2026 CVE Vulnerabilities
48,674 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-11556 | HIGH | 8.8 | 1.6% | Jun 8, 2026 | A security flaw has been discovered in Tenda F451 1.0.0.7/1.0.0.9. Impacted is the function formWriteFacMac of the file ... |
| CVE-2026-11555 | HIGH | 7.5 | 0.4% | Jun 8, 2026 | A vulnerability was identified in D-Link DGS-1100-08PD 1.00.006. This issue affects some unknown processing of the file ... |
| CVE-2026-11553 | HIGH | 8.8 | 0.5% | Jun 8, 2026 | A vulnerability was found in Tenda HG7HG9 and HG10 300001138_en_xpon. This affects the function formPPPEdit of the file ... |
| CVE-2026-48507 | HIGH | 7.1 | 0.2% | Jun 8, 2026 | Snipe-IT is an IT asset/license management system. A vulnerability in versions prior to 8.6.0 allows a non-admin user ho... |
| CVE-2026-46481 | HIGH | 8.3 | 0.2% | Jun 8, 2026 | OpenMetadata is a unified metadata platform. Prior to version 1.12.4, a non-admin SSO user can trigger a TEST_CONNECTION... |
| CVE-2026-46311 | HIGH | 7.8 | 0.1% | Jun 8, 2026 | In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu/userq: fix access to stale wptr mapping ... |
| CVE-2026-46309 | HIGH | 7 | 0.1% | Jun 8, 2026 | In the Linux kernel, the following vulnerability has been resolved: drm/xe/uapi: Reject coh_none PAT index for CPU cach... |
| CVE-2026-46308 | HIGH | 7.8 | 0.1% | Jun 8, 2026 | In the Linux kernel, the following vulnerability has been resolved: pmdomain: mediatek: fix use-after-free in scpsys_ge... |
| CVE-2026-46307 | HIGH | 8.3 | 0.2% | Jun 8, 2026 | In the Linux kernel, the following vulnerability has been resolved: wifi: ath5k: do not access array OOB Vincent repor... |
| CVE-2026-46306 | HIGH | 7.5 | 0.4% | Jun 8, 2026 | In the Linux kernel, the following vulnerability has been resolved: flow_dissector: do not dissect PPPoE PFC frames RF... |
| CVE-2026-46304 | HIGH | 7.5 | 0.4% | Jun 8, 2026 | In the Linux kernel, the following vulnerability has been resolved: nvmet: avoid recursive nvmet-wq flush in nvmet_ctrl... |
| CVE-2026-46303 | HIGH | 8.2 | 0.3% | Jun 8, 2026 | In the Linux kernel, the following vulnerability has been resolved: isofs: validate Rock Ridge CE continuation extent a... |
| CVE-2026-46301 | HIGH | 7.8 | 0.1% | Jun 8, 2026 | In the Linux kernel, the following vulnerability has been resolved: spi: topcliff-pch: fix use-after-free on unbind Gi... |
| CVE-2026-46299 | HIGH | 7 | 0.1% | Jun 8, 2026 | In the Linux kernel, the following vulnerability has been resolved: hfsplus: fix held lock freed on hfsplus_fill_super(... |
| CVE-2026-46294 | HIGH | 7.8 | 0.1% | Jun 8, 2026 | In the Linux kernel, the following vulnerability has been resolved: dm: fix a buffer overflow in ioctl processing Tony... |
| CVE-2026-46293 | HIGH | 7.1 | 0.1% | Jun 8, 2026 | In the Linux kernel, the following vulnerability has been resolved: clk: microchip: mpfs-ccc: fix out of bounds access ... |
| CVE-2026-46288 | HIGH | 8.4 | 0.1% | Jun 8, 2026 | In the Linux kernel, the following vulnerability has been resolved: of: unittest: fix use-after-free in of_unittest_cha... |
| CVE-2026-46285 | HIGH | 7.8 | 0.1% | Jun 8, 2026 | In the Linux kernel, the following vulnerability has been resolved: mtd: docg3: fix use-after-free in docg3_release() ... |
| CVE-2026-46281 | HIGH | 7.8 | 0.1% | Jun 8, 2026 | In the Linux kernel, the following vulnerability has been resolved: vmalloc: fix buffer overflow in vrealloc_node_align... |
| CVE-2026-46280 | HIGH | 7.8 | 0.1% | Jun 8, 2026 | In the Linux kernel, the following vulnerability has been resolved: lib: test_hmm: evict device pages on file close to ... |
| CVE-2026-46279 | HIGH | 7.8 | 0.2% | Jun 8, 2026 | In the Linux kernel, the following vulnerability has been resolved: mm/alloc_tag: clear codetag for pages allocated bef... |
| CVE-2026-46277 | HIGH | 7.8 | 0.1% | Jun 8, 2026 | In the Linux kernel, the following vulnerability has been resolved: mm/zone_device: do not touch device folio after cal... |
| CVE-2026-39910 | HIGH | 8.8 | 0.3% | Jun 8, 2026 | STACKIT IaaS API contains a missing authorization check vulnerability that allows authenticated, low-privileged attacker... |
| CVE-2026-39908 | HIGH | 7.1 | 0.3% | Jun 8, 2026 | OpenBullet2 through version 0.3.2 on Windows contains a credential disclosure vulnerability that allows remote attackers... |
| CVE-2026-25856 | HIGH | 8.8 | 0.5% | Jun 8, 2026 | OpenBullet2 through version 0.3.2 contains an authenticated remote code execution vulnerability that allows authenticate... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now