Fusion Middleware (component: Market Place). Supported ve...
CVE-2026-35259HIGH8.8Vulnerability in the WebLogic Server product of Oracle Fusion Middleware (component: Console). Supported versions that ...
CVE-2026-35258HIGH8.7Vulnerability in the WebLogic Server product of Oracle Fusion Middleware (component: Console). Supported versions that ...
CVE-2026-12348HIGH7.4Address bar spoofing in Arc Search for Android allows a remote attacker to display a trusted domain in the address bar w...
CVE-2026-47750HIGH7.8stable-diffusion.cpp is a pure C/C++ library for running diffusion model (Stable Diffusion, Flux, Wan, Qwen Image, Z-Ima...
CVE-2026-47747HIGH7.8stable-diffusion.cpp is a pure C/C++ library for running diffusion model (Stable Diffusion, Flux, Wan, Qwen Image, Z-Ima...
CVE-2026-46448HIGH8.5In OpenStack Nova before 33.0.2, the server create API does not strip certain hint data. The resulting instance has no P...
CVE-2026-22312HIGH8.6The device has a webserver that exposes a REST API authenticated with a constant token. The unauthenticated API can be u...
CVE-2026-10303HIGH7.4In ServerCo getssl version 2.49 and prior, the ACME challenge token returned to the client was not strictly validated ag...
CVE-2026-0164HIGH8.8In Modem, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code executio...
CVE-2026-0162HIGH8.8In ParsePayloads of AudioSdpParser.cpp, there is a possible memory corruption due to type confusion. This could lead to ...
CVE-2026-0161HIGH8.8In numberOfReportBlocks of RtpSession.cpp, there is a possible out of bounds write due to an integer overflow. This coul...
CVE-2026-0160HIGH8.8In TextRtpPayloadDecoderNode::DecodeT140 of TextRtpPayloadDecoderNode.cpp, there is a possible out of bounds write due t...
CVE-2026-0156HIGH7.5In checkSsrcCollisionOnRcv of RtpSession.cpp, there is a possible memory safety issue due to a missing null check. This ...
CVE-2026-0154HIGH8.8In Modem, there is a possible way to trigger a modem crash during a SIP REFER request due to memory corruption. This cou...
CVE-2026-0153HIGH7.8In Write of msg_to_host_buffer.cc, there is a possible out of bounds write due to an incorrect bounds check. This could ...
CVE-2026-0152HIGH7.8In OSMMapPMRGeneric of pmr_os.c, there is a possible way to leverage a system call to system call to maliciously expand ...
CVE-2026-0151HIGH8.8In IntfGraphCreate of intfgraph.c, there is a possible out of bounds write due to an integer overflow. This could lead t...
CVE-2026-0150HIGH7.8In ExecuteGraph command handler of EdgeTPU firmware, there is a possible out of bounds write due to an integer overflow....
CVE-2026-0149HIGH8.8In RtpSession::rtpSendRtcpPacket, there is a possible OOB write due to a heap buffer overflow. This could lead to remote...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now