2026 CVE Vulnerabilities
43,090 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-68449 | — | — | — | Aug 12, 2026 | In the Linux kernel, the following vulnerability has been resolved: ata: sata_dwc_460ex: fix infinite loop in NCQ tag c... |
| CVE-2026-68448 | — | — | — | Aug 12, 2026 | In the Linux kernel, the following vulnerability has been resolved: ovl: check access to copy_file_range source with sr... |
| CVE-2026-68447 | — | — | — | Aug 12, 2026 | In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: clamp v9 CRIU control stack checkpoint ... |
| CVE-2026-68446 | — | — | — | Aug 12, 2026 | In the Linux kernel, the following vulnerability has been resolved: drm/vmwgfx: Validate vmw_surface_metadata::array_si... |
| CVE-2026-68445 | — | — | — | Aug 12, 2026 | In the Linux kernel, the following vulnerability has been resolved: drm/vc4: Prevent shader BO mappings from becoming w... |
| CVE-2026-68444 | — | — | — | Aug 12, 2026 | In the Linux kernel, the following vulnerability has been resolved: firmware: arm_ffa: Fix NULL dereference in ffa_part... |
| CVE-2026-68443 | — | — | — | Aug 12, 2026 | In the Linux kernel, the following vulnerability has been resolved: hwmon: (gigabyte_waterforce) Stop device IO before ... |
| CVE-2026-68442 | — | — | — | Aug 12, 2026 | In the Linux kernel, the following vulnerability has been resolved: btrfs: don't propagate EXTENT_FLAG_LOGGING to split... |
| CVE-2026-68441 | — | — | — | Aug 12, 2026 | In the Linux kernel, the following vulnerability has been resolved: net/sched: Handle TC_ACT_REDIRECT from qdisc filter... |
| CVE-2026-68440 | — | — | — | Aug 12, 2026 | In the Linux kernel, the following vulnerability has been resolved: net: txgbe: fix heap overflow when reading module E... |
| CVE-2026-68439 | — | — | — | Aug 12, 2026 | In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7925: fix possible NULL-pointer deref... |
| CVE-2026-68438 | — | — | — | Aug 12, 2026 | In the Linux kernel, the following vulnerability has been resolved: smp: Make CSD lock acquisition atomic for debug mod... |
| CVE-2026-68437 | — | — | — | Aug 12, 2026 | In the Linux kernel, the following vulnerability has been resolved: drm/imagination: Fit paired fragment job in the cor... |
| CVE-2026-68436 | — | — | — | Aug 12, 2026 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: use kvzalloc to allocate struct dc... |
| CVE-2026-68435 | — | — | — | Aug 12, 2026 | In the Linux kernel, the following vulnerability has been resolved: LoongArch: Fix address space mismatch in kexec comm... |
| CVE-2026-68434 | — | — | — | Aug 12, 2026 | In the Linux kernel, the following vulnerability has been resolved: serial: 8250_mid: Fix NULL function pointer derefer... |
| CVE-2026-68433 | — | — | — | Aug 12, 2026 | In the Linux kernel, the following vulnerability has been resolved: libceph: bound get_version reply decode to front le... |
| CVE-2026-68432 | — | — | — | Aug 12, 2026 | In the Linux kernel, the following vulnerability has been resolved: vxlan: require CAP_NET_ADMIN in the device netns fo... |
| CVE-2026-68431 | — | — | — | Aug 12, 2026 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: validate minimum PDU size for transform requ... |
| CVE-2026-68430 | — | — | — | Aug 12, 2026 | In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu/gfx8: drop unecessary BUG_ON() There's ... |
| CVE-2026-68429 | — | — | — | Aug 12, 2026 | In the Linux kernel, the following vulnerability has been resolved: drm/dp_mst: Handle torn-down topology gracefully in... |
| CVE-2026-73250 | MEDIUM | 5.4 | — | Aug 11, 2026 | Notepad++ is a free and open-source source code editor. Prior to 8.9.7, the Notepad++ Windows 11 x64 and ARM64 installer... |
| CVE-2026-73249 | HIGH | 7.5 | — | Aug 11, 2026 | calibre is an e-book manager. Prior to 9.12.0, the calibre Content Server endpoint POST /book-update-annotations/{librar... |
| CVE-2026-73248 | HIGH | 8.5 | — | Aug 11, 2026 | calibre is an e-book manager. Prior to 9.12.0, calibre processes attacker-controlled composite_template metadata from a ... |
| CVE-2026-73247 | HIGH | 8.6 | — | Aug 11, 2026 | Kestra is an open-source, event-driven orchestration platform. Prior to 2.0.0, Kestra's core/src/main/java/io/kestra/cor... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now