2026 CVE Vulnerabilities
48,527 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-53840 | HIGH | 7.1 | 0.2% | Jun 16, 2026 | OpenClaw before 2026.5.12 contains an information disclosure vulnerability in streamable-http MCP servers that forwards ... |
| CVE-2026-50656 | HIGH | 7 | 10.7% | Jun 16, 2026 | Microsoft is aware of an elevation of privilege in the Microsoft Malware Protection Engine in Microsoft Defender publicl... |
| CVE-2026-47964 | HIGH | 7.8 | 0.2% | Jun 16, 2026 | DNG SDK versions 1.7.1 2536 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in ... |
| CVE-2026-47749 | HIGH | 7.8 | 0.2% | Jun 16, 2026 | stable-diffusion.cpp is a pure C/C++ library for running diffusion model (Stable Diffusion, Flux, Wan, Qwen Image, Z-Ima... |
| CVE-2026-10748 | HIGH | 8.6 | 0.3% | Jun 16, 2026 | An authenticated user with the nx-licensing-create privilege can upload a specially crafted license file to execute arbi... |
| CVE-2026-44932 | HIGH | 8.8 | 0.3% | Jun 16, 2026 | Passing of unsanitized strings from DHCP replies into the wicked dhcp client before wicked 0.6.79 could be used by attac... |
| CVE-2026-42089 | HIGH | 8.6 | 0.1% | Jun 16, 2026 | Yeoman Environment provides an API to discover, create, and run generators, and to configure where and how a generator i... |
| CVE-2026-24228 | HIGH | 7.8 | 0.2% | Jun 16, 2026 | NVIDIA NeMo Framework for Linux contains a vulnerability where an attacker may cause deserialization of untrusted data. ... |
| CVE-2026-24155 | HIGH | 7.8 | 0.2% | Jun 16, 2026 | NVIDIA NeMo Framework for all platforms contains a code injection vulnerability. A successful exploit of this vulnerabil... |
| CVE-2026-10649 | HIGH | 8.6 | 0.6% | Jun 16, 2026 | A flaw was found in Pacemaker. An unauthenticated remote attacker can exploit an integer overflow vulnerability in the r... |
| CVE-2026-48780 | HIGH | 8.2 | 0.2% | Jun 16, 2026 | Forem is open source software for building communities. Prior to commit a2ab6d4, a maliciously crafted email address cou... |
| CVE-2026-47684 | HIGH | 7.7 | 0.2% | Jun 16, 2026 | Sync-in Server is a secure, open-source platform for file storage, sharing, collaboration, and syncing. Prior to version... |
| CVE-2026-12398 | HIGH | 7.5 | 0.9% | Jun 16, 2026 | A command injection vulnerability was found in galaxy_ng. The do_git_checkout() function in the legacy role import API (... |
| CVE-2026-11317 | HIGH | 8.7 | 0.3% | Jun 16, 2026 | A denial of service security issue exists in the affected product. The security issue stems from a fault occurring when ... |
| CVE-2026-10640 | HIGH | 7.1 | 0.4% | Jun 16, 2026 | Zephyr's IPv6 Neighbor Discovery send paths (net_ipv6_send_na, net_ipv6_send_ns, net_ipv6_send_rs in subsys/net/ip/ipv6_... |
| CVE-2026-10638 | HIGH | 7.5 | 0.4% | Jun 16, 2026 | subsys/net/ip/icmpv6.c reads the network interface from a net_pkt after that packet has been handed to net_try_send_data... |
| CVE-2026-10637 | HIGH | 7.1 | 0.3% | Jun 16, 2026 | subsys/net/ip/ipv6_mld.c:mld_send() read the packet interface via net_pkt_iface(pkt) after net_send_data(pkt) returned s... |
| CVE-2026-0647 | HIGH | 8.8 | 0.4% | Jun 16, 2026 | An improper authentication security issue exists within the 1794-AENTR adapter's embedded web server. The vulnerability ... |
| CVE-2026-0646 | HIGH | 8.7 | 0.3% | Jun 16, 2026 | A denial-of-service security issue exists within the 1794-AENTR adapter due to improper memory handling of CIP protocol ... |
| CVE-2026-12328 | HIGH | 8.1 | 0.5% | Jun 16, 2026 | Memory safety bugs present in Firefox ESR 115.36, Firefox ESR 140.11, Thunderbird ESR 140.11, Firefox 151 and Thunderbir... |
| CVE-2026-12327 | HIGH | 8.1 | 0.4% | Jun 16, 2026 | Memory safety bugs present in Firefox ESR 140.11, Thunderbird ESR 140.11, Firefox 151 and Thunderbird 151. Some of these... |
| CVE-2026-12326 | HIGH | 8.1 | 0.3% | Jun 16, 2026 | Memory safety bugs present in Firefox 151 and Thunderbird 151. Some of these bugs showed evidence of memory corruption a... |
| CVE-2026-12324 | HIGH | 7.3 | 0.2% | Jun 16, 2026 | Incorrect boundary conditions in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 152, Firef... |
| CVE-2026-12318 | HIGH | 7.3 | 0.2% | Jun 16, 2026 | Incorrect boundary conditions in the Libraries component in NSS. This vulnerability was fixed in Firefox 152 and Thunder... |
| CVE-2026-12317 | HIGH | 7.5 | 0.3% | Jun 16, 2026 | Memory safety bug fixed in Firefox 152. This vulnerability was fixed in Firefox 152 and Thunderbird 152. |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now