2026 CVE Vulnerabilities

56,979 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-59733HIGH8.8Rclone is a command-line program to sync files and directories to and from different cloud storage providers. Prior to 1...
CVE-2026-59732MEDIUM5Rclone is a command-line program to sync files and directories to and from different cloud storage providers. Prior to 1...
CVE-2026-54684HIGH7jadx is a Dex to Java decompiler. From 1.5.2 to 1.5.5, a malicious .xapk file can cause jadx to write attacker-controlle...
CVE-2026-54572HIGH8.8Rclone is a command-line program to sync files and directories to and from different cloud storage providers. Prior to 1...
CVE-2026-50130HIGH8.8Pi-hole is a DNS sinkhole that protects devices from unwanted content without installing any client-side software. From ...
CVE-2026-49981HIGH8.2Twig is a template language for PHP. Prior to 3.27.0, the per-template filter, tag, and function allow-list verdict is c...
CVE-2026-48808HIGH7.5Twig is a template language for PHP. Prior to 3.27.0, the column filter passes the active sandbox state as a boolean but...
CVE-2026-48807CRITICAL9.1Twig is a template language for PHP. Prior to 3.27.0, the sandbox __toString() checks do not fully cover Traversable val...
CVE-2026-48806CRITICAL9.1Twig is a template language for PHP. Prior to 3.27.0, ArrayExpression does not guard dynamic mapping keys that are coerc...
CVE-2026-48805CRITICAL9.1Twig is a template language for PHP. Prior to 3.27.0, deprecated internal wrappers in src/Resources/core.php do not forw...
CVE-2026-48357MEDIUM6.2CAI Content Credentials is affected by an Uncontrolled Resource Consumption vulnerability that could lead to application...
CVE-2026-48354MEDIUM6.2CAI Content Credentials is affected by an Integer Overflow or Wraparound vulnerability that could result in an applicati...
CVE-2026-48353MEDIUM5.5CAI Content Credentials is affected by an Improper Input Validation vulnerability that could lead to arbitrary file syst...
CVE-2026-48352HIGH7.5CAI Content Credentials is affected by an Improper Input Validation vulnerability that could result in an application de...
CVE-2026-48351HIGH7.5CAI Content Credentials is affected by an Improper Input Validation vulnerability that could result in an application de...
CVE-2026-48337HIGH7.8Illustrator is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the con...
CVE-2026-48336HIGH7.8Illustrator is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the con...
CVE-2026-48335HIGH7.8Illustrator is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the con...
CVE-2026-48334CRITICAL9.3Illustrator is affected by an Improper Input Validation vulnerability that could result in arbitrary code execution in t...
CVE-2026-48312MEDIUM6.8CAI Content Credentials is affected by an Improper Input Validation vulnerability that could result in a Security featur...
CVE-2026-48302MEDIUM6.2CAI Content Credentials is affected by an Improper Input Validation vulnerability that could result in an application de...
CVE-2026-48298MEDIUM6.2CAI Content Credentials is affected by an Integer Underflow (Wrap or Wraparound) vulnerability that could result in an a...
CVE-2026-48296MEDIUM6.2CAI Content Credentials is affected by an Integer Underflow (Wrap or Wraparound) vulnerability that could result in an a...
CVE-2026-48295HIGH7.5CAI Content Credentials is affected by an Insufficiently Protected Credentials vulnerability that could result in disclo...
CVE-2026-48290HIGH8.2CAI Content Credentials is affected by a Server-Side Request Forgery (SSRF) vulnerability that could result in arbitrary...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now