2026 CVE Vulnerabilities
64,848 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-7865 | HIGH | 7.4 | 0.8% | May 5, 2026 | A hidden console command is vulnerable to command injection flaw when control characters are passed to its second argume... |
| CVE-2026-7846 | LOW | 2.6 | 0.2% | May 5, 2026 | A vulnerability has been found in chatchat-space Langchain-Chatchat up to 0.3.1.3. Impacted is the function files of the... |
| CVE-2026-7845 | LOW | 2.6 | 0.1% | May 5, 2026 | A flaw has been found in chatchat-space Langchain-Chatchat up to 0.3.1.3. This issue affects the function PIL.Image.toby... |
| CVE-2026-7844 | MEDIUM | 6.3 | 0.3% | May 5, 2026 | A vulnerability was detected in chatchat-space Langchain-Chatchat up to 0.3.1.3. This vulnerability affects the function... |
| CVE-2026-7412 | HIGH | 8.6 | 0.5% | May 5, 2026 | In Eclipse BaSyx Java Server SDK versions prior to 2.0.0-milestone-10, the Operation Delegation feature fails to validat... |
| CVE-2026-7411 | CRITICAL | 10 | 3.7% | May 5, 2026 | In Eclipse BaSyx Java Server SDK versions prior to 2.0.0-milestone-10, inadequate path normalization in the Submodel HTT... |
| CVE-2026-6907 | MEDIUM | 5.3 | 0.4% | May 5, 2026 | An issue was discovered in 6.0 before 6.0.5 and 5.2 before 5.2.14. `django.middleware.cache.UpdateCacheMiddleware` erron... |
| CVE-2026-5766 | MEDIUM | 6.3 | 0.4% | May 5, 2026 | An issue was discovered in 6.0 before 6.0.5 and 5.2 before 5.2.14. ASGI requests with a missing or understated `Content-... |
| CVE-2026-43073 | MEDIUM | 5.5 | 0.1% | May 5, 2026 | In the Linux kernel, the following vulnerability has been resolved: x86-64: rename misleadingly named '__copy_user_noca... |
| CVE-2026-43072 | MEDIUM | 5.5 | 0.1% | May 5, 2026 | In the Linux kernel, the following vulnerability has been resolved: drm/vc4: platform_get_irq_byname() returns an int ... |
| CVE-2026-43071 | CRITICAL | 9.1 | 0.4% | May 5, 2026 | In the Linux kernel, the following vulnerability has been resolved: dcache: Limit the minimal number of bucket to two ... |
| CVE-2026-43070 | HIGH | 7.8 | 0.1% | May 5, 2026 | In the Linux kernel, the following vulnerability has been resolved: bpf: Reset register ID for BPF_END value tracking ... |
| CVE-2026-43069 | MEDIUM | 5.5 | 0.1% | May 5, 2026 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_ll: Fix firmware leak on error path ... |
| CVE-2026-43068 | MEDIUM | 5.5 | 0.1% | May 5, 2026 | In the Linux kernel, the following vulnerability has been resolved: ext4: avoid allocate block from corrupted group in ... |
| CVE-2026-43067 | CRITICAL | 9.8 | 0.4% | May 5, 2026 | In the Linux kernel, the following vulnerability has been resolved: ext4: handle wraparound when searching for blocks f... |
| CVE-2026-43066 | MEDIUM | 5.5 | 0.1% | May 5, 2026 | In the Linux kernel, the following vulnerability has been resolved: ext4: fix iloc.bh leak in ext4_fc_replay_inode() er... |
| CVE-2026-43065 | MEDIUM | 5.5 | 0.1% | May 5, 2026 | In the Linux kernel, the following vulnerability has been resolved: ext4: always drain queued discard work in ext4_mb_r... |
| CVE-2026-43064 | MEDIUM | 5.5 | 0.1% | May 5, 2026 | In the Linux kernel, the following vulnerability has been resolved: dmaengine: idxd: Fix not releasing workqueue on .re... |
| CVE-2026-43063 | HIGH | 7.8 | 0.1% | May 5, 2026 | In the Linux kernel, the following vulnerability has been resolved: xfs: don't irele after failing to iget in xfs_attri... |
| CVE-2026-43062 | HIGH | 7.1 | 0.2% | May 5, 2026 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: Fix type confusion in l2cap_ecred... |
| CVE-2026-43061 | MEDIUM | 5.5 | 0.1% | May 5, 2026 | In the Linux kernel, the following vulnerability has been resolved: serial: 8250: Fix TX deadlock when using DMA `dmae... |
| CVE-2026-43060 | HIGH | 7.8 | 0.1% | May 5, 2026 | In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_ct: drop pending enqueued packets on... |
| CVE-2026-43059 | HIGH | 7.8 | 0.1% | May 5, 2026 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: MGMT: Fix list corruption and UAF in com... |
| CVE-2026-39103 | MEDIUM | 5.5 | 0.1% | May 5, 2026 | Buffer Overflow vulnerability in GPAC before commit v391dc7f4d234988ea0bc3cc294eb725eddf8f702 allows an attacker to caus... |
| CVE-2026-35192 | MEDIUM | 6.5 | 0.5% | May 5, 2026 | An issue was discovered in 6.0 before 6.0.5 and 5.2 before 5.2.14. Response headers do not vary on cookies if a session ... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now