2026 CVE Vulnerabilities

43,288 CVEs published in 2026.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2026-52806CRITICAL9.9Gogs is an open source self-hosted Git service. Prior to 0.14.3, Gogs allows authenticated users to achieve Remote Code ...
CVE-2026-46423CRITICAL9.3Rocket.Chat is an open-source, secure, fully customizable communications platform. Prior to 8.5.0, 8.4.1, 8.3.3, 8.2.3, ...
CVE-2026-45689CRITICAL9.1Rocket.Chat is an open-source, secure, fully customizable communications platform. Prior to 8.5.0, 8.4.1, 8.3.3, 8.2.3, ...
CVE-2026-45688CRITICAL9.1Rocket.Chat is an open-source, secure, fully customizable communications platform. Prior to 8.5.0, 8.4.1, 8.3.3, 8.2.3, ...
CVE-2026-33543CRITICAL9.3FOSSBilling is a free, open-source billing and client management system. Versions 0.7.2 and prior expose a guest API end...
CVE-2026-53943CRITICAL9.6Ghost is a Node.js content management system. From until 6.37.0, when Ghost is behind a shared caching layer that resul...
CVE-2026-49980CRITICAL9.8Rclone is a command-line program to sync files and directories to and from different cloud storage providers. From 1.46....
CVE-2026-13032CRITICAL9.6Use after free in WebGL in Google Chrome on Android prior to 149.0.7827.197 allowed a remote attacker to potentially per...
CVE-2026-13028CRITICAL9.6Use after free in WebGL in Google Chrome on Android prior to 149.0.7827.197 allowed a remote attacker to potentially per...
CVE-2026-54906CRITICAL9.8concurrent-ruby is a modern concurrency tools for Ruby. Prior to 1.3.7, Concurrent::ReadWriteLock#release_write_lock doe...
CVE-2026-53088CRITICAL9.8In the Linux kernel, the following vulnerability has been resolved: net: bcmgenet: fix off-by-one in bcmgenet_put_txcb ...
CVE-2026-53086CRITICAL9.8In the Linux kernel, the following vulnerability has been resolved: net: bcmgenet: fix racing timeout handler The bcmg...
CVE-2026-53055CRITICAL9.8In the Linux kernel, the following vulnerability has been resolved: crypto: hisilicon/sec2 - prevent req used-after-fre...
CVE-2026-53049CRITICAL9.8In the Linux kernel, the following vulnerability has been resolved: gfs2: add some missing log locking Function gfs2_l...
CVE-2026-53046CRITICAL9.8In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix use-after-free from async crypto on Qual...
CVE-2026-53045CRITICAL9.8In the Linux kernel, the following vulnerability has been resolved: memory: tegra124-emc: Fix dll_change check The cod...
CVE-2026-53043CRITICAL9.1In the Linux kernel, the following vulnerability has been resolved: ocfs2/dlm: validate qr_numregions in dlm_match_regi...
CVE-2026-53010CRITICAL9.8In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix use-after-free in smb2_open during durab...
CVE-2026-53006CRITICAL9.8In the Linux kernel, the following vulnerability has been resolved: ipv6: fix possible UAF in icmpv6_rcv() Caching sad...
CVE-2026-53002CRITICAL9.8In the Linux kernel, the following vulnerability has been resolved: netfilter: conntrack: remove sprintf usage Replace...
CVE-2026-52999CRITICAL9.1In the Linux kernel, the following vulnerability has been resolved: netfilter: nfnetlink_osf: fix out-of-bounds read on...
CVE-2026-52993CRITICAL9.8In the Linux kernel, the following vulnerability has been resolved: tipc: fix double-free in tipc_buf_append() tipc_ms...
CVE-2026-52989CRITICAL9.8In the Linux kernel, the following vulnerability has been resolved: nvmet-tcp: propagate nvmet_tcp_build_pdu_iovec() er...
CVE-2026-52986CRITICAL9.8In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_conntrack_sip: don't use simple_strto...
CVE-2026-52982CRITICAL9.8In the Linux kernel, the following vulnerability has been resolved: net: usb: rtl8150: fix use-after-free in rtl8150_st...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now