2026 CVE Vulnerabilities

64,788 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-43299MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: btrfs: do not ASSERT() when the fs flips RO inside ...
CVE-2026-43298MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Skip vcn poison irq release on VF VF d...
CVE-2026-43297MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: media: rockchip: rga: Fix possible ERR_PTR derefere...
CVE-2026-43296HIGH7.5In the Linux kernel, the following vulnerability has been resolved: octeontx2-af: Workaround SQM/PSE stalls by disablin...
CVE-2026-43295MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: rapidio: replace rio_free_net() with kfree() in rio...
CVE-2026-43294MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm: renesas: rz-du: mipi_dsi: fix kernel panic whe...
CVE-2026-43293MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: media: chips-media: wave5: Fix kthread worker destr...
CVE-2026-43292MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: mm/vmalloc: prevent RCU stalls in kasan_release_vma...
CVE-2026-43291HIGH8.3In the Linux kernel, the following vulnerability has been resolved: net: nfc: nci: Fix parameter validation for packet ...
CVE-2026-43290HIGH7.8In the Linux kernel, the following vulnerability has been resolved: media: uvcvideo: Return queued buffers on start_str...
CVE-2026-43289MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: kexec: derive purgatory entry from symbol kexec_lo...
CVE-2026-43288MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: ext4: move ext4_percpu_param_init() before ext4_mb_...
CVE-2026-43287MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm: Account property blob allocations to memcg DR...
CVE-2026-43286MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: mm/hugetlb: restore failed global reservations to s...
CVE-2026-43285MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: mm/slab: do not access current->mems_allowed_seq if...
CVE-2026-41512CRITICAL9.9ai-scanner is an AI model safety scanner built on NVIDIA garak. From version 1.0.0 to before version 1.4.1, there is a r...
CVE-2026-41509CRITICAL9.8CROSS implementation contains reference and optimized implementations of the CROSS post-quantum signature algorithm. Pri...
CVE-2026-41507CRITICAL9.8math-codegen generates code from mathematical expressions. Prior to version 0.4.3, string literal content passed to cg.p...
CVE-2026-41506HIGH7.4go-git is an extensible git implementation library written in pure Go. Prior to versions 5.18.0 and 6.0.0-alpha.2, go-gi...
CVE-2026-41497CRITICAL9.8PraisonAI is a multi-agent teams system. Prior to version 4.6.9, the fix for PraisonAI's MCP command handling does not a...
CVE-2026-41496HIGH8.1PraisonAI is a multi-agent teams system. Prior to praisonai version 4.6.9 and praisonaiagents version 1.6.9, the fix for...
CVE-2026-41493HIGH7.5YARD is a Ruby Documentation tool. Prior to version 0.9.42, a path traversal vulnerability was discovered in YARD when u...
CVE-2026-41491HIGH8.1Dapr is a portable, event-driven, runtime for building distributed applications across cloud and edge. From versions 1.3...
CVE-2026-41423MEDIUM5.3Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other...
CVE-2026-41161MEDIUM5.3Sync-in Server is a secure, open-source platform for file storage, sharing, collaboration, and syncing. Prior to version...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now