2026 CVE Vulnerabilities
65,537 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-90206 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: nvmet: fix max_qid race between configfs and contro... |
| CVE-2026-90202 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: scsi: mpt3sas: Avoid freeing unallocated PCIe SGL b... |
| CVE-2026-90201 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: net: page_pool: fix UAF in __page_pool_release_netm... |
| CVE-2026-90200 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: fix integer overflow in MFT cluster valid... |
| CVE-2026-90198 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: ALSA: core: Fix use-after-free in snd_card_do_free(... |
| CVE-2026-90197 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: HID: haptic: don't write an uninitialized value to ... |
| CVE-2026-90196 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: ASoC: SOF: validate topology volume range before al... |
| CVE-2026-90195 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: riscv, bpf: Fix missing sign-ext for signed 1-byte ... |
| CVE-2026-90194 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: ACPI: scan: fix bus ID cleanup on device_add() fail... |
| CVE-2026-90193 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: mailbox: qcom-cpucp: fix PREEMPT_RT self-deadlock i... |
| CVE-2026-90192 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: mailbox: qcom-cpucp: handle NULL data in send_data ... |
| CVE-2026-90190 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: null_blk: use DEFINE_MUTEX for the file-scope mutex... |
| CVE-2026-90189 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: null_blk: register configfs subsystem after creatin... |
| CVE-2026-90188 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: null_blk: free global tag_set on init error path I... |
| CVE-2026-90187 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: null_blk: free zones array on device power-off nul... |
| CVE-2026-90186 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: null_blk: reject per-device queue resize for shared... |
| CVE-2026-90185 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: null_blk: serialize configfs attribute stores with ... |
| CVE-2026-90184 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: null_blk: serialize configfs attribute updates with... |
| CVE-2026-90183 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: blk-iolatency: clear delay state when freeing polic... |
| CVE-2026-90182 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: blk-iocost: clear delay state when freeing policy d... |
| CVE-2026-90181 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: ublk: avoid teardown retry loop on xarray allocatio... |
| CVE-2026-90180 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: block: mtip32xx: synchronize ioctls with device rem... |
| CVE-2026-90179 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: apparmor: fix deadlock in complain-mode change_hat ... |
| CVE-2026-90178 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: hwmon: (coretemp) Fix core_data leak on CPUs withou... |
| CVE-2026-90175 | — | — | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: smb: server: fix leak of ksmbd_ipc_login_request_ex... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now