Search
23,162 CVEs
CVEs (23,162, showing first 500)
Only the first 500 CVEs (by current sort) are shown when searching without a keyword. Add a search term above to narrow the results.
Showing 1–25 of 23,162 (capped at 500)
| CVE ID | Severity | Patch | CVSS | Published ↑ | Description |
|---|---|---|---|---|---|
| CVE-2026-6951 | CRITICAL | Patched | 9.8 | 2026-04-25 | Versions of the package simple-git before 3.36.0 are vulnerable to Remote Code Execution (RCE) due to an incomplete fix for [CVE-2022-25912](https://security.snyk.io/vuln/S… |
| CVE-2026-31673 | HIGH | Patched | 7.8 | 2026-04-25 | In the Linux kernel, the following vulnerability has been resolved: af_unix: read UNIX_DIAG_VFS data under unix_state_lock Exact UNIX diag lookups hold a reference to the… |
| CVE-2026-31674 | HIGH | Patched | 7.1 | 2026-04-25 | In the Linux kernel, the following vulnerability has been resolved: netfilter: ip6t_rt: reject oversized addrnr in rt_mt6_check() Reject rt match rules whose addrnr excee… |
| CVE-2026-31675 | HIGH | Patched | 7.8 | 2026-04-25 | In the Linux kernel, the following vulnerability has been resolved: net/sched: sch_netem: fix out-of-bounds access in packet corruption In netem_enqueue(), the packet cor… |
| CVE-2026-31676 | HIGH | Patched | 7.5 | 2026-04-25 | In the Linux kernel, the following vulnerability has been resolved: rxrpc: only handle RESPONSE during service challenge Only process RESPONSE packets while the service c… |
| CVE-2026-31677 | MEDIUM | Patched | 5.5 | 2026-04-25 | In the Linux kernel, the following vulnerability has been resolved: crypto: af_alg - limit RX SG extraction by receive buffer budget Make af_alg_get_rsgl() limit each RX … |
| CVE-2026-31678 | HIGH | Patched | 7.8 | 2026-04-25 | In the Linux kernel, the following vulnerability has been resolved: openvswitch: defer tunnel netdev_put to RCU release ovs_netdev_tunnel_destroy() may run after NETDEV_U… |
| CVE-2026-31679 | HIGH | Patched | 7.1 | 2026-04-25 | In the Linux kernel, the following vulnerability has been resolved: openvswitch: validate MPLS set/set_masked payload length validate_set() accepted OVS_KEY_ATTR_MPLS as … |
| CVE-2026-31680 | HIGH | Patched | 7.8 | 2026-04-25 | In the Linux kernel, the following vulnerability has been resolved: net: ipv6: flowlabel: defer exclusive option free until RCU teardown `ip6fl_seq_show()` walks the glob… |
| CVE-2026-31681 | MEDIUM | Patched | 5.5 | 2026-04-25 | In the Linux kernel, the following vulnerability has been resolved: netfilter: xt_multiport: validate range encoding in checkentry ports_match_v1() treats any non-zero pf… |
| CVE-2026-31682 | CRITICAL | Patched | 9.1 | 2026-04-25 | In the Linux kernel, the following vulnerability has been resolved: bridge: br_nd_send: linearize skb before parsing ND options br_nd_send() parses neighbour discovery op… |
| CVE-2026-31683 | HIGH | Patched | 7.8 | 2026-04-25 | In the Linux kernel, the following vulnerability has been resolved: batman-adv: avoid OGM aggregation when skb tailroom is insufficient When OGM aggregation state is togg… |
| CVE-2026-31684 | MEDIUM | Patched | 5.5 | 2026-04-25 | In the Linux kernel, the following vulnerability has been resolved: net: sched: act_csum: validate nested VLAN headers tcf_csum_act() walks nested VLAN headers directly f… |
| CVE-2026-31685 | CRITICAL | Patched | 9.4 | 2026-04-25 | In the Linux kernel, the following vulnerability has been resolved: netfilter: ip6t_eui64: reject invalid MAC header for all packets `eui64_mt6()` derives a modified EUI-… |
| CVE-2026-6977 | HIGH | 7.3 | 2026-04-25 | A security vulnerability has been detected in vanna-ai vanna up to 2.0.2. The affected element is an unknown function of the component Legacy Flask API. The manipulation le… | |
| CVE-2026-6978 | MEDIUM | 4.7 | 2026-04-25 | A vulnerability was detected in JiZhiCMS up to 2.5.6. The impacted element is the function htmlspecialchars_decode of the file /index.php/admins/Sys/addcache.html. The mani… | |
| CVE-2026-6979 | MEDIUM | 6.3 | 2026-04-25 | A flaw has been found in devlikeapro WAHA up to 2026.3.4. This affects an unknown function of the file src/api/media.controller.ts of the component API Request Handler. Thi… | |
| CVE-2026-6980 | HIGH | 7.3 | 2026-04-25 | A vulnerability has been found in Divyanshu-hash GitPilot-MCP up to 9ed9f153ba4158a2ad230ee4871b25130da29ffd. This impacts the function repo_path of the file main.py. Such … | |
| CVE-2026-6981 | MEDIUM | 6.3 | 2026-04-25 | A vulnerability was found in IhateCreatingUserNames2 AiraHub2 up to 3e4b77fd7d48ed811ffe5b8d222068c17c76495e. Affected is the function connect_stream_endpoint/sync_agents o… | |
| CVE-2026-6982 | MEDIUM | 6.3 | 2026-04-25 | A vulnerability was determined in star7th ShowDoc up to 2.10.10/3.6.2/3.8.0. Affected by this vulnerability is an unknown functionality of the file server/Application/Api/C… | |
| CVE-2026-6983 | MEDIUM | 4.7 | 2026-04-25 | A vulnerability was identified in pagekit up to 1.0.18. Affected by this issue is some unknown functionality of the file /index.php/admin/system/update/download. The manipu… | |
| CVE-2026-6984 | MEDIUM | 4.7 | 2026-04-25 | A security flaw has been discovered in AstrBotDevs AstrBot up to 4.22.1. This affects the function create_template of the file astrbot/dashboard/routes/t2i.py of the compon… | |
| CVE-2026-6985 | MEDIUM | Patched | 5.3 | 2026-04-25 | A weakness has been identified in Cesanta Mongoose up to 7.20. This vulnerability affects the function handle_opt of the file /src/net_builtin.c of the component TCP Option… |
| CVE-2026-6986 | LOW | Patched | 3.7 | 2026-04-25 | A security vulnerability has been detected in Cesanta Mongoose up to 7.20. This issue affects the function mg_aes_gcm_decrypt of the file /src/tls_aes128.c of the component… |
| CVE-2026-6987 | HIGH | Patched | 7.3 | 2026-04-25 | A vulnerability was detected in PicoClaw up to 0.2.4. Impacted is an unknown function of the file /api/gateway/restart of the component Web Launcher Management Plane. Perfo… |