2026 CVE Vulnerabilities
48,557 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-28972 | MEDIUM | 6.5 | 1.4% | May 11, 2026 | An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in iOS 18.7.9 and iPadOS ... |
| CVE-2026-28971 | MEDIUM | 4.3 | 0.3% | May 11, 2026 | The issue was addressed with improved UI handling. This issue is fixed in Safari 26.5, iOS 26.5 and iPadOS 26.5, macOS T... |
| CVE-2026-28967 | MEDIUM | 4.9 | 0.3% | May 11, 2026 | A denial-of-service issue was addressed with improved input validation. This issue is fixed in iOS 18.7.7 and iPadOS 18.... |
| CVE-2026-28963 | MEDIUM | 4.6 | 0.2% | May 11, 2026 | A privacy issue was addressed by removing the vulnerable code. This issue is fixed in iOS 26.5 and iPadOS 26.5. An attac... |
| CVE-2026-28961 | MEDIUM | 4.6 | 0.2% | May 11, 2026 | This issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS T... |
| CVE-2026-28958 | MEDIUM | 5.5 | 0.1% | May 11, 2026 | This issue was addressed with improved data protection. This issue is fixed in Safari 26.5, iOS 18.7.10 and iPadOS 18.7.... |
| CVE-2026-28956 | MEDIUM | 6.5 | 0.5% | May 11, 2026 | A memory corruption issue was addressed with improved input validation. This issue is fixed in iOS 26.5 and iPadOS 26.5,... |
| CVE-2026-28946 | MEDIUM | 6.5 | 0.4% | May 11, 2026 | A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.5, macOS Tahoe 26... |
| CVE-2026-28942 | MEDIUM | 6.5 | 0.5% | May 11, 2026 | A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.5, iOS 26.5 and i... |
| CVE-2026-28922 | MEDIUM | 6.5 | 0.3% | May 11, 2026 | This issue was addressed through improved state management. This issue is fixed in macOS Sequoia 15.7.7, macOS Sonoma 14... |
| CVE-2026-28920 | MEDIUM | 6.5 | 0.3% | May 11, 2026 | An information leakage was addressed with additional validation. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, iO... |
| CVE-2026-28918 | MEDIUM | 6.5 | 0.5% | May 11, 2026 | An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in iOS 26.5 and iPadOS 26... |
| CVE-2026-28917 | MEDIUM | 4.3 | 0.3% | May 11, 2026 | The issue was addressed with improved input validation. This issue is fixed in Safari 26.5, iOS 18.7.9 and iPadOS 18.7.9... |
| CVE-2026-28914 | MEDIUM | 5.5 | 0.1% | May 11, 2026 | A logic issue was addressed with improved file handling. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.... |
| CVE-2026-28903 | MEDIUM | 6.5 | 0.4% | May 11, 2026 | The issue was addressed with improved memory handling. This issue is fixed in Safari 26.5, iOS 18.7.9 and iPadOS 18.7.9,... |
| CVE-2026-28902 | MEDIUM | 6.5 | 0.4% | May 11, 2026 | The issue was addressed with improved memory handling. This issue is fixed in Safari 26.5, iOS 26.5 and iPadOS 26.5, mac... |
| CVE-2026-28901 | MEDIUM | 4.3 | 0.4% | May 11, 2026 | The issue was addressed with improved memory handling. This issue is fixed in Safari 26.5, iOS 26.5 and iPadOS 26.5, mac... |
| CVE-2026-28897 | MEDIUM | 6.2 | 0.2% | May 11, 2026 | A buffer overflow was addressed with improved input validation. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, iOS... |
| CVE-2026-28830 | MEDIUM | 4.7 | 0.1% | May 11, 2026 | A race condition was addressed with additional validation. This issue is fixed in macOS Tahoe 26.4. An app may be able t... |
| CVE-2026-28819 | MEDIUM | 5.4 | 7.1% | May 11, 2026 | An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 18.7.9 and iPadOS 1... |
| CVE-2026-20696 | MEDIUM | 5.5 | 0.1% | May 11, 2026 | An authorization issue was addressed with improved state management. This issue is fixed in macOS Sequoia 15.7.4, macOS ... |
| CVE-2026-8320 | MEDIUM | 4.7 | 0.2% | May 11, 2026 | A security vulnerability has been detected in jishenghua jshERP up to 3.6. This affects the function getUserByWeixinCode... |
| CVE-2026-8319 | MEDIUM | 5.5 | 0.4% | May 11, 2026 | A weakness has been identified in aiwaves-cn agents up to e8c4e3c2d19739d3dff59e577d1c97090cc15f59. Affected by this iss... |
| CVE-2026-6146 | MEDIUM | 5.3 | 0.2% | May 11, 2026 | Amazon::Credentials versions through 1.2.0 for Perl uses rand to generate encryption keys. Amazon::Credentials stores c... |
| CVE-2026-45026 | MEDIUM | 6.8 | 0.2% | May 11, 2026 | WeGIA is a web manager for charitable institutions. In versions prior to 3.7.3, a Stored Cross-Site Scripting (XSS) vuln... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now