2026 CVE Vulnerabilities
64,766 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-89636 | CRITICAL | 9.8 | 0.6% | Sep 11, 2026 | In the Linux kernel, the following vulnerability has been resolved: smb: client: clear ce->tgthint in free_tgts() When... |
| CVE-2026-89635 | CRITICAL | 9.8 | 0.2% | Sep 11, 2026 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: only rebind the reopened file's own oplock o... |
| CVE-2026-89634 | CRITICAL | 9.1 | 0.7% | Sep 11, 2026 | In the Linux kernel, the following vulnerability has been resolved: smb: client: fix ALIGN() overflow in symlink_data()... |
| CVE-2026-89633 | CRITICAL | 9.8 | 0.2% | Sep 11, 2026 | In the Linux kernel, the following vulnerability has been resolved: smb: client: fix OOB read/write from unvalidated Da... |
| CVE-2026-89631 | CRITICAL | 9.1 | 0.2% | Sep 11, 2026 | In the Linux kernel, the following vulnerability has been resolved: smb: client: reject a tree connect response whose b... |
| CVE-2026-89630 | CRITICAL | 9.1 | 0.2% | Sep 11, 2026 | In the Linux kernel, the following vulnerability has been resolved: smb: client: restore the data_offset bound in is_va... |
| CVE-2026-89614 | CRITICAL | 9.8 | 0.2% | Sep 11, 2026 | In the Linux kernel, the following vulnerability has been resolved: ntfs: bound the free-cluster bitmap scan to the vol... |
| CVE-2026-89613 | CRITICAL | 9.8 | 0.2% | Sep 11, 2026 | In the Linux kernel, the following vulnerability has been resolved: ntfs: reject invalid empty mapping pairs Reject an... |
| CVE-2026-89612 | CRITICAL | 9.8 | 0.2% | Sep 11, 2026 | In the Linux kernel, the following vulnerability has been resolved: ntfs: reject invalid MFT LCNs from boot sector The... |
| CVE-2026-89611 | CRITICAL | 9.8 | 0.2% | Sep 11, 2026 | In the Linux kernel, the following vulnerability has been resolved: ntfs: validate non-resident attribute offsets ntfs... |
| CVE-2026-89610 | CRITICAL | 9.8 | 0.2% | Sep 11, 2026 | In the Linux kernel, the following vulnerability has been resolved: ntfs: verify run length exceeding volume boundary ... |
| CVE-2026-89558 | CRITICAL | 9.8 | 0.2% | Sep 11, 2026 | In the Linux kernel, the following vulnerability has been resolved: md/raid10: fix still_degraded being inverted in rai... |
| CVE-2026-89555 | CRITICAL | 9.8 | 0.6% | Sep 11, 2026 | In the Linux kernel, the following vulnerability has been resolved: mpls: reload header after pskb_may_pull() mpls_sel... |
| CVE-2026-89551 | CRITICAL | 9.8 | 0.5% | Sep 11, 2026 | In the Linux kernel, the following vulnerability has been resolved: SUNRPC: xdr_buf_trim: clamp buf->len to avoid under... |
| CVE-2026-89550 | CRITICAL | 9.8 | 0.5% | Sep 11, 2026 | In the Linux kernel, the following vulnerability has been resolved: SUNRPC: svcauth_gss: enforce krb5 token minimum len... |
| CVE-2026-89546 | CRITICAL | 9.8 | 0.2% | Sep 11, 2026 | In the Linux kernel, the following vulnerability has been resolved: SUNRPC: close backchannel before destroying callbac... |
| CVE-2026-89542 | CRITICAL | 9.8 | 0.5% | Sep 11, 2026 | In the Linux kernel, the following vulnerability has been resolved: SUNRPC: harden gss_krb5_unwrap_v2 against short tok... |
| CVE-2026-89541 | CRITICAL | 9.8 | 0.5% | Sep 11, 2026 | In the Linux kernel, the following vulnerability has been resolved: SUNRPC: harden gss_unwrap_resp_priv length checks ... |
| CVE-2026-89538 | CRITICAL | 9.8 | 0.6% | Sep 11, 2026 | In the Linux kernel, the following vulnerability has been resolved: SUNRPC: Reject krb5 v2 wrap tokens with oversized e... |
| CVE-2026-89537 | CRITICAL | 9.1 | 0.2% | Sep 11, 2026 | In the Linux kernel, the following vulnerability has been resolved: SUNRPC: Reject short RFC 4121 MIC tokens in gss_krb... |
| CVE-2026-89536 | CRITICAL | 9.8 | 0.6% | Sep 11, 2026 | In the Linux kernel, the following vulnerability has been resolved: SUNRPC: wait for in-flight client TLS handshake cal... |
| CVE-2026-89533 | CRITICAL | 9.8 | 0.5% | Sep 11, 2026 | In the Linux kernel, the following vulnerability has been resolved: svcrdma: Fix offset arithmetic in read_chunk_range ... |
| CVE-2026-89532 | CRITICAL | 9.1 | 0.5% | Sep 11, 2026 | In the Linux kernel, the following vulnerability has been resolved: svcrdma: Fix pcl_for_each_segment for empty chunks ... |
| CVE-2026-89530 | CRITICAL | 9.8 | 0.2% | Sep 11, 2026 | In the Linux kernel, the following vulnerability has been resolved: svcrdma: Reject inline replies that overflow the pu... |
| CVE-2026-89526 | CRITICAL | 9.8 | 0.2% | Sep 11, 2026 | In the Linux kernel, the following vulnerability has been resolved: svcrdma: Validate Read chunk positions before recon... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now