2026 CVE Vulnerabilities
56,980 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-48329 | LOW | 2.7 | 0.6% | Jul 14, 2026 | ColdFusion is affected by an Insufficient Session Expiration vulnerability that could result in a Security feature bypas... |
| CVE-2026-48328 | HIGH | 7.7 | 0.8% | Jul 14, 2026 | ColdFusion is affected by an Improper Input Validation vulnerability that could result in a Security feature bypass. A l... |
| CVE-2026-48327 | CRITICAL | 9 | 0.4% | Jul 14, 2026 | ColdFusion is affected by an Incorrect Authorization vulnerability that could result in arbitrary code execution in the ... |
| CVE-2026-48325 | CRITICAL | 9.3 | 0.6% | Jul 14, 2026 | ColdFusion is affected by a Missing Authentication for Critical Function vulnerability that could result in arbitrary co... |
| CVE-2026-48324 | CRITICAL | 9.1 | 1.4% | Jul 14, 2026 | ColdFusion is affected by an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulner... |
| CVE-2026-48322 | CRITICAL | 9.9 | 1.2% | Jul 14, 2026 | ColdFusion is affected by an Improper Control of Generation of Code ('Code Injection') vulnerability that could result i... |
| CVE-2026-48321 | CRITICAL | 9.3 | 0.5% | Jul 14, 2026 | ColdFusion is affected by an Incorrect Authorization vulnerability that could result in privilege escalation. An attacke... |
| CVE-2026-48320 | HIGH | 8.5 | 5.3% | Jul 14, 2026 | ColdFusion is affected by a reflected Cross-Site Scripting (XSS) vulnerability. An attacker could exploit this vulnerabi... |
| CVE-2026-48319 | CRITICAL | 9.1 | 32.3% | Jul 14, 2026 | ColdFusion is affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerabilit... |
| CVE-2026-48318 | CRITICAL | 9.9 | 1.1% | Jul 14, 2026 | ColdFusion is affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerabilit... |
| CVE-2026-48311 | HIGH | 7.8 | 0.3% | Jul 14, 2026 | Bridge is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context ... |
| CVE-2026-48308 | MEDIUM | 5.9 | 0.2% | Jul 14, 2026 | Premiere Pro is affected by an Improper Input Validation vulnerability that could result in a Security feature bypass. A... |
| CVE-2026-48284 | CRITICAL | 9.6 | 4.9% | Jul 14, 2026 | ColdFusion is affected by an Improper Input Validation vulnerability that could result in arbitrary code execution in th... |
| CVE-2026-48274 | HIGH | 7.8 | 0.3% | Jul 14, 2026 | After Effects is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the c... |
| CVE-2026-48272 | HIGH | 7.8 | 0.2% | Jul 14, 2026 | Creative Cloud Desktop is affected by an Uncontrolled Search Path Element vulnerability that could result in arbitrary c... |
| CVE-2026-48270 | HIGH | 7.8 | 0.3% | Jul 14, 2026 | Premiere Pro is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the co... |
| CVE-2026-48269 | HIGH | 7.8 | 0.3% | Jul 14, 2026 | Premiere Pro is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in ... |
| CVE-2026-48125 | MEDIUM | 5.3 | 0.4% | Jul 14, 2026 | UAParser.js is a JavaScript library to detect browsers, operating systems, CPUs, and devices from user-agent data. From ... |
| CVE-2026-47979 | MEDIUM | 5.5 | 0.3% | Jul 14, 2026 | Media Encoder is affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An a... |
| CVE-2026-47976 | HIGH | 7.8 | 0.3% | Jul 14, 2026 | Media Encoder is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the c... |
| CVE-2026-47971 | HIGH | 7.8 | 0.3% | Jul 14, 2026 | Media Encoder is affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution i... |
| CVE-2026-47475 | MEDIUM | 6.2 | 0.1% | Jul 14, 2026 | NVIDIA TensorRT-LLM contains a vulnerability in the OpenAI-compatible inference API where an attacker could trigger a re... |
| CVE-2026-47473 | HIGH | 7.4 | 0.1% | Jul 14, 2026 | NVIDIA TensorRT-LLM contains a vulnerability where an attacker could cause a write-what-where condition. A successful ex... |
| CVE-2026-47472 | HIGH | 7.8 | 0.2% | Jul 14, 2026 | NVIDIA TensorRT-LLM contains a vulnerability in its inter-process communication layer where an attacker with local same-... |
| CVE-2026-47471 | HIGH | 7.5 | 0.2% | Jul 14, 2026 | NVIDIA TensorRT-LLM for any platform contains a vulnerability in tensor deserialization, where an attacker could cause a... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now