2026 CVE Vulnerabilities
53,211 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-20139 | MEDIUM | 4.3 | 5.1% | Feb 18, 2026 | In Splunk Enterprise versions below 10.2.0, 10.0.2, 9.4.8, 9.3.9, and 9.2.12, and Splunk Cloud Platform versions below 1... |
| CVE-2026-20138 | MEDIUM | 4.9 | 0.3% | Feb 18, 2026 | In Splunk Enterprise versions below 10.2.0, 10.0.2, 9.4.7, 9.3.9, and 9.2.11, a user of a Splunk Search Head Cluster (SH... |
| CVE-2026-20137 | MEDIUM | 5.7 | 0.2% | Feb 18, 2026 | In Splunk Enterprise versions below 10.2.0, 10.0.3, 9.4.5, 9.3.7, and 9.2.9, and Splunk Cloud Platform versions below 10... |
| CVE-2026-2657 | MEDIUM | 5.5 | 0.3% | Feb 18, 2026 | A vulnerability has been found in wren-lang wren up to 0.4.0. This impacts the function printError of the file src/vm/wr... |
| CVE-2026-2230 | MEDIUM | 4.3 | 0.2% | Feb 18, 2026 | The Booking Calendar plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and i... |
| CVE-2026-23230 | MEDIUM | 5.5 | 0.2% | Feb 18, 2026 | In the Linux kernel, the following vulnerability has been resolved: smb: client: split cached_fid bitfields to avoid sh... |
| CVE-2026-23229 | MEDIUM | 5.5 | 0.1% | Feb 18, 2026 | In the Linux kernel, the following vulnerability has been resolved: crypto: virtio - Add spinlock protection with virtq... |
| CVE-2026-23228 | MEDIUM | 5.5 | 0.1% | Feb 18, 2026 | In the Linux kernel, the following vulnerability has been resolved: smb: server: fix leak of active_num_conn in ksmbd_t... |
| CVE-2026-23222 | MEDIUM | 5.5 | 0.1% | Feb 18, 2026 | In the Linux kernel, the following vulnerability has been resolved: crypto: omap - Allocate OMAP_CRYPTO_FORCE_COPY scat... |
| CVE-2026-23220 | MEDIUM | 5.5 | 0.1% | Feb 18, 2026 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix infinite loop caused by next_smb2_rcv_hd... |
| CVE-2026-27100 | MEDIUM | 4.3 | 0.3% | Feb 18, 2026 | Jenkins 2.550 and earlier, LTS 2.541.1 and earlier accepts Run Parameter values that refer to builds the user submitting... |
| CVE-2026-23219 | MEDIUM | 5.5 | 0.1% | Feb 18, 2026 | In the Linux kernel, the following vulnerability has been resolved: mm/slab: Add alloc_tagging_slab_free_hook for memcg... |
| CVE-2026-23218 | MEDIUM | 5.5 | 0.1% | Feb 18, 2026 | In the Linux kernel, the following vulnerability has been resolved: gpio: loongson-64bit: Fix incorrect NULL check afte... |
| CVE-2026-23217 | MEDIUM | 5.5 | 0.1% | Feb 18, 2026 | In the Linux kernel, the following vulnerability has been resolved: riscv: trace: fix snapshot deadlock with sbi ecall ... |
| CVE-2026-23215 | MEDIUM | 5.5 | 0.1% | Feb 18, 2026 | In the Linux kernel, the following vulnerability has been resolved: x86/vmware: Fix hypercall clobbers Fedora QA repor... |
| CVE-2026-23214 | MEDIUM | 5.5 | 0.1% | Feb 18, 2026 | In the Linux kernel, the following vulnerability has been resolved: btrfs: reject new transactions if the fs is fully r... |
| CVE-2026-23213 | MEDIUM | 5.5 | 0.1% | Feb 18, 2026 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/pm: Disable MMIO access during SMU Mode 1 r... |
| CVE-2026-23212 | MEDIUM | 4.7 | 0.1% | Feb 18, 2026 | In the Linux kernel, the following vulnerability has been resolved: bonding: annotate data-races around slave->last_rx ... |
| CVE-2026-23211 | MEDIUM | 5.5 | 0.1% | Feb 18, 2026 | In the Linux kernel, the following vulnerability has been resolved: mm, swap: restore swap_space attr aviod kernel pani... |
| CVE-2026-1404 | MEDIUM | 6.1 | 0.2% | Feb 18, 2026 | The Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin plugi... |
| CVE-2026-1441 | MEDIUM | 6.1 | 0.2% | Feb 18, 2026 | Reflected Cross-Site Scripting (XSS) vulnerability in the Graylog Web Interface console, version 2.2.3, caused by a lack... |
| CVE-2026-1440 | MEDIUM | 6.1 | 0.2% | Feb 18, 2026 | Reflected Cross-Site Scripting (XSS) vulnerability in the Graylog Web Interface console, version 2.2.3, caused by a lack... |
| CVE-2026-1439 | MEDIUM | 6.1 | 0.2% | Feb 18, 2026 | Reflected Cross-Site Scripting (XSS) vulnerability in the Graylog Web Interface console, version 2.2.3, caused by a lack... |
| CVE-2026-1438 | MEDIUM | 6.1 | 0.2% | Feb 18, 2026 | Reflected Cross-Site Scripting (XSS) vulnerability in the Graylog Web Interface console, version 2.2.3, caused by a lack... |
| CVE-2026-1437 | MEDIUM | 6.1 | 0.2% | Feb 18, 2026 | Reflected Cross-Site Scripting (XSS) vulnerability in the Graylog Web Interface console, version 2.2.3, caused by a lack... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now