CVE-2026-2441
Google · Chromium
Added Feb 17, 2026
Security Bulletins
Active threat advisories and known exploited vulnerabilities.
Pulled daily from the CISA Known Exploited Vulnerabilities catalog. Every entry has confirmed active exploitation in the wild. Last synced Jun 12, 2026.
Critical
Critical
CVE-2026-1731
BeyondTrust · Remote Support (RS) and Privileged Remote Access (PRA)
Added Feb 13, 2026
BeyondTrust Remote Support (RS) and Privileged Remote Access (PRA) OS Command Injection Vulnerability
Critical
CVE-2026-20700
Apple · Multiple Products
Added Feb 12, 2026
Apple Multiple Buffer Overflow Vulnerability
Critical
CVE-2024-43468
Microsoft · Configuration Manager
Added Feb 12, 2026
Microsoft Configuration Manager SQL Injection Vulnerability
Critical
CVE-2025-15556
Notepad++ · Notepad++
Added Feb 12, 2026
Notepad++ Download of Code Without Integrity Check Vulnerability
Critical
CVE-2025-40536
SolarWinds · Web Help Desk
Added Feb 12, 2026
SolarWinds Web Help Desk Security Control Bypass Vulnerability
Critical
CVE-2026-21513
Microsoft · Windows
Added Feb 10, 2026
Microsoft MSHTML Framework Protection Mechanism Failure Vulnerability
Critical
CVE-2026-21525
Microsoft · Windows
Added Feb 10, 2026
Microsoft Windows NULL Pointer Dereference Vulnerability
Critical
CVE-2026-21510
Microsoft · Windows
Added Feb 10, 2026
Microsoft Windows Shell Protection Mechanism Failure Vulnerability
Critical
CVE-2026-21533
Microsoft · Windows
Added Feb 10, 2026
Microsoft Windows Improper Privilege Management Vulnerability
Critical
CVE-2026-21519
Microsoft · Windows
Added Feb 10, 2026
Microsoft Windows Type Confusion Vulnerability
Critical
CVE-2026-21514
Microsoft · Office
Added Feb 10, 2026
Microsoft Office Word Reliance on Untrusted Inputs in a Security Decision Vulnerability
Critical
CVE-2025-11953
React Native Community · CLI
Added Feb 5, 2026
React Native Community CLI OS Command Injection Vulnerability
Critical
CVE-2026-24423
SmarterTools · SmarterMail
Added Feb 5, 2026
SmarterTools SmarterMail Missing Authentication for Critical Function Vulnerability
Critical
CVE-2021-39935
GitLab · Community and Enterprise Editions
Added Feb 3, 2026
GitLab Community and Enterprise Editions Server-Side Request Forgery (SSRF) Vulnerability
Critical
CVE-2025-64328
Sangoma · FreePBX
Added Feb 3, 2026
Sangoma FreePBX OS Command Injection Vulnerability
Critical
CVE-2019-19006
Sangoma · FreePBX
Added Feb 3, 2026
Sangoma FreePBX Improper Authentication Vulnerability
Critical
CVE-2025-40551
SolarWinds · Web Help Desk
Added Feb 3, 2026
SolarWinds Web Help Desk Deserialization of Untrusted Data Vulnerability
Critical
CVE-2026-1281
Ivanti · Endpoint Manager Mobile (EPMM)
Added Jan 29, 2026
Ivanti Endpoint Manager Mobile (EPMM) Code Injection Vulnerability
Critical
CVE-2026-24858
Fortinet · Multiple Products
Added Jan 27, 2026
Fortinet Multiple Products Authentication Bypass Using an Alternate Path or Channel Vulnerability
Critical
CVE-2018-14634
Linux · Kernel
Added Jan 26, 2026
Linux Kernel Integer Overflow Vulnerability
Critical
CVE-2026-21509
Microsoft · Office
Added Jan 26, 2026
Microsoft Office Security Feature Bypass Vulnerability
Critical
CVE-2026-24061
GNU · InetUtils
Added Jan 26, 2026
GNU InetUtils Argument Injection Vulnerability
Critical
CVE-2025-52691
SmarterTools · SmarterMail
Added Jan 26, 2026
SmarterTools SmarterMail Unrestricted Upload of File with Dangerous Type Vulnerability
Critical
CVE-2026-23760
SmarterTools · SmarterMail
Added Jan 26, 2026
SmarterTools SmarterMail Authentication Bypass Using an Alternate Path or Channel Vulnerability
Need help prioritizing these vulnerabilities?
ThreatGrid can assess your environment and map active CVEs to your monitored assets.