2026 CVE Vulnerabilities
66,513 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-93224 | HIGH | 8.1 | — | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: svcrdma: Fix unmatched rn_unregister on failed acce... |
| CVE-2026-93223 | — | — | — | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: staging: media: tegra-video: fix of_node_put() on V... |
| CVE-2026-93222 | — | — | — | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: signal: avoid shared siginfo namespace rewrites se... |
| CVE-2026-93221 | HIGH | 8.1 | — | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: nfsd: convert nfsd_net boolean flags to unsigned lo... |
| CVE-2026-93220 | — | — | — | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: sched_ext: Keep kick_sync waiting on the rq's own C... |
| CVE-2026-93219 | — | — | — | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: clocksource/drivers/timer-sun4i: Advertise a real m... |
| CVE-2026-93218 | — | — | — | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: mm/huge_memory: skip device-private PMDs in madvise... |
| CVE-2026-93217 | — | — | — | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: mm/madvise: skip device-private PMDs in cold and pa... |
| CVE-2026-93216 | — | — | — | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: mm/page_owner: use memcg_data snapshot to avoid TOC... |
| CVE-2026-93215 | — | — | — | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: cdx: Fix double free when sysfs file creation fails... |
| CVE-2026-93214 | — | — | — | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_tcm: fix deadlock in usbg_make_tpg()... |
| CVE-2026-93213 | — | — | — | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: of: fix out-of-bounds read in of_alias_scan() stem ... |
| CVE-2026-93212 | — | — | — | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: nfsd: guard nfsd_serv deref in nfsd_file_net_dispos... |
| CVE-2026-93211 | — | — | — | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: nfsd: initialize DRC hash table before registering ... |
| CVE-2026-93210 | — | — | — | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: smb: client: harden DFS cache against invalid targe... |
| CVE-2026-93209 | — | — | — | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_core: use skb_get() instead of skb_c... |
| CVE-2026-93208 | — | — | — | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: kasan: fix cache shrink race with CPU hotplug kasa... |
| CVE-2026-93207 | CRITICAL | 9.8 | — | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: SUNRPC: Zero rpc_gss_wire_cred at svcauth_gss_decod... |
| CVE-2026-93206 | — | — | — | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: PCI/proc: Use file_ns_capable() when checking confi... |
| CVE-2026-93205 | — | — | — | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: iommu/arm-smmu-v3: Manage teardown with devm arm_s... |
| CVE-2026-92680 | MEDIUM | 5.5 | 0.2% | Sep 24, 2026 | Araxis Merge for Windows version 2011.4074 through 2026.0 stores user-configured credentials for remote servers in the W... |
| CVE-2026-88371 | — | — | — | Sep 24, 2026 | ZBar commit 2ea2ca58 contains an undefined-behavior vulnerability in the Code 128 decode6() function. When processing sp... |
| CVE-2026-88370 | MEDIUM | 5.3 | 0.1% | Sep 24, 2026 | libconfini 1.16.4 contains a heap out-of-bounds write condition involving the bundled load_ini_buffer.h utility and stri... |
| CVE-2026-88369 | HIGH | 7.3 | 0.2% | Sep 24, 2026 | zserge jsmn commit 25647e6 is vulnerable to Buffer Overflow in example/jsondump.c dump(). |
| CVE-2026-88368 | HIGH | 7.5 | — | Sep 24, 2026 | NanoSVG commit 239e102ec contains an incorrect numeric conversion vulnerability in the rasterizer's nsvg__addActive() fu... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now