86,884 indexed
CVECVE vulnerabilities
86,884 CVEs indexed — newest first. Filter by CVSS severity or CISA KEV listing; KEV-flagged entries surface a rose pill. Authored by Adam Lundqvist.
Showing 151–200 of 86,884 · page 4 of 1738
| ID | Title | Summary |
|---|---|---|
| CVE-2026-9831 | CVE-2026-9831 CVSS 6.3 | A race condition in the shared Extreme Platform ONE IAM Gateway API-key authentication path could, under specific high-concurrency traffic conditions, intermit… |
| CVE-2026-9830 | CVE-2026-9830 CVSS 8.2 | The bookingpress-appointment-booking-pro WordPress plugin before 5.7.3 does not correctly invoke its REST permission callback, leaving every route in one of it… |
| CVE-2026-9829 | CVE-2026-9829 CVSS 6.5 | The Photo Gallery by 10Web – Mobile-Friendly Image Gallery plugin for WordPress is vulnerable to time-based SQL Injection via 'compact_album_order_by' Shortcod… |
| CVE-2026-9824 | CVE-2026-9824 CVSS 4.3mattermost | Mattermost versions 11.7.x <= 11.7.2, 11.6.x <= 11.6.4, 10.11.x <= 10.11.19 fail to check the manage_shared_channels permission in the /share-channel autocompl… |
| CVE-2026-9822 | CVE-2026-9822 | The WP Hotel Booking WordPress plugin before 2.3.1 does not enforce capability checks in several of its AJAX handlers, allowing authenticated users with Subscr… |
| CVE-2026-9820 | CVE-2026-9820 CVSS 3.8mattermost | Mattermost versions 11.7.x <= 11.7.2, 10.11.x <= 10.11.19 fail to sanitize team objects returned by the scheme teams endpoint, which allows a user with the Use… |
| CVE-2026-98164 | CVE-2026-98164 CVSS 5.5linux | In the Linux kernel, the following vulnerability has been resolved: KVM: x86/mmu: Check write tracking in all address spaces kvm_gfn_is_write_tracked() check… |
| CVE-2026-98163 | CVE-2026-98163 CVSS 7.0linux | In the Linux kernel, the following vulnerability has been resolved: cgroup: Avoid iteration of dying tasks with zero refcount The commit 260fbcb92bbea ("cgro… |
| CVE-2026-98162 | CVE-2026-98162 CVSS 5.5linux | In the Linux kernel, the following vulnerability has been resolved: smb/server: fix tree connection leak in smb2_tree_connect() See the procedure below: s… |
| CVE-2026-98161 | CVE-2026-98161 CVSS 5.5linux | In the Linux kernel, the following vulnerability has been resolved: nvdimm: pmem: keep PREFLUSH before data writes pmem_submit_bio() records a REQ_PREFLUSH e… |
| CVE-2026-98160 | CVE-2026-98160 CVSS 5.5linux | In the Linux kernel, the following vulnerability has been resolved: staging: rtl8723bs: fix mismatched free of HalData in rtw_sdio_if1_init() padapter->HalDa… |
| CVE-2026-9816 | CVE-2026-9816 CVSS 8.3mattermost | Mattermost versions 11.7.x <= 11.7.6, 10.11.x <= 10.11.21, 11.8.x <= 11.8.3 fail to validate BoardMember.Scheme* fields server-side on insert and archive-impor… |
| CVE-2026-98159 | CVE-2026-98159 | In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7921: validate CLC firmware records The CLC region is supplied by firmware,… |
| CVE-2026-98158 | CVE-2026-98158 | In the Linux kernel, the following vulnerability has been resolved: ppp_async: drop the errored frame instead of resetting its headroom ppp_receive_nonmp_fra… |
| CVE-2026-98157 | CVE-2026-98157 | In the Linux kernel, the following vulnerability has been resolved: EDAC/device_sysfs: Use kstrtouint() for poll_msec to prevent truncation The poll_msec sys… |
| CVE-2026-98156 | CVE-2026-98156 CVSS 7.8 | In the Linux kernel, the following vulnerability has been resolved: drm/virtio: use the DMA API for resource backing on Xen On a Xen PV domain page addresses… |
| CVE-2026-98155 | CVE-2026-98155 | In the Linux kernel, the following vulnerability has been resolved: accel/qaic: Address potential out-of-bounds read in resp_worker() Although 'commit 2feec5… |
| CVE-2026-98154 | CVE-2026-98154 CVSS 7.0 | In the Linux kernel, the following vulnerability has been resolved: nvme-rdma: fix -EIO cleanup order in queue_rq On -EIO, the RDMA queue_rq path reports a h… |
| CVE-2026-98153 | CVE-2026-98153 | In the Linux kernel, the following vulnerability has been resolved: nvme: fix racy access to FDP placement id array nvme_query_fdp_info() is called per-path … |
| CVE-2026-98152 | CVE-2026-98152 CVSS 5.5linux | In the Linux kernel, the following vulnerability has been resolved: nvmet-rdma: fix queue leak when connect backlog is exceeded When pending disconnecting qu… |
| CVE-2026-98151 | CVE-2026-98151 | In the Linux kernel, the following vulnerability has been resolved: bpf: Fix REG INVARIANTS VIOLATION on speculative pointer arithmetic Take the following un… |
| CVE-2026-98150 | CVE-2026-98150 CVSS 7.0 | In the Linux kernel, the following vulnerability has been resolved: bpf: Fix BPF_F_CPU validation for sparse CPU IDs BPF_F_CPU stores the target CPU ID in th… |
| CVE-2026-9815 | CVE-2026-9815 CVSS 6.5 | The MagicForm WordPress plugin through 0.1.3 does not properly validate the type of files uploaded through an unauthenticated AJAX action when a form's per-fie… |
| CVE-2026-98149 | CVE-2026-98149 | In the Linux kernel, the following vulnerability has been resolved: bpf: Fix percpu map update indexing with sparse CPU IDs Per-CPU array, hash, and cgroup s… |
| CVE-2026-98148 | CVE-2026-98148 | In the Linux kernel, the following vulnerability has been resolved: drm/gud: validate GUD_ROTATION_0 is present in supported rotations The rotation argument … |
| CVE-2026-98147 | CVE-2026-98147 | In the Linux kernel, the following vulnerability has been resolved: printk: Don't WARN on kthread_run failure. Since __kthread_create_on_node() returns -EINT… |
| CVE-2026-98146 | CVE-2026-98146 | In the Linux kernel, the following vulnerability has been resolved: accel/amdxdna: Remove __counted_by from struct amdxdna_cmd_chain struct amdxdna_cmd_chain… |
| CVE-2026-98145 | CVE-2026-98145 | In the Linux kernel, the following vulnerability has been resolved: accel/amdxdna: reject a command chain that carries no commands A chain whose command_coun… |
| CVE-2026-98144 | CVE-2026-98144 | In the Linux kernel, the following vulnerability has been resolved: accel/amdxdna: put the chained BO when its mapping fails amdxdna_cmd_set_error() looks up… |
| CVE-2026-98143 | CVE-2026-98143 CVSS 7.8 | In the Linux kernel, the following vulnerability has been resolved: accel: ethosu: Don't read the U65 rounding mode as a storage mode Bits 15:14 of NPU_SET_{… |
| CVE-2026-98142 | CVE-2026-98142 | In the Linux kernel, the following vulnerability has been resolved: drm/cirrus-qemu: Validate BAR0 size during probe The `cirrus-qemu` driver relies on `CIRR… |
| CVE-2026-98141 | CVE-2026-98141 | In the Linux kernel, the following vulnerability has been resolved: ntfs: propagate reparse index insertion failure update_reparse_data() ignores the return … |
| CVE-2026-98140 | CVE-2026-98140 | In the Linux kernel, the following vulnerability has been resolved: ntfs: fix kmap_local leak in write_mft_record_nolock() error paths write_mft_record_noloc… |
| CVE-2026-98139 | CVE-2026-98139 | In the Linux kernel, the following vulnerability has been resolved: ntfs: only count successfully cleared runs when freeing clusters ntfs_cluster_free_from_r… |
| CVE-2026-98138 | CVE-2026-98138 | In the Linux kernel, the following vulnerability has been resolved: ntfs: do not mark the volume clean in sync_fs when errors were recorded ntfs_put_super() … |
| CVE-2026-98137 | CVE-2026-98137 | In the Linux kernel, the following vulnerability has been resolved: ntfs: treat any nonzero dio zero-range return as an error ntfs_dio_zero_range() returns e… |
| CVE-2026-98136 | CVE-2026-98136 | In the Linux kernel, the following vulnerability has been resolved: ntfs: bound $AttrDef table walk to the loaded table size ntfs_attr_find_in_attrdef() walk… |
| CVE-2026-98135 | CVE-2026-98135 | In the Linux kernel, the following vulnerability has been resolved: ntfs: reject invalid sectors_per_cluster in the boot sector is_boot_sector_ntfs() checks … |
| CVE-2026-98134 | CVE-2026-98134 | In the Linux kernel, the following vulnerability has been resolved: bpf: check_cond_jmp_op(): properly infer if register is null Nicholas Carlini reported a … |
| CVE-2026-98133 | CVE-2026-98133 | In the Linux kernel, the following vulnerability has been resolved: ntfs: leave HasEA flag untouched on setxattr failure In ntfs_set_ea(), the exit path unco… |
| CVE-2026-98132 | CVE-2026-98132 | In the Linux kernel, the following vulnerability has been resolved: bpf: don't downgrade half-dead scalar zero spills to STACK_ZERO states.c:__clean_func_sta… |
| CVE-2026-98131 | CVE-2026-98131 | In the Linux kernel, the following vulnerability has been resolved: net: stmmac: fix dma mapping leak in stmmac_tso_xmit() In stmmac_tso_xmit(), if the DMA m… |
| CVE-2026-98130 | CVE-2026-98130 CVSS 8.1 | In the Linux kernel, the following vulnerability has been resolved: sctp: fix a TOCTOU race in SCTP_CMD_TIMER_START The SCTP_CMD_TIMER_START handler checks t… |
| CVE-2026-9813 | CVE-2026-9813 CVSS 9.9flowintel | FlowIntel up to version 3.3.0 contains a server-side request forgery (SSRF) vulnerability in the external reference URL probe functionality in app/case/task.py… |
| CVE-2026-98129 | CVE-2026-98129 | In the Linux kernel, the following vulnerability has been resolved: scsi: mpi3mr: Fix NULL pointer dereference in mpi3mr_sas_port_add() sas_port_alloc_num() … |
| CVE-2026-98128 | CVE-2026-98128 | In the Linux kernel, the following vulnerability has been resolved: scsi: mpi3mr: Fix target device refcount leak in mpi3mr_sas_port_add() mpi3mr_get_tgtdev_… |
| CVE-2026-98127 | CVE-2026-98127 | In the Linux kernel, the following vulnerability has been resolved: smb/client: validate new EOF for insert range smb3_insert_range() does not check if the n… |
| CVE-2026-98126 | CVE-2026-98126 | In the Linux kernel, the following vulnerability has been resolved: smb/client: validate new EOF for zero range When FALLOC_FL_ZERO_RANGE is used without FAL… |
| CVE-2026-98125 | CVE-2026-98125 | In the Linux kernel, the following vulnerability has been resolved: smb/client: fix stale page cache in insert/collapse range smb3_insert_range() and smb3_co… |
| CVE-2026-98124 | CVE-2026-98124 | In the Linux kernel, the following vulnerability has been resolved: smb/client: invalidate fscache for fallocate range operations smb3_zero_range(), smb3_pun… |