2026 CVE Vulnerabilities
67,057 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-57177 | MEDIUM | 4.3 | — | Sep 24, 2026 | Python Social Auth is a social authentication/registration mechanism. Prior to version 5.0.0, the LoginRadius backend di... |
| CVE-2026-57176 | MEDIUM | 6.8 | — | Sep 24, 2026 | Python Social Auth is a social authentication/registration mechanism. Prior to version 5.0.0, the Vend OAuth2 backend us... |
| CVE-2026-57175 | MEDIUM | 6.4 | — | Sep 24, 2026 | Python Social Auth is a social authentication/registration mechanism. Prior to version 5.0.0, the SAML backend accepted ... |
| CVE-2026-54461 | MEDIUM | 6.5 | 0.3% | Sep 24, 2026 | Habitica is a habit tracker application that treats goals like a role-playing game. From 4.172.1 until 5.48.2, a query p... |
| CVE-2026-97521 | — | — | 0.2% | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: gfs2: fix quota init duplicate scan gfs2_quota_ini... |
| CVE-2026-97520 | HIGH | 7.1 | 0.1% | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: gfs2: move quota_init qc iterator increment Move q... |
| CVE-2026-97519 | — | — | 0.1% | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: drm/xe: Fix null pointer dereference in devcoredump... |
| CVE-2026-97518 | — | — | 0.2% | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: wifi: cfg80211: reject duplicate wiphy cipher suite... |
| CVE-2026-97517 | — | — | 0.2% | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: wifi: nl80211: reject beacons with bad HE operation... |
| CVE-2026-97516 | — | — | 0.2% | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: wifi: rtw88: Add NULL check for chip->edcca_th in r... |
| CVE-2026-97515 | — | — | 0.1% | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: i3c: master: svc: Prevent IRQ storm from false SLVS... |
| CVE-2026-97514 | — | — | 0.2% | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: media: chips-media: wave5: Fix Reports from Kernel ... |
| CVE-2026-97513 | HIGH | 7.8 | 0.1% | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: media: chips-media: wave5: Release m2m_ctx after In... |
| CVE-2026-97512 | — | — | 0.2% | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: spi: spi-qcom-qspi: Fix incomplete error handling i... |
| CVE-2026-97511 | — | — | 0.1% | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: avoid out-of-bounds access in monit... |
| CVE-2026-97510 | — | — | 0.2% | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: thunderbolt: Release request if tb_cfg_request() fa... |
| CVE-2026-97509 | HIGH | 8.8 | 0.2% | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: thunderbolt: Keep XDomain reference during the life... |
| CVE-2026-97508 | HIGH | 7.5 | 0.2% | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: thunderbolt: Set tb->root_switch to NULL when domai... |
| CVE-2026-97507 | — | — | 0.2% | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: media: dm1105: fix missing error check for dma_allo... |
| CVE-2026-97506 | — | — | 0.2% | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: crypto: ixp4xx - fix buffer chain unwind on allocat... |
| CVE-2026-97505 | — | — | 0.2% | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: PCI/sysfs: Add CAP_SYS_ADMIN check to __resource_re... |
| CVE-2026-97504 | — | — | 0.2% | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: watchdog: lenovo_se10_wdt: Fix use-after-free and r... |
| CVE-2026-97503 | — | — | 0.1% | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: genirq/proc: Size interrupt directory names for 10-... |
| CVE-2026-97502 | — | — | 0.2% | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: mmc: davinci: avoid NULL deref of host->data in IRQ... |
| CVE-2026-97501 | — | — | 0.2% | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: pinctrl: mediatek: paris: bypass pinctrl GPIO layer... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now