Loading market data...

CVE Feed

Latest vulnerabilities from the National Vulnerability Database.

28475
Total
2191
Critical
8537
High
8862
Medium
CVE ID Severity Score Description Published
CVE-2026-35090 UNKNOWN In Slican telephone exchanges it is possible to manage the control panel remotely. An unauthenticated attacker can connect to the modem via a telephone with … May 27, 2026
CVE-2026-35089 UNKNOWN In Slican telephone exchanges secure key is generated in a predictable manner using properties of the telephone exchange which can be obtained without authentication. An … May 27, 2026
CVE-2026-35087 UNKNOWN Slican telephone exchanges allow administrative protocol authentication bypass. An attacker can bypass the need to enter login credentials by executing the appropriate command. This issue … May 27, 2026
CVE-2026-2607 MEDIUM 5.1 IBM MQ Operator SC2: v3.2.0 through 3.2.23CD: v3.3.0, v3.4.0, v3.4.1, v3.5.0, v3.5.1 - v3.5.3, v3.6.0 - v3.6.4, v3.7.0 - v3.7.2, v3.8.0, v3.8.1, v3.9.0, v3.9.1LTS: v2.0.0 … May 27, 2026
CVE-2026-2340 MEDIUM 6.5 A flaw was found in Samba’s vfs_worm module. The module is intended to provide write-once, read-many (WORM) protections by preventing modification of files after a … May 27, 2026
CVE-2026-23679 MEDIUM 6.2 libusb before version 1.0.30 contains a NULL pointer dereference vulnerability that allows attackers to crash applications by supplying a malformed USB configuration descriptor where an … May 27, 2026
CVE-2026-1933 HIGH 7.1 A flaw was found in Samba’s handling of NTFS-style reparse points on shares configured with read only = yes. Due to missing SMB-layer access checks, … May 27, 2026
CVE-2026-1718 HIGH 7.1 IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.4 is vulnerable to a denial of service with a specially crafted query when autonomous transactions are … May 27, 2026
CVE-2025-71312 UNKNOWN In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: fix ntfs_mount_options leak in ntfs_fill_super() In ntfs_fill_super(), the fc->fs_private pointer is set to NULL … May 27, 2026
CVE-2025-71311 UNKNOWN In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Initialize new folios before use KMSAN reports an uninitialized value in longest_match_std(), invoked from … May 27, 2026
CVE-2025-71309 UNKNOWN In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: fix deadlock in ni_read_folio_cmpr Syzbot reported a task hung in ni_readpage_cmpr (now ni_read_folio_cmpr). This … May 27, 2026
CVE-2025-71308 UNKNOWN In the Linux kernel, the following vulnerability has been resolved: accel/amdxdna: Fix potential NULL pointer dereference in context cleanup aie_destroy_context() is invoked during error handling … May 27, 2026
CVE-2025-71307 UNKNOWN In the Linux kernel, the following vulnerability has been resolved: drm/panthor: Fix NULL pointer dereference on panthor_fw_unplug This patch removes the MCU halt and wait … May 27, 2026
CVE-2025-71306 UNKNOWN In the Linux kernel, the following vulnerability has been resolved: ima: Fix stack-out-of-bounds in is_bprm_creds_for_exec() KASAN reported a stack-out-of-bounds access in ima_appraise_measurement from is_bprm_creds_for_exec: BUG: … May 27, 2026
CVE-2025-71305 UNKNOWN In the Linux kernel, the following vulnerability has been resolved: drm/display/dp_mst: Add protection against 0 vcpi When releasing a timeslot there is a slight chance … May 27, 2026
CVE-2025-71304 UNKNOWN In the Linux kernel, the following vulnerability has been resolved: smack: /smack/doi: accept previously used values Writing to /smack/doi a value that has ever been … May 27, 2026
CVE-2025-71303 UNKNOWN In the Linux kernel, the following vulnerability has been resolved: accel/amdxdna: Fix race condition when checking rpm_on When autosuspend is triggered, driver rpm_on flag is … May 27, 2026
CVE-2025-3633 MEDIUM 5.4 IBM Cognos Analytics 11.2.0, 11.2.4, 12.0, and 12.1.0 and IBM Cognos Transformer 11.2.4, 12.0, and 12.1.0 are vulnerable to cross-site scripting (XSS). This vulnerability allows … May 27, 2026
CVE-2024-56462 HIGH 7.2 IBM QRadar 7.5.0 through 7.5.0 UP15 Interim Fix 002 could allow a privileged user to upload a malicious backup archive that could be restored and … May 27, 2026
CVE-2024-40684 MEDIUM 5.9 IBM Operations Analytics - Log Analysis 1.3.5.0, 1.3.5.1, 1.3.5.2, 1.3.5.3, 1.3.6.0, 1.3.6.1, 1.3.7.0, 1.3.7.1, 1.3.7.2, and 1.3.8.0, 1.3.8.1, 1.3.8.2, 1.3.8.3, 1.3.8.4 IBM SmartCloud Analytics - … May 27, 2026
CVE-2024-28765 MEDIUM 5.3 IBM SDI 7.2.0.0 through 7.2.0.14 and IBM Security Directory Integrator 10.0.0.0 through 10.0.0.2 could allow a remote attacker to obtain sensitive information when a detailed … May 27, 2026
CVE-2026-9689 MEDIUM 4.2 A flaw was found in Keycloak, an open-source identity and access management solution. When a client application is configured to accept broad redirect Uniform Resource … May 27, 2026
CVE-2026-48906 UNKNOWN The vulnerability in the Tassos Framework Plugin allows users to delete arbitrary files on the affected sites. May 27, 2026
CVE-2026-45846 UNKNOWN In the Linux kernel, the following vulnerability has been resolved: bareudp: fix NULL pointer dereference in bareudp_fill_metadata_dst() bareudp_fill_metadata_dst() passes bareudp->sock to udp_tunnel6_dst_lookup() in the IPv6 … May 27, 2026
CVE-2026-45845 UNKNOWN In the Linux kernel, the following vulnerability has been resolved: net/sched: taprio: fix NULL pointer dereference in class dump When a TAPRIO child qdisc is … May 27, 2026