2026 CVE Vulnerabilities
51,071 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-43656 | HIGH | 7.3 | 0.3% | May 11, 2026 | An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in iOS 18.7.9 and iPadOS ... |
| CVE-2026-43655 | HIGH | 7.3 | 0.3% | May 11, 2026 | An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 26.5 and iPadOS 26.5, macO... |
| CVE-2026-43654 | HIGH | 7.5 | 0.3% | May 11, 2026 | The issue was addressed with improved memory handling. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, iOS 26.5 and... |
| CVE-2026-43652 | HIGH | 7.5 | 0.2% | May 11, 2026 | A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Tahoe 26.5. An app may be a... |
| CVE-2026-41489 | HIGH | 8.8 | 0.1% | May 11, 2026 | Pi-hole is a DNS sinkhole that protects devices from unwanted content without installing any client-side software. From ... |
| CVE-2026-39871 | HIGH | 7.5 | 0.3% | May 11, 2026 | A path handling issue was addressed with improved logic. This issue is fixed in macOS Sequoia 15.7.7, macOS Sonoma 14.8.... |
| CVE-2026-39870 | HIGH | 7.5 | 0.3% | May 11, 2026 | The issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15.7.7, macOS Sonoma 14.8.7,... |
| CVE-2026-37630 | HIGH | 7.3 | 0.2% | May 11, 2026 | An issue in QuickJS-NG v.0.12.1 allows an attacker to execute arbitrary code via the js_mapped_arguments_mark function |
| CVE-2026-28995 | HIGH | 8.8 | 0.1% | May 11, 2026 | A logic issue was addressed with improved restrictions. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, iOS 26.5 an... |
| CVE-2026-28991 | HIGH | 7.5 | 0.4% | May 11, 2026 | An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 26.5 and iPadOS 26.5, macO... |
| CVE-2026-28990 | HIGH | 7.5 | 0.3% | May 11, 2026 | The issue was addressed with improved memory handling. This issue is fixed in iOS 18.7.10 and iPadOS 18.7.10, iOS 26.5 a... |
| CVE-2026-28987 | HIGH | 7.5 | 0.4% | May 11, 2026 | A logging issue was addressed with improved data redaction. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, iOS 26.... |
| CVE-2026-28986 | HIGH | 7.5 | 0.4% | May 11, 2026 | A race condition was addressed with additional validation. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, iOS 26.5... |
| CVE-2026-28983 | HIGH | 7.5 | 0.6% | May 11, 2026 | A type confusion issue was addressed with improved checks. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, iOS 26.5... |
| CVE-2026-28978 | HIGH | 8.8 | 0.1% | May 11, 2026 | A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.7.7, macOS Sonom... |
| CVE-2026-28976 | HIGH | 7.5 | 0.3% | May 11, 2026 | An information leakage was addressed with additional validation. This issue is fixed in macOS Tahoe 26.5. An app may be ... |
| CVE-2026-28974 | HIGH | 7.5 | 0.4% | May 11, 2026 | This issue was addressed with improved checks to prevent unauthorized actions. This issue is fixed in iOS 26.5 and iPadO... |
| CVE-2026-28969 | HIGH | 7.5 | 0.4% | May 11, 2026 | A use after free issue was addressed with improved memory management. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.... |
| CVE-2026-28965 | HIGH | 7.5 | 0.3% | May 11, 2026 | A privacy issue was addressed with improved checks. This issue is fixed in iOS 26.5 and iPadOS 26.5. A user may be able ... |
| CVE-2026-28964 | HIGH | 7.5 | 0.3% | May 11, 2026 | An inconsistent user interface issue was addressed with improved state management. This issue is fixed in iOS 26.5 and i... |
| CVE-2026-28962 | HIGH | 7.5 | 0.4% | May 11, 2026 | This issue was addressed with improved access restrictions. This issue is fixed in Safari 26.5, iOS 18.7.9 and iPadOS 18... |
| CVE-2026-28959 | HIGH | 7.5 | 0.6% | May 11, 2026 | A buffer overflow was addressed with improved bounds checking. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, iOS ... |
| CVE-2026-28955 | HIGH | 8.8 | 0.7% | May 11, 2026 | The issue was addressed with improved memory handling. This issue is fixed in Safari 26.5, iOS 18.7.9 and iPadOS 18.7.9,... |
| CVE-2026-28954 | HIGH | 7.5 | 0.4% | May 11, 2026 | A file quarantine bypass was addressed with additional checks. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, macO... |
| CVE-2026-28953 | HIGH | 7.5 | 0.4% | May 11, 2026 | The issue was addressed with improved memory handling. This issue is fixed in Safari 26.5, iOS 18.7.9 and iPadOS 18.7.9,... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now