Security
CVE Feed
Latest vulnerabilities from the National Vulnerability Database.
27118
Total
2050
Critical
8216
High
8419
Medium
| CVE ID | Severity | Score | Description | Published |
|---|---|---|---|---|
| CVE-2026-46293 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: clk: microchip: mpfs-ccc: fix out of bounds access during output registration UBSAN reported an out … | Jun 08, 2026 |
| CVE-2026-46292 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: pmdomain: core: Fix detach procedure for virtual devices in genpd If a device is attached … | Jun 08, 2026 |
| CVE-2026-46291 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: crypto: caam - guard HMAC key hex dumps in hash_digest_key Use print_hex_dump_devel() for dumping sensitive … | Jun 08, 2026 |
| CVE-2026-46290 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: x86/efi: Fix graceful fault handling after FPU softirq changes Since commit d02198550423 ("x86/fpu: Improve crypto … | Jun 08, 2026 |
| CVE-2026-46289 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: lib/scatterlist: fix length calculations in extract_kvec_to_sg Patch series "Fix bugs in extract_iter_to_sg()", v3. Fix bugs … | Jun 08, 2026 |
| CVE-2026-46288 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: of: unittest: fix use-after-free in of_unittest_changeset() The variable 'parent' is assigned the value of 'nchangeset' … | Jun 08, 2026 |
| CVE-2026-46287 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: net: txgbe: fix RTNL assertion warning when remove module For the copper NIC with external … | Jun 08, 2026 |
| CVE-2026-46286 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: leds: qcom-lpg: Check for array overflow when selecting the high resolution When selecting the high … | Jun 08, 2026 |
| CVE-2026-46285 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: mtd: docg3: fix use-after-free in docg3_release() In docg3_release(), the docg3 pointer is obtained from cascade->floors[0]->priv … | Jun 08, 2026 |
| CVE-2026-46284 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: mm/hugetlb: fix early boot crash on parameters without '=' separator If hugepages, hugepagesz, or default_hugepagesz … | Jun 08, 2026 |
| CVE-2026-46283 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: tpm: Use kfree_sensitive() to free auth session in tpm_dev_release() tpm_dev_release() uses plain kfree() to free … | Jun 08, 2026 |
| CVE-2026-46282 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: iio: frequency: admv1013: fix NULL pointer dereference on str When device_property_read_string() fails, str is left … | Jun 08, 2026 |
| CVE-2026-46281 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: vmalloc: fix buffer overflow in vrealloc_node_align() Commit 4c5d3365882d ("mm/vmalloc: allow to set node and align … | Jun 08, 2026 |
| CVE-2026-46280 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: lib: test_hmm: evict device pages on file close to avoid use-after-free Patch series "Minor hmm_test … | Jun 08, 2026 |
| CVE-2026-46279 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: mm/alloc_tag: clear codetag for pages allocated before page_ext initialization Due to initialization ordering, page_ext is … | Jun 08, 2026 |
| CVE-2026-46278 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: drm/imagination: Fix segfault when updating ftrace mask Fix invalid data access by passing right data … | Jun 08, 2026 |
| CVE-2026-46277 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: mm/zone_device: do not touch device folio after calling ->folio_free() The contents of a device folio … | Jun 08, 2026 |
| CVE-2026-46276 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: fix zero-size GDS range init on RDNA4 RDNA4 (GFX 12) hardware removes the GDS, … | Jun 08, 2026 |
| CVE-2026-45581 | MEDIUM | 5.5 | fabric-chaincode-java is a Java based implementation of Hyperledger Fabric chaincode shim APIs. From version 2.3.1 to before version 2.5.10, when chaincode is deployed in chaincode-as-a-service … | Jun 08, 2026 |
| CVE-2026-43966 | UNKNOWN | — | Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Request/Response Splitting') vulnerability in ninenines cowlib allows HTTP response splitting via non-VCHAR bytes in structured-fields string … | Jun 08, 2026 |
| CVE-2026-41448 | CRITICAL | 9.4 | AdGuard Home, when started with the --glinet flag, contains an authentication bypass vulnerability that allows unauthenticated attackers to gain full admin access by supplying a … | Jun 08, 2026 |
| CVE-2026-39910 | CRITICAL | 9.8 | STACKIT IaaS API contains a missing authorization check vulnerability that allows authenticated, low-privileged attackers to escalate privileges to full organization compromise by attaching arbitrary service … | Jun 08, 2026 |
| CVE-2026-39908 | MEDIUM | 6.5 | OpenBullet2 through version 0.3.2 on Windows contains a credential disclosure vulnerability that allows remote attackers to capture the NTLMv2 hash of the process user by … | Jun 08, 2026 |
| CVE-2026-25856 | HIGH | 8.8 | OpenBullet2 through version 0.3.2 contains an authenticated remote code execution vulnerability that allows authenticated users to execute arbitrary C# code on the server host by … | Jun 08, 2026 |
| CVE-2026-25855 | HIGH | 8.8 | OpenBullet2 through version 0.3.2 contains a remote code execution vulnerability that allows authenticated users to execute arbitrary commands by uploading script files (.bat.ps1.sh) through the … | Jun 08, 2026 |