2026 CVE Vulnerabilities

68,701 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-30703CRITICAL9.8A command injection vulnerability exists in the web management interface of the WiFi Extender WDR201A (HW V2.1, FW LFMZX...
CVE-2026-30702CRITICAL9.8The WiFi Extender WDR201A (HW V2.1, FW LFMZX28040922V1.02) implements a broken authentication mechanism in its web manag...
CVE-2026-30701CRITICAL9.1The web interface of the WiFi Extender WDR201A (HW V2.1, FW LFMZX28040922V1.02) contains hardcoded credential disclosure...
CVE-2026-30048MEDIUM5.4A stored cross-site scripting (XSS) vulnerability exists in the NotChatbot WebChat widget thru 1.4.4. User-supplied inpu...
CVE-2026-29859CRITICAL9.8An arbitrary file upload vulnerability in aaPanel v7.57.0 allows attackers to execute arbitrary code via uploading a cra...
CVE-2026-29858HIGH7.5A lack of path validation in aaPanel v7.57.0 allows attackers to execute a local file inclusion (LFI), leadingot sensiti...
CVE-2026-29856HIGH7.5An issue in the VirtualHost configuration handling/parser component of aaPanel v7.57.0 allows attackers to cause a Regul...
CVE-2026-27135HIGH7.5nghttp2 is an implementation of the Hypertext Transfer Protocol version 2 in C. Prior to version 1.68.1, the nghttp2 lib...
CVE-2026-26948MEDIUM4.9Dell Integrated Dell Remote Access Controller 9, 14G versions prior to 7.00.00.174, 15G and 16G versions prior to 7.10.9...
CVE-2026-26945MEDIUM5.3Dell Integrated Dell Remote Access Controller 9, 14G versions prior to 7.00.00.181, 15G and 16G versions prior to 7.20.1...
CVE-2026-26740HIGH8.2Buffer Overflow vulnerability in giflib v.5.2.2 allows a remote attacker to cause a denial of service via the EGifGCBToE...
CVE-2026-23270HIGH7.8In the Linux kernel, the following vulnerability has been resolved: net/sched: Only allow act_ct to bind to clsact/ingr...
CVE-2026-23269HIGH7.1In the Linux kernel, the following vulnerability has been resolved: apparmor: validate DFA start states are in bounds i...
CVE-2026-23268HIGH7.8In the Linux kernel, the following vulnerability has been resolved: apparmor: fix unprivileged local user can do privil...
CVE-2026-23267MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: f2fs: fix IS_CHECKPOINTED flag inconsistency issue ...
CVE-2026-23266MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: fbdev: rivafb: fix divide error in nv3_arb() A use...
CVE-2026-23265MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to do sanity check on node footer in {rea...
CVE-2026-23264MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: Revert "drm/amd: Check if ASPM is enabled from PCIe...
CVE-2026-23263MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: io_uring/zcrx: fix page array leak d9f595b9a65e ("...
CVE-2026-23262HIGH7.8In the Linux kernel, the following vulnerability has been resolved: gve: Fix stats report corruption on queue count cha...
CVE-2026-23261MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: nvme-fc: release admin tagset if init fails nvme_f...
CVE-2026-23260MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: regmap: maple: free entry on mas_store_gfp() failur...
CVE-2026-23259MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: io_uring/rw: free potentially allocated iovec on ca...
CVE-2026-23258MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: net: liquidio: Initialize netdev pointer before que...
CVE-2026-23257MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: net: liquidio: Fix off-by-one error in PF setup_nic...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now