2026 CVE Vulnerabilities
53,146 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-5912 | HIGH | 8.8 | 0.2% | Apr 8, 2026 | Integer overflow in WebRTC in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to perform an out of bounds... |
| CVE-2026-5910 | HIGH | 8.8 | 0.2% | Apr 8, 2026 | Integer overflow in Media in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to potentially exploit heap ... |
| CVE-2026-5909 | HIGH | 8.8 | 0.2% | Apr 8, 2026 | Integer overflow in Media in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to potentially exploit heap ... |
| CVE-2026-5908 | HIGH | 8.8 | 0.2% | Apr 8, 2026 | Integer overflow in Media in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to potentially exploit heap ... |
| CVE-2026-5907 | HIGH | 8.1 | 0.2% | Apr 8, 2026 | Insufficient data validation in Media in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to perform an ou... |
| CVE-2026-5884 | HIGH | 8.8 | 0.3% | Apr 8, 2026 | Insufficient validation of untrusted input in Media in Google Chrome prior to 147.0.7727.55 allowed a remote attacker wh... |
| CVE-2026-5883 | HIGH | 8.8 | 0.3% | Apr 8, 2026 | Use after free in Media in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary code insi... |
| CVE-2026-5879 | HIGH | 8.8 | 0.3% | Apr 8, 2026 | Insufficient validation of untrusted input in ANGLE in Google Chrome on Mac prior to 147.0.7727.55 allowed a remote atta... |
| CVE-2026-5877 | HIGH | 8.8 | 0.3% | Apr 8, 2026 | Use after free in Navigation in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary code... |
| CVE-2026-5873 | HIGH | 8.8 | 0.4% | Apr 8, 2026 | Out of bounds read and write in V8 in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrar... |
| CVE-2026-5872 | HIGH | 8.8 | 0.3% | Apr 8, 2026 | Use after free in Blink in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary code insi... |
| CVE-2026-5871 | HIGH | 8.8 | 0.3% | Apr 8, 2026 | Type Confusion in V8 in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary code inside ... |
| CVE-2026-5870 | HIGH | 8.8 | 0.3% | Apr 8, 2026 | Integer overflow in Skia in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary code ins... |
| CVE-2026-5868 | HIGH | 8.8 | 0.3% | Apr 8, 2026 | Heap buffer overflow in ANGLE in Google Chrome on Mac prior to 147.0.7727.55 allowed a remote attacker to execute arbitr... |
| CVE-2026-5866 | HIGH | 8.8 | 0.3% | Apr 8, 2026 | Use after free in Media in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary code insi... |
| CVE-2026-5865 | HIGH | 8.8 | 0.4% | Apr 8, 2026 | Type Confusion in V8 in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary code inside ... |
| CVE-2026-5863 | HIGH | 8.8 | 0.3% | Apr 8, 2026 | Inappropriate implementation in V8 in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrar... |
| CVE-2026-5862 | HIGH | 8.8 | 0.3% | Apr 8, 2026 | Inappropriate implementation in V8 in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrar... |
| CVE-2026-5861 | HIGH | 8.8 | 0.3% | Apr 8, 2026 | Use after free in V8 in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary code inside ... |
| CVE-2026-5860 | HIGH | 8.8 | 0.5% | Apr 8, 2026 | Use after free in WebRTC in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary code ins... |
| CVE-2026-5859 | HIGH | 8.8 | 0.4% | Apr 8, 2026 | Integer overflow in WebML in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to potentially exploit heap ... |
| CVE-2026-5858 | HIGH | 8.8 | 0.6% | Apr 8, 2026 | Heap buffer overflow in WebML in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary cod... |
| CVE-2026-40037 | HIGH | 7.1 | 0.2% | Apr 8, 2026 | OpenClaw before 2026.3.31 (patched in 2026.4.8) contains a request body replay vulnerability in fetchWithSsrFGuard that ... |
| CVE-2026-40036 | HIGH | 8.7 | 0.5% | Apr 8, 2026 | Unfurl before 2026.04 contains an unbounded zlib decompression vulnerability in parse_compressed.py that allows remote a... |
| CVE-2026-40032 | HIGH | 8.5 | 0.7% | Apr 8, 2026 | UAC (Unix-like Artifacts Collector) before 3.3.0-rc1 contains a command injection vulnerability in the placeholder subst... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now