2026 CVE Vulnerabilities

48,182 CVEs published in 2026.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2026-45863MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: i3c: dw: Fix memory leak in dw_i3c_master_i2c_xfers...
CVE-2026-45858MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: ext4: don't zero the entire extent if EXT4_EXT_DATA...
CVE-2026-45857MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: scsi: csiostor: Fix dereference of null pointer rn ...
CVE-2026-45855MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: ata: libata-scsi: avoid Non-NCQ command starvation ...
CVE-2026-45854MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: crypto: inside-secure/eip93 - unregister only avail...
CVE-2026-45850MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: ipvs: skip ipv6 extension headers for csum checks ...
CVE-2026-45849MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: net: mscc: ocelot: add missing lock protection in o...
CVE-2026-45848MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: apparmor: fix NULL sock in aa_sock_file_perm Deal ...
CVE-2026-45847MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: net: remove WARN_ON_ONCE when accessing forward pat...
CVE-2026-42789MEDIUM4.8Improper Following of a Certificate's Chain of Trust vulnerability in Erlang OTP public_key (pubkey_cert module) allows ...
CVE-2026-3676MEDIUM6.5IBM Cloud APM, Base Private 8.1.4 and IBM Cloud APM, Advanced Private 8.1.4 IBM Db2 for Linux, UNIX and Windows (include...
CVE-2026-2607MEDIUM5.1IBM MQ Operator SC2: v3.2.0 through 3.2.23CD:  v3.3.0, v3.4.0, v3.4.1, v3.5.0, v3.5.1 - v3.5.3, v3.6.0 - v3.6.4, v3.7.0 ...
CVE-2026-2340MEDIUM6.5A flaw was found in Samba’s vfs_worm module. The module is intended to provide write-once, read-many (WORM) protections ...
CVE-2026-23679MEDIUM5.5libusb before version 1.0.30 contains a NULL pointer dereference vulnerability that allows attackers to crash applicatio...
CVE-2026-1933MEDIUM6.5A flaw was found in Samba’s handling of NTFS-style reparse points on shares configured with read only = yes. Due to miss...
CVE-2026-9689MEDIUM4.2A flaw was found in Keycloak, an open-source identity and access management solution. When a client application is confi...
CVE-2026-45846MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: bareudp: fix NULL pointer dereference in bareudp_fi...
CVE-2026-45845MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: net/sched: taprio: fix NULL pointer dereference in ...
CVE-2026-45844MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: netfilter: arp_tables: fix IEEE1394 ARP payload par...
CVE-2026-45842MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: slip: reject VJ receive packets on instances with n...
CVE-2026-45841MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: netfilter: nfnetlink_osf: fix divide-by-zero in OSF...
CVE-2026-45840MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: openvswitch: cap upcall PID array size and pre-size...
CVE-2026-45838MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: bpf: fix end-of-list detection in cgroup_storage_ge...
CVE-2026-42751MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wpdevelop Booking ...
CVE-2026-42750MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Nexcess WPComplete...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now