2026 CVE Vulnerabilities
53,398 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-4697 | HIGH | 7.5 | 0.7% | Mar 24, 2026 | Incorrect boundary conditions in the Audio/Video: Web Codecs component. This vulnerability was fixed in Firefox 149, Fir... |
| CVE-2026-4695 | HIGH | 7.5 | 0.7% | Mar 24, 2026 | Incorrect boundary conditions in the Audio/Video: Web Codecs component. This vulnerability was fixed in Firefox 149, Fir... |
| CVE-2026-4694 | HIGH | 7.5 | 0.8% | Mar 24, 2026 | Incorrect boundary conditions, integer overflow in the Graphics component. This vulnerability was fixed in Firefox 149, ... |
| CVE-2026-4693 | HIGH | 7.5 | 0.7% | Mar 24, 2026 | Incorrect boundary conditions in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 149, Firef... |
| CVE-2026-4690 | HIGH | 8.6 | 0.8% | Mar 24, 2026 | Sandbox escape due to incorrect boundary conditions, integer overflow in the XPCOM component. This vulnerability was fix... |
| CVE-2026-4687 | HIGH | 8.6 | 0.5% | Mar 24, 2026 | Sandbox escape due to incorrect boundary conditions in the Telemetry component. This vulnerability was fixed in Firefox ... |
| CVE-2026-4686 | HIGH | 7.5 | 0.7% | Mar 24, 2026 | Incorrect boundary conditions in the Graphics: Canvas2D component. This vulnerability was fixed in Firefox 149, Firefox ... |
| CVE-2026-4685 | HIGH | 7.5 | 0.7% | Mar 24, 2026 | Incorrect boundary conditions in the Graphics: Canvas2D component. This vulnerability was fixed in Firefox 149, Firefox ... |
| CVE-2026-4684 | HIGH | 7.5 | 0.4% | Mar 24, 2026 | Race condition, use-after-free in the Graphics: WebRender component. This vulnerability was fixed in Firefox 149, Firefo... |
| CVE-2026-3509 | HIGH | 7.5 | 0.4% | Mar 24, 2026 | An unauthenticated remote attacker may be able to control the format string of messages processed by the Audit Log of th... |
| CVE-2026-4756 | HIGH | 7.8 | 0.1% | Mar 24, 2026 | Out-of-bounds Write vulnerability in MolotovCherry Android-ImageMagick7.This issue affects Android-ImageMagick7: before ... |
| CVE-2026-33852 | HIGH | 7.5 | 0.3% | Mar 24, 2026 | Missing Release of Memory after Effective Lifetime vulnerability in MolotovCherry Android-ImageMagick7.This issue affect... |
| CVE-2026-33856 | HIGH | 7.5 | 0.3% | Mar 24, 2026 | Missing Release of Memory after Effective Lifetime vulnerability in MolotovCherry Android-ImageMagick7.This issue affect... |
| CVE-2026-33855 | HIGH | 7.5 | 0.2% | Mar 24, 2026 | Integer Overflow or Wraparound vulnerability in MolotovCherry Android-ImageMagick7.This issue affects Android-ImageMagic... |
| CVE-2026-33853 | HIGH | 7.5 | 0.2% | Mar 24, 2026 | NULL Pointer Dereference vulnerability in MolotovCherry Android-ImageMagick7.This issue affects Android-ImageMagick7: be... |
| CVE-2026-33851 | HIGH | 7.8 | 0.1% | Mar 24, 2026 | Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in joncampbell123 doslib.This issu... |
| CVE-2026-33850 | HIGH | 7.8 | 0.1% | Mar 24, 2026 | Out-of-bounds Write vulnerability in WujekFoliarz DualSenseY-v2.This issue affects DualSenseY-v2: before 54. |
| CVE-2026-33849 | HIGH | 8.8 | 0.2% | Mar 24, 2026 | Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in linkingvision rapidvms.This iss... |
| CVE-2026-33848 | HIGH | 8.8 | 0.2% | Mar 24, 2026 | Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in linkingvision rapidvms.This iss... |
| CVE-2026-33847 | HIGH | 7.8 | 0.1% | Mar 24, 2026 | Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in linkingvision rapidvms.This iss... |
| CVE-2026-4662 | HIGH | 7.5 | 0.3% | Mar 24, 2026 | The JetEngine plugin for WordPress is vulnerable to SQL Injection via the `listing_load_more` AJAX action in all version... |
| CVE-2026-4640 | HIGH | 8.7 | 0.4% | Mar 24, 2026 | Vitals ESP developed by Galaxy Software Services has a Missing Authentication vulnerability, allowing unauthenticated re... |
| CVE-2026-4639 | HIGH | 8.8 | 0.3% | Mar 24, 2026 | Vitals ESP developed by Galaxy Software Services has a Incorrect Authorization vulnerability, allowing authenticated rem... |
| CVE-2026-4632 | HIGH | 7.3 | 0.3% | Mar 24, 2026 | A weakness has been identified in itsourcecode Online Enrollment System 1.0. This vulnerability affects unknown code of ... |
| CVE-2026-4627 | HIGH | 8.6 | 2.0% | Mar 24, 2026 | A vulnerability was found in D-Link DIR-825 and DIR-825R 1.0.5/4.5.1. Affected is the function handler_update_system_tim... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now