2026 CVE Vulnerabilities
64,779 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-90341 | HIGH | 7.7 | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: firmware: coreboot: Validate table bounds The exis... |
| CVE-2026-90332 | HIGH | 8.2 | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: PCI: dwc: ep: Flush cached MSI write before unmappi... |
| CVE-2026-90329 | HIGH | 8.8 | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: HID: synchronize input before cleaning up a failed ... |
| CVE-2026-90326 | HIGH | 7.8 | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: blk-cgroup: fix race between policy activation and ... |
| CVE-2026-90325 | HIGH | 7.8 | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: blk-cgroup: skip dying blkg in blkcg_activate_polic... |
| CVE-2026-90324 | HIGH | 7.8 | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: ublk: check import_ubuf() return value import_ubuf... |
| CVE-2026-90321 | HIGH | 7.8 | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: ocfs2: validate inline xattrs during inode block va... |
| CVE-2026-90320 | HIGH | 7.8 | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: ocfs2: validate external xattr entries when reading... |
| CVE-2026-90317 | HIGH | 7.8 | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: bpf: Invalidate RCU pointers after final spin unloc... |
| CVE-2026-90316 | HIGH | 7.8 | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: drm/omap: dsi: Do not copy isr table To be able to... |
| CVE-2026-90312 | HIGH | 7.8 | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: bpf: Check load-acquire src ptr type before the loa... |
| CVE-2026-90309 | HIGH | 7.8 | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: RDMA/erdma: Hold CQ references when processing EQ e... |
| CVE-2026-90308 | HIGH | 7.8 | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: RDMA/erdma: Hold QP references for AE and CM proces... |
| CVE-2026-90301 | HIGH | 8.1 | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: ocfs2: o2hb: quiesce negotiate handlers and timeout... |
| CVE-2026-90294 | HIGH | 7.5 | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: IB/isert: delay the final Login Response until the ... |
| CVE-2026-90293 | HIGH | 7.5 | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: IB/isert: post the full-feature receive buffers aft... |
| CVE-2026-90292 | HIGH | 7.8 | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: RDMA/siw: Fix use-after-free in siw_accept() siw_a... |
| CVE-2026-90291 | HIGH | 7.8 | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: module/dups: Fix use-after-free in kmod_dup_req lif... |
| CVE-2026-90289 | HIGH | 7.8 | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Resize MST HDCP per-connector arra... |
| CVE-2026-90288 | HIGH | 7.4 | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: phy: renesas: rcar-gen2: Fix double of_node_put on ... |
| CVE-2026-90286 | HIGH | 8.8 | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu/gfx6: Use PFP on the compute queues too ... |
| CVE-2026-90268 | HIGH | 8.1 | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: scsi: sd: Fix error handling in sd_probe() after la... |
| CVE-2026-90260 | HIGH | 7.1 | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: btrfs: zoned: don't clobber the extent buffer when ... |
| CVE-2026-90256 | HIGH | 8.8 | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: use proto_lock for l2cap_data to ... |
| CVE-2026-90255 | HIGH | 8.8 | — | Sep 17, 2026 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_conn: fix the SCO setup context life... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now