2026 CVE Vulnerabilities
65,537 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-90315 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: PCI/sysfs: Add lockdown checks to legacy I/O and me... |
| CVE-2026-90314 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: remoteproc: fix OOB read via signed offset in rsc_t... |
| CVE-2026-90313 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: bpf, cgroup: Fix invalid storage access after __cgr... |
| CVE-2026-90311 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: thermal: hwmon: Remove hwmon class device along wit... |
| CVE-2026-90310 | — | — | — | Sep 17, 2026 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2026-90307 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: RDMA/srp: fix heap information leak on a truncated ... |
| CVE-2026-90306 | — | — | 0.2% | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: ARM: 9481/2: breakpoint: CFI breakpoints only on de... |
| CVE-2026-90305 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: ARM: 9483/1: select HAVE_POSIX_CPU_TIMERS_TASK_WORK... |
| CVE-2026-90304 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: ARM: 9484/1: enable interrupts when unhandled user ... |
| CVE-2026-90303 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: ARM: 9485/1: mm: acquire mmap write lock around sho... |
| CVE-2026-90302 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: ocfs2: synchronize heartbeat callbacks with o2net t... |
| CVE-2026-90300 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: bpf: Clear buf on error in __bpf_get_task_stack Bo... |
| CVE-2026-90299 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: bpf: Fix sleepable check for tracing/lsm prog When... |
| CVE-2026-90298 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: drm/sun4i: tcon: Drop TCON TOP device reference of... |
| CVE-2026-90297 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: drm/sun4i: crtc: Propagate layer initialization err... |
| CVE-2026-90296 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: cpufreq: imx6q: fix devres accumulation across driv... |
| CVE-2026-90295 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: cpufreq: imx6q: fix out-of-bounds write when probed... |
| CVE-2026-90290 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: arm64: hibernate: Restore DAIF state on error Sash... |
| CVE-2026-90287 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: phy: sunplus: fix error handling in sp_uphy_init() ... |
| CVE-2026-90285 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Remove redundant VPD flash read in s... |
| CVE-2026-90284 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: firmware_loader: do not queue completed sysfs fallb... |
| CVE-2026-90283 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: hugetlbfs: release subpool on fill_super failure h... |
| CVE-2026-90282 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: phy: qcom: qmp-usb-legacy: Fix possible NULL-deref ... |
| CVE-2026-90281 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: phy: qcom: snps-femto-v2: Fix possible NULL-deref o... |
| CVE-2026-90280 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: phy: qcom: qmp-usb: Fix possible NULL-deref on earl... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now