2026 CVE Vulnerabilities
53,578 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-56820 | CRITICAL | 9.1 | 0.2% | Jul 21, 2026 | Netty is a network application framework for development of protocol servers and clients. In versions 4.2.0.Final throug... |
| CVE-2026-56819 | HIGH | 7.5 | 0.3% | Jul 21, 2026 | Netty is a network application framework for development of protocol servers and clients. In versions 4.2.0.Final throug... |
| CVE-2026-56817 | CRITICAL | 9.8 | 0.3% | Jul 21, 2026 | Netty is a network application framework for development of protocol servers and clients. In versions 4.2.0.Final throug... |
| CVE-2026-16517 | LOW | 2.9 | 0.1% | Jul 21, 2026 | A signed integer overflow vulnerability was found in libarchive's ZIP writer. In the archive_write_zip_header function i... |
| CVE-2026-16486 | MEDIUM | 4.3 | 0.3% | Jul 21, 2026 | A vulnerability was found in SourceCodester Class and Exam Timetabling System 1.0. This affects an unknown part of the f... |
| CVE-2026-16485 | MEDIUM | 4.3 | 0.3% | Jul 21, 2026 | A vulnerability has been found in SourceCodester Class and Exam Timetabling System 1.0. Affected by this issue is some u... |
| CVE-2026-16424 | CRITICAL | 9.6 | 0.2% | Jul 21, 2026 | Use after free in GPU in Google Chrome on Android prior to 150.0.7871.182 allowed a remote attacker who had compromised ... |
| CVE-2026-16423 | HIGH | 8.8 | 0.2% | Jul 21, 2026 | Use after free in UI in Google Chrome prior to 150.0.7871.182 allowed a remote attacker who convinced a user to engage i... |
| CVE-2026-16422 | HIGH | 7.5 | 0.1% | Jul 21, 2026 | Insufficient validation of untrusted input in Certificate in Google Chrome on Linux prior to 150.0.7871.182 allowed an a... |
| CVE-2026-16421 | HIGH | 8.8 | 0.2% | Jul 21, 2026 | Inappropriate implementation in WebAudio in Google Chrome prior to 150.0.7871.182 allowed a remote attacker to execute a... |
| CVE-2026-16420 | HIGH | 8.8 | 0.2% | Jul 21, 2026 | Type Confusion in WebAudio in Google Chrome prior to 150.0.7871.182 allowed a remote attacker to execute arbitrary code ... |
| CVE-2026-16419 | CRITICAL | 9.6 | 0.2% | Jul 21, 2026 | Out of bounds read and write in ANGLE in Google Chrome on Android prior to 150.0.7871.182 allowed a remote attacker to p... |
| CVE-2026-16418 | HIGH | 8.8 | 0.2% | Jul 21, 2026 | Stack buffer overflow in V8 in Google Chrome prior to 150.0.7871.182 allowed a remote attacker to execute arbitrary code... |
| CVE-2026-16417 | LOW | 3.1 | 0.2% | Jul 21, 2026 | Uninitialized Use in Skia in Google Chrome prior to 150.0.7871.182 allowed a remote attacker who had compromised the ren... |
| CVE-2026-16416 | CRITICAL | 9.3 | 0.1% | Jul 21, 2026 | Integer overflow in Chromecast in Google Chrome prior to 150.0.7871.182 allowed a local attacker to potentially perform ... |
| CVE-2026-16415 | MEDIUM | 5.4 | 0.2% | Jul 21, 2026 | Insufficient validation of untrusted input in Extensions in Google Chrome prior to 150.0.7871.182 allowed a remote attac... |
| CVE-2026-16414 | HIGH | 7.8 | 0.1% | Jul 21, 2026 | Insufficient validation of untrusted input in Chromecast in Google Chrome prior to 150.0.7871.182 allowed a local attack... |
| CVE-2026-16413 | HIGH | 8.3 | 0.2% | Jul 21, 2026 | Out of bounds write in ANGLE in Google Chrome prior to 150.0.7871.182 allowed a remote attacker who had compromised the ... |
| CVE-2026-8989 | MEDIUM | 6.8 | 0.2% | Jul 21, 2026 | Autel Maxi Charger Single firmware through V1.03.51 permits unrestricted access to the NXP i.MX6 recovery mode through e... |
| CVE-2026-8988 | MEDIUM | 6.8 | 0.1% | Jul 21, 2026 | Autel Maxi Charger Single firmware through V1.03.51 exposes an accessible UART interface that permits interruption of th... |
| CVE-2026-8987 | HIGH | 8.8 | 0.4% | Jul 21, 2026 | Autel Maxi Charger Single firmware through V1.03.51 contains a heap-based buffer overflow in the set_ap_param command ha... |
| CVE-2026-8986 | CRITICAL | 9.8 | 1.2% | Jul 21, 2026 | Autel Maxi Charger Single firmware through V1.03.51 is vulnerable to OS command injection when processing OCPP GetDiagno... |
| CVE-2026-8985 | CRITICAL | 9.8 | 4.2% | Jul 21, 2026 | Autel Maxi Charger Single firmware through V1.03.51 is vulnerable to OS command injection in the /test endpoint exposed ... |
| CVE-2026-8984 | CRITICAL | 9.8 | 0.5% | Jul 21, 2026 | Autel Maxi Charger Single firmware through V1.03.51 allows unauthenticated remote code execution via the service listeni... |
| CVE-2026-65319 | HIGH | 8.7 | 0.4% | Jul 21, 2026 | Feedbin (commit 739884a) contains an unauthenticated information disclosure vulnerability that allows unauthenticated at... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now