Security
CVE Feed
Latest vulnerabilities from the National Vulnerability Database.
49165
Total
3939
Critical
14577
High
14341
Medium
| CVE ID | Severity | Score | Description | Published |
|---|---|---|---|---|
| CVE-2026-68108 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu/vce: fix integer overflow in image size Fix a security vulnerability where malicious VCE command … | Aug 10, 2026 |
| CVE-2026-68107 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu/vcn4: avoid rereading IB param length Reuse the parameter length returned by vcn_v4_0_enc_find_ib_param() instead of … | Aug 10, 2026 |
| CVE-2026-68106 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: fix division by zero with invalid uvd dimensions When width or height is less … | Aug 10, 2026 |
| CVE-2026-68105 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Fix kernel panic during driver load failure Avoid kernel panic if MES init fails … | Aug 10, 2026 |
| CVE-2026-68104 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: invoke pm_genpd_remove() before freeing genpd Call pm_genpd_remove() to unregister from global list prior to … | Aug 10, 2026 |
| CVE-2026-68103 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: reject mapping a reserved doorbell to a new queue When creating an user-queue, the … | Aug 10, 2026 |
| CVE-2026-68102 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: fix aperture mapping leak amdgpu_pci_remove() calls drm_dev_unplug() before invoking the driver fini routines. This … | Aug 10, 2026 |
| CVE-2026-68101 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: fix check in amdgpu_hmm_invalidate_gfx For a short moment during alloc/free the userptr BO is … | Aug 10, 2026 |
| CVE-2026-68100 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: ksmbd: validate num_subauth when copying ACE in set_ntacl_dacl set_ntacl_dacl() copies each ACE from the attacker-controlled … | Aug 10, 2026 |
| CVE-2026-68099 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: ksmbd: restore DACL size on check_add_overflow() to avoid malformed ACL check_add_overflow() unconditionally writes the truncated … | Aug 10, 2026 |
| CVE-2026-68098 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: ksmbd: bound DACL dedup walk to copied ACEs set_ntacl_dacl() can stop copying ACEs before consuming … | Aug 10, 2026 |
| CVE-2026-68097 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: ksmbd: validate ACE size against SID sub-authorities set_ntacl_dacl() validates sid.num_subauth before copying an ACE, but … | Aug 10, 2026 |
| CVE-2026-68096 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: audit: fix recursive locking deadlock in audit_dupe_exe() A deadlock occurs in the audit subsystem when … | Aug 10, 2026 |
| CVE-2026-68095 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: fuse-uring: fix race between registration and connection abortion This fixes this race: - thread a: … | Aug 10, 2026 |
| CVE-2026-68094 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: sched_ext: Preserve rq tracking across local DSQ dispatch dispatch_to_local_dsq() can run from scx_bpf_dsq_move_to_local() while ops.dispatch() … | Aug 10, 2026 |
| CVE-2026-68093 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: KVM: SVM: Bump asid_generation on CPU online to avoid ASID collision after hotplug If a … | Aug 10, 2026 |
| CVE-2026-59233 | UNKNOWN | — | Missing Authorization in the permission management component in Roskus Prospero Flow CRM before 5.2.1 allows any authenticated user to grant any role, including their own, … | Aug 10, 2026 |
| CVE-2026-59090 | HIGH | 8.4 | A flaw was found in GIMP's PSD file format plugin. This vulnerability, an unsigned integer underflow in the `block_rem` variable, occurs when a user opens … | Aug 10, 2026 |
| CVE-2026-19429 | HIGH | 8.8 | Jenkins FilePath.untarFrom() does not validate symlink targets in extracted TAR archives, even in versions patched for CVE-2026-33001 and CVE-2026-70427. An authenticated attacker with job configuration … | Aug 10, 2026 |
| CVE-2026-19278 | MEDIUM | 6.8 | A flaw was found in StackRox/RHACS Central's Auth Machine-to-Machine (M2M) token exchange. When an administrator configures M2M role mappings, the system uses unanchored regular expressions … | Aug 10, 2026 |
| CVE-2026-18370 | UNKNOWN | — | entr is vulnerable to Heap-based buffer overflow in run_utility() function. The function allocates a fixed-size heap buffer using malloc(ARG_MAX) and copies command-line arguments into it. … | Aug 10, 2026 |
| CVE-2026-13206 | CRITICAL | 9.8 | Improper neutralization of special elements used in an OS command ('OS command injection') vulnerability in Zyxel Networks WAH7601 allows OS Command Injection. This issue affects … | Aug 10, 2026 |
| CVE-2026-12984 | HIGH | 8.2 | Insufficiently Protected Credentials vulnerability in Zyxel Networks WAH7601 allows Retrieve Embedded Sensitive Data. This issue affects WAH7601: through 20072026. | Aug 10, 2026 |
| CVE-2026-68092 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: time/jiffies: Register jiffies clocksource before usage Teddy reported that a XEN HVM has a long … | Aug 10, 2026 |
| CVE-2026-68091 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: HID: wacom: stop hardware after post-start probe failures wacom_parse_and_register() starts HID hardware before registering inputs … | Aug 10, 2026 |