2026 CVE Vulnerabilities

64,982 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-5749HIGH8.7Inadequate access control in the registration process in Fullstep V5, which could allow unauthenticated users to obtain ...
CVE-2026-41651HIGH8.8PackageKit is a a D-Bus abstraction layer that allows the user to manage packages in a secure way using a cross-distro, ...
CVE-2026-33611MEDIUM4.9An operator allowed to use the REST API can cause the Authoritative server to produce invalid HTTPS or SVCB record data,...
CVE-2026-33610HIGH7.5A rogue primary server may cause file descriptor exhaustion and eventually a denial of service, when a PowerDNS secondar...
CVE-2026-33609MEDIUM6.5Incomplete escaping of LDAP queries when running with 8bit-dns enabled allows users to perform queries of internal domai...
CVE-2026-33608CRITICAL9.8An attacker can send a notify request that causes a new secondary domain to be added to the bind backend, but causes sai...
CVE-2026-33602HIGH8.2A rogue backend can send a crafted UDP response with a query ID off by one related to the maximum configured value, trig...
CVE-2026-33599HIGH8.1A rogue backend can send a crafted SVCB response to a Discovery of Designated Resolvers request, when requested via eith...
CVE-2026-33598CRITICAL9.1A cached crafted response can cause an out-of-bounds read if custom Lua code calls getDomainListByAddress() or getAddres...
CVE-2026-33597HIGH7.5PRSD detection denial of service
CVE-2026-33596MEDIUM6.5A client might theoretically be able to cause a mismatch between queries sent to a backend and the received responses by...
CVE-2026-33595HIGH7.5A client can trigger excessive memory allocation by generating a lot of errors responses over a single DoQ and DoH3 conn...
CVE-2026-33594HIGH7.5A client can trigger excessive memory allocation by generating a lot of queries that are routed to an overloaded DoH bac...
CVE-2026-33593HIGH7.5A client can trigger a divide by zero error leading to crash by sending a crafted DNSCrypt query.
CVE-2026-33254HIGH7.5An attacker can create a large number of concurrent DoQ or DoH3 connections, causing unlimited memory allocation in DNSd...
CVE-2026-31530HIGH7.8In the Linux kernel, the following vulnerability has been resolved: cxl/port: Fix use after free of parent_port in cxl_...
CVE-2026-31529MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: cxl/region: Fix leakage in __construct_region() Fa...
CVE-2026-31528HIGH7.8In the Linux kernel, the following vulnerability has been resolved: perf: Make sure to use pmu_ctx->pmu for groups Oli...
CVE-2026-31527HIGH7.8In the Linux kernel, the following vulnerability has been resolved: driver core: platform: use generic driver_override ...
CVE-2026-31526MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: bpf: Fix exception exit lock checking for subprogs ...
CVE-2026-31525HIGH7.8In the Linux kernel, the following vulnerability has been resolved: bpf: Fix undefined behavior in interpreter sdiv/smo...
CVE-2026-31524MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: HID: asus: avoid memory leak in asus_report_fixup()...
CVE-2026-31523MEDIUM4.7In the Linux kernel, the following vulnerability has been resolved: nvme-pci: ensure we're polling a polled queue A us...
CVE-2026-31522MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: HID: magicmouse: avoid memory leak in magicmouse_re...
CVE-2026-31521MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: module: Fix kernel panic when a symbol st_shndx is ...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now