Skip to main content

Year archive

CVEs published in 2026

Archive summary

43,259 CVEs published in 2026 — 4,574 Critical, 17,163 High, 17,428 Medium, 3,603 Low, 491 Unrated.

CVE-2025-15337

Published Feb 5, 2026

Tanium addressed an incorrect default permissions vulnerability in Patch.

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-15331

Published Feb 5, 2026

Tanium addressed an uncontrolled resource consumption vulnerability in Connect.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-15330

Published Feb 5, 2026

Tanium addressed an improper input validation vulnerability in Deploy.

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2025-15328

Published Feb 5, 2026

Tanium addressed an improper link resolution before file access vulnerability in Enforce.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-15327

Published Feb 5, 2026

Tanium addressed an improper access controls vulnerability in Deploy.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-15326

Published Feb 5, 2026

Tanium addressed an improper access controls vulnerability in Patch.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-15325

Published Feb 5, 2026

Tanium addressed an improper input validation vulnerability in Discover.

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-15323

Published Feb 5, 2026

Tanium addressed an improper certificate validation vulnerability in Tanium Appliance.

CVSS 3.7 · Low
Vendor/product tagsBeta · best-effort

CVE-2025-15312

Published Feb 5, 2026

Tanium addressed an improper output sanitization vulnerability in Tanium Appliance.

CVSS 6.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-15311

Published Feb 5, 2026

Tanium addressed an unauthorized code execution vulnerability in Tanium Appliance.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2026-1707

Published Feb 5, 2026

pgAdmin versions 9.11 are affected by a Restore restriction bypass via key disclosure vulnerability that occurs when running in server mode and performing restores from PLAIN-form…

CVSS 7.4 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-70073

Published Feb 5, 2026

An issue in ChestnutCMS v.1.5.8 and before allows a remote attacker to execute arbitrary code via the template creation function

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2025-68121

Published Feb 5, 2026

During session resumption in crypto/tls, if the underlying Config has its ClientCAs or RootCAs fields mutated between the initial handshake and the resumed handshake, the resumed…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2025-58190

Published Feb 5, 2026

The html.Parse function in golang.org/x/net/html has an infinite parsing loop when processing certain inputs, which can lead to denial of service (DoS) if an attacker provides spe…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-47911

Published Feb 5, 2026

The html.Parse function in golang.org/x/net/html has quadratic parsing complexity when processing certain inputs, which can lead to denial of service (DoS) if an attacker provides…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 38,076-38,100 of 43,259 CVEsPage 1524 of 1731