2026 CVE Vulnerabilities

64,840 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-43130MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Flush dev-IOTLB only when PCIe device i...
CVE-2026-43129MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: ima: verify the previous kernel's IMA buffer lies i...
CVE-2026-43128HIGH7.8In the Linux kernel, the following vulnerability has been resolved: RDMA/umem: Fix double dma_buf_unpin in failure path...
CVE-2026-43127MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: ntfs3: fix circular locking dependency in run_unpac...
CVE-2026-43126HIGH7.8In the Linux kernel, the following vulnerability has been resolved: ALSA: mixer: oss: Add card disconnect checkpoints ...
CVE-2026-43125CRITICAL9.8In the Linux kernel, the following vulnerability has been resolved: dlm: validate length in dlm_search_rsb_tree The le...
CVE-2026-43124MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: pstore: ram_core: fix incorrect success return when...
CVE-2026-43123MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: fbcon: check return value of con2fb_acquire_newinfo...
CVE-2026-43122——Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2026-43121MEDIUM4.7In the Linux kernel, the following vulnerability has been resolved: io_uring/zcrx: fix user_ref race between scrub and ...
CVE-2026-6420MEDIUM6.3A flaw was found in Keylime. An attacker with root access on an enrolled monitored machine, where the Keylime agent runs...
CVE-2026-6860MEDIUM5.3A TCP client can perform a TLS handshake and present the server name extension with a server name that is accepted by a ...
CVE-2026-43975MEDIUM6.5FolderUploadsFileManager in Apache Wicket does not validate or sanitize the uploadFieldId parameter or the clientFileNam...
CVE-2026-43646HIGH7.5Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apache Wicket. This issue affects Apache Wi...
CVE-2026-43120HIGH7.8In the Linux kernel, the following vulnerability has been resolved: RDMA/irdma: Fix double free related to rereg_user_m...
CVE-2026-43119MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_sync: annotate data-races around hde...
CVE-2026-43118MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: btrfs: fix zero size inode with non-zero size after...
CVE-2026-43117CRITICAL9.1In the Linux kernel, the following vulnerability has been resolved: btrfs: tracepoints: get correct superblock from den...
CVE-2026-43116HIGH7.8In the Linux kernel, the following vulnerability has been resolved: netfilter: ctnetlink: ensure safe access to master ...
CVE-2026-43115MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: srcu: Use irq_work to start GP in tiny SRCU Tiny S...
CVE-2026-43114CRITICAL9.4In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_set_pipapo_avx2: don't return non-ma...
CVE-2026-43113HIGH8.8In the Linux kernel, the following vulnerability has been resolved: wifi: wl1251: validate packet IDs before indexing t...
CVE-2026-43112HIGH8.8In the Linux kernel, the following vulnerability has been resolved: fs/smb/client: fix out-of-bounds read in cifs_sanit...
CVE-2026-43111HIGH7.8In the Linux kernel, the following vulnerability has been resolved: HID: roccat: fix use-after-free in roccat_report_ev...
CVE-2026-43110HIGH8.8In the Linux kernel, the following vulnerability has been resolved: wifi: brcmfmac: validate bsscfg indices in IF event...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now