2026 CVE Vulnerabilities

49,638 CVEs published in 2026.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2026-25258HIGH7.8Memory corruption while processing IOCTL calls for escape operations.
CVE-2026-24782HIGH8.8Kiteworks is a private data network (PDN). Prior to version 9.3.0,ultiple SQL Injection vulnerabilities in Kiteworks Sec...
CVE-2026-24752HIGH8.2Kiteworks is a private data network (PDN). Prior to version 9.3.0, a reflected XSS vulnerability in Kiteworks Secure Dat...
CVE-2026-24092HIGH7.2Memory Corruption when processing fastboot commands to set display mode.
CVE-2026-24091HIGH7.2Memory corruption while processing fastboot commands with improperly formatted input.
CVE-2026-24090HIGH7.1Cryptographic issue while processing partition table entries allows unauthorized modification of boot flow.
CVE-2026-24089HIGH7.2Memory corruption while processing fastboot commands with invalid input.
CVE-2026-24088HIGH8.2Cryptographic Issue while processing a specific partition which allows unauthorized write access to load a customized bo...
CVE-2026-24087HIGH7.2Memory corruption while processing fastboot OEM commands.
CVE-2026-24085HIGH7.2Memory Corruption when processing display command line information due to improper initialization of a variable.
CVE-2026-49491HIGH8.8Pixa Bank 2.0 contains an SQL injection vulnerability that allows unauthenticated attackers to extract sensitive data by...
CVE-2026-40964HIGH7.5Authentication Bypass in cf-auth-proxy in Cloud Foundry Foundation all installations allows an unauthenticated remote at...
CVE-2026-28580HIGH7.8In multiple functions, there is a possible desync in persistence due to an incorrect bounds check. This could lead to lo...
CVE-2026-28577HIGH7.8In addWindow of WindowManagerService.java, there is a possible tapjacking issue due to a tapjacking/overlay attack. This...
CVE-2026-10293HIGH8.8A flaw has been found in UTT HiPER 1200GW up to 2.5.3-170306. This impacts the function strcpy of the file /goform/formF...
CVE-2026-10292HIGH8.8A vulnerability was detected in UTT HiPER 1200GW up to 2.5.3-170306. This affects the function strcpy of the file /gofor...
CVE-2026-10290HIGH7.3A weakness has been identified in code-projects Hotel and Tourism Reservation System 1.0. The affected element is an unk...
CVE-2026-0100HIGH7.8In Load of LoadedArsc.cpp, there is a possible out of bounds write due to a heap buffer overflow. This could lead to loc...
CVE-2026-0099HIGH7.8In onNullBinding of HostEmulationManager.java, there is a possible way to launch an activity from the background due to ...
CVE-2026-0098HIGH7.8In getCallingPackageName of Shared.java, there is a possible way to bypass activity start restrictions due to a confused...
CVE-2026-0097HIGH8In multiple locations, there is a possible way to bypass user interaction when pairing an LE device due to a logic error...
CVE-2026-0096HIGH7.8In getAppLabel of ForgetDeviceDialogFragment.java, there is a possible trick the user into forgetting a device due to mi...
CVE-2026-0095HIGH8In l2c_fcr_clone_buf of l2c_fcr.cc, there is a possible way to trigger controlled heap corruption within the privileged ...
CVE-2026-0094HIGH7.8In getApplicationLabel of KeyChainActivity.java, there is a possible way to trick the user into approving access to cert...
CVE-2026-0093HIGH7.8In multiple locations, there is a possible misleading UI due to obfuscation. This could lead to local escalation of priv...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now