Search
442 CVEs · published 2026-08-12 to 2026-08-12
CVEs (442)
Showing 401–425 of 442
| CVE ID | Severity | Patch | CVSS | Published ↓ | Description |
|---|---|---|---|---|---|
| CVE-2026-12235 | MEDIUM | 6.3 | 2026-08-12 | The Linkable Loadable Extensions (llext) subsystem mis-handles PLT/RELA relocation entries when linking a relocatable (partially-linked) ELF extension. In llext_link_plt() … | |
| CVE-2026-12234 | HIGH | 7.8 | 2026-08-12 | The userspace syscall verifiers z_vrfy_zsock_sendmsg() and z_vrfy_zsock_recvmsg() in subsys/net/lib/sockets/sockets.c snapshot the caller-supplied struct net_msghdr into a … | |
| CVE-2026-12233 | MEDIUM | 5.9 | 2026-08-12 | The PSA Protected Storage credential backend (subsys/net/lib/tls_credentials/tls_credentials_trusted.c) declared its credential-store mutex as a plain zero-filled static st… | |
| CVE-2026-12232 | MEDIUM | 6.1 | 2026-08-12 | The Intel ALH digital-audio-interface driver function dai_alh_get_properties() in drivers/dai/intel/alh/alh.c used a caller-supplied int stream_id with no range validation.… | |
| CVE-2025-15687 | MEDIUM | 4.3 | 2026-08-12 | A security flaw has been discovered in Open5GS up to 2.7.6. Impacted is the function smf_gx_cca_cb of the component SMF Diameter Gx Credit-Control-Answer Handler. The manip… | |
| CVE-2026-9318 | MEDIUM | 5.4 | 2026-08-12 | tablib prior to 3.10.0 contains a stored cross-site scripting vulnerability in the HTML export functionality that allows attackers to execute arbitrary JavaScript by embedd… | |
| CVE-2026-19588 | MEDIUM | 6.5 | 2026-08-12 | Integer Overflow to Buffer Overflow vulnerability in Samsung Open Source rlottie allows Overflow Buffers. | |
| CVE-2026-19587 | MEDIUM | 6.5 | 2026-08-12 | Uncontrolled Resource Consumption vulnerability in Samsung Open Source rlottie allows Excessive Allocation. | |
| CVE-2026-18961 | HIGH | 8.1 | 2026-08-12 | The Social Login, Passkeys, Magic Link & Email OTP – Passwordless Login by VentraConnect plugin for WordPress is vulnerable to Authentication Bypass via Unverified Provider… | |
| CVE-2025-15686 | MEDIUM | 4.3 | 2026-08-12 | A vulnerability has been found in Open5GS up to 2.7.6. Affected by this issue is the function fd_msg_sess_get of the component HSS Service. Such manipulation of the argumen… | |
| CVE-2025-15685 | MEDIUM | 6.3 | 2026-08-12 | A flaw has been found in Open5GS up to 2.7.1. Affected by this vulnerability is an unknown functionality of the component freeDiameter. This manipulation causes memory corr… | |
| CVE-2025-15684 | MEDIUM | 5.3 | 2026-08-12 | A vulnerability was detected in Open5GS up to 2.7.6. Affected is the function diam_log_func of the file lib/diameter/common/init.c of the component CER Handler. The manipul… | |
| CVE-2026-73122 | HIGH | 7.7 | 2026-08-12 | A flaw was found in the multicloud-operators-channel component of Red Hat Advanced Cluster Management (RHACM). This vulnerability allows a compromised agent from a managed … | |
| CVE-2026-72526 | CRITICAL | 9.9 | 2026-08-12 | A flaw was found in the multicloud-integrations component. The Application propagation controller processes the `ocm-managed-cluster` annotation from an Application Custom … | |
| CVE-2026-70398 | CRITICAL | 9.6 | 2026-08-12 | A flaw was found in multicloud-integrations, a component of Red Hat Advanced Cluster Management (RHACM). This vulnerability allows an authenticated user, referred to as a t… | |
| CVE-2026-66878 | HIGH | 7.7 | 2026-08-12 | A flaw was found in multicloud-operators-subscription. A privileged user, specifically a namespace administrator capable of creating Channel and Subscription resources, can… | |
| CVE-2026-64927 | MEDIUM | 6.4 | 2026-08-12 | A flaw was found in the multicloud-operators-channel component. This vulnerability allows a user with specific permissions to manipulate how the system handles sensitive in… | |
| CVE-2026-6484 | HIGH | 8.2 | 2026-08-12 | In an UEFI, Lack of verified boot to certain FV may cause arbitrary code execution. | |
| CVE-2026-68450 | NONE | — | 2026-08-12 | In the Linux kernel, the following vulnerability has been resolved: btrfs: free mapping node on duplicate reloc root insert __add_reloc_root() allocates a mapping_node be… | |
| CVE-2026-68449 | NONE | — | 2026-08-12 | In the Linux kernel, the following vulnerability has been resolved: ata: sata_dwc_460ex: fix infinite loop in NCQ tag completion bit-scanning The hand-rolled bit-scanning… | |
| CVE-2026-68448 | NONE | — | 2026-08-12 | In the Linux kernel, the following vulnerability has been resolved: ovl: check access to copy_file_range source with src mounter creds Commit 5dae222a5ff0c ("vfs: allow c… | |
| CVE-2026-68447 | HIGH | 7.1 | 2026-08-12 | In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: clamp v9 CRIU control stack checkpoint copy to BO size CRIU checkpoint copies the MQD cont… | |
| CVE-2024-14044 | MEDIUM | 6.3 | 2026-08-12 | A vulnerability was identified in Open5GS up to 2.7.1. This issue affects the function pcrf_rx_aar_cb of the file src/pcrf/pcrf-rx-path.c of the component Diameter Rx Handl… | |
| CVE-2026-68446 | HIGH | 7.8 | 2026-08-12 | In the Linux kernel, the following vulnerability has been resolved: drm/vmwgfx: Validate vmw_surface_metadata::array_size This field comes from userspace and should be va… | |
| CVE-2026-68445 | HIGH | 7.8 | 2026-08-12 | In the Linux kernel, the following vulnerability has been resolved: drm/vc4: Prevent shader BO mappings from becoming writable vc4_gem_object_mmap() rejects a writable ma… |