Search
565 CVEs · published 2026-09-24 to 2026-09-24
CVEs (565, showing first 500)
Only the first 500 CVEs (by current sort) are shown when searching without a keyword. Add a search term above to narrow the results.
Showing 201–225 of 565 (capped at 500)
| CVE ID | Severity | Patch | CVSS | Published ↓ | Description |
|---|---|---|---|---|---|
| CVE-2026-97415 | HIGH | 7.8 | 2026-09-24 | In the Linux kernel, the following vulnerability has been resolved: btrfs: tree-checker: validate names in ROOT_REF and ROOT_BACKREF ROOT_REF and ROOT_BACKREF items conta… | |
| CVE-2026-97414 | NONE | — | 2026-09-24 | In the Linux kernel, the following vulnerability has been resolved: ASoC: mediatek: mt8365-afe-pcm: fix possible NULL-pointer dereferences in mt8365_afe_suspend() mt8365_… | |
| CVE-2026-97413 | CRITICAL | 9.8 | 2026-09-24 | In the Linux kernel, the following vulnerability has been resolved: RDMA/rtrs-srv: Fix integer underflow in process_read and process_write usr_len is read from a network-… | |
| CVE-2026-97412 | NONE | — | 2026-09-24 | In the Linux kernel, the following vulnerability has been resolved: pds_core: quiesce DMA before freeing resources pdsc_teardown() frees DMA buffers but does not disable … | |
| CVE-2026-97411 | NONE | — | 2026-09-24 | In the Linux kernel, the following vulnerability has been resolved: net: ibm: emac: mal: fix potential system hang in mal_remove() napi_disable() is not idempotent and ca… | |
| CVE-2026-97410 | NONE | — | 2026-09-24 | In the Linux kernel, the following vulnerability has been resolved: netconsole: take target_cleanup_list_lock in drop_netconsole_target() drop_netconsole_target() unlinks… | |
| CVE-2026-97409 | HIGH | 8.8 | 2026-09-24 | In the Linux kernel, the following vulnerability has been resolved: nvme-fc: Do not cancel requests in io target before it is initialized A new nvme-fc controller in CONN… | |
| CVE-2026-97408 | NONE | — | 2026-09-24 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: validate connectionless PSM length Connectionless L2CAP frames carry a two-byte PSM … | |
| CVE-2026-97407 | NONE | — | 2026-09-24 | In the Linux kernel, the following vulnerability has been resolved: ASoC: rockchip: rockchip_pdm: Handle runtime PM resume failures in set_fmt rockchip_pdm_set_fmt() call… | |
| CVE-2026-97231 | HIGH | 7.3 | 2026-09-24 | A vulnerability was found in volotat Anagnorisis up to 0.3.1/0.4.0. Affected is an unknown function of the file app.py of the component Socket.IO Connect Interface. The man… | |
| CVE-2026-94613 | HIGH | Patched | 7.5 | 2026-09-24 | authentik is an open-source identity provider. Prior to 2026.2.7, 2026.5.7, and 2026.8.2, an unauthenticated attacker can submit a malformed SAML message to an authentik de… |
| CVE-2026-94612 | HIGH | Patched | 7.4 | 2026-09-24 | authentik is an open-source identity provider. Prior to 2026.2.7, 2026.5.7, and 2026.8.2, an authentik SAML Source verifies an assertion's signature and validity period but… |
| CVE-2026-94611 | HIGH | Patched | 8.1 | 2026-09-24 | authentik is an open-source identity provider. Prior to 2026.2.7, 2026.5.7, and 2026.8.2, authentik API serializers return stored credentials when an account has view permi… |
| CVE-2026-94609 | HIGH | Patched | 8.8 | 2026-09-24 | authentik is an open-source identity provider. Prior to 2026.2.7, 2026.5.7, and 2026.8.2, an account with delegated permission to manage a group, group membership, or a use… |
| CVE-2026-94606 | HIGH | Patched | 8.9 | 2026-09-24 | authentik is an open-source identity provider. Prior to 2026.2.7, 2026.5.7, and 2026.8.2, authentik email authenticator enrollment during an authentication or enrollment fl… |
| CVE-2026-94604 | NONE | — | 2026-09-24 | Rejected reason: This CVE is a duplicate of another CVE. | |
| CVE-2026-94281 | MEDIUM | Patched | 6.5 | 2026-09-24 | An out-of-bounds read in libXi's XListInputDevices() class parsing in libXi before 1.8.4 could be used by malicious X servers to crash an attached X client. |
| CVE-2026-93830 | HIGH | 7.5 | 2026-09-24 | In the Linux kernel, the following vulnerability has been resolved: net: stmmac: xgmac2: disable RBUE in default RX interrupt mask Enabling the RX Buffer Unavailable (RBU… | |
| CVE-2026-93829 | NONE | — | 2026-09-24 | In the Linux kernel, the following vulnerability has been resolved: smb: client: fix races in cifsd thread creation The cifsd demultiplex thread can run and access tcp_se… | |
| CVE-2026-93828 | NONE | — | 2026-09-24 | In the Linux kernel, the following vulnerability has been resolved: exfat: fix handling of damaged volume in exfat_create_upcase_table() When the size of the upcase table… | |
| CVE-2026-93827 | HIGH | 8.4 | 2026-09-24 | In the Linux kernel, the following vulnerability has been resolved: virtio-fs: avoid double-free on failed queue setup virtio_fs_setup_vqs() allocates fs->vqs and fs->mq_… | |
| CVE-2026-93826 | HIGH | 7.5 | 2026-09-24 | In the Linux kernel, the following vulnerability has been resolved: HID: hidpp: fix potential UAF in hidpp_connect_event() If input_register_device() fails, we call input… | |
| CVE-2026-93825 | NONE | — | 2026-09-24 | In the Linux kernel, the following vulnerability has been resolved: spi: Add NULL check for spi_get_device_id() in spi_get_device_match_data() Prevent NULL pointer derefe… | |
| CVE-2026-93824 | NONE | — | 2026-09-24 | In the Linux kernel, the following vulnerability has been resolved: tls: reject the combination of TLS and sockmap TLS and sockmap (BPF psock) integration hides a lot of … | |
| CVE-2026-93823 | NONE | — | 2026-09-24 | In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: Let driver decide buffer size at AMDKFD_IOC_GET_DMABUF_INFO ioctl amdkfd driver needs allo… |