2026 CVE Vulnerabilities

64,779 CVEs published in 2026.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2026-9621CRITICAL9.2A denial-of-service security issue exists within RSLinx® Classic. The security issue stems from improper handling of a m...
CVE-2026-51765CRITICAL9.8Incorrect access control in the recvIndirectMeshInfo function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticate...
CVE-2026-51764CRITICAL9.8Incorrect access control in the recvSlaveCloudCheckStatus function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthent...
CVE-2026-51763CRITICAL9.8Incorrect access control in the freeStaClient function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attac...
CVE-2026-51762CRITICAL9.8Incorrect access control in the meshInfoKick function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attack...
CVE-2026-51760CRITICAL9.8Incorrect access control in the informSyncUpgfw function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated att...
CVE-2026-51757CRITICAL9.8Incorrect access control in the meshSlaveUpdate function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated att...
CVE-2026-51754CRITICAL9.8Incorrect access control in the updateSlaveIpList function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated a...
CVE-2026-51751CRITICAL9.8Incorrect access control in the delSlaveDevice function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated atta...
CVE-2026-51750CRITICAL9.8Incorrect access control in the updatePriChannel function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated at...
CVE-2026-18808CRITICAL9.8Improper Control of Generation of Code ('Code Injection') vulnerability in Klemsan Electrical Electronics Inc. KIO (Klem...
CVE-2026-18210CRITICAL9.8Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in TRtek Technologica...
CVE-2026-84149CRITICAL9.2This vulnerability exists in the ERP system due to exposure of repository information through a publicly accessible .git...
CVE-2026-84148CRITICAL9.2This vulnerability exists in the ERP system due to improper authentication and authorization controls in the API endpoin...
CVE-2026-84147CRITICAL10This vulnerability exists in the ERP system due to improper authentication controls and inadequate file type validation ...
CVE-2026-84143CRITICAL9.8Internally found bugs present in Thunderbird 154, Thunderbird ESR 153.1 and Thunderbird ESR 140.14. Some of these bugs s...
CVE-2026-84142CRITICAL9.8Internally found bugs present in Thunderbird 154. Some of these bugs showed evidence of memory corruption or another sec...
CVE-2026-84141CRITICAL9.8Integer overflow in the Graphics: ImageLib component. This vulnerability was fixed in Firefox 155, Firefox ESR 153.2, Th...
CVE-2026-84140CRITICAL9.8Site isolation issue in the DOM: Navigation component. This vulnerability was fixed in Firefox 155, Firefox ESR 153.2, T...
CVE-2026-84135CRITICAL9.8Other issue in Firefox Focus for Android. This vulnerability was fixed in Firefox 155.
CVE-2026-84134CRITICAL9.8Other issue in the Profile Backup component. This vulnerability was fixed in Firefox 155, Firefox ESR 153.2, Thunderbird...
CVE-2026-84133CRITICAL9.8Site isolation issue in the DOM: Push Subscriptions component. This vulnerability was fixed in Firefox 155, Firefox ESR ...
CVE-2026-84129CRITICAL9.8Site isolation issue in the DOM: Navigation component. This vulnerability was fixed in Firefox 155, Firefox ESR 153.2, T...
CVE-2026-84121CRITICAL9.6Sandbox escape due to use-after-free in the DOM: Security component. This vulnerability was fixed in Firefox 155, Firefo...
CVE-2026-84119CRITICAL9.6Sandbox escape due to use-after-free in the DOM: Navigation component. This vulnerability was fixed in Firefox 155, Fire...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now