2026 CVE Vulnerabilities

48,557 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-64594In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_fs: initialize reset_work at allocat...
CVE-2026-64593In the Linux kernel, the following vulnerability has been resolved: btrfs: do not trim a device which is not writeable ...
CVE-2026-64592In the Linux kernel, the following vulnerability has been resolved: riscv: mm: Unconditionally sfence.vma for spurious ...
CVE-2026-64591In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Avoid WARNING in sva unbind path The I...
CVE-2026-64590In the Linux kernel, the following vulnerability has been resolved: dma-buf/udmabuf: skip redundant cpu sync to fix cac...
CVE-2026-64589In the Linux kernel, the following vulnerability has been resolved: i2c: core: fix NULL-deref on adapter registration f...
CVE-2026-64588HIGH7.8In the Linux kernel, the following vulnerability has been resolved: fuse-uring: fix data races on ring->ready On weakl...
CVE-2026-64587HIGH7In the Linux kernel, the following vulnerability has been resolved: net: ethernet: arc: emac: quiesce interrupts before...
CVE-2026-64586HIGH8.8In the Linux kernel, the following vulnerability has been resolved: wifi: brcmfmac: drain bus_reset work on device remo...
CVE-2026-64585HIGH7.8In the Linux kernel, the following vulnerability has been resolved: can: esd_usb: kill anchored URBs before freeing net...
CVE-2026-64584HIGH7.8In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_midi: cancel pending IN work before ...
CVE-2026-64583HIGH7.8In the Linux kernel, the following vulnerability has been resolved: usb: gadget: udc: bdc: free IRQ and drain func_wake...
CVE-2026-5430CRITICAL10The JWT authentication mechanism accepts tokens signed with algorithms other than those explicitly configured or support...
CVE-2026-1728CRITICAL9.8Tokens issued to a low-privileged user are not sufficiently restricted, allowing them to be used to access product-level...
CVE-2026-19021HIGH7.3A security vulnerability has been detected in SourceCodester Computer Repair Shop Management System 1.0. Affected by thi...
CVE-2026-19020MEDIUM6.3A weakness has been identified in itsourcecode Hospital Management System 1.0. Affected by this vulnerability is an unkn...
CVE-2026-19019MEDIUM4.8A security flaw has been discovered in poco-ai poco-agent up to 0.5.4. Affected is the function WorkspaceManager._setup_...
CVE-2026-19011MEDIUM5.5A vulnerability was detected in TinyAGI 0.0.20. The affected element is the function buildSystemPrompt of the file packa...
CVE-2026-19010HIGH7.3A security vulnerability has been detected in TinyAGI 0.0.20. Impacted is the function processMessage of the file packag...
CVE-2026-19009HIGH7.3A weakness has been identified in TinyAGI 0.0.20. This issue affects the function collectFiles of the file packages/core...
CVE-2026-19008MEDIUM6.3A vulnerability was identified in mf-yang openclaw-cn up to 0.2.1. This issue affects the function assertNoSymlinkEscape...
CVE-2026-18915MEDIUM5Invocation of process using visible sensitive information vulnerability in TÜBİTAK BİLGEM Software Technologies Research...
CVE-2026-18649HIGH7.5A flaw was found in the GStreamer gst-plugins-good package. The rtph264depay and rtph265depay RTP depayloader elements d...
CVE-2026-18597HIGH8.5The PDF creation feature of Foxit PDF Services API supports referencing external files. Although local file access is re...
CVE-2026-0637MEDIUM4.4When an Event Publisher output adapter is configured with irrelevant properties, the affected products log these propert...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now