2026 CVE Vulnerabilities
56,309 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-23099 | HIGH | 7.1 | 0.2% | Feb 4, 2026 | In the Linux kernel, the following vulnerability has been resolved: bonding: limit BOND_MODE_8023AD to Ethernet devices... |
| CVE-2026-23098 | HIGH | 7.8 | 0.2% | Feb 4, 2026 | In the Linux kernel, the following vulnerability has been resolved: netrom: fix double-free in nr_route_frame() In nr_... |
| CVE-2026-23092 | HIGH | 7.8 | 0.2% | Feb 4, 2026 | In the Linux kernel, the following vulnerability has been resolved: iio: dac: ad3552r-hs: fix out-of-bound write in ad3... |
| CVE-2026-23089 | HIGH | 7.8 | 0.1% | Feb 4, 2026 | In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Fix use-after-free in snd_usb_mixe... |
| CVE-2026-23083 | HIGH | 7.8 | 0.1% | Feb 4, 2026 | In the Linux kernel, the following vulnerability has been resolved: fou: Don't allow 0 for FOU_ATTR_IPPROTO. fou_udp_r... |
| CVE-2026-23078 | HIGH | 7.8 | 0.1% | Feb 4, 2026 | In the Linux kernel, the following vulnerability has been resolved: ALSA: scarlett2: Fix buffer overflow in config retr... |
| CVE-2026-23077 | HIGH | 7.8 | 0.1% | Feb 4, 2026 | In the Linux kernel, the following vulnerability has been resolved: mm/vma: fix anon_vma UAF on mremap() faulted, unfau... |
| CVE-2026-23076 | HIGH | 7.1 | 0.1% | Feb 4, 2026 | In the Linux kernel, the following vulnerability has been resolved: ALSA: ctxfi: Fix potential OOB access in audio mixe... |
| CVE-2026-23074 | HIGH | 7.8 | 0.1% | Feb 4, 2026 | In the Linux kernel, the following vulnerability has been resolved: net/sched: Enforce that teql can only be used as ro... |
| CVE-2026-23073 | HIGH | 7.8 | 0.1% | Feb 4, 2026 | In the Linux kernel, the following vulnerability has been resolved: wifi: rsi: Fix memory corruption due to not set vif... |
| CVE-2026-23068 | HIGH | 7.8 | 0.1% | Feb 4, 2026 | In the Linux kernel, the following vulnerability has been resolved: spi: spi-sprd-adi: Fix double free in probe error p... |
| CVE-2026-20119 | HIGH | 7.5 | 0.4% | Feb 4, 2026 | A vulnerability in the text rendering subsystem of Cisco TelePresence Collaboration Endpoint (CE) Software and Cisco Roo... |
| CVE-2026-20098 | HIGH | 8.8 | 0.4% | Feb 4, 2026 | A vulnerability in the Certificate Management feature of Cisco Meeting Management could allow an authenticated, remote a... |
| CVE-2026-0662 | HIGH | 7.8 | 0.2% | Feb 4, 2026 | A maliciously crafted project directory, when opening a max file in Autodesk 3ds Max, could lead to execution of arbitra... |
| CVE-2026-0661 | HIGH | 8.4 | 0.2% | Feb 4, 2026 | A maliciously crafted RGB file, when parsed through Autodesk 3ds Max, can force a Memory Corruption vulnerability. A mal... |
| CVE-2026-0660 | HIGH | 8.4 | 0.2% | Feb 4, 2026 | A maliciously crafted GIF file, when parsed through Autodesk 3ds Max, can cause a Stack-Based Buffer Overflow vulnerabil... |
| CVE-2026-0659 | HIGH | 7.8 | 0.2% | Feb 4, 2026 | A maliciously crafted USD file, when loaded or imported into Autodesk Arnold or Autodesk 3ds Max, can force an Out-of-Bo... |
| CVE-2026-0538 | HIGH | 8.4 | 0.2% | Feb 4, 2026 | A maliciously crafted GIF file, when parsed through Autodesk 3ds Max, can force an Out-of-Bounds Write vulnerability. A ... |
| CVE-2026-0537 | HIGH | 8.4 | 0.2% | Feb 4, 2026 | A maliciously crafted RGB file, when parsed through Autodesk 3ds Max, can force a Memory Corruption vulnerability. A mal... |
| CVE-2026-22548 | HIGH | 8.2 | 0.2% | Feb 4, 2026 | When a BIG-IP Advanced WAF or ASM security policy is configured on a virtual server, undisclosed requests along with con... |
| CVE-2026-1642 | HIGH | 8.2 | 0.3% | Feb 4, 2026 | A vulnerability exists in NGINX OSS and NGINX Plus when configured to proxy to upstream Transport Layer Security (TLS) s... |
| CVE-2026-24735 | HIGH | 7.5 | 0.6% | Feb 4, 2026 | Exposure of Private Personal Information to an Unauthorized Actor vulnerability in Apache Answer. This issue affects Ap... |
| CVE-2026-1819 | HIGH | 8.8 | 0.3% | Feb 4, 2026 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Karel Elect... |
| CVE-2026-20987 | HIGH | 8.7 | 0.1% | Feb 4, 2026 | Improper input validation in GalaxyDiagnostics prior to version 3.5.050 allows local privileged attackers to execute pri... |
| CVE-2026-20983 | HIGH | 7.8 | 0.1% | Feb 4, 2026 | Improper export of android application components in Samsung Dialer prior to SMR Feb-2026 Release 1 allows local attacke... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now