Security
CVE Feed
Latest vulnerabilities from the National Vulnerability Database.
50129
Total
4051
Critical
14904
High
14658
Medium
| CVE ID | Severity | Score | Description | Published |
|---|---|---|---|---|
| CVE-2026-12803 | UNKNOWN | — | In Bouncy Castle for Java before 1.85, KCCMBlockCipher MAC does not bind nonce when AAD is absent (cross-nonce AEAD forgery). This issue also affects Bouncy … | Aug 03, 2026 |
| CVE-2026-12802 | UNKNOWN | — | In Bouncy Castle for Java before 1.85, CMS AuthEnvelopedData fails to enforce tag-length on decryption. This issue also affects Bouncy Castle for Java LTS before … | Aug 03, 2026 |
| CVE-2026-58063 | UNKNOWN | — | In Bouncy Castle for Java before 1.85, BCFKS keystore load honours unbounded KDF cost from untrusted file. This issue also affects Bouncy Castle for Java … | Aug 03, 2026 |
| CVE-2026-58062 | UNKNOWN | — | In Bouncy Castle for Java before 1.85, Stapled OCSP response accepted without binding to the checked certificate. This issue also affects Bouncy Castle for Java … | Aug 03, 2026 |
| CVE-2026-58061 | UNKNOWN | — | In Bouncy Castle for Java before 1.85, CCM-family modes write plaintext to caller buffer before tag check. This issue also affects Bouncy Castle for Java … | Aug 03, 2026 |
| CVE-2026-58060 | UNKNOWN | — | In Bouncy Castle for Java before 1.85, HSS public-key level count unbounded, enabling huge allocation on verify. This issue also affects Bouncy Castle for Java … | Aug 03, 2026 |
| CVE-2026-58059 | UNKNOWN | — | In Bouncy Castle for Java before 1.85, Quadratic-time escaping when stringifying X.500 distinguished names. This issue also affects Bouncy Castle for Java LTS before 2.73.12, … | Aug 03, 2026 |
| CVE-2026-20498 | MEDIUM | 6.0 | In geniezone, there is a possible escalation of privilege due to a missing permission check. This could lead to local escalation of privilege if a … | Aug 03, 2026 |
| CVE-2026-20497 | MEDIUM | 6.0 | In geniezone, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if … | Aug 03, 2026 |
| CVE-2026-20496 | MEDIUM | 4.4 | In geniezone, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure if a … | Aug 03, 2026 |
| CVE-2026-20495 | MEDIUM | 4.4 | In Bluetooth driver, there is a possible permission bypass due to a missing permission check. This could lead to local escalation of privilege with User … | Aug 03, 2026 |
| CVE-2026-20494 | MEDIUM | 5.5 | In wifi, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure if a … | Aug 03, 2026 |
| CVE-2026-20493 | MEDIUM | 4.4 | In wifi, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service if … | Aug 03, 2026 |
| CVE-2026-20492 | MEDIUM | 5.5 | In Audio HAL, there is a possible system becoming unresponsive due to a race condition. This could lead to local denial of service with User … | Aug 03, 2026 |
| CVE-2026-20491 | MEDIUM | 5.5 | In med, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local denial of service with … | Aug 03, 2026 |
| CVE-2026-20490 | MEDIUM | 4.4 | In ccci, there is a possible out of bounds read due to a missing bounds check. This could lead to local denial of service if … | Aug 03, 2026 |
| CVE-2026-20489 | MEDIUM | 4.4 | In display, there is a possible information disclosure due to an integer overflow. This could lead to local information disclosure if a malicious actor has … | Aug 03, 2026 |
| CVE-2026-20488 | MEDIUM | 4.4 | In display, there is a possible information disclosure due to a missing bounds check. This could lead to local information disclosure if a malicious actor … | Aug 03, 2026 |
| CVE-2026-20486 | MEDIUM | 4.4 | In imgsensor, there is a possible application crash due to incorrect error handling. This could lead to local escalation of privilege if a malicious actor … | Aug 03, 2026 |
| CVE-2026-20485 | MEDIUM | 6.0 | In HFRP, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if … | Aug 03, 2026 |
| CVE-2026-20484 | MEDIUM | 4.4 | In TFA, there is a possible information disclosure due to a missing permission check. This could lead to local information disclosure if a malicious actor … | Aug 03, 2026 |
| CVE-2026-20483 | HIGH | 7.7 | In Telephony, there is a possible escalation of privilege due to a missing permission check. This could lead to local escalation of privilege with no … | Aug 03, 2026 |
| CVE-2026-20482 | MEDIUM | 6.5 | In wlan STA FW, there is a possible system becoming unresponsive due to logging. This could lead to remote (proximal/adjacent) denial of service with no … | Aug 03, 2026 |
| CVE-2026-20481 | MEDIUM | 6.0 | In geniezone, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if … | Aug 03, 2026 |
| CVE-2026-20480 | MEDIUM | 5.5 | In Audio HAL, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local denial of service … | Aug 03, 2026 |