2026 CVE Vulnerabilities

64,788 CVEs published in 2026.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2026-79047CRITICAL9.6Use after free in Views in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering ...
CVE-2026-79043CRITICAL9.6Out of bounds write in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute ar...
CVE-2026-79026CRITICAL9.6Use after free in Extensions in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social enginee...
CVE-2026-79019CRITICAL9.6Out of bounds write in ANGLE in Google Chrome on on Windows prior to 152.0.7977.65 allowed a remote attacker to potentia...
CVE-2026-79012CRITICAL9.6Use after free in Safebrowsing in Google Chrome on on Mac prior to 152.0.7977.65 allowed a remote attacker leveraging so...
CVE-2026-78989CRITICAL9.6Out of bounds read in ANGLE in Google Chrome on on Windows prior to 152.0.7977.65 allowed a remote attacker to potential...
CVE-2026-78985CRITICAL9.6Incorrect reference resolution in FileSystem in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveragin...
CVE-2026-78964CRITICAL9.6Use after free in Sync in Google Chrome on on iOS prior to 152.0.7977.65 allowed a remote attacker to potentially execut...
CVE-2026-78951CRITICAL9.6Use after free in ServiceWorker in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary c...
CVE-2026-78948CRITICAL9.6Buffer overflow in WebGL in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code out...
CVE-2026-78945CRITICAL9.6Use after free in Views in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering ...
CVE-2026-78939CRITICAL9.6Use after free in Chromecast in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the r...
CVE-2026-78937CRITICAL9.6Use after free in Search in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker leveraging soci...
CVE-2026-78935CRITICAL9.6Use of uninitialized variable in Mobile in Google Chrome on on iOS prior to 152.0.7977.65 allowed a remote attacker to p...
CVE-2026-78909CRITICAL9.6Use after free in Views in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering ...
CVE-2026-78904CRITICAL9.6Type confusion in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitra...
CVE-2026-78900CRITICAL9.6Improper input validation in Media in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially exec...
CVE-2026-65098CRITICAL9.8NVIDIA NemoClaw for Linux contains a vulnerability in its remote-access helper workflow, where an attacker could cause w...
CVE-2026-65093CRITICAL9.9NVIDIA OpenShell for Linux contains a vulnerability where an attacker could cause a sandbox escape. A successful exploit...
CVE-2026-65084CRITICAL9.8NVIDIA NemoClaw for Linux contains a vulnerability in its deployment process, where an attacker could cause improper cer...
CVE-2026-65083CRITICAL9.9NVIDIA OpenShell for Linux contains a vulnerability in its sandbox provisioning API, where an attacker could cause an in...
CVE-2026-65081CRITICAL9.8NVIDIA NemoClaw for Linux contains a vulnerability in its installation process, where an attacker could cause execution ...
CVE-2026-51368CRITICAL9.8An issue in Beijing Tongtech Co., Ltd tongweb v.7.0.24 in the Spring HttpInovkerServiceExporter component allows a remot...
CVE-2026-45018CRITICAL9.8Chainlit is a Python framework for building production-ready conversational AI applications. From 2.4.0rc0 until 2.12.0,...
CVE-2026-79787CRITICAL9.8Alluxio's S3 REST proxy fails to verify AWS Signature Version 4 signatures in its default configuration, allowing unauth...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now