87,929 indexed
CVECVE vulnerabilities
87,929 CVEs indexed — newest first. Filter by CVSS severity or CISA KEV listing; KEV-flagged entries surface a rose pill. Authored by Adam Lundqvist.
Showing 801–850 of 87,929 · page 17 of 1759
| ID | Title | Summary |
|---|---|---|
| CVE-2026-97563 | CVE-2026-97563 | In the Linux kernel, the following vulnerability has been resolved: smb: client: reject out-of-bounds DataOffset in CIFSSMBRead() The SMB1 synchronous read h… |
| CVE-2026-97562 | CVE-2026-97562 CVSS 7.5 | In the Linux kernel, the following vulnerability has been resolved: smb: client: pin DFS superblock in iterator callback tcon_super_cb() stores a raw superbl… |
| CVE-2026-97561 | CVE-2026-97561 | In the Linux kernel, the following vulnerability has been resolved: smb: client: honor forceuid/forcegid when mapping SIDs to uid/gid When the administrator … |
| CVE-2026-97560 | CVE-2026-97560 | In the Linux kernel, the following vulnerability has been resolved: smb: client: fix one-byte OOB read in smb2_parse_native_symlink() When parsing a share-ro… |
| CVE-2026-9756 | CVE-2026-9756 CVSS 6.4 | The GenerateBlocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Headline Block 'linkMetaFieldType' Dynamic Link Attribute in all versi… |
| CVE-2026-97559 | CVE-2026-97559 | In the Linux kernel, the following vulnerability has been resolved: smb: client: fail DACL rewrite when the new DACL exceeds 64K replace_sids_and_copy_aces()… |
| CVE-2026-97558 | CVE-2026-97558 | In the Linux kernel, the following vulnerability has been resolved: smb: client: fix cifsFileInfo reference leak in deferred close When cifs_close() defers a… |
| CVE-2026-97557 | CVE-2026-97557 CVSS 7.5 | In the Linux kernel, the following vulnerability has been resolved: smb: client: avoid leaking refcount in cifs_queue_oplock_break() cifs_queue_oplock_break(… |
| CVE-2026-97556 | CVE-2026-97556 | In the Linux kernel, the following vulnerability has been resolved: smb: client: avoid leaking refcount when cifs_sb_tlink() fails cifs_oplock_break() takes … |
| CVE-2026-97555 | CVE-2026-97555 CVSS 8.8 | In the Linux kernel, the following vulnerability has been resolved: smb: client: fix heap overflow in DACL owner/group rewrite When id_mode_to_cifs_acl rewri… |
| CVE-2026-97554 | CVE-2026-97554 | In the Linux kernel, the following vulnerability has been resolved: smb: client: avoid using uninitialized SIDs in cifs_posix_to_fattr() cifs_posix_to_fattr(… |
| CVE-2026-97553 | CVE-2026-97553 | In the Linux kernel, the following vulnerability has been resolved: xfs: lock the healthmon when inserting unmount event LOLLM complains that xfs_healthmon_u… |
| CVE-2026-97552 | CVE-2026-97552 | In the Linux kernel, the following vulnerability has been resolved: xfs: initialise error in xfs_defer_finish_one() xfs_defer_finish_one() declares error wit… |
| CVE-2026-97551 | CVE-2026-97551 | In the Linux kernel, the following vulnerability has been resolved: xfs: initialise args->total for parent pointer updates xfs_parent_da_args_init() builds a… |
| CVE-2026-97550 | CVE-2026-97550 | In the Linux kernel, the following vulnerability has been resolved: xfs: fix unit conversions in per_binval computation LOLLM noticed that we're doing the un… |
| CVE-2026-97549 | CVE-2026-97549 | In the Linux kernel, the following vulnerability has been resolved: xfs: fix under-reservation of blocks when repairing sf directories Whilst running QA on X… |
| CVE-2026-97548 | CVE-2026-97548 CVSS 7.8 | In the Linux kernel, the following vulnerability has been resolved: xfs: fix the rtrmap and rtrefcount _maxlevels_ondisk functions The _maxlevels_ondisk func… |
| CVE-2026-97547 | CVE-2026-97547 | In the Linux kernel, the following vulnerability has been resolved: xfs: fix exchange-range reflink flag clearing issue with INO1_WRITTEN When exchanging two… |
| CVE-2026-97546 | CVE-2026-97546 | In the Linux kernel, the following vulnerability has been resolved: xfs: don't spin forever on zero-length dirents when salvaging them LOLLM noticed that xre… |
| CVE-2026-97545 | CVE-2026-97545 | In the Linux kernel, the following vulnerability has been resolved: xfs: don't leak new_bp if xfs_btree_bload_drop_buf fails LOLLM observes that in xfs_btree… |
| CVE-2026-97544 | CVE-2026-97544 | In the Linux kernel, the following vulnerability has been resolved: xfs: don't leak dqacct if rhashtable insertion fails LOLLM observes that xqcheck_mod_live… |
| CVE-2026-97543 | CVE-2026-97543 | In the Linux kernel, the following vulnerability has been resolved: xfs: destroy seen inode bitmap when we fail to add a dirpath LOLLM observes a memory leak… |
| CVE-2026-97542 | CVE-2026-97542 | In the Linux kernel, the following vulnerability has been resolved: xfs: bail out on bitmap errors in xrep_agfl_fill LOLLM also points out that the xagb_bitm… |
| CVE-2026-97541 | CVE-2026-97541 | In the Linux kernel, the following vulnerability has been resolved: wifi: ath9k_htc: don't store usb_device_id usb_device_id is not guaranteed to live longer… |
| CVE-2026-97540 | CVE-2026-97540 | In the Linux kernel, the following vulnerability has been resolved: net: usb: pegasus: don't rely on id table pointer arithmetic The current code is broken w… |
| CVE-2026-9754 | CVE-2026-9754 CVSS 6.5mongodb | An authenticated user with the read role may read limited amounts of uninitialized stack memory via specially-crafted issuances of the filemd5 command |
| CVE-2026-97539 | CVE-2026-97539 | In the Linux kernel, the following vulnerability has been resolved: usb: xusbatm: don't rely on id table pointer arithmetic The current code is broken when d… |
| CVE-2026-97538 | CVE-2026-97538 | In the Linux kernel, the following vulnerability has been resolved: hwmon: (asus_rog_ryujin) Validate HID report lengths rog_ryujin_raw_event() parses respon… |
| CVE-2026-97537 | CVE-2026-97537 | In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Fix queue teardown NULL dma_free and bitmap locking qla25xx_free_req_que()… |
| CVE-2026-97536 | CVE-2026-97536 CVSS 7.5 | In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Fix use-after-free of qpair work on queue teardown The response queue MSI-… |
| CVE-2026-97535 | CVE-2026-97535 | In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Bound VP index against VP_CTRL IOCB bitmap size The VP control IOCB select… |
| CVE-2026-97534 | CVE-2026-97534 | In the Linux kernel, the following vulnerability has been resolved: f2fs: accurately adjust free_sections during free_segment_range In free_segment_range(), … |
| CVE-2026-97533 | CVE-2026-97533 | In the Linux kernel, the following vulnerability has been resolved: x86/mm/pat: Acquire init_mm read lock on attribute changes to avoid UAF A previous commit… |
| CVE-2026-97532 | CVE-2026-97532 | In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Null out freed pointers in qla2x00_mem_alloc() error path When qla2x00_mem… |
| CVE-2026-97531 | CVE-2026-97531 CVSS 7.5 | In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Skip vport under deletion in report ID acquisition qla24xx_report_id_acqui… |
| CVE-2026-97530 | CVE-2026-97530 | In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Fix soft lockup polling continuation IOCB signature qla27xx_copy_multiple_… |
| CVE-2026-9753 | CVE-2026-9753 CVSS 8.1mongodb | The $_internalApplyOplogUpdate aggregation pipeline stage can be used to execute a document diff containing a malformed binary diff to return memory out-of-bou… |
| CVE-2026-97529 | CVE-2026-97529 | In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Validate BSG request_len before reading vendor_cmd[] The FC BSG transport … |
| CVE-2026-97528 | CVE-2026-97528 CVSS 8.8 | In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Unlink NVMe unsol ctx before freeing on LS reject error qla_nvme_xmt_ls_rs… |
| CVE-2026-97527 | CVE-2026-97527 CVSS 8.8 | In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Serialize NVMe unsol ctx list with a per-fcport lock The fcport->unsol_ctx… |
| CVE-2026-97526 | CVE-2026-97526 | In the Linux kernel, the following vulnerability has been resolved: s390/pai: Support CPU hotplug for PMU PAI The command 'perf stat -e pai_crypto/CRYPTO_ALL… |
| CVE-2026-97525 | CVE-2026-97525 CVSS 8.2 | In the Linux kernel, the following vulnerability has been resolved: x86/mm/pat: Allocate split page tables as kernel page tables A PTE is allocated directly … |
| CVE-2026-97524 | CVE-2026-97524 CVSS 7.5 | In the Linux kernel, the following vulnerability has been resolved: mptcp: avoid unneeded actions on subflow reset Once in a blue moon, the mptcp receive pat… |
| CVE-2026-97523 | CVE-2026-97523 CVSS 7.5 | In the Linux kernel, the following vulnerability has been resolved: mptcp: close race between scheduler and state change The mptcp scheduler may race with su… |
| CVE-2026-97522 | CVE-2026-97522 | In the Linux kernel, the following vulnerability has been resolved: mptcp: fix bad accounting in __mptcp_subflow_push_pending() If __subflow_push_pending() e… |
| CVE-2026-97521 | CVE-2026-97521 | In the Linux kernel, the following vulnerability has been resolved: gfs2: fix quota init duplicate scan gfs2_quota_init() checks for duplicate quota_change I… |
| CVE-2026-97520 | CVE-2026-97520 CVSS 7.1 | In the Linux kernel, the following vulnerability has been resolved: gfs2: move quota_init qc iterator increment Move qc++ from the loop body into the for-loo… |
| CVE-2026-9752 | CVE-2026-9752 CVSS 6.5mongodb | An authorized user could trigger a server crash by running a query with a 2dsphere index on a field that stores a GeoJSON GeometryCollection containing a Polyg… |
| CVE-2026-97519 | CVE-2026-97519 | In the Linux kernel, the following vulnerability has been resolved: drm/xe: Fix null pointer dereference in devcoredump cleanup In xe_devcoredump_snapshot_fr… |
| CVE-2026-97518 | CVE-2026-97518 | In the Linux kernel, the following vulnerability has been resolved: wifi: cfg80211: reject duplicate wiphy cipher suite entries Duplicate entries in wiphy->c… |