2026 CVE Vulnerabilities

64,982 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-35377LOW3.3A logic error in the env utility of uutils coreutils causes a failure to correctly parse command-line arguments when uti...
CVE-2026-35376MEDIUM5.8A Time-of-Check to Time-of-Use (TOCTOU) vulnerability exists in the chcon utility of uutils coreutils during recursive o...
CVE-2026-35375LOW3.3A logic error in the split utility of uutils coreutils causes the corruption of output filenames when provided with non-...
CVE-2026-35374MEDIUM6.3A Time-of-Check to Time-of-Use (TOCTOU) vulnerability exists in the split utility of uutils coreutils. The program attem...
CVE-2026-35373MEDIUM5.5A logic error in the ln utility of uutils coreutils causes the program to reject source paths containing non-UTF-8 filen...
CVE-2026-35372MEDIUM5A logic error in the ln utility of uutils coreutils allows the utility to dereference a symbolic link target even when t...
CVE-2026-35371LOW3.3The id utility in uutils coreutils exhibits incorrect behavior in its "pretty print" output when the real UID and effect...
CVE-2026-35370MEDIUM4.4The id utility in uutils coreutils miscalculates the groups= section of its output. The implementation uses a user's rea...
CVE-2026-35369MEDIUM5.5An argument parsing error in the kill utility of uutils coreutils incorrectly interprets kill -1 as a request to send th...
CVE-2026-35368HIGH7.8A vulnerability exists in the chroot utility of uutils coreutils when using the --userspec option. The utility resolves ...
CVE-2026-35367LOW3.3The nohup utility in uutils coreutils creates its default output file, nohup.out, without specifying explicit restricted...
CVE-2026-35366MEDIUM4.4The printenv utility in uutils coreutils fails to display environment variables containing invalid UTF-8 byte sequences....
CVE-2026-35365MEDIUM6.6The mv utility in uutils coreutils improperly handles directory trees containing symbolic links during moves across file...
CVE-2026-35364MEDIUM6.3A Time-of-Check to Time-of-Use (TOCTOU) race condition exists in the mv utility of uutils coreutils during cross-device ...
CVE-2026-35363MEDIUM5.6A vulnerability in the rm utility of uutils coreutils allows the bypass of safeguard mechanisms intended to protect the ...
CVE-2026-35362LOW3.6The safe_traversal module in uutils coreutils, which provides protection against Time-of-Check to Time-of-Use (TOCTOU) s...
CVE-2026-35361MEDIUM4.4The mknod utility in uutils coreutils fails to handle security labels atomically by creating device nodes before setting...
CVE-2026-35360MEDIUM6.3The touch utility in uutils coreutils is vulnerable to a Time-of-Check to Time-of-Use (TOCTOU) race condition during fil...
CVE-2026-35359MEDIUM4.7A Time-of-Check to Time-of-Use (TOCTOU) vulnerability in the cp utility of uutils coreutils allows an attacker to bypass...
CVE-2026-35358MEDIUM5.5The cp utility in uutils coreutils, when performing recursive copies (-R), incorrectly treats character and block device...
CVE-2026-35357MEDIUM4.7The cp utility in uutils coreutils is vulnerable to an information disclosure race condition. Destination files are init...
CVE-2026-35356MEDIUM6.3A Time-of-Check to Time-of-Use (TOCTOU) vulnerability exists in the install utility of uutils coreutils when using the -...
CVE-2026-35355MEDIUM6.3The install utility in uutils coreutils is vulnerable to a Time-of-Check to Time-of-Use (TOCTOU) race condition during f...
CVE-2026-35354MEDIUM4.7A Time-of-Check to Time-of-Use (TOCTOU) vulnerability exists in the mv utility of uutils coreutils during cross-device m...
CVE-2026-35353LOW3.3The mkdir utility in uutils coreutils incorrectly applies permissions when using the -m flag by creating a directory wit...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now