2026 CVE Vulnerabilities
49,638 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-25258 | HIGH | 7.8 | 0.1% | Jun 1, 2026 | Memory corruption while processing IOCTL calls for escape operations. |
| CVE-2026-24782 | HIGH | 8.8 | 0.7% | Jun 1, 2026 | Kiteworks is a private data network (PDN). Prior to version 9.3.0,ultiple SQL Injection vulnerabilities in Kiteworks Sec... |
| CVE-2026-24752 | HIGH | 8.2 | 0.3% | Jun 1, 2026 | Kiteworks is a private data network (PDN). Prior to version 9.3.0, a reflected XSS vulnerability in Kiteworks Secure Dat... |
| CVE-2026-24092 | HIGH | 7.2 | 0.1% | Jun 1, 2026 | Memory Corruption when processing fastboot commands to set display mode. |
| CVE-2026-24091 | HIGH | 7.2 | 0.1% | Jun 1, 2026 | Memory corruption while processing fastboot commands with improperly formatted input. |
| CVE-2026-24090 | HIGH | 7.1 | 0.1% | Jun 1, 2026 | Cryptographic issue while processing partition table entries allows unauthorized modification of boot flow. |
| CVE-2026-24089 | HIGH | 7.2 | 0.1% | Jun 1, 2026 | Memory corruption while processing fastboot commands with invalid input. |
| CVE-2026-24088 | HIGH | 8.2 | 0.1% | Jun 1, 2026 | Cryptographic Issue while processing a specific partition which allows unauthorized write access to load a customized bo... |
| CVE-2026-24087 | HIGH | 7.2 | 0.1% | Jun 1, 2026 | Memory corruption while processing fastboot OEM commands. |
| CVE-2026-24085 | HIGH | 7.2 | 0.1% | Jun 1, 2026 | Memory Corruption when processing display command line information due to improper initialization of a variable. |
| CVE-2026-49491 | HIGH | 8.8 | 0.3% | Jun 1, 2026 | Pixa Bank 2.0 contains an SQL injection vulnerability that allows unauthenticated attackers to extract sensitive data by... |
| CVE-2026-40964 | HIGH | 7.5 | 0.4% | Jun 1, 2026 | Authentication Bypass in cf-auth-proxy in Cloud Foundry Foundation all installations allows an unauthenticated remote at... |
| CVE-2026-28580 | HIGH | 7.8 | 0.1% | Jun 1, 2026 | In multiple functions, there is a possible desync in persistence due to an incorrect bounds check. This could lead to lo... |
| CVE-2026-28577 | HIGH | 7.8 | 0.1% | Jun 1, 2026 | In addWindow of WindowManagerService.java, there is a possible tapjacking issue due to a tapjacking/overlay attack. This... |
| CVE-2026-10293 | HIGH | 8.8 | 0.5% | Jun 1, 2026 | A flaw has been found in UTT HiPER 1200GW up to 2.5.3-170306. This impacts the function strcpy of the file /goform/formF... |
| CVE-2026-10292 | HIGH | 8.8 | 0.5% | Jun 1, 2026 | A vulnerability was detected in UTT HiPER 1200GW up to 2.5.3-170306. This affects the function strcpy of the file /gofor... |
| CVE-2026-10290 | HIGH | 7.3 | 0.3% | Jun 1, 2026 | A weakness has been identified in code-projects Hotel and Tourism Reservation System 1.0. The affected element is an unk... |
| CVE-2026-0100 | HIGH | 7.8 | 0.1% | Jun 1, 2026 | In Load of LoadedArsc.cpp, there is a possible out of bounds write due to a heap buffer overflow. This could lead to loc... |
| CVE-2026-0099 | HIGH | 7.8 | 0.1% | Jun 1, 2026 | In onNullBinding of HostEmulationManager.java, there is a possible way to launch an activity from the background due to ... |
| CVE-2026-0098 | HIGH | 7.8 | 0.1% | Jun 1, 2026 | In getCallingPackageName of Shared.java, there is a possible way to bypass activity start restrictions due to a confused... |
| CVE-2026-0097 | HIGH | 8 | 0.1% | Jun 1, 2026 | In multiple locations, there is a possible way to bypass user interaction when pairing an LE device due to a logic error... |
| CVE-2026-0096 | HIGH | 7.8 | 0.1% | Jun 1, 2026 | In getAppLabel of ForgetDeviceDialogFragment.java, there is a possible trick the user into forgetting a device due to mi... |
| CVE-2026-0095 | HIGH | 8 | 0.1% | Jun 1, 2026 | In l2c_fcr_clone_buf of l2c_fcr.cc, there is a possible way to trigger controlled heap corruption within the privileged ... |
| CVE-2026-0094 | HIGH | 7.8 | 0.1% | Jun 1, 2026 | In getApplicationLabel of KeyChainActivity.java, there is a possible way to trick the user into approving access to cert... |
| CVE-2026-0093 | HIGH | 7.8 | 0.1% | Jun 1, 2026 | In multiple locations, there is a possible misleading UI due to obfuscation. This could lead to local escalation of priv... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now