2026 CVE Vulnerabilities
60,172 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-52930 | MEDIUM | 5.5 | 0.1% | Jun 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: ipc/shm: serialize orphan cleanup with shm_nattch u... |
| CVE-2026-52929 | HIGH | 7.5 | 0.4% | Jun 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: sctp: stream: fully roll back denied add-stream sta... |
| CVE-2026-52928 | MEDIUM | 5.5 | 0.2% | Jun 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: af_unix: Reject SIOCATMARK on non-stream sockets S... |
| CVE-2026-52927 | HIGH | 7.8 | 0.1% | Jun 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: netfilter: ebtables: fix OOB read in compat_mtw_fro... |
| CVE-2026-52926 | MEDIUM | 5.5 | 0.2% | Jun 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: batman-adv: clear current gateway during teardown ... |
| CVE-2026-52925 | MEDIUM | 5.5 | 0.2% | Jun 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: vrf: Fix a potential NPD when removing a port from ... |
| CVE-2026-52924 | CRITICAL | 9.8 | 0.4% | Jun 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: sctp: purge outqueue on stale COOKIE-ECHO handling ... |
| CVE-2026-52923 | HIGH | 7.8 | 0.2% | Jun 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: ipc: limit next_id allocation to the valid ID range... |
| CVE-2026-52922 | HIGH | 7.5 | 0.4% | Jun 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: batman-adv: dat: handle forward allocation error b... |
| CVE-2026-52921 | MEDIUM | 5.5 | 0.2% | Jun 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: netfilter: ipset: stop hash:* range iteration at en... |
| CVE-2026-52920 | HIGH | 8.3 | 0.3% | Jun 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: netfilter: xt_policy: fix strict mode inbound polic... |
| CVE-2026-52919 | HIGH | 7.8 | 0.1% | Jun 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: batman-adv: fix tp_meter counter underflow during s... |
| CVE-2026-52918 | HIGH | 8.8 | 0.3% | Jun 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: serialize accept_q access bt_sock_poll(... |
| CVE-2026-52917 | HIGH | 7.1 | 0.1% | Jun 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: sctp: diag: reject stale associations in dump_one p... |
| CVE-2026-52916 | MEDIUM | 5.5 | 0.2% | Jun 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: batman-adv: frag: disallow unicast fragment in frag... |
| CVE-2026-52915 | HIGH | 7.1 | 0.1% | Jun 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: netfilter: ip6t_hbh: reject oversized option lists ... |
| CVE-2026-52914 | CRITICAL | 9.8 | 0.5% | Jun 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: batman-adv: fix fragment reassembly length accounti... |
| CVE-2026-52913 | MEDIUM | 5.5 | 0.2% | Jun 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: batman-adv: v: stop OGMv2 on disabled interface Wh... |
| CVE-2026-52912 | HIGH | 7.8 | 0.1% | Jun 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_queue: hold bridge skb->dev while que... |
| CVE-2026-9724 | MEDIUM | 4.3 | 0.1% | Jun 24, 2026 | The MotorDesk plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.1... |
| CVE-2026-9721 | MEDIUM | 4.3 | 0.1% | Jun 24, 2026 | The Book a Room Event Calendar plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, a... |
| CVE-2026-9710 | HIGH | 7.7 | 0.2% | Jun 24, 2026 | The Cornerstone WordPress plugin before 7.8.8 does not enforce capability checks on one of its CSS-preview request handl... |
| CVE-2026-9709 | HIGH | 7.7 | 0.2% | Jun 24, 2026 | The Cornerstone WordPress plugin before 7.8.9 does not enforce capability checks on one of its REST API routes, allowing... |
| CVE-2026-9643 | HIGH | 7.2 | 0.2% | Jun 24, 2026 | The WP Meta SEO plugin for WordPress is vulnerable to Unauthenticated Stored Cross-Site Scripting via the REQUEST_URI se... |
| CVE-2026-9620 | MEDIUM | 6.4 | 0.2% | Jun 24, 2026 | The WP Latest Posts plugin for WordPress is vulnerable to Stored Cross-Site Scripting via crafted image src attributes i... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now