2026 CVE Vulnerabilities
64,755 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-97421 | HIGH | 7.8 | — | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: RDMA/umem: Be careful about boundary conditions in ... |
| CVE-2026-97417 | HIGH | 7.5 | — | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_conntrack: use get_unaligned_be32() i... |
| CVE-2026-97415 | HIGH | 7.8 | — | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: btrfs: tree-checker: validate names in ROOT_REF and... |
| CVE-2026-97409 | HIGH | 8.8 | — | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: nvme-fc: Do not cancel requests in io target before... |
| CVE-2026-97231 | HIGH | 7.3 | — | Sep 24, 2026 | A vulnerability was found in volotat Anagnorisis up to 0.3.1/0.4.0. Affected is an unknown function of the file app.py o... |
| CVE-2026-94613 | HIGH | 7.5 | — | Sep 24, 2026 | authentik is an open-source identity provider. Prior to 2026.2.7, 2026.5.7, and 2026.8.2, an unauthenticated attacker ca... |
| CVE-2026-94612 | HIGH | 7.4 | — | Sep 24, 2026 | authentik is an open-source identity provider. Prior to 2026.2.7, 2026.5.7, and 2026.8.2, an authentik SAML Source verif... |
| CVE-2026-94611 | HIGH | 8.1 | — | Sep 24, 2026 | authentik is an open-source identity provider. Prior to 2026.2.7, 2026.5.7, and 2026.8.2, authentik API serializers retu... |
| CVE-2026-94609 | HIGH | 8.8 | — | Sep 24, 2026 | authentik is an open-source identity provider. Prior to 2026.2.7, 2026.5.7, and 2026.8.2, an account with delegated perm... |
| CVE-2026-94606 | HIGH | 8.9 | — | Sep 24, 2026 | authentik is an open-source identity provider. Prior to 2026.2.7, 2026.5.7, and 2026.8.2, authentik email authenticator ... |
| CVE-2026-93830 | HIGH | 7.5 | — | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: net: stmmac: xgmac2: disable RBUE in default RX int... |
| CVE-2026-93827 | HIGH | 8.4 | — | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: virtio-fs: avoid double-free on failed queue setup ... |
| CVE-2026-93826 | HIGH | 7.5 | — | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: HID: hidpp: fix potential UAF in hidpp_connect_even... |
| CVE-2026-93817 | HIGH | 7.8 | — | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: perf: Fix addr_filter_ranges lifetime Lee Jia Jie ... |
| CVE-2026-93816 | HIGH | 7.1 | — | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: f2fs: validate inline dentry name lengths before co... |
| CVE-2026-93813 | HIGH | 7.8 | — | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: btrfs: tree-checker: validate INODE_REF's namelen ... |
| CVE-2026-93810 | HIGH | 7 | — | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: cachefiles: Fix double fput Fix a double fput() in... |
| CVE-2026-93806 | HIGH | 8.8 | — | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: wifi: cfg80211: validate assoc response length befo... |
| CVE-2026-93801 | HIGH | 7 | — | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: smb/client: zero-initialize stack-allocated cifs_op... |
| CVE-2026-93799 | HIGH | 8.8 | — | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: mvm: validate sta_id in BA window st... |
| CVE-2026-93798 | HIGH | 7.8 | — | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: btrfs: fix reloc root cleanup in merge_reloc_roots(... |
| CVE-2026-93796 | HIGH | 7 | — | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: pcie: null RX pointers after free W... |
| CVE-2026-93793 | HIGH | 8.8 | — | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: mvm: validate TX_CMD response layout... |
| CVE-2026-93790 | HIGH | 8.8 | — | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: mvm: fix out-of-bounds tid_data acce... |
| CVE-2026-93787 | HIGH | 8.1 | — | Sep 24, 2026 | In the Linux kernel, the following vulnerability has been resolved: smb: client: bound dirent name against end of SMB r... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now