2026 CVE Vulnerabilities

50,982 CVEs published in 2026.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2026-8531HIGH8.8Heap buffer overflow in WebML in Google Chrome on Windows prior to 148.0.7778.168 allowed a remote attacker to potential...
CVE-2026-8530HIGH8.3Use after free in Network in Google Chrome on Windows prior to 148.0.7778.168 allowed a remote attacker who had compromi...
CVE-2026-8529HIGH8.8Heap buffer overflow in Codecs in Google Chrome prior to 148.0.7778.168 allowed a remote attacker to execute arbitrary c...
CVE-2026-8527HIGH8.8Insufficient validation of untrusted input in Downloads in Google Chrome prior to 148.0.7778.168 allowed a remote attack...
CVE-2026-8526HIGH8.8Out of bounds write in WebRTC in Google Chrome prior to 148.0.7778.168 allowed a remote attacker to execute arbitrary co...
CVE-2026-8525HIGH8.3Heap buffer overflow in ANGLE in Google Chrome on Mac prior to 148.0.7778.168 allowed a remote attacker to potentially p...
CVE-2026-8524HIGH8.8Out of bounds write in WebAudio in Google Chrome prior to 148.0.7778.168 allowed a remote attacker to execute arbitrary ...
CVE-2026-8523HIGH8.3Use after free in Mojo in Google Chrome prior to 148.0.7778.168 allowed a remote attacker who had compromised the render...
CVE-2026-8522HIGH8.8Use after free in Downloads in Google Chrome on Mac prior to 148.0.7778.168 allowed a remote attacker to execute arbitra...
CVE-2026-8521HIGH7.5Use after free in Tab Groups in Google Chrome prior to 148.0.7778.168 allowed a remote attacker to execute arbitrary cod...
CVE-2026-8520HIGH8.3Race in Payments in Google Chrome prior to 148.0.7778.168 allowed a remote attacker to potentially perform a sandbox esc...
CVE-2026-8519HIGH8.8Integer overflow in ANGLE in Google Chrome on Windows prior to 148.0.7778.168 allowed a remote attacker to perform an ou...
CVE-2026-8518HIGH8.8Use after free in Blink in Google Chrome prior to 148.0.7778.168 allowed a remote attacker to execute arbitrary code ins...
CVE-2026-8517HIGH8.8Object lifecycle issue in WebShare in Google Chrome on Mac prior to 148.0.7778.168 allowed a remote attacker who convinc...
CVE-2026-8515HIGH8.3Use after free in HID in Google Chrome prior to 148.0.7778.168 allowed a remote attacker who convinced a user to engage ...
CVE-2026-8514HIGH8.3Use after free in Aura in Google Chrome prior to 148.0.7778.168 allowed a remote attacker who had compromised the render...
CVE-2026-8513HIGH8.3Use after free in Input in Google Chrome on Android prior to 148.0.7778.168 allowed a remote attacker who had compromise...
CVE-2026-8512HIGH8.3Use after free in FileSystem in Google Chrome prior to 148.0.7778.168 allowed a remote attacker who convinced a user to ...
CVE-2026-8510HIGH7.5Integer overflow in Skia in Google Chrome on Windows prior to 148.0.7778.168 allowed a remote attacker who had compromis...
CVE-2026-8509HIGH8.8Heap buffer overflow in WebML in Google Chrome prior to 148.0.7778.168 allowed a remote attacker to execute arbitrary co...
CVE-2026-46356HIGH7.5Fleet is open source device management software. Prior to version 4.80.1, a vulnerability in Fleet's IP extraction logic...
CVE-2026-44637HIGH7.1libsixel is a SIXEL encoder/decoder implementation derived from kmiya's sixel. From to 1.8.7-r1, a signed integer overf...
CVE-2026-44636HIGH7.8libsixel is a SIXEL encoder/decoder implementation derived from kmiya's sixel. From to 1.8.7-r1, signed integer overflo...
CVE-2026-43909HIGH8.8OpenImageIO is a toolset for reading, writing, and manipulating image files of any image file format relevant to VFX / a...
CVE-2026-43908HIGH8.8OpenImageIO is a toolset for reading, writing, and manipulating image files of any image file format relevant to VFX / a...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now