2026 CVE Vulnerabilities

49,870 CVEs published in 2026.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2026-46133HIGH7.5In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Reject unknown opcodes before ICRC proces...
CVE-2026-46130HIGH7.1In the Linux kernel, the following vulnerability has been resolved: dm-verity-fec: fix reading parity bytes split acros...
CVE-2026-46129HIGH7.8In the Linux kernel, the following vulnerability has been resolved: btrfs: fix double free in create_space_info() error...
CVE-2026-46125HIGH8.8In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: remove station if connection prep f...
CVE-2026-46124HIGH7.5In the Linux kernel, the following vulnerability has been resolved: isofs: validate block number from NFS file handle i...
CVE-2026-46123HIGH7.7In the Linux kernel, the following vulnerability has been resolved: Bluetooth: virtio_bt: clamp rx length before skb_pu...
CVE-2026-46122HIGH7.8In the Linux kernel, the following vulnerability has been resolved: wifi: b43: enforce bounds check on firmware key ind...
CVE-2026-46121HIGH7.8In the Linux kernel, the following vulnerability has been resolved: mm/damon/sysfs-schemes: protect memcg_path kfree() ...
CVE-2026-46120HIGH7.8In the Linux kernel, the following vulnerability has been resolved: ip6_gre: Use cached t->net in ip6erspan_changelink(...
CVE-2026-46117HIGH7.8In the Linux kernel, the following vulnerability has been resolved: RDMA/mana: Remove user triggerable WARN_ON() in man...
CVE-2026-46116HIGH7.8In the Linux kernel, the following vulnerability has been resolved: xfrm: defensively unhash xfrm_state lists in __xfrm...
CVE-2026-46114HIGH7.5In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Reject non-8-byte ATOMIC_WRITE payloads ...
CVE-2026-46113HIGH8.8In the Linux kernel, the following vulnerability has been resolved: KVM: x86: Fix shadow paging use-after-free due to u...
CVE-2026-46112HIGH7.8In the Linux kernel, the following vulnerability has been resolved: RDMA/hns: Fix unlocked call to hns_roce_qp_remove()...
CVE-2026-46111HIGH7.8In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_conn: fix potential UAF in create_bi...
CVE-2026-46110HIGH7.5In the Linux kernel, the following vulnerability has been resolved: net: stmmac: Prevent NULL deref when RX memory exha...
CVE-2026-46107HIGH7.8In the Linux kernel, the following vulnerability has been resolved: dm-thin: fix metadata refcount underflow There's a...
CVE-2026-46105HIGH7.8In the Linux kernel, the following vulnerability has been resolved: scsi: mpt3sas: Limit NVMe request size to 2 MiB Th...
CVE-2026-9804HIGH7.7A flaw was found in KubeVirt's virt-exportserver component. An attacker with specific namespace-level access can exploit...
CVE-2026-6226HIGH8.8The Frontend Admin by DynamiApps plugin for WordPress is vulnerable to unauthenticated privilege escalation in versions ...
CVE-2026-9227HIGH8.8The GutenBee – Gutenberg Blocks plugin for WordPress is vulnerable to Arbitrary File Upload in all versions up to, and i...
CVE-2026-7862HIGH8.6The Eupago Gateway For Woocommerce WordPress plugin before 4.7.2 does not properly restrict access to its refund request...
CVE-2026-7797HIGH7.5The Appointment Booking Calendar — Simply Schedule Appointments Booking Plugin plugin for WordPress is vulnerable to tim...
CVE-2026-7634HIGH7.2The SlimStat Analytics plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'User-Agent' header in ...
CVE-2026-7052HIGH7.2The HT Contact Form – Drag & Drop Form Builder for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scr...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now