2026 CVE Vulnerabilities
65,537 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-90250 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: bpf, cgroup: Fix storage null-ptr-deref after repla... |
| CVE-2026-90249 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: iio: light: gp2ap002: Fix unbalanced runtime PM on ... |
| CVE-2026-90248 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: net/sched: cls_api: fix teardown of an adopted prot... |
| CVE-2026-90247 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: bpf: Fix mmap_lock leak in irq_work path stack_map... |
| CVE-2026-90245 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: fbdev: kyro: Validate overlay viewport coordinates ... |
| CVE-2026-90242 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Fix iopf_refcount leak on RID domain re... |
| CVE-2026-90239 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: media: amd: isp4: release partial allocations in is... |
| CVE-2026-90238 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: media: amd: isp4: fix self-deadlock in isp4sd_pwron... |
| CVE-2026-90236 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: NFSD: Release the export reference when reaping ope... |
| CVE-2026-90233 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: nvme-pci: release descriptor pools on probe failure... |
| CVE-2026-90232 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: amt: Don't support cross-netns setup. When a lower... |
| CVE-2026-90226 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: nfc: llcp: avoid userspace overflow on invalid optl... |
| CVE-2026-90222 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: nfc: pn533: hold a reference to the request skb dur... |
| CVE-2026-90221 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: nfc: nci: fix use of uninitialized memory in CORE_I... |
| CVE-2026-90220 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: ALSA: seq: Don't leak the extension cell pointer in... |
| CVE-2026-90219 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: RDMA/cxgb4: Free debugfs on registration failure c... |
| CVE-2026-90218 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: RDMA/cma: Fix WARNING in res_to_rt syzbot reported... |
| CVE-2026-90216 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: ubi: Fix rollback for explicit UBI device numbers ... |
| CVE-2026-90215 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: mtd: ubi: Release device reference on busy detach ... |
| CVE-2026-90214 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: ASoC: xilinx: formatter_pcm: fix stream_data leak o... |
| CVE-2026-90213 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: firewire: core: fix memory leak in error path of bu... |
| CVE-2026-90212 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: arm64/efi: Avoid voluntary preemption with efi_mm i... |
| CVE-2026-90211 | — | — | 0.2% | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: bpf, s390: Clear fetch destination on faulting aren... |
| CVE-2026-90209 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: s390/debug: Fix deadlock during unregister Unregis... |
| CVE-2026-90208 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: clocksource/drivers/samsung_pwm: Switch to raw_spin... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now