Search
9,831 CVEs
CVEs (9,831, showing first 500)
Only the first 500 CVEs (by current sort) are shown when searching without a keyword. Add a search term above to narrow the results.
Showing 76–100 of 9,831 (capped at 500)
| CVE ID | Severity | Patch | CVSS | Published ↑ | Description |
|---|---|---|---|---|---|
| CVE-2026-52927 | HIGH | Patched | 7.8 | 2026-06-24 | In the Linux kernel, the following vulnerability has been resolved: netfilter: ebtables: fix OOB read in compat_mtw_from_user Luxiao Xu says: The function compat_mtw_fr… |
| CVE-2026-52928 | MEDIUM | Patched | 5.5 | 2026-06-24 | In the Linux kernel, the following vulnerability has been resolved: af_unix: Reject SIOCATMARK on non-stream sockets SIOCATMARK reports whether the receive queue is at th… |
| CVE-2026-52929 | HIGH | Patched | 7.5 | 2026-06-24 | In the Linux kernel, the following vulnerability has been resolved: sctp: stream: fully roll back denied add-stream state When ADD_OUT_STREAMS is denied, SCTP only shrink… |
| CVE-2026-52930 | MEDIUM | Patched | 5.5 | 2026-06-24 | In the Linux kernel, the following vulnerability has been resolved: ipc/shm: serialize orphan cleanup with shm_nattch updates shm_destroy_orphaned() walks the shm idr und… |
| CVE-2026-52931 | CRITICAL | Patched | 9.8 | 2026-06-24 | In the Linux kernel, the following vulnerability has been resolved: batman-adv: tp_meter: avoid use of uninit sender vars batadv_tp_recv_ack() and batadv_tp_stop() are on… |
| CVE-2026-52932 | HIGH | Patched | 7.5 | 2026-06-24 | In the Linux kernel, the following vulnerability has been resolved: xfrm: ipcomp: Free destination pages on acomp errors Move the out_free_req label up by a couple of lin… |
| CVE-2026-52933 | HIGH | Patched | 7.8 | 2026-06-24 | In the Linux kernel, the following vulnerability has been resolved: io_uring/poll: fix signed comparison in io_poll_get_ownership() io_poll_get_ownership() uses a signed … |
| CVE-2026-52934 | HIGH | Patched | 8.8 | 2026-06-24 | In the Linux kernel, the following vulnerability has been resolved: batman-adv: tvlv: reject oversized TVLV packets batadv_tvlv_container_ogm_append() builds a TVLV packe… |
| CVE-2026-52935 | HIGH | Patched | 7.8 | 2026-06-24 | In the Linux kernel, the following vulnerability has been resolved: xfrm: espintcp: do not reuse an in-progress partial send espintcp keeps a single in-flight transmit in… |
| CVE-2026-52936 | MEDIUM | Patched | 5.5 | 2026-06-24 | In the Linux kernel, the following vulnerability has been resolved: crypto: jitterentropy - replace long-held spinlock with mutex jent_kcapi_random() serializes the share… |
| CVE-2026-52937 | MEDIUM | Patched | 5.5 | 2026-06-24 | In the Linux kernel, the following vulnerability has been resolved: tap: fix stack info leak in tap_ioctl() SIOCGIFHWADDR In the SIOCGIFHWADDR path, tap_ioctl() copies 16… |
| CVE-2026-52938 | MEDIUM | Patched | 5.5 | 2026-06-24 | In the Linux kernel, the following vulnerability has been resolved: bpf: Fix NULL pointer dereference in bpf_sk_storage_clone and diag paths bpf_selem_unlink_nofail() set… |
| CVE-2026-52939 | MEDIUM | Patched | 5.5 | 2026-06-24 | In the Linux kernel, the following vulnerability has been resolved: net/rds: fix NULL deref in rds_ib_send_cqe_handler() on masked atomic completion rds_ib_xmit_atomic() … |
| CVE-2026-52940 | MEDIUM | Patched | 5.5 | 2026-06-24 | In the Linux kernel, the following vulnerability has been resolved: tun: zero the whole vnet header in tun_put_user() tun_put_user() declares an on-stack struct virtio_ne… |
| CVE-2026-52941 | MEDIUM | Patched | 5.5 | 2026-06-24 | In the Linux kernel, the following vulnerability has been resolved: net/smc: avoid NULL deref of conn->lnk in smc_msg_event tracepoint The smc_msg_event tracepoint class,… |
| CVE-2026-52942 | HIGH | Patched | 7.1 | 2026-06-24 | In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_log: validate MAC header was set before dumping it The fallback path of dump_mac_header(… |
| CVE-2026-56052 | HIGH | 7.6 | 2026-06-24 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in FunnelKit Funnel Builder by FunnelKit allows Blind SQL Injection. Thi… | |
| CVE-2026-7761 | HIGH | 8.8 | 2026-06-24 | The Ultimate Member plugin for WordPress is vulnerable to Account Takeover via Password Reset Link Disclosure in all versions up to and including 2.11.4. This is due to a c… | |
| CVE-2026-10745 | NONE | — | 2026-06-24 | Improper output neutralization for logs vulnerability in upKeeper Solutions upKeeper Instant Privilege Access on Windows allows Log Injection-Tampering-Forging. This issue… | |
| CVE-2026-11968 | MEDIUM | 5.5 | 2026-06-24 | Argument Injection in TortoiseGitBlame via Malicious Git History Filenames Leads to Arbitrary File Write in TortoiseGit | |
| CVE-2026-52943 | HIGH | Patched | 7.8 | 2026-06-24 | In the Linux kernel, the following vulnerability has been resolved: net: skbuff: fix missing zerocopy reference in pskb_carve helpers pskb_carve_inside_header() and pskb_… |
| CVE-2026-52944 | MEDIUM | Patched | 5.5 | 2026-06-24 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix FSCTL permission bypass by adding a permission check for FSCTL_SET_SPARSE FSCTL_SET_SPARSE … |
| CVE-2026-13150 | NONE | — | 2026-06-24 | Server-Side Request Forgery (SSRF) (CWE-918) in the PDF generation endpoint GET /api/reports/{id}/pdf (backend/main.py) in ccyl13 Pentestify 1.0.0 and lower allows remote a… | |
| CVE-2025-71332 | MEDIUM | Patched | 6.5 | 2026-06-24 | Flowise through 2.2.7 contains a SQL injection vulnerability in the importChatflows API. Due to insufficient validation of the chatflow.id value, an authenticated user can … |
| CVE-2025-71354 | HIGH | Patched | 8.1 | 2026-06-24 | picklescan before 0.0.29 fails to detect malicious pickle files that exploit idlelib.debugobj.ObjectTreeItem.SetText function in reduce methods. Attackers can craft pickle … |