2026 CVE Vulnerabilities
43,669 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-68101 | — | — | — | Aug 10, 2026 | In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: fix check in amdgpu_hmm_invalidate_gfx ... |
| CVE-2026-68100 | — | — | 0.2% | Aug 10, 2026 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: validate num_subauth when copying ACE in set... |
| CVE-2026-68099 | — | — | — | Aug 10, 2026 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: restore DACL size on check_add_overflow() to... |
| CVE-2026-68098 | — | — | 0.2% | Aug 10, 2026 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: bound DACL dedup walk to copied ACEs set_nt... |
| CVE-2026-68097 | — | — | 0.2% | Aug 10, 2026 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: validate ACE size against SID sub-authoritie... |
| CVE-2026-68096 | — | — | — | Aug 10, 2026 | In the Linux kernel, the following vulnerability has been resolved: audit: fix recursive locking deadlock in audit_dupe... |
| CVE-2026-68095 | — | — | — | Aug 10, 2026 | In the Linux kernel, the following vulnerability has been resolved: fuse-uring: fix race between registration and conne... |
| CVE-2026-68094 | — | — | — | Aug 10, 2026 | In the Linux kernel, the following vulnerability has been resolved: sched_ext: Preserve rq tracking across local DSQ di... |
| CVE-2026-68093 | — | — | — | Aug 10, 2026 | In the Linux kernel, the following vulnerability has been resolved: KVM: SVM: Bump asid_generation on CPU online to avo... |
| CVE-2026-59233 | HIGH | 8.7 | — | Aug 10, 2026 | Missing Authorization in the permission management component in Roskus Prospero Flow CRM before 5.2.1 allows any authent... |
| CVE-2026-59090 | HIGH | 8.4 | 0.3% | Aug 10, 2026 | A flaw was found in GIMP's PSD file format plugin. This vulnerability, an unsigned integer underflow in the `block_rem` ... |
| CVE-2026-19429 | — | — | 0.7% | Aug 10, 2026 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2026-19278 | MEDIUM | 6.8 | — | Aug 10, 2026 | A flaw was found in StackRox/RHACS Central's Auth Machine-to-Machine (M2M) token exchange. When an administrator configu... |
| CVE-2026-18370 | MEDIUM | 4.8 | — | Aug 10, 2026 | entr is vulnerable to Heap-based buffer overflow in run_utility() function. The function allocates a fixed-size heap buf... |
| CVE-2026-13206 | CRITICAL | 9.8 | — | Aug 10, 2026 | Improper neutralization of special elements used in an OS command ('OS command injection') vulnerability in Zyxel Networ... |
| CVE-2026-12984 | HIGH | 8.2 | — | Aug 10, 2026 | Insufficiently Protected Credentials vulnerability in Zyxel Networks WAH7601 allows Retrieve Embedded Sensitive Data. T... |
| CVE-2026-68092 | — | — | — | Aug 10, 2026 | In the Linux kernel, the following vulnerability has been resolved: time/jiffies: Register jiffies clocksource before u... |
| CVE-2026-68091 | — | — | — | Aug 10, 2026 | In the Linux kernel, the following vulnerability has been resolved: HID: wacom: stop hardware after post-start probe fa... |
| CVE-2026-68090 | — | — | — | Aug 10, 2026 | In the Linux kernel, the following vulnerability has been resolved: debugobjects: Plug race against a concurrent OOM di... |
| CVE-2026-68089 | — | — | — | Aug 10, 2026 | In the Linux kernel, the following vulnerability has been resolved: iio: core: fix uninitialized data in debugfs If *p... |
| CVE-2026-68088 | — | — | 0.2% | Aug 10, 2026 | In the Linux kernel, the following vulnerability has been resolved: usb: gadget: function: rndis: add length check to r... |
| CVE-2026-68087 | — | — | — | Aug 10, 2026 | In the Linux kernel, the following vulnerability has been resolved: HID: wacom: use GFP_ATOMIC in wacom_wac_queue_flush... |
| CVE-2026-68086 | — | — | — | Aug 10, 2026 | In the Linux kernel, the following vulnerability has been resolved: mm/khugepaged: write all dirty file folios when col... |
| CVE-2026-68085 | — | — | — | Aug 10, 2026 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_uart: clear HCI_UART_SENDING when wr... |
| CVE-2026-68084 | — | — | — | Aug 10, 2026 | In the Linux kernel, the following vulnerability has been resolved: staging: vme_user: fix location monitor leak in tsi... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now