2026 CVE Vulnerabilities

56,208 CVEs published in 2026.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2026-2004HIGH8.8Missing validation of type of input in PostgreSQL intarray extension selectivity estimator function allows an object cre...
CVE-2026-1320HIGH7.2The Secure Copy Content Protection and Content Locking plugin for WordPress is vulnerable to Stored Cross-Site Scripting...
CVE-2026-1316HIGH7.2The Customer Reviews for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'media[]....
CVE-2026-2327HIGH7.5Versions of the package markdown-it from 13.0.0 and before 14.1.1 are vulnerable to Regular Expression Denial of Service...
CVE-2026-2391HIGH7.5### Summary The `arrayLimit` option in qs does not enforce limits for comma-separated values when `comma: true` is enabl...
CVE-2026-25676HIGH7.8The installer of M-Track Duo HD version 1.0.0 contains an issue with the DLL search path, which may lead to insecurely l...
CVE-2026-26235HIGH8.7JUNG Smart Visu Server 1.1.1050 contains a denial of service vulnerability that allows unauthenticated attackers to remo...
CVE-2026-26234HIGH8.8JUNG Smart Visu Server 1.1.1050 contains a request header manipulation vulnerability that allows unauthenticated attacke...
CVE-2026-23857HIGH8.2Dell Update Package (DUP) Framework, versions 23.12.00 through 24.12.00, contains an Improper Handling of Insufficient P...
CVE-2026-23856HIGH7.8Dell iDRAC Service Module (iSM) for Windows, versions prior to 6.0.3.1, and Dell iDRAC Service Module (iSM) for Linux, v...
CVE-2026-0969HIGH8.8The serialize function used to compile MDX in next-mdx-remote is vulnerable to arbitrary code execution due to insuffici...
CVE-2026-20700HIGH7.8A memory corruption issue was addressed with improved state management. This issue is fixed in iOS 26.3 and iPadOS 26.3,...
CVE-2026-20667HIGH8.8A logic issue was addressed with improved checks. This issue is fixed in iOS 26.3 and iPadOS 26.3, macOS Sequoia 15.7.4,...
CVE-2026-20660HIGH7.5A path handling issue was addressed with improved logic. This issue is fixed in Safari 26.3, iOS 18.7.5 and iPadOS 18.7....
CVE-2026-20658HIGH7.8A package validation issue was addressed by blocking the vulnerable package. This issue is fixed in macOS Tahoe 26.3. An...
CVE-2026-20652HIGH7.5The issue was addressed with improved memory handling. This issue is fixed in Safari 26.3, iOS 18.7.5 and iPadOS 18.7.5,...
CVE-2026-20650HIGH7.5A denial-of-service issue was addressed with improved validation. This issue is fixed in iOS 26.3 and iPadOS 26.3, macOS...
CVE-2026-20649HIGH7.5A logging issue was addressed with improved data redaction. This issue is fixed in iOS 26.3 and iPadOS 26.3, macOS Tahoe...
CVE-2026-20641HIGH7.1A privacy issue was addressed with improved checks. This issue is fixed in iOS 18.7.5 and iPadOS 18.7.5, iOS 26.3 and iP...
CVE-2026-20628HIGH7.1A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 18.7.5 and iPadOS 18.7.5, iOS...
CVE-2026-20626HIGH7.8This issue was addressed with improved checks. This issue is fixed in iOS 26.3 and iPadOS 26.3, macOS Sequoia 15.7.4, ma...
CVE-2026-20620HIGH7.7An out-of-bounds read issue was addressed with improved input validation. This issue is fixed in macOS Sequoia 15.7.4, m...
CVE-2026-20617HIGH7A race condition was addressed with improved state handling. This issue is fixed in iOS 26.3 and iPadOS 26.3, macOS Sequ...
CVE-2026-20616HIGH8.8An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 18.7.5 and iPadOS 1...
CVE-2026-20615HIGH7.8A path handling issue was addressed with improved validation. This issue is fixed in iOS 26.3 and iPadOS 26.3, macOS Seq...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now