2026 CVE Vulnerabilities

53,206 CVEs published in 2026.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2026-22664HIGH7.7prompts.chat prior to commit 30a8f04 contains a server-side request forgery vulnerability in the Fal.ai media status pol...
CVE-2026-22663HIGH8.7prompts.chat prior to commit 7b81836 contains multiple authorization bypass vulnerabilities due to missing isPrivate che...
CVE-2026-22661HIGH8.6prompts.chat prior to commit 0f8d4c3 contains a path traversal vulnerability in skill file handling that allows attacker...
CVE-2026-5474HIGH8.8A vulnerability was found in NASA cFS up to 7.0.0. This affects the function CFE_MSG_GetSize of the file apps/to_lab/fsw...
CVE-2026-5473HIGH7A vulnerability has been found in NASA cFS up to 7.0.0. The impacted element is the function pickle.load of the componen...
CVE-2026-35218HIGH8.7Budibase is an open-source low-code platform. Prior to version 3.32.5, Budibase's Builder Command Palette renders entity...
CVE-2026-35214HIGH8.7Budibase is an open-source low-code platform. Prior to version 3.33.4, the plugin file upload endpoint (POST /api/plugin...
CVE-2026-31403HIGH7.8In the Linux kernel, the following vulnerability has been resolved: NFSD: Hold net reference for the lifetime of /proc/...
CVE-2026-31401HIGH7.8In the Linux kernel, the following vulnerability has been resolved: HID: bpf: prevent buffer overflow in hid_hw_request...
CVE-2026-31399HIGH7.8In the Linux kernel, the following vulnerability has been resolved: nvdimm/bus: Fix potential use after free in asynchr...
CVE-2026-31398HIGH7.8In the Linux kernel, the following vulnerability has been resolved: mm/rmap: fix incorrect pte restoration for lazyfree...
CVE-2026-31397HIGH7.8In the Linux kernel, the following vulnerability has been resolved: mm/huge_memory: fix use of NULL folio in move_pages...
CVE-2026-31396HIGH7.8In the Linux kernel, the following vulnerability has been resolved: net: macb: fix use-after-free access to PTP clock ...
CVE-2026-31395HIGH7.1In the Linux kernel, the following vulnerability has been resolved: bnxt_en: fix OOB access in DBG_BUF_PRODUCER async e...
CVE-2026-31393HIGH8.1In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: Validate L2CAP_INFO_RSP payload l...
CVE-2026-31392HIGH8.1In the Linux kernel, the following vulnerability has been resolved: smb: client: fix krb5 mount with username option C...
CVE-2026-31389HIGH7.8In the Linux kernel, the following vulnerability has been resolved: spi: fix use-after-free on controller registration ...
CVE-2026-25118HIGH7.5immich is a high performance self-hosted photo and video management solution. Prior to version 2.6.0, the Immich applica...
CVE-2026-25044HIGH8.8Budibase is an open-source low-code platform. Prior to version 3.33.4, the bash automation step executes user-provided c...
CVE-2026-25043HIGH7.5Budibase is an open-source low-code platform. Prior to version 3.23.25, a business logic vulnerability exists in Budibas...
CVE-2026-23466HIGH7.8In the Linux kernel, the following vulnerability has been resolved: drm/xe: Open-code GGTT MMIO access protection GGTT...
CVE-2026-23462HIGH8.8In the Linux kernel, the following vulnerability has been resolved: Bluetooth: HIDP: Fix possible UAF This fixes the f...
CVE-2026-23461HIGH8.8In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: Fix use-after-free in l2cap_unreg...
CVE-2026-23459HIGH8.2In the Linux kernel, the following vulnerability has been resolved: ip_tunnel: adapt iptunnel_xmit_stats() to NETDEV_PC...
CVE-2026-23458HIGH7.8In the Linux kernel, the following vulnerability has been resolved: netfilter: ctnetlink: fix use-after-free in ctnetli...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now