2026 CVE Vulnerabilities
64,840 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-43130 | MEDIUM | 5.5 | 0.1% | May 6, 2026 | In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Flush dev-IOTLB only when PCIe device i... |
| CVE-2026-43129 | MEDIUM | 5.5 | 0.1% | May 6, 2026 | In the Linux kernel, the following vulnerability has been resolved: ima: verify the previous kernel's IMA buffer lies i... |
| CVE-2026-43128 | HIGH | 7.8 | 0.1% | May 6, 2026 | In the Linux kernel, the following vulnerability has been resolved: RDMA/umem: Fix double dma_buf_unpin in failure path... |
| CVE-2026-43127 | MEDIUM | 5.5 | 0.1% | May 6, 2026 | In the Linux kernel, the following vulnerability has been resolved: ntfs3: fix circular locking dependency in run_unpac... |
| CVE-2026-43126 | HIGH | 7.8 | 0.1% | May 6, 2026 | In the Linux kernel, the following vulnerability has been resolved: ALSA: mixer: oss: Add card disconnect checkpoints ... |
| CVE-2026-43125 | CRITICAL | 9.8 | 0.4% | May 6, 2026 | In the Linux kernel, the following vulnerability has been resolved: dlm: validate length in dlm_search_rsb_tree The le... |
| CVE-2026-43124 | MEDIUM | 5.5 | 0.1% | May 6, 2026 | In the Linux kernel, the following vulnerability has been resolved: pstore: ram_core: fix incorrect success return when... |
| CVE-2026-43123 | MEDIUM | 5.5 | 0.1% | May 6, 2026 | In the Linux kernel, the following vulnerability has been resolved: fbcon: check return value of con2fb_acquire_newinfo... |
| CVE-2026-43122 | — | — | — | May 6, 2026 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2026-43121 | MEDIUM | 4.7 | 0.1% | May 6, 2026 | In the Linux kernel, the following vulnerability has been resolved: io_uring/zcrx: fix user_ref race between scrub and ... |
| CVE-2026-6420 | MEDIUM | 6.3 | 0.1% | May 6, 2026 | A flaw was found in Keylime. An attacker with root access on an enrolled monitored machine, where the Keylime agent runs... |
| CVE-2026-6860 | MEDIUM | 5.3 | 0.2% | May 6, 2026 | A TCP client can perform a TLS handshake and present the server name extension with a server name that is accepted by a ... |
| CVE-2026-43975 | MEDIUM | 6.5 | 0.7% | May 6, 2026 | FolderUploadsFileManager in Apache Wicket does not validate or sanitize the uploadFieldId parameter or the clientFileNam... |
| CVE-2026-43646 | HIGH | 7.5 | 0.4% | May 6, 2026 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apache Wicket. This issue affects Apache Wi... |
| CVE-2026-43120 | HIGH | 7.8 | 0.1% | May 6, 2026 | In the Linux kernel, the following vulnerability has been resolved: RDMA/irdma: Fix double free related to rereg_user_m... |
| CVE-2026-43119 | MEDIUM | 5.5 | 0.1% | May 6, 2026 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_sync: annotate data-races around hde... |
| CVE-2026-43118 | MEDIUM | 5.5 | 0.1% | May 6, 2026 | In the Linux kernel, the following vulnerability has been resolved: btrfs: fix zero size inode with non-zero size after... |
| CVE-2026-43117 | CRITICAL | 9.1 | 0.4% | May 6, 2026 | In the Linux kernel, the following vulnerability has been resolved: btrfs: tracepoints: get correct superblock from den... |
| CVE-2026-43116 | HIGH | 7.8 | 0.1% | May 6, 2026 | In the Linux kernel, the following vulnerability has been resolved: netfilter: ctnetlink: ensure safe access to master ... |
| CVE-2026-43115 | MEDIUM | 5.5 | 0.1% | May 6, 2026 | In the Linux kernel, the following vulnerability has been resolved: srcu: Use irq_work to start GP in tiny SRCU Tiny S... |
| CVE-2026-43114 | CRITICAL | 9.4 | 0.4% | May 6, 2026 | In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_set_pipapo_avx2: don't return non-ma... |
| CVE-2026-43113 | HIGH | 8.8 | 0.2% | May 6, 2026 | In the Linux kernel, the following vulnerability has been resolved: wifi: wl1251: validate packet IDs before indexing t... |
| CVE-2026-43112 | HIGH | 8.8 | 0.4% | May 6, 2026 | In the Linux kernel, the following vulnerability has been resolved: fs/smb/client: fix out-of-bounds read in cifs_sanit... |
| CVE-2026-43111 | HIGH | 7.8 | 0.1% | May 6, 2026 | In the Linux kernel, the following vulnerability has been resolved: HID: roccat: fix use-after-free in roccat_report_ev... |
| CVE-2026-43110 | HIGH | 8.8 | 0.2% | May 6, 2026 | In the Linux kernel, the following vulnerability has been resolved: wifi: brcmfmac: validate bsscfg indices in IF event... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now