2026 CVE Vulnerabilities
53,345 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-64404 | MEDIUM | 5.5 | 0.2% | Jul 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: ISO: avoid NULL deref of conn in iso_con... |
| CVE-2026-64403 | HIGH | 7.1 | 0.3% | Jul 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: validate option length before rea... |
| CVE-2026-64402 | HIGH | 7.8 | 0.1% | Jul 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: coresight: ultrasoc-smb: Fix OOB write in smb_sync_... |
| CVE-2026-64401 | HIGH | 7.8 | 0.1% | Jul 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: smb: client: resolve SWN tcon from live registratio... |
| CVE-2026-64400 | HIGH | 8.6 | 0.4% | Jul 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: prevent path traversal bypass by restricting... |
| CVE-2026-64399 | CRITICAL | 9.8 | 0.5% | Jul 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: add permission checks for FSCTL_DUPLICATE_EX... |
| CVE-2026-64398 | HIGH | 8.1 | 0.5% | Jul 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: add a permission check for FSCTL_SET_ZERO_DA... |
| CVE-2026-64397 | CRITICAL | 9.8 | 0.5% | Jul 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: serialize QUERY_DIRECTORY requests per file ... |
| CVE-2026-64396 | HIGH | 8.8 | 0.4% | Jul 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix UAF of struct file_lock in SMB2_LOCK def... |
| CVE-2026-64395 | HIGH | 7.5 | 0.4% | Jul 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: require source read access for duplicate ext... |
| CVE-2026-64394 | HIGH | 8.8 | 0.5% | Jul 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: add a WRITE_DAC/WRITE_OWNER check to SMB2 SE... |
| CVE-2026-64393 | CRITICAL | 9.1 | 0.5% | Jul 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: run set info with opener credentials SMB2 S... |
| CVE-2026-64392 | CRITICAL | 9.1 | 0.5% | Jul 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: use opener credentials for delete-on-close ... |
| CVE-2026-64391 | CRITICAL | 9.8 | 0.5% | Jul 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: use opener credentials for ADS I/O Alternat... |
| CVE-2026-64390 | HIGH | 8.8 | 0.5% | Jul 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: track the connection owning a byte-range loc... |
| CVE-2026-64389 | HIGH | 8.2 | 0.5% | Jul 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: validate NTLMv2 response before updating ses... |
| CVE-2026-64388 | HIGH | 7.8 | 0.1% | Jul 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: smb/client: fix chown/chgrp with SMB3 POSIX Extensi... |
| CVE-2026-64387 | CRITICAL | 9.8 | 0.5% | Jul 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: smb: client: fix query directory replay double-free... |
| CVE-2026-64386 | CRITICAL | 9.8 | 0.5% | Jul 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: smb: client: fix query_info() replay double-free A... |
| CVE-2026-64385 | CRITICAL | 9.8 | 0.5% | Jul 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: smb: client: fix double-free in SMB2_ioctl() replay... |
| CVE-2026-64384 | CRITICAL | 9.8 | 0.5% | Jul 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: smb: client: fix change notify replay double-free ... |
| CVE-2026-64383 | CRITICAL | 9.8 | 0.5% | Jul 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: smb: client: fix double-free in SMB2_flush() replay... |
| CVE-2026-64382 | HIGH | 8.8 | 0.4% | Jul 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: smb: client: fix double-free in SMB2_open() replay ... |
| CVE-2026-64381 | — | — | 0.2% | Jul 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: smb: client: Fix next buffer leak in receive_encryp... |
| CVE-2026-64380 | HIGH | 8.2 | 0.4% | Jul 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: smb: client: harden POSIX SID length parsing posix... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now