57,566 vulnerabilities published in 2026
In the Linux kernel, the following vulnerability has been resolved: EDAC/igen6: Fix call trace due to missing release()
In the Linux kernel, the following vulnerability has been resolved: ocfs2: don't BUG_ON an invalid journal dinode [BUG
In the Linux kernel, the following vulnerability has been resolved: RDMA/hns: Fix warning in poll cq direct mode CQs a
In the Linux kernel, the following vulnerability has been resolved: pinctrl: spacemit: fix NULL check in spacemit_pin_s
In the Linux kernel, the following vulnerability has been resolved: media: atomisp: gc2235: fix UAF and memory leak gc
In the Linux kernel, the following vulnerability has been resolved: crypto: ccp/sev-dev-tsm - bail out early when pdev-
In the Linux kernel, the following vulnerability has been resolved: crypto: ccp - Treat zero-length cert chain as query
In the Linux kernel, the following vulnerability has been resolved: soc: xilinx: Shutdown and free rx mailbox channel
In the Linux kernel, the following vulnerability has been resolved: soc: xilinx: Fix race condition in event registrati
In the Linux kernel, the following vulnerability has been resolved: accel/amdxdna: Guard management mailbox channel cle
In the Linux kernel, the following vulnerability has been resolved: drm/rockchip: dw_dp: Fix null-ptr-deref in dw_dp_re
In the Linux kernel, the following vulnerability has been resolved: mmc: vub300: defer reset until cmd_mutex is unlocke
In the Linux kernel, the following vulnerability has been resolved: hwmon: (occ) unregister sysfs devices outside occ l
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: sco: Fix a race condition in sco_sock_ti
In the Linux kernel, the following vulnerability has been resolved: net/mlx5: LAG, MPESW, Fix missing complete() on dev
In the Linux kernel, the following vulnerability has been resolved: bpf: Disable xfrm_decode_session hook attachment B
In the Linux kernel, the following vulnerability has been resolved: Drivers: hv: vmbus: use generic driver_override inf
In the Linux kernel, the following vulnerability has been resolved: s390/dasd: Fix potential NULL pointer dereference
In the Linux kernel, the following vulnerability has been resolved: mm: migrate_device: fix pte_pfn/pte_dirty called on
In the Linux kernel, the following vulnerability has been resolved: iommufd/viommu: Release the igroup lock on the vdev
In the Linux kernel, the following vulnerability has been resolved: riscv: drop __init from vec_check_unaligned_access_
In the Linux kernel, the following vulnerability has been resolved: tracing/mmiotrace: Add NULL check for mmio_trace_ar
In the Linux kernel, the following vulnerability has been resolved: scsi: ufs: core: Initialize hba->rpmbs list in ufsh
In the Linux kernel, the following vulnerability has been resolved: hwmon: (sht3x) Fix unaligned accesses Sashiko repo
In the Linux kernel, the following vulnerability has been resolved: erofs: ensure valid f_path for page cache sharing
In the Linux kernel, the following vulnerability has been resolved: dmaengine: idxd: fix double free of wq, engine, and
In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: vgic: Avoid double-deactivate of IRQs i
In the Linux kernel, the following vulnerability has been resolved: drm/vmwgfx: enforce cursor size limits for MOB curs
In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: Fix missing authorization check in KFD_
In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: use proper context for logging Th
In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: check if dml21_add_phantom_plane()
In the Linux kernel, the following vulnerability has been resolved: s390/zcrypt: Fix missing mem scrub at clear key imp
In the Linux kernel, the following vulnerability has been resolved: power: supply: max17040: handle missing status supp
In the Linux kernel, the following vulnerability has been resolved: igc: remove napi_synchronize() in igc_down() When
In the Linux kernel, the following vulnerability has been resolved: mm: mglru: fix stale batch updates after memcg repa
In Eclipse Lyo versions 2.0.0 to 7.0.0, OAuth server authorization checks can be bypassed when the 2-legged auth is supp
Joomla Extension - digital-peak.com - Authenticated, privileged blind SQL injection in DP Calendar 5.5.0 - 10.11.2 - Sav
Joomla Extension - digital-peak.com - Authenticated, privileged stored XSS in DP Calendar 7.0.0 - 10.11.2 - Location tit
Joomla Extension - Jefferson49 - Unauthenticated blind SQLi in Sexy Polling Reloaded < 5.6.1
Joomla Extension - mrvinoth.com - Reflected XSS in All Video Share 1.0.0-4.5.0 - Various user supplied inputs lacked esc
WWBN AVideo through version 30.0 fails to enforce authentication on the report4.json.php and report4.1.json.php endpoint
WWBN AVideo through 30.0 (and master up to commit 4cb576e) contains a cross-site request forgery vulnerability in plugin
SvelteKit versions from 2.38.0 before 2.60.1 contain a race condition in query.batch that allows concurrent requests fro
Pega Platform versions 7.1.0 through 25.1.2 are affected by an improper validation of inputs that are used for loop cond
This vulnerability exists in the CP Plus CP-XR-DE21-S Router due to the presence of hardcoded HTTP Digest authentication
grpc-gateway v2.28.0 is vulnerable to Incorrect Access Control. The application processes the X-HTTP-Method-Override hea
CVE-2025-40843 https://github.com/advisories/GHSA-5xf2-f6ch-6p8r was fixed by replacing unchecked strcpy() with a bound
CodeChecker's massStoreRun processing path performs one-shot decompression of attacker-controlled, Base64-encoded zlib d
Uncontrolled Recursion vulnerability in the Elixir standard library allows an attacker who controls a list passed to ins
An improper access control vulnerability exists in the web management interface of PaperCut MF and PaperCut NG. Under sp
Scan for 2026 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started