2026 CVE Vulnerabilities
53,206 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-22664 | HIGH | 7.7 | 0.3% | Apr 3, 2026 | prompts.chat prior to commit 30a8f04 contains a server-side request forgery vulnerability in the Fal.ai media status pol... |
| CVE-2026-22663 | HIGH | 8.7 | 0.3% | Apr 3, 2026 | prompts.chat prior to commit 7b81836 contains multiple authorization bypass vulnerabilities due to missing isPrivate che... |
| CVE-2026-22661 | HIGH | 8.6 | 0.4% | Apr 3, 2026 | prompts.chat prior to commit 0f8d4c3 contains a path traversal vulnerability in skill file handling that allows attacker... |
| CVE-2026-5474 | HIGH | 8.8 | 0.4% | Apr 3, 2026 | A vulnerability was found in NASA cFS up to 7.0.0. This affects the function CFE_MSG_GetSize of the file apps/to_lab/fsw... |
| CVE-2026-5473 | HIGH | 7 | 0.2% | Apr 3, 2026 | A vulnerability has been found in NASA cFS up to 7.0.0. The impacted element is the function pickle.load of the componen... |
| CVE-2026-35218 | HIGH | 8.7 | 0.3% | Apr 3, 2026 | Budibase is an open-source low-code platform. Prior to version 3.32.5, Budibase's Builder Command Palette renders entity... |
| CVE-2026-35214 | HIGH | 8.7 | 0.6% | Apr 3, 2026 | Budibase is an open-source low-code platform. Prior to version 3.33.4, the plugin file upload endpoint (POST /api/plugin... |
| CVE-2026-31403 | HIGH | 7.8 | 0.1% | Apr 3, 2026 | In the Linux kernel, the following vulnerability has been resolved: NFSD: Hold net reference for the lifetime of /proc/... |
| CVE-2026-31401 | HIGH | 7.8 | 0.1% | Apr 3, 2026 | In the Linux kernel, the following vulnerability has been resolved: HID: bpf: prevent buffer overflow in hid_hw_request... |
| CVE-2026-31399 | HIGH | 7.8 | 0.1% | Apr 3, 2026 | In the Linux kernel, the following vulnerability has been resolved: nvdimm/bus: Fix potential use after free in asynchr... |
| CVE-2026-31398 | HIGH | 7.8 | 0.1% | Apr 3, 2026 | In the Linux kernel, the following vulnerability has been resolved: mm/rmap: fix incorrect pte restoration for lazyfree... |
| CVE-2026-31397 | HIGH | 7.8 | 0.1% | Apr 3, 2026 | In the Linux kernel, the following vulnerability has been resolved: mm/huge_memory: fix use of NULL folio in move_pages... |
| CVE-2026-31396 | HIGH | 7.8 | 0.1% | Apr 3, 2026 | In the Linux kernel, the following vulnerability has been resolved: net: macb: fix use-after-free access to PTP clock ... |
| CVE-2026-31395 | HIGH | 7.1 | 0.1% | Apr 3, 2026 | In the Linux kernel, the following vulnerability has been resolved: bnxt_en: fix OOB access in DBG_BUF_PRODUCER async e... |
| CVE-2026-31393 | HIGH | 8.1 | 0.3% | Apr 3, 2026 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: Validate L2CAP_INFO_RSP payload l... |
| CVE-2026-31392 | HIGH | 8.1 | 0.1% | Apr 3, 2026 | In the Linux kernel, the following vulnerability has been resolved: smb: client: fix krb5 mount with username option C... |
| CVE-2026-31389 | HIGH | 7.8 | 0.1% | Apr 3, 2026 | In the Linux kernel, the following vulnerability has been resolved: spi: fix use-after-free on controller registration ... |
| CVE-2026-25118 | HIGH | 7.5 | 0.4% | Apr 3, 2026 | immich is a high performance self-hosted photo and video management solution. Prior to version 2.6.0, the Immich applica... |
| CVE-2026-25044 | HIGH | 8.8 | 0.5% | Apr 3, 2026 | Budibase is an open-source low-code platform. Prior to version 3.33.4, the bash automation step executes user-provided c... |
| CVE-2026-25043 | HIGH | 7.5 | 0.3% | Apr 3, 2026 | Budibase is an open-source low-code platform. Prior to version 3.23.25, a business logic vulnerability exists in Budibas... |
| CVE-2026-23466 | HIGH | 7.8 | 0.1% | Apr 3, 2026 | In the Linux kernel, the following vulnerability has been resolved: drm/xe: Open-code GGTT MMIO access protection GGTT... |
| CVE-2026-23462 | HIGH | 8.8 | 0.3% | Apr 3, 2026 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: HIDP: Fix possible UAF This fixes the f... |
| CVE-2026-23461 | HIGH | 8.8 | 0.2% | Apr 3, 2026 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: Fix use-after-free in l2cap_unreg... |
| CVE-2026-23459 | HIGH | 8.2 | 0.3% | Apr 3, 2026 | In the Linux kernel, the following vulnerability has been resolved: ip_tunnel: adapt iptunnel_xmit_stats() to NETDEV_PC... |
| CVE-2026-23458 | HIGH | 7.8 | 0.1% | Apr 3, 2026 | In the Linux kernel, the following vulnerability has been resolved: netfilter: ctnetlink: fix use-after-free in ctnetli... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now