Search

Published: All 7d 30d 90d 12m
Clear
Severity: All Critical High Medium Low

565 CVEs · published 2026-09-24 to 2026-09-24

CVEs (565, showing first 500)

Only the first 500 CVEs (by current sort) are shown when searching without a keyword. Add a search term above to narrow the results.

Showing 1–25 of 565 (capped at 500)

CVE ID Severity Patch CVSS ↑ Published Description
CVE-2026-97387 NONE — 2026-09-24 Rejected reason: This CVE is a duplicate of another CVE.
CVE-2026-97230 NONE — 2026-09-24 IO::Socket::SSL::SelfCertificate versions 1.00 for Perl contains malware which executes Python code from an obfuscated URL. The generate_certificate runs a Python script s…
CVE-2026-85491 NONE Patched — 2026-09-24 Catalyst::Seal versions before 0.03 for Perl allow one request to disable a path or route a later one past an authorization check via a dispatch memo keyed on the request p…
CVE-2026-97636 NONE Patched — 2026-09-24 Apache Airflow HashiCorp provider: the HashiCorp Vault secrets backend's team-scope guard can be bypassed with a user-controlled key. In a multi-team deployment, a Dag auth…
CVE-2026-88386 NONE — 2026-09-24 libsndfile 1.2.2 contains a misaligned memory access issue in psf_binheader_readf() while parsing WAV fmt chunks. A specially crafted WAV file can cause the function to cas…
CVE-2026-88387 NONE — 2026-09-24 LibRaw 0.22.0 contains an incorrect numeric conversion vulnerability in LibRaw::parse_tiff_ifd() when processing TIFF tag 0x00fe (NewSubfileType). A specially crafted RAW, …
CVE-2026-88388 NONE — 2026-09-24 Espruino 2v29 (commit bffc6d0) contains a stack-based buffer overflow vulnerability in the JavaScript error stack-trace handling path on 64-bit builds. A remote attacker ca…
CVE-2026-97520 NONE — 2026-09-24 In the Linux kernel, the following vulnerability has been resolved: gfs2: move quota_init qc iterator increment Move qc++ from the loop body into the for-loop increment e…
CVE-2026-97521 NONE — 2026-09-24 In the Linux kernel, the following vulnerability has been resolved: gfs2: fix quota init duplicate scan gfs2_quota_init() checks for duplicate quota_change IDs while hold…
CVE-2026-97512 NONE — 2026-09-24 In the Linux kernel, the following vulnerability has been resolved: spi: spi-qcom-qspi: Fix incomplete error handling in runtime PM The runtime PM functions had incomplet…
CVE-2026-97513 NONE — 2026-09-24 In the Linux kernel, the following vulnerability has been resolved: media: chips-media: wave5: Release m2m_ctx after Instance Removed from List Possible use after free if…
CVE-2026-97514 NONE — 2026-09-24 In the Linux kernel, the following vulnerability has been resolved: media: chips-media: wave5: Fix Reports from Kernel Lock Validator handle_dynamic_resolution change req…
CVE-2026-97515 NONE — 2026-09-24 In the Linux kernel, the following vulnerability has been resolved: i3c: master: svc: Prevent IRQ storm from false SLVSTART on NPCM845 On NPCM845, when a target on the I3…
CVE-2026-97516 NONE — 2026-09-24 In the Linux kernel, the following vulnerability has been resolved: wifi: rtw88: Add NULL check for chip->edcca_th in rtw_fw_adaptivity_result() It was recently reported …
CVE-2026-97517 NONE — 2026-09-24 In the Linux kernel, the following vulnerability has been resolved: wifi: nl80211: reject beacons with bad HE operation The HE operation element not only needs to be long…
CVE-2026-97518 NONE — 2026-09-24 In the Linux kernel, the following vulnerability has been resolved: wifi: cfg80211: reject duplicate wiphy cipher suite entries Duplicate entries in wiphy->cipher_suites …
CVE-2026-97519 NONE — 2026-09-24 In the Linux kernel, the following vulnerability has been resolved: drm/xe: Fix null pointer dereference in devcoredump cleanup In xe_devcoredump_snapshot_free(), ss->gt …
CVE-2026-97503 NONE &mdash; 2026-09-24 In the Linux kernel, the following vulnerability has been resolved: genirq/proc: Size interrupt directory names for 10-digit interrupt numbers /proc/irq/<n>/ directory na&hellip;
CVE-2026-97504 NONE &mdash; 2026-09-24 In the Linux kernel, the following vulnerability has been resolved: watchdog: lenovo_se10_wdt: Fix use-after-free and resource leak risk Review by sashiko.dev highlighted&hellip;
CVE-2026-97505 NONE &mdash; 2026-09-24 In the Linux kernel, the following vulnerability has been resolved: PCI/sysfs: Add CAP_SYS_ADMIN check to __resource_resize_store() Currently, the __resource_resize_store&hellip;
CVE-2026-97506 NONE &mdash; 2026-09-24 In the Linux kernel, the following vulnerability has been resolved: crypto: ixp4xx - fix buffer chain unwind on allocation failure chainup_buffers() builds a linked list &hellip;
CVE-2026-97507 NONE &mdash; 2026-09-24 In the Linux kernel, the following vulnerability has been resolved: media: dm1105: fix missing error check for dma_alloc_coherent The return value of dm1105_dma_map(), wh&hellip;
CVE-2026-97508 NONE &mdash; 2026-09-24 In the Linux kernel, the following vulnerability has been resolved: thunderbolt: Set tb->root_switch to NULL when domain is stopped Similarly what we do with the firmware&hellip;
CVE-2026-97509 NONE &mdash; 2026-09-24 In the Linux kernel, the following vulnerability has been resolved: thunderbolt: Keep XDomain reference during the lifetime of a service This is needed because we release&hellip;
CVE-2026-97510 NONE &mdash; 2026-09-24 In the Linux kernel, the following vulnerability has been resolved: thunderbolt: Release request if tb_cfg_request() fails in __tb_xdomain_response() If tb_cfg_request() &hellip;