2026 CVE Vulnerabilities

51,177 CVEs published in 2026.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2026-7923HIGH8.3Out of bounds write in Skia in Google Chrome prior to 148.0.7778.96 allowed a remote attacker who had compromised the re...
CVE-2026-7922HIGH8.3Use after free in ServiceWorker in Google Chrome prior to 148.0.7778.96 allowed a remote attacker to potentially perform...
CVE-2026-7921HIGH8.8Use after free in Passwords in Google Chrome prior to 148.0.7778.96 allowed a remote attacker to execute arbitrary code ...
CVE-2026-7920HIGH8.3Use after free in Skia in Google Chrome prior to 148.0.7778.96 allowed a remote attacker who had compromised the rendere...
CVE-2026-7919HIGH8.3Use after free in Aura in Google Chrome prior to 148.0.7778.96 allowed a remote attacker who had compromised the rendere...
CVE-2026-7918HIGH8.3Use after free in GPU in Google Chrome prior to 148.0.7778.96 allowed a remote attacker who had compromised the renderer...
CVE-2026-7917HIGH8.3Use after free in Fullscreen in Google Chrome on Windows prior to 148.0.7778.96 allowed a remote attacker who had compro...
CVE-2026-7916HIGH8.3Insufficient data validation in InterestGroups in Google Chrome prior to 148.0.7778.96 allowed a remote attacker who had...
CVE-2026-7914HIGH8.3Type Confusion in Accessibility in Google Chrome on Windows prior to 148.0.7778.96 allowed a remote attacker who had com...
CVE-2026-7913HIGH7.8Insufficient policy enforcement in DevTools in Google Chrome on Android prior to 148.0.7778.96 allowed a local attacker ...
CVE-2026-7911HIGH8.3Use after free in Aura in Google Chrome on Windows prior to 148.0.7778.96 allowed a remote attacker who had compromised ...
CVE-2026-7907HIGH8.8Use after free in DOM in Google Chrome prior to 148.0.7778.96 allowed a remote attacker to execute arbitrary code inside...
CVE-2026-7906HIGH8.8Use after free in SVG in Google Chrome prior to 148.0.7778.96 allowed a remote attacker to execute arbitrary code inside...
CVE-2026-7905HIGH8.3Insufficient validation of untrusted input in Media in Google Chrome on Android prior to 148.0.7778.96 allowed a remote ...
CVE-2026-7903HIGH8.8Integer overflow in ANGLE in Google Chrome on Mac,Windows prior to 148.0.7778.96 allowed a remote attacker to potentiall...
CVE-2026-7902HIGH8.8Out of bounds memory access in V8 in Google Chrome prior to 148.0.7778.96 allowed a remote attacker to execute arbitrary...
CVE-2026-7901HIGH8.8Use after free in ANGLE in Google Chrome on Mac prior to 148.0.7778.96 allowed a remote attacker to execute arbitrary co...
CVE-2026-7900HIGH8.3Heap buffer overflow in ANGLE in Google Chrome prior to 148.0.7778.96 allowed a remote attacker who had compromised the ...
CVE-2026-7899HIGH8.8Out of bounds read and write in V8 in Google Chrome prior to 148.0.7778.96 allowed a remote attacker to execute arbitrar...
CVE-2026-7898HIGH8.8Use after free in Chromoting in Google Chrome on Linux prior to 148.0.7778.96 allowed a remote attacker to execute arbit...
CVE-2026-7897HIGH7.5Use after free in Mobile in Google Chrome on iOS prior to 148.0.7778.96 allowed a remote attacker who convinced a user t...
CVE-2026-7896HIGH8.8Integer overflow in Blink in Google Chrome prior to 148.0.7778.96 allowed a remote attacker to potentially exploit heap ...
CVE-2026-41938HIGH8.8Vvveb before version 1.0.8.2 contains an unrestricted file upload vulnerability in the media upload handler that allows ...
CVE-2026-41936HIGH8.6Vvveb before version 1.0.8.2 contains an XML external entity (XXE) injection vulnerability in the admin Tools/Import fea...
CVE-2026-41934HIGH8.8Vvveb before version 1.0.8.2 contains an authenticated remote code execution vulnerability in the admin code editor that...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now