Security
CVE Feed
Latest vulnerabilities from the National Vulnerability Database.
50129
Total
4051
Critical
14904
High
14658
Medium
| CVE ID | Severity | Score | Description | Published |
|---|---|---|---|---|
| CVE-2026-20479 | HIGH | 7.5 | In Modem, there is a possible out of bounds read due to a missing bounds check. This could lead to remote denial of service, if … | Aug 03, 2026 |
| CVE-2026-20478 | MEDIUM | 5.5 | In Audio HAL, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local denial of service … | Aug 03, 2026 |
| CVE-2026-20477 | MEDIUM | 6.0 | In display, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if … | Aug 03, 2026 |
| CVE-2026-20476 | MEDIUM | 5.5 | In ccci, there is a possible out of bounds read due to a missing bounds check. This could lead to local denial of service with … | Aug 03, 2026 |
| CVE-2026-20475 | MEDIUM | 6.0 | In display, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if … | Aug 03, 2026 |
| CVE-2026-20474 | MEDIUM | 6.0 | In display, there is a possible escalation of privilege due to a race condition. This could lead to local escalation of privilege if a malicious … | Aug 03, 2026 |
| CVE-2026-20473 | MEDIUM | 6.0 | In display, there is a possible memory corruption due to use after free. This could lead to local escalation of privilege if a malicious actor … | Aug 03, 2026 |
| CVE-2026-20472 | MEDIUM | 4.4 | In TFA, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service if … | Aug 03, 2026 |
| CVE-2026-20471 | MEDIUM | 4.6 | In DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service, if … | Aug 03, 2026 |
| CVE-2026-20470 | MEDIUM | 6.2 | In Telephony, there is a possible information disclosure due to a missing permission check. This could lead to local information disclosure with no additional execution … | Aug 03, 2026 |
| CVE-2026-20469 | MEDIUM | 6.0 | In trusted_mem, there is a possible escalation of privilege due to improper input validation. This could lead to local escalation of privilege if a malicious … | Aug 03, 2026 |
| CVE-2026-20468 | MEDIUM | 6.0 | In apusys, there is a possible escalation of privilege due to a confused deputy. This could lead to local escalation of privilege if a malicious … | Aug 03, 2026 |
| CVE-2026-20467 | MEDIUM | 6.0 | In apusys, there is a possible escalation of privilege due to a missing bounds check. This could lead to local escalation of privilege if a … | Aug 03, 2026 |
| CVE-2026-20466 | MEDIUM | 6.1 | In sec boot, there is a possible escalation of privilege due to a heap buffer overflow. This could lead to local escalation of privilege, if … | Aug 03, 2026 |
| CVE-2026-20465 | HIGH | 8.1 | In wlan AP driver, there is a possible out of bounds write due to a missing bounds check. This could lead to remote (proximal/adjacent) escalation … | Aug 03, 2026 |
| CVE-2026-20464 | MEDIUM | 6.5 | In hevc decoder, there is a possible out of bounds write due to an integer overflow. This could lead to remote escalation of privilege if … | Aug 03, 2026 |
| CVE-2026-18582 | MEDIUM | 5.3 | A security flaw has been discovered in mz-automation libiec61850 up to 1.6.1. This vulnerability affects the function Reporting_RCBWriteAccessHandler of the file src/iec61850/server/mms_mapping/reporting.c of the component … | Aug 03, 2026 |
| CVE-2026-8763 | UNKNOWN | — | In Bouncy Castle for Java before 1.85, Name Constraints bypass via trailing dot in rfc822Name and URI. This issue also affects Bouncy Castle for Java … | Aug 03, 2026 |
| CVE-2026-65875 | HIGH | 7.1 | BaserCMS provided by baserCMS Users Community contains a CSV file injection vulnerability. If a user downloads and opens a CSV file containing malicious code injected … | Aug 03, 2026 |
| CVE-2026-59652 | UNKNOWN | — | In Bouncy Castle for Java before 1.85, LDAP filter injection in legacy jdk1.4 LDAPStoreHelper. | Aug 03, 2026 |
| CVE-2026-59651 | UNKNOWN | — | In Bouncy Castle for Java before 1.85, BKS keystore accepts legacy version with 16-bit integrity MAC key. This issue also affects Bouncy Castle for Java … | Aug 03, 2026 |
| CVE-2026-59650 | UNKNOWN | — | In Bouncy Castle for Java before 1.85, MTI/A0 DH agreement exponentiates unvalidated peer value. This issue also affects Bouncy Castle for Java LTS before 2.73.12. | Aug 03, 2026 |
| CVE-2026-59649 | UNKNOWN | — | In Bouncy Castle for Java before 1.85, OpenPGP user-attribute subpacket length bounded only by JVM max memory. This issue also affects Bouncy Castle for Java … | Aug 03, 2026 |
| CVE-2026-59648 | UNKNOWN | — | In Bouncy Castle for Java before 1.85, OpenPGP Argon2 S2K honours attacker-chosen memory and passes. This issue also affects Bouncy Castle for Java LTS before … | Aug 03, 2026 |
| CVE-2026-59647 | UNKNOWN | — | In Bouncy Castle for Java before 1.85, CRMF/CMP password-MAC honours unbounded iteration count. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and … | Aug 03, 2026 |