2026 CVE Vulnerabilities
65,524 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-92502 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: ext4: clear stale xarray tags on folios skipped dur... |
| CVE-2026-92501 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: ext4: drain in-flight DIO before buffered write fal... |
| CVE-2026-92500 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: ext4: use fsdata to track inline data write state a... |
| CVE-2026-92499 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: ext4: validate readdir offset before accessing dire... |
| CVE-2026-92498 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: wifi: ath6kl: avoid buffer overreads in WMI event h... |
| CVE-2026-92497 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: Avoid buffer overread in ath12k_wmi_o... |
| CVE-2026-92496 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: wifi: ath11k: Avoid buffer overread in ath11k_wmi_t... |
| CVE-2026-92495 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: RDMA/bnxt_re: Clear VM_MAYWRITE on DBR/toggle page ... |
| CVE-2026-92494 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: ext4: fix buffer_head leak in ext4_init_orphan_info... |
| CVE-2026-92493 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: cpufreq: amd-pstate-ut: Skip tests when amd-pstate ... |
| CVE-2026-92492 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: cpufreq/amd-pstate: handle missing policy in dynami... |
| CVE-2026-92491 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: firmware: arm_scmi: Roll back partial protocol tabl... |
| CVE-2026-92490 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: firmware: arm_scmi: Unrequest devices if driver reg... |
| CVE-2026-92487 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: exfat: fix valid_size extension over a shared writa... |
| CVE-2026-92486 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: bpf: Fix CFI mismatch in task work callback BPF su... |
| CVE-2026-92484 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: cxl/region: Fix use-after-free in find_pos_and_ways... |
| CVE-2026-92483 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: liveupdate: Remember FLB retrieve() status LUO kee... |
| CVE-2026-92482 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: pinctrl: mediatek: use devm_gpiochip_add_data() for... |
| CVE-2026-92481 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: pinctrl: mediatek: free EINT resources on unbind m... |
| CVE-2026-92480 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: scsi: ufs: core: Validate string descriptors The s... |
| CVE-2026-92479 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: scsi: ufs: Avoid NULL CQE dereference when reportin... |
| CVE-2026-92478 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: scsi: ufs: core: Validate connected lane counts Th... |
| CVE-2026-92477 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: scsi: ufs: debugfs: Reserve space for a string term... |
| CVE-2026-92476 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: crypto: keembay - Initialize completion before requ... |
| CVE-2026-90434 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: isofs: release zisofs block pointer buffer head zi... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now