2026 CVE Vulnerabilities

48,586 CVEs published in 2026.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2026-43306MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: bpf: crypto: Use the correct destructor kfunc type ...
CVE-2026-43305MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix mismatched unlock for DMUB HW ...
CVE-2026-43302MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/v3d: Set DMA segment size to avoid debug warnin...
CVE-2026-43301MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: media: chips-media: wave5: Fix PM runtime usage cou...
CVE-2026-43300MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/panel: Fix a possible null-pointer dereference ...
CVE-2026-43299MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: btrfs: do not ASSERT() when the fs flips RO inside ...
CVE-2026-43298MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Skip vcn poison irq release on VF VF d...
CVE-2026-43297MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: media: rockchip: rga: Fix possible ERR_PTR derefere...
CVE-2026-43295MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: rapidio: replace rio_free_net() with kfree() in rio...
CVE-2026-43294MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm: renesas: rz-du: mipi_dsi: fix kernel panic whe...
CVE-2026-43293MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: media: chips-media: wave5: Fix kthread worker destr...
CVE-2026-43292MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: mm/vmalloc: prevent RCU stalls in kasan_release_vma...
CVE-2026-43289MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: kexec: derive purgatory entry from symbol kexec_lo...
CVE-2026-43288MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: ext4: move ext4_percpu_param_init() before ext4_mb_...
CVE-2026-43287MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm: Account property blob allocations to memcg DR...
CVE-2026-43286MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: mm/hugetlb: restore failed global reservations to s...
CVE-2026-43285MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: mm/slab: do not access current->mems_allowed_seq if...
CVE-2026-41423MEDIUM5.3Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other...
CVE-2026-41161MEDIUM5.3Sync-in Server is a secure, open-source platform for file storage, sharing, collaboration, and syncing. Prior to version...
CVE-2026-3318MEDIUM5.3Open redirection vulnerability in the latest demo version of the Cradle eCommerce platform. The vulnerability occurs in ...
CVE-2026-7650MEDIUM6.4The E2Pdf – Export Pdf Tool for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'id'...
CVE-2026-7475MEDIUM6.4The Sky Addons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the `sky-custom-scripts` custom pos...
CVE-2026-5341MEDIUM6.4The NMR Strava activities plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's `strava_nmr...
CVE-2026-44928MEDIUM5.3In uriparser before 1.0.2, the function family EqualsUri can misclassify two unequal URIs as equal.
CVE-2026-44927MEDIUM5.3In uriparser before 1.0.2, there is pointer difference truncation to int in various places.

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now