2026 CVE Vulnerabilities
69,030 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-90413 | CRITICAL | 9.1 | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: IB/isert: reject login PDUs declaring more data tha... |
| CVE-2026-90412 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: nvmet: fix return status of RMI log page on allocat... |
| CVE-2026-90411 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: nvme-fc: unmap cmd_iu DMA on rsp_iu mapping failure... |
| CVE-2026-90410 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: spi: davinci: switch to managed controller allocati... |
| CVE-2026-90409 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: drm/panthor: Add vm_bind region with kbo range over... |
| CVE-2026-90408 | HIGH | 7.7 | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: fix overreads in ath12k_wmi_process_c... |
| CVE-2026-90407 | HIGH | 7.7 | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: wifi: ath11k: fix overreads in ath11k_wmi_process_c... |
| CVE-2026-90406 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: media: qcom: iris: handle runtime PM resume failure... |
| CVE-2026-90405 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: media: stm32: dcmi: fix some error handling bugs in... |
| CVE-2026-90404 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: platform/chrome: cros_ec_debugfs: Unregister panic ... |
| CVE-2026-90403 | HIGH | 7 | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: wifi: rtlwifi: pci: fix error path in rtl_pci_probe... |
| CVE-2026-90402 | HIGH | 7 | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: bus: mhi: host: Fix controller cleanup on EDL sysfs... |
| CVE-2026-90401 | HIGH | 7.1 | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: md: remove REQ_NOWAIT support from raid1/10/456 RE... |
| CVE-2026-90400 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: md: recheck spare changes before starting sync rem... |
| CVE-2026-90399 | HIGH | 8.4 | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: fix stride mismatch in mac_phy_caps_p... |
| CVE-2026-90398 | HIGH | 8.4 | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: wifi: ath11k: fix stride mismatch in mac_phy_caps_p... |
| CVE-2026-90397 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: firmware: qcom: scm: Fix NULL dereference in IRQ ha... |
| CVE-2026-90396 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: block: fix dio leak on metadata mapping error A fa... |
| CVE-2026-90395 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: power: supply: isp1704_charger: cancel work on remo... |
| CVE-2026-90394 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: power: supply: sc2731_charger: cancel work on remov... |
| CVE-2026-90393 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: bpf: Fix potential UAF in bpf_netns_link_update_pro... |
| CVE-2026-90392 | HIGH | 7.8 | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: bpf: Fix potential UAF when reading bpf link info ... |
| CVE-2026-90391 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: lib/test_hmm: fail dmirror_fault() when the mirrore... |
| CVE-2026-90390 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: md/bitmap: resume array on backlog_store() error pa... |
| CVE-2026-90389 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: md: scope memalloc_noio to allocation critical sect... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now