Linux Kernel
20,827 CVEs tracked. 36 of them are in CISA KEV.
This hub aggregates every CVE we track for Linux Kernel, a product in the operating systems space. Use it to gauge the current risk picture and drill into individual advisories.
Linux Kernel CVEs per month
| Month | CVEs |
|---|---|
| 2024-11 | 280 |
| 2024-12 | 356 |
| 2025-01 | 229 |
| 2025-02 | 910 |
| 2025-03 | 207 |
| 2025-04 | 280 |
| 2025-05 | 551 |
| 2025-06 | 376 |
| 2025-07 | 404 |
| 2025-08 | 188 |
| 2025-09 | 738 |
| 2025-10 | 651 |
| 2025-11 | 104 |
| 2025-12 | 1055 |
| 2026-01 | 246 |
| 2026-02 | 222 |
| 2026-03 | 178 |
| 2026-04 | 377 |
| 2026-05 | 1029 |
| 2026-06 | 513 |
| 2026-07 | 836 |
| 2026-08 | 1643 |
| 2026-09 | 2115 |
| 2026-10 | 0 |
Severity
How the 20,827 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.
- Critical944
- High8,029
- Medium8,550
- Low435
Latest CVEs
The 15 most recently published vulnerabilities affecting Linux Kernel.
- CVE-2026-98164KVM: x86/mmu: Check write tracking in all address spaces5.5
- CVE-2026-98163cgroup: Avoid iteration of dying tasks with zero refcount7.0
- CVE-2026-98161nvdimm: pmem: keep PREFLUSH before data writes5.5
- CVE-2026-98162smb/server: fix tree connection leak in smb2_tree_connect()5.5
- CVE-2026-98160staging: rtl8723bs: fix mismatched free of HalData in rtw_sdio_if1_init()5.5
- CVE-2026-100078wifi: iwlwifi: mei: pass correct argument to function5.5
- CVE-2026-100079usb: typec: ucsi: unregister debugfs entries on teardown5.5
- CVE-2026-100077drm/msm: Recover HW before retire hung submit5.5
- CVE-2026-100076staging: rtl8723bs: fix xmit_frame/xmit_buf leaks on mgnt-frame error paths5.5
- CVE-2026-100075RDMA/srpt: Fix srpt_alloc_rw_ctxs() unwind counters9.8
- CVE-2026-100073ext4: fix transaction overflow during writeback—
- CVE-2026-100074bpf: Mark bpf_refcount field as unique5.5
- CVE-2026-100072ACPI: platform: Use acpi_bus_get_primary_device()—
- CVE-2026-100071net: hsr: free learned nodes on device setup failure—
- CVE-2026-100070netfilter: nf_nat_sip: rewind offset when NAT shrinks the packet—
Product grouping is registry-driven, with AI assist and human review. How it works