2026 CVE Vulnerabilities
53,393 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-28821 | HIGH | 8.4 | 0.2% | Mar 25, 2026 | A validation issue existed in the entitlement verification. This issue was addressed with improved validation of the pro... |
| CVE-2026-28817 | HIGH | 8.1 | 0.2% | Mar 25, 2026 | A race condition was addressed with improved state handling. This issue is fixed in macOS Sequoia 15.7.5, macOS Sonoma 1... |
| CVE-2026-20701 | HIGH | 7.5 | 0.4% | Mar 25, 2026 | An access issue was addressed with additional sandbox restrictions. This issue is fixed in macOS Sequoia 15.7.5, macOS S... |
| CVE-2026-20698 | HIGH | 7.8 | 0.3% | Mar 25, 2026 | The issue was addressed with improved memory handling. This issue is fixed in iOS 26.4 and iPadOS 26.4, macOS Tahoe 26.4... |
| CVE-2026-20687 | HIGH | 7.1 | 0.3% | Mar 25, 2026 | A use after free issue was addressed with improved memory management. This issue is fixed in iOS 18.7.7 and iPadOS 18.7.... |
| CVE-2026-20639 | HIGH | 7.5 | 0.6% | Mar 25, 2026 | An integer overflow was addressed with improved input validation. This issue is fixed in macOS Sequoia 15.7.5, macOS Son... |
| CVE-2026-20631 | HIGH | 8.8 | 0.3% | Mar 25, 2026 | A logic issue was addressed with improved checks. This issue is fixed in macOS Tahoe 26.4. A user may be able to elevate... |
| CVE-2026-20622 | HIGH | 7.5 | 0.3% | Mar 25, 2026 | A privacy issue was addressed with improved handling of temporary files. This issue is fixed in macOS Sequoia 15.7.4, ma... |
| CVE-2026-4781 | HIGH | 8.8 | 0.3% | Mar 25, 2026 | A flaw has been found in SourceCodester Sales and Inventory System 1.0. The affected element is an unknown function of t... |
| CVE-2026-4780 | HIGH | 8.8 | 0.3% | Mar 25, 2026 | A vulnerability was detected in SourceCodester Sales and Inventory System 1.0. Impacted is an unknown function of the fi... |
| CVE-2026-4779 | HIGH | 8.8 | 0.4% | Mar 24, 2026 | A security vulnerability has been detected in SourceCodester Sales and Inventory System 1.0. This issue affects some unk... |
| CVE-2026-4371 | HIGH | 7.4 | 0.4% | Mar 24, 2026 | A malicious mail server could send malformed strings with negative lengths, causing the parser to read memory outside th... |
| CVE-2026-3912 | HIGH | 8.7 | 0.3% | Mar 24, 2026 | Injection vulnerabilities due to validation/sanitisation of user-supplied input in ActiveMatrix BusinessWorks and Enterp... |
| CVE-2026-24158 | HIGH | 7.5 | 0.4% | Mar 24, 2026 | NVIDIA Triton Inference Server contains a vulnerability in the HTTP endpoint where an attacker may cause a denial of ser... |
| CVE-2026-24152 | HIGH | 7.8 | 0.2% | Mar 24, 2026 | NVIDIA Megatron-LM contains a vulnerability in checkpoint loading where an Attacker may cause an RCE by convincing a use... |
| CVE-2026-24151 | HIGH | 7.8 | 0.2% | Mar 24, 2026 | NVIDIA Megatron-LM contains a vulnerability in inferencing where an Attacker may cause an RCE by convincing a user to lo... |
| CVE-2026-24150 | HIGH | 7.8 | 0.2% | Mar 24, 2026 | NVIDIA Megatron-LM contains a vulnerability in checkpoint loading where an Attacker may cause an RCE by convincing a use... |
| CVE-2026-24141 | HIGH | 7.8 | 0.2% | Mar 24, 2026 | NVIDIA Model Optimizer for Windows and Linux contains a vulnerability in the ONNX quantization feature, where a user cou... |
| CVE-2026-33509 | HIGH | 8.8 | 0.5% | Mar 24, 2026 | pyLoad is a free and open-source download manager written in Python. From version 0.4.0 to before version 0.5.0b3.dev97,... |
| CVE-2026-33419 | HIGH | 7.5 | 0.4% | Mar 24, 2026 | MinIO is a high-performance object storage system. Prior to RELEASE.2026-03-17T21-25-16Z, MinIO AIStor's STS (Security T... |
| CVE-2026-33412 | HIGH | 7.3 | 0.8% | Mar 24, 2026 | Vim is an open source, command line text editor. Prior to version 9.2.0202, a command injection vulnerability exists in ... |
| CVE-2026-33344 | HIGH | 8.1 | 0.5% | Mar 24, 2026 | Dagu is a workflow engine with a built-in Web user interface. From version 2.0.0 to before version 2.3.1, the fix for CV... |
| CVE-2026-33332 | HIGH | 7.5 | 0.6% | Mar 24, 2026 | NiceGUI is a Python-based UI framework. Prior to version 3.9.0, NiceGUI's app.add_media_file() and app.add_media_files()... |
| CVE-2026-33330 | HIGH | 7.1 | 0.4% | Mar 24, 2026 | FileRise is a self-hosted web file manager / WebDAV server. Prior to version 3.10.0, a broken access control issue in Fi... |
| CVE-2026-33329 | HIGH | 8.1 | 0.4% | Mar 24, 2026 | FileRise is a self-hosted web file manager / WebDAV server. From version 1.0.1 to before version 3.10.0, the resumableId... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now