2026 CVE Vulnerabilities

50,954 CVEs published in 2026.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2026-45207HIGH7.8An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to escalate privileges on affe...
CVE-2026-45206HIGH7.8An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to escalate privileges on affe...
CVE-2026-34930HIGH7.8An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to escalate privileges on affe...
CVE-2026-34929HIGH7.8An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to escalate privileges on affe...
CVE-2026-34928HIGH7.8An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to escalate privileges on affe...
CVE-2026-34927HIGH7.8An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to escalate privileges on affe...
CVE-2026-2740HIGH8.4Zohocorp ManageEngine ADSelfService Plus version before 6525, DataSecurity Plus before 6264 and RecoveryManager Plus bef...
CVE-2026-45760HIGH8.1(Externally Controlled Reference to a Resource in Another Sphere), (Authorization Bypass Through User-Controlled Key) vu...
CVE-2026-43502HIGH7.8In the Linux kernel, the following vulnerability has been resolved: net/rds: handle zerocopy send cleanup before the me...
CVE-2026-43499HIGH7.8In the Linux kernel, the following vulnerability has been resolved: rtmutex: Use waiter::task instead of current in rem...
CVE-2026-43498HIGH7.8In the Linux kernel, the following vulnerability has been resolved: accel/ivpu: Disallow re-exporting imported GEM obje...
CVE-2026-43497HIGH7.3In the Linux kernel, the following vulnerability has been resolved: fbdev: udlfb: add vm_ops to dlfb_ops_mmap to preven...
CVE-2026-43495HIGH8.8In the Linux kernel, the following vulnerability has been resolved: net: wwan: t7xx: validate port_count against messag...
CVE-2026-43494HIGH7.8In the Linux kernel, the following vulnerability has been resolved: net/rds: reset op_nents when zerocopy page pin fail...
CVE-2026-45255HIGH7.5When bsdinstall or bsdconfig are prompted to scan for nearby Wi-Fi networks, they build up a list of network names and u...
CVE-2026-45253HIGH8.4ptrace(PT_SC_REMOTE) failed to properly validate parameters for the syscall(2) and __syscall(2) meta-system calls. As a...
CVE-2026-45251HIGH7.8A file descriptor can be closed while a thread is blocked in a poll(2) or select(2) call waiting for that descriptor. B...
CVE-2026-42002HIGH7.5Concurrency and locking defects in GSS-TSIG
CVE-2026-42001HIGH7.5Insufficient Validation of Autoprimary SOA Queries
CVE-2026-42000HIGH8.6Insufficient Validation of Names During AXFR
CVE-2026-39461HIGH8.8libcasper(3) communicates with helper processes via UNIX domain sockets, and uses the select(2) system call to wait for ...
CVE-2026-28764HIGH7.8MediaArea MediaInfoLib LXF element parsing heap-based buffer overflow vulnerability
CVE-2026-9157HIGH8.6Improper input validation, Unrestricted upload of file with dangerous type vulnerability in Gmission Web Fax allows Remo...
CVE-2026-45250HIGH7.8The setcred(2) system call is only available to privileged users. However, before the privilege level of the caller is ...
CVE-2026-44068HIGH7.6Incomplete sanitization of extended attribute (EA) path components in Netatalk 2.1.0 through 4.4.2 allows a remote authe...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now