2026 CVE Vulnerabilities
65,693 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-98090 | — | — | — | Sep 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: btrfs: restore active device pointers after failed ... |
| CVE-2026-98089 | — | — | — | Sep 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: bonding: alb: fix uninitialized transport header ac... |
| CVE-2026-98088 | — | — | — | Sep 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: scsi: mpt3sas: Avoid out-of-bounds cpumask_of_node(... |
| CVE-2026-98087 | — | — | — | Sep 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: sched/rt,dl: Skip migrate-disabled tasks when picki... |
| CVE-2026-98086 | — | — | — | Sep 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: ALSA: ump: do not touch legacy_rmidi before it exis... |
| CVE-2026-98085 | — | — | — | Sep 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: bpf: backtrack_insn(): Handle ld_{abs,ind} subprog ... |
| CVE-2026-98084 | — | — | — | Sep 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: bpf: backtracking shouldn't clear outer frame R1-R5... |
| CVE-2026-98083 | HIGH | 7 | — | Sep 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: btrfs: fix transaction use-after-free in raid strip... |
| CVE-2026-98082 | — | — | — | Sep 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: btrfs: fix the possible bioc_list memory leak durin... |
| CVE-2026-98081 | — | — | — | Sep 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: btrfs: zoned: finish active block group cleanup if ... |
| CVE-2026-98080 | — | — | — | Sep 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: btrfs: do not force reloc root creation during qgro... |
| CVE-2026-98079 | — | — | — | Sep 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: btrfs: zstd: fix lost wakeup when waiting for a wor... |
| CVE-2026-98078 | — | — | — | Sep 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: ipvs: fix reversed sequence option serialization h... |
| CVE-2026-98077 | — | — | — | Sep 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_conntrack_sip: fix OOB read in sip_sk... |
| CVE-2026-98076 | — | — | — | Sep 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: tracing/probes: Fix use-after-free on field name/ty... |
| CVE-2026-98075 | — | — | — | Sep 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: bpf: reject BPF_PSEUDO_FUNC reference to the main p... |
| CVE-2026-98074 | — | — | — | Sep 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: bonding: do not clear curr_active_slave prematurely... |
| CVE-2026-98073 | HIGH | 7.8 | — | Sep 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: net: Remove conflicting altnames for dying netns in... |
| CVE-2026-98072 | — | — | — | Sep 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: net/rds: use wq_has_sleeper() in release_in_xmit() ... |
| CVE-2026-98071 | — | — | — | Sep 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: net/rds: clear cp_flags bits individually in rds_co... |
| CVE-2026-98070 | HIGH | 8.1 | — | Sep 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: net/rds: acquire RDS_IN_XMIT in rds_tcp_reset_callb... |
| CVE-2026-98069 | HIGH | 8.1 | — | Sep 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: net/rds: acquire the fastpath locks in rds_conn_shu... |
| CVE-2026-98068 | — | — | — | Sep 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: net/rds: don't let rds_conn_shutdown() consume a co... |
| CVE-2026-98067 | — | — | — | Sep 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: erofs: disable LZ4 rolling decompression for now L... |
| CVE-2026-98066 | — | — | — | Sep 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: ALSA: caiaq: Fix potential double-free at error pat... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now