2026 CVE Vulnerabilities

64,909 CVEs published in 2026.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2026-90444HIGH8.7A file-transfer interface that requires valid credentials accepts attacker-controlled filenames without restricting shel...
CVE-2026-54241HIGH7.4libde265 is an open source implementation of the h.265 video codec. Versions prior to 1.1.1 use signed 32-bit arithmetic...
CVE-2026-54240HIGH7.4libde265 is an open source implementation of the h.265 video codec. Versions prior to 1.1.1 use signed 32-bit arithmetic...
CVE-2026-50013HIGH7.5Hoverfly is an open source API simulation tool. Prior to version 1.12.8, when Hoverfly is running in Diff mode, the `Add...
CVE-2026-49846HIGH7.5libks provides foundational support for signalwire C products. Prior to version 2.0.11, `clean_uri()` in libks's HTTP re...
CVE-2026-44715HIGH8.7OpenMRS is an open source electronic medical record system platform. Prior to versions 1.23.0 and 2.10.0, an authenticat...
CVE-2026-81907HIGH7.1Concrete CMS 9.5.2 and below is vulnerable to Cross-Site Request Forgery (CSRF) in the Express "Clear Entries" function ...
CVE-2026-54174HIGH8.3melange allows users to build apk packages using declarative pipelines. Apko prior to version 1.2.9, corresponding to me...
CVE-2026-54166HIGH7.1Shelf is a platform for tracking physical assets. Prior to version 1.20.3, authenticated users with the `asset:import` p...
CVE-2026-49464HIGH8.1NL Portal Backend Libraries provide backend components for Dutch government portals that interact with residents, custom...
CVE-2026-47773HIGH7.2ArduinoBLE enables Bluetooth Low Energy connectivity on certain Arduino models. Versions prior to 2.0.2 contain a missin...
CVE-2026-89771HIGH7.8In the Linux kernel, the following vulnerability has been resolved: ring-buffer: Fix subbuf resize race with ring buffe...
CVE-2026-89769HIGH7.4In the Linux kernel, the following vulnerability has been resolved: clocksource/drivers/nxp-pit: Fix IRQ leak on cpuhp_...
CVE-2026-89767HIGH7.8In the Linux kernel, the following vulnerability has been resolved: ovl: fix double end_creating() on the casefold-mism...
CVE-2026-89764HIGH7.8In the Linux kernel, the following vulnerability has been resolved: rust: devres: fix race between concurrent revokers ...
CVE-2026-89763HIGH7.8In the Linux kernel, the following vulnerability has been resolved: KEYS: trusted: Fix TPM teardown ordering trusted_t...
CVE-2026-89762HIGH7.8In the Linux kernel, the following vulnerability has been resolved: apparmor: fix cred UAF caused by begin_current_labe...
CVE-2026-89761HIGH7.8In the Linux kernel, the following vulnerability has been resolved: apparmor: fix out-of-bounds write when null termina...
CVE-2026-89760HIGH7.8In the Linux kernel, the following vulnerability has been resolved: mm, swap: don't free a hibernation slot that is in ...
CVE-2026-89758HIGH7.8In the Linux kernel, the following vulnerability has been resolved: mm/mempolicy: skip non-present PMDs when queueing f...
CVE-2026-89755HIGH7.8In the Linux kernel, the following vulnerability has been resolved: mm/migrate_device: clear stale mapping after freein...
CVE-2026-89754HIGH7.8In the Linux kernel, the following vulnerability has been resolved: mm/pagewalk: fix stale walk->action escaping walk_p...
CVE-2026-89750HIGH7.8In the Linux kernel, the following vulnerability has been resolved: tracing/user_events: Clear copied tracing state bef...
CVE-2026-89748HIGH7.8In the Linux kernel, the following vulnerability has been resolved: tracing: Fix retry exhaustion in simple ring buffer...
CVE-2026-89747HIGH7.8In the Linux kernel, the following vulnerability has been resolved: tracing: Fix use-after-free in trace_pipe read on s...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now