2026 CVE Vulnerabilities

53,393 CVEs published in 2026.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2026-28821HIGH8.4A validation issue existed in the entitlement verification. This issue was addressed with improved validation of the pro...
CVE-2026-28817HIGH8.1A race condition was addressed with improved state handling. This issue is fixed in macOS Sequoia 15.7.5, macOS Sonoma 1...
CVE-2026-20701HIGH7.5An access issue was addressed with additional sandbox restrictions. This issue is fixed in macOS Sequoia 15.7.5, macOS S...
CVE-2026-20698HIGH7.8The issue was addressed with improved memory handling. This issue is fixed in iOS 26.4 and iPadOS 26.4, macOS Tahoe 26.4...
CVE-2026-20687HIGH7.1A use after free issue was addressed with improved memory management. This issue is fixed in iOS 18.7.7 and iPadOS 18.7....
CVE-2026-20639HIGH7.5An integer overflow was addressed with improved input validation. This issue is fixed in macOS Sequoia 15.7.5, macOS Son...
CVE-2026-20631HIGH8.8A logic issue was addressed with improved checks. This issue is fixed in macOS Tahoe 26.4. A user may be able to elevate...
CVE-2026-20622HIGH7.5A privacy issue was addressed with improved handling of temporary files. This issue is fixed in macOS Sequoia 15.7.4, ma...
CVE-2026-4781HIGH8.8A flaw has been found in SourceCodester Sales and Inventory System 1.0. The affected element is an unknown function of t...
CVE-2026-4780HIGH8.8A vulnerability was detected in SourceCodester Sales and Inventory System 1.0. Impacted is an unknown function of the fi...
CVE-2026-4779HIGH8.8A security vulnerability has been detected in SourceCodester Sales and Inventory System 1.0. This issue affects some unk...
CVE-2026-4371HIGH7.4A malicious mail server could send malformed strings with negative lengths, causing the parser to read memory outside th...
CVE-2026-3912HIGH8.7Injection vulnerabilities due to validation/sanitisation of user-supplied input in ActiveMatrix BusinessWorks and Enterp...
CVE-2026-24158HIGH7.5NVIDIA Triton Inference Server contains a vulnerability in the HTTP endpoint where an attacker may cause a denial of ser...
CVE-2026-24152HIGH7.8NVIDIA Megatron-LM contains a vulnerability in checkpoint loading where an Attacker may cause an RCE by convincing a use...
CVE-2026-24151HIGH7.8NVIDIA Megatron-LM contains a vulnerability in inferencing where an Attacker may cause an RCE by convincing a user to lo...
CVE-2026-24150HIGH7.8NVIDIA Megatron-LM contains a vulnerability in checkpoint loading where an Attacker may cause an RCE by convincing a use...
CVE-2026-24141HIGH7.8NVIDIA Model Optimizer for Windows and Linux contains a vulnerability in the ONNX quantization feature, where a user cou...
CVE-2026-33509HIGH8.8pyLoad is a free and open-source download manager written in Python. From version 0.4.0 to before version 0.5.0b3.dev97,...
CVE-2026-33419HIGH7.5MinIO is a high-performance object storage system. Prior to RELEASE.2026-03-17T21-25-16Z, MinIO AIStor's STS (Security T...
CVE-2026-33412HIGH7.3Vim is an open source, command line text editor. Prior to version 9.2.0202, a command injection vulnerability exists in ...
CVE-2026-33344HIGH8.1Dagu is a workflow engine with a built-in Web user interface. From version 2.0.0 to before version 2.3.1, the fix for CV...
CVE-2026-33332HIGH7.5NiceGUI is a Python-based UI framework. Prior to version 3.9.0, NiceGUI's app.add_media_file() and app.add_media_files()...
CVE-2026-33330HIGH7.1FileRise is a self-hosted web file manager / WebDAV server. Prior to version 3.10.0, a broken access control issue in Fi...
CVE-2026-33329HIGH8.1FileRise is a self-hosted web file manager / WebDAV server. From version 1.0.1 to before version 3.10.0, the resumableId...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now