Search

Published: All 7d 30d 90d 12m
Clear
Severity: All Critical High Medium Low

565 CVEs · published 2026-09-24 to 2026-09-24

CVEs (565, showing first 500)

Only the first 500 CVEs (by current sort) are shown when searching without a keyword. Add a search term above to narrow the results.

Showing 201–225 of 565 (capped at 500)

CVE ID Severity Patch CVSS Published ↓ Description
CVE-2026-97415 HIGH 7.8 2026-09-24 In the Linux kernel, the following vulnerability has been resolved: btrfs: tree-checker: validate names in ROOT_REF and ROOT_BACKREF ROOT_REF and ROOT_BACKREF items conta…
CVE-2026-97414 NONE — 2026-09-24 In the Linux kernel, the following vulnerability has been resolved: ASoC: mediatek: mt8365-afe-pcm: fix possible NULL-pointer dereferences in mt8365_afe_suspend() mt8365_…
CVE-2026-97413 CRITICAL 9.8 2026-09-24 In the Linux kernel, the following vulnerability has been resolved: RDMA/rtrs-srv: Fix integer underflow in process_read and process_write usr_len is read from a network-…
CVE-2026-97412 NONE — 2026-09-24 In the Linux kernel, the following vulnerability has been resolved: pds_core: quiesce DMA before freeing resources pdsc_teardown() frees DMA buffers but does not disable …
CVE-2026-97411 NONE — 2026-09-24 In the Linux kernel, the following vulnerability has been resolved: net: ibm: emac: mal: fix potential system hang in mal_remove() napi_disable() is not idempotent and ca…
CVE-2026-97410 NONE — 2026-09-24 In the Linux kernel, the following vulnerability has been resolved: netconsole: take target_cleanup_list_lock in drop_netconsole_target() drop_netconsole_target() unlinks…
CVE-2026-97409 HIGH 8.8 2026-09-24 In the Linux kernel, the following vulnerability has been resolved: nvme-fc: Do not cancel requests in io target before it is initialized A new nvme-fc controller in CONN…
CVE-2026-97408 NONE — 2026-09-24 In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: validate connectionless PSM length Connectionless L2CAP frames carry a two-byte PSM …
CVE-2026-97407 NONE — 2026-09-24 In the Linux kernel, the following vulnerability has been resolved: ASoC: rockchip: rockchip_pdm: Handle runtime PM resume failures in set_fmt rockchip_pdm_set_fmt() call…
CVE-2026-97231 HIGH 7.3 2026-09-24 A vulnerability was found in volotat Anagnorisis up to 0.3.1/0.4.0. Affected is an unknown function of the file app.py of the component Socket.IO Connect Interface. The man…
CVE-2026-94613 HIGH Patched 7.5 2026-09-24 authentik is an open-source identity provider. Prior to 2026.2.7, 2026.5.7, and 2026.8.2, an unauthenticated attacker can submit a malformed SAML message to an authentik de…
CVE-2026-94612 HIGH Patched 7.4 2026-09-24 authentik is an open-source identity provider. Prior to 2026.2.7, 2026.5.7, and 2026.8.2, an authentik SAML Source verifies an assertion's signature and validity period but…
CVE-2026-94611 HIGH Patched 8.1 2026-09-24 authentik is an open-source identity provider. Prior to 2026.2.7, 2026.5.7, and 2026.8.2, authentik API serializers return stored credentials when an account has view permi…
CVE-2026-94609 HIGH Patched 8.8 2026-09-24 authentik is an open-source identity provider. Prior to 2026.2.7, 2026.5.7, and 2026.8.2, an account with delegated permission to manage a group, group membership, or a use…
CVE-2026-94606 HIGH Patched 8.9 2026-09-24 authentik is an open-source identity provider. Prior to 2026.2.7, 2026.5.7, and 2026.8.2, authentik email authenticator enrollment during an authentication or enrollment fl…
CVE-2026-94604 NONE — 2026-09-24 Rejected reason: This CVE is a duplicate of another CVE.
CVE-2026-94281 MEDIUM Patched 6.5 2026-09-24 An out-of-bounds read in libXi's XListInputDevices() class parsing in libXi before 1.8.4 could be used by malicious X servers to crash an attached X client.
CVE-2026-93830 HIGH 7.5 2026-09-24 In the Linux kernel, the following vulnerability has been resolved: net: stmmac: xgmac2: disable RBUE in default RX interrupt mask Enabling the RX Buffer Unavailable (RBU…
CVE-2026-93829 NONE — 2026-09-24 In the Linux kernel, the following vulnerability has been resolved: smb: client: fix races in cifsd thread creation The cifsd demultiplex thread can run and access tcp_se…
CVE-2026-93828 NONE — 2026-09-24 In the Linux kernel, the following vulnerability has been resolved: exfat: fix handling of damaged volume in exfat_create_upcase_table() When the size of the upcase table…
CVE-2026-93827 HIGH 8.4 2026-09-24 In the Linux kernel, the following vulnerability has been resolved: virtio-fs: avoid double-free on failed queue setup virtio_fs_setup_vqs() allocates fs->vqs and fs->mq_…
CVE-2026-93826 HIGH 7.5 2026-09-24 In the Linux kernel, the following vulnerability has been resolved: HID: hidpp: fix potential UAF in hidpp_connect_event() If input_register_device() fails, we call input…
CVE-2026-93825 NONE — 2026-09-24 In the Linux kernel, the following vulnerability has been resolved: spi: Add NULL check for spi_get_device_id() in spi_get_device_match_data() Prevent NULL pointer derefe…
CVE-2026-93824 NONE — 2026-09-24 In the Linux kernel, the following vulnerability has been resolved: tls: reject the combination of TLS and sockmap TLS and sockmap (BPF psock) integration hides a lot of …
CVE-2026-93823 NONE — 2026-09-24 In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: Let driver decide buffer size at AMDKFD_IOC_GET_DMABUF_INFO ioctl amdkfd driver needs allo…