2026 CVE Vulnerabilities

64,803 CVEs published in 2026.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2026-73166HIGH8.6Nozomi Networks Labs identified a CWE-94: Improper Control of Generation of Code ('Code Injection') vulnerability in the...
CVE-2026-73165HIGH8.6Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command...
CVE-2026-73164HIGH8.6Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command...
CVE-2026-73163HIGH8.6Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command...
CVE-2026-19535HIGH8.6Nozomi Networks Labs identified a CWE-352: Cross-Site Request Forgery (CSRF) vulnerability in the LuCI administrative we...
CVE-2026-92465HIGH7.6Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Themeum WP Mega Me...
CVE-2026-92456HIGH7.1yshop-crm through 2.1.3 fails to enforce authorization on the saveRedisSet and getRedisSet endpoints in CrmCustomerContr...
CVE-2026-40857HIGH8.4WNC T-Mobile 5G Box IDU router contains a cross-site request forgery (CSRF) vulnerability in the portal.cgi component. T...
CVE-2026-40856HIGH7.1WNC T-Mobile 5G Box IDU router is vulnerable to improper access control. The vulnerability exists in the wnc_maccheck.cg...
CVE-2026-40854HIGH8.7WNC T-Mobile 5G Box IDU router contains an authentication bypass vulnerability in the portal.cgi component. The session ...
CVE-2026-90047HIGH7.8In the Linux kernel, the following vulnerability has been resolved: drm/xe: Don't hand out the flat CCS storage as usab...
CVE-2026-90046HIGH7.8In the Linux kernel, the following vulnerability has been resolved: mm/page_alloc: don't spin_trylock() in NMI on UP P...
CVE-2026-90045HIGH7.8In the Linux kernel, the following vulnerability has been resolved: USB: gadget: ffs: fix mm lifetime handling io_data...
CVE-2026-90044HIGH7.8In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_fs: Fix Use-After-Free in AIO error ...
CVE-2026-90043HIGH7.8In the Linux kernel, the following vulnerability has been resolved: zram: fix slot lock bit position on big-endian 64-b...
CVE-2026-90041HIGH8.8In the Linux kernel, the following vulnerability has been resolved: HID: sony: clean up device list on probe failure s...
CVE-2026-90032HIGH7.8In the Linux kernel, the following vulnerability has been resolved: media: usbtv: keep device alive while ALSA card exi...
CVE-2026-90030HIGH7.8In the Linux kernel, the following vulnerability has been resolved: usb: dwc3: clear forceRM when issuing EndTransfer ...
CVE-2026-90027HIGH7.8In the Linux kernel, the following vulnerability has been resolved: usb: typec: qcom-pmic-typec: disable cc_debounce_dw...
CVE-2026-90026HIGH7.8In the Linux kernel, the following vulnerability has been resolved: usb: typec: qcom-pmic: cancel reset_work on stop p...
CVE-2026-90025HIGH7.7In the Linux kernel, the following vulnerability has been resolved: usb: typec: ucsi: displayport: Fix OOB altmode arra...
CVE-2026-90022HIGH7.8In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_midi2: fix use-after-free in string ...
CVE-2026-90018HIGH8.8In the Linux kernel, the following vulnerability has been resolved: staging: rtl8723bs: fix OOB read / stack overflow i...
CVE-2026-90017HIGH7.1In the Linux kernel, the following vulnerability has been resolved: staging: rtl8723bs: fix OOB read in rtw_action_fram...
CVE-2026-90016HIGH7.1In the Linux kernel, the following vulnerability has been resolved: staging: rtl8723bs: fix OOB read in rtw_restruct_wm...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now