2026 CVE Vulnerabilities
65,279 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-98119 | — | — | — | Sep 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: netfs: break unbuffered write when netfs_alloc_subr... |
| CVE-2026-98118 | — | — | — | Sep 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: netfs: Fix readahead synchronisation issues by load... |
| CVE-2026-98117 | — | — | — | Sep 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: cachefiles: Fix potential UAF/KASAN warning Curren... |
| CVE-2026-98114 | — | — | — | Sep 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: propagate DACL parsing errors parse_dacl() ... |
| CVE-2026-98113 | — | — | — | Sep 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: rate limit unmapped SID errors A client can... |
| CVE-2026-98111 | — | — | — | Sep 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btintel: validate version TLV value leng... |
| CVE-2026-98110 | — | — | — | Sep 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btintel: bound firmware ID by TLV length... |
| CVE-2026-98109 | — | — | — | Sep 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_core: Fix race condition during devi... |
| CVE-2026-98107 | — | — | — | Sep 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: fix out-of-bounds write in l2cap_... |
| CVE-2026-98106 | — | — | — | Sep 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: drm/pagemap: Prevent double migration of device pag... |
| CVE-2026-98105 | — | — | — | Sep 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: net: ethernet: oa_tc6: Improve the error recovery ... |
| CVE-2026-98104 | — | — | — | Sep 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: net/sched: cls_u32: fix duplicate handle when node ... |
| CVE-2026-98103 | — | — | — | Sep 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: igmp: convert struct ip_sf_list to RCU Commit 23d2... |
| CVE-2026-98102 | — | — | — | Sep 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: ipv6: mcast: fix RCU list diversion in ip6_mc_del1_... |
| CVE-2026-98101 | — | — | — | Sep 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: ipv6: mcast: use copy-on-write RCU updates in ip6_m... |
| CVE-2026-98099 | — | — | — | Sep 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: ipv6: mcast: use rcu_assign_pointer() for __rcu lis... |
| CVE-2026-98098 | — | — | — | Sep 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: tipc: fix NULL deref in tipc_named_node_up() on emp... |
| CVE-2026-98097 | — | — | — | Sep 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: tipc: Dont send random pad bytes in RESET/ACTIVATE ... |
| CVE-2026-98095 | — | — | — | Sep 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: af_packet: Don't cast tpacket_hdr.tp_len to int in ... |
| CVE-2026-98094 | — | — | — | Sep 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: staging: fbtft: make dirty_lock IRQ-safe fbtft_mkd... |
| CVE-2026-98093 | — | — | — | Sep 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: ASoC: fsl_micfil: balance mclk enable/disable hw_p... |
| CVE-2026-98092 | — | — | — | Sep 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: ASoC: amd: yc: fix memory leak in acp6x_pdm_dma_clo... |
| CVE-2026-98091 | — | — | — | Sep 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: btrfs: detach failed sprout device from transaction... |
| CVE-2026-98090 | — | — | — | Sep 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: btrfs: restore active device pointers after failed ... |
| CVE-2026-98089 | — | — | — | Sep 25, 2026 | In the Linux kernel, the following vulnerability has been resolved: bonding: alb: fix uninitialized transport header ac... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now