2026 CVE Vulnerabilities
51,938 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-17662 | MEDIUM | 4.3 | 0.2% | Jul 30, 2026 | Insufficient policy enforcement in Prefetch in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cr... |
| CVE-2026-17661 | HIGH | 8.8 | 0.5% | Jul 30, 2026 | Use after free in Loader in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to execute arbitrary code ins... |
| CVE-2026-17660 | HIGH | 8.3 | 0.4% | Jul 30, 2026 | Insufficient validation of untrusted input in Network in Google Chrome prior to 151.0.7922.72 allowed a remote attacker ... |
| CVE-2026-17659 | MEDIUM | 4.2 | 0.3% | Jul 30, 2026 | Inappropriate implementation in SiteIsolation in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had ... |
| CVE-2026-17658 | HIGH | 8.8 | 0.5% | Jul 30, 2026 | Use after free in V8 in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to execute arbitrary code inside ... |
| CVE-2026-17657 | HIGH | 8.3 | 0.4% | Jul 30, 2026 | Use after free in Navigation in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the r... |
| CVE-2026-17656 | CRITICAL | 9.6 | 0.4% | Jul 30, 2026 | Use after free in Ozone in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to potentially perform a sandb... |
| CVE-2026-17655 | CRITICAL | 9.6 | 0.4% | Jul 30, 2026 | Insufficient validation of untrusted input in ANGLE in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to... |
| CVE-2026-17654 | HIGH | 7.8 | 0.1% | Jul 30, 2026 | Race in Updater in Google Chrome on Mac prior to 151.0.7922.72 allowed a local attacker to perform OS-level privilege es... |
| CVE-2026-17653 | HIGH | 8.3 | 0.4% | Jul 30, 2026 | Use after free in Skia in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the rendere... |
| CVE-2026-17652 | CRITICAL | 9.6 | 0.4% | Jul 30, 2026 | Use after free in Views in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the render... |
| CVE-2026-17651 | CRITICAL | 9.6 | 0.4% | Jul 30, 2026 | Insufficient validation of untrusted input in Dawn in Google Chrome on Android prior to 151.0.7922.72 allowed a remote a... |
| CVE-2026-17650 | HIGH | 8.3 | 0.4% | Jul 30, 2026 | Use after free in Compositing in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the ... |
| CVE-2026-64685 | MEDIUM | 5.3 | 0.2% | Jul 30, 2026 | ImageMagick is free and open-source software used for editing and manipulating digital images. In versions prior to 7.1.... |
| CVE-2026-62946 | MEDIUM | 4.7 | 0.1% | Jul 30, 2026 | ImageMagick is free and open-source software used for editing and manipulating digital images. In versions prior to both... |
| CVE-2026-62363 | MEDIUM | 5 | 0.1% | Jul 30, 2026 | ImageMagick is free and open-source software used for editing and manipulating digital images. In versions prior to 7.1.... |
| CVE-2026-62343 | MEDIUM | 4.7 | 0.1% | Jul 30, 2026 | ImageMagick is free and open-source software used for editing and manipulating digital images. In versions prior to 6.9.... |
| CVE-2026-16339 | — | — | — | Jul 29, 2026 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2026-67595 | CRITICAL | 9.2 | 0.4% | Jul 29, 2026 | VaahCMS versions 2.0.0 through 2.3.4 contain a malicious obfuscated JavaScript payload embedded in the Blade template re... |
| CVE-2026-18060 | — | — | — | Jul 29, 2026 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All r... |
| CVE-2026-15157 | MEDIUM | 5.4 | 0.2% | Jul 29, 2026 | undici does not validate the type property of a duck-typed blob-like request body before using it as the Content-Type he... |
| CVE-2026-14643 | HIGH | 7.5 | 0.2% | Jul 29, 2026 | undici's cache interceptor mishandles optional whitespace placed around the equals sign of a qualified no-cache or priva... |
| CVE-2026-67439 | MEDIUM | 4.3 | 0.3% | Jul 29, 2026 | OliveTin gives safe and simple access to predefined shell commands from a web interface. Prior to 3000.17.0, the service... |
| CVE-2026-67438 | MEDIUM | 6.6 | 1.0% | Jul 29, 2026 | OliveTin gives access to predefined shell commands from a web interface. From 3000.2.0 until 3000.17.0, the service/inte... |
| CVE-2026-67437 | HIGH | 7.5 | 0.4% | Jul 29, 2026 | OliveTin gives access to predefined shell commands from a web interface. From 3000.0.0 until 3000.17.0, the service/inte... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now