92,816 indexed
CVECVE vulnerabilities
92,816 CVEs indexed — newest first. Filter by CVSS severity or CISA KEV listing; KEV-flagged entries surface a rose pill. Authored by Adam Lundqvist.
Showing 2,901–2,950 of 92,816 · page 59 of 1857
| ID | Title | Summary |
|---|---|---|
| CVE-2026-93211 | CVE-2026-93211 | In the Linux kernel, the following vulnerability has been resolved: nfsd: initialize DRC hash table before registering shrinker shrinker_register() precedes … |
| CVE-2026-93210 | CVE-2026-93210 | In the Linux kernel, the following vulnerability has been resolved: smb: client: harden DFS cache against invalid target hints Currently, get_tgt_name() retu… |
| CVE-2026-9321 | CVE-2026-9321 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2026-93209 | CVE-2026-93209 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_core: use skb_get() instead of skb_clone() for req_skb BT enable fails int… |
| CVE-2026-93208 | CVE-2026-93208 | In the Linux kernel, the following vulnerability has been resolved: kasan: fix cache shrink race with CPU hotplug kasan_quarantine_remove_cache() first invok… |
| CVE-2026-93207 | CVE-2026-93207 CVSS 9.8 | In the Linux kernel, the following vulnerability has been resolved: SUNRPC: Zero rpc_gss_wire_cred at svcauth_gss_decode_credbody() entry svcauth_gss_decode_… |
| CVE-2026-93206 | CVE-2026-93206 | In the Linux kernel, the following vulnerability has been resolved: PCI/proc: Use file_ns_capable() when checking config space read access proc_bus_pci_read(… |
| CVE-2026-93205 | CVE-2026-93205 | In the Linux kernel, the following vulnerability has been resolved: iommu/arm-smmu-v3: Manage teardown with devm arm_smmu_device_remove() manually frees the … |
| CVE-2026-93204 | CVE-2026-93204 | In the Linux kernel, the following vulnerability has been resolved: batman-adv: dat: atomically update mac addresses When a MAC address is updated in batadv_… |
| CVE-2026-93203 | CVE-2026-93203 CVSS 7.1 | In the Linux kernel, the following vulnerability has been resolved: batman-adv: bla: avoid CRC corruption due to parallel claim add batadv_bla_add_claim() is… |
| CVE-2026-93202 | CVE-2026-93202 | In the Linux kernel, the following vulnerability has been resolved: i3c: master: Fix recursive locking during device registration i3c_master_register_new_i3c… |
| CVE-2026-93201 | CVE-2026-93201 CVSS 7.8 | In the Linux kernel, the following vulnerability has been resolved: dm-pcache: validate seg_id fields from persistent memory cache_pos_decode(), cache_key_de… |
| CVE-2026-93200 | CVE-2026-93200 | In the Linux kernel, the following vulnerability has been resolved: i3c: master: Fix use-after-free of master->this sysfs attribute callbacks for the master … |
| CVE-2026-9320 | CVE-2026-9320 CVSS 5.9ibm | IBM WebSphere Application Server 9.0, and 8.5 and IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.6 are vulnerable to a denial of service, c… |
| CVE-2026-93199 | CVE-2026-93199 | In the Linux kernel, the following vulnerability has been resolved: i3c: master: Do not treat master device as a duplicate target i3c_master_search_i3c_dev_d… |
| CVE-2026-93198 | CVE-2026-93198 | In the Linux kernel, the following vulnerability has been resolved: dm-pcache: validate the persisted dirty_tail chain at load The writeback worker follows t… |
| CVE-2026-93197 | CVE-2026-93197 | In the Linux kernel, the following vulnerability has been resolved: memcg: move LRU size accounting on reparenting instead of copying it When a memory cgroup… |
| CVE-2026-93196 | CVE-2026-93196 CVSS 8.4 | In the Linux kernel, the following vulnerability has been resolved: nvdimm: virtio_pmem: refcount requests for token lifetime KASAN reports slab-use-after-fr… |
| CVE-2026-93195 | CVE-2026-93195 | In the Linux kernel, the following vulnerability has been resolved: drm/bridge: synopsys: dw-dp: Support unregistering the AUX channel The DisplayPort AUX ch… |
| CVE-2026-93194 | CVE-2026-93194 | In the Linux kernel, the following vulnerability has been resolved: drm/rockchip: dw_dp: Release core resources Core resources such as the DisplayPort AUX ch… |
| CVE-2026-93193 | CVE-2026-93193 | In the Linux kernel, the following vulnerability has been resolved: drm/rockchip: analogix_dp: Fix OF node reference leak via auto cleanup Sashiko reported a… |
| CVE-2026-93192 | CVE-2026-93192 CVSS 7.8 | In the Linux kernel, the following vulnerability has been resolved: drm/v3d: Clear queue->active_job when v3d_fence_create() fails The run_job() callbacks fo… |
| CVE-2026-93191 | CVE-2026-93191 | In the Linux kernel, the following vulnerability has been resolved: smack: fix incorrect task context in smack_msg_queue_msgrcv The smack_msg_queue_msgrcv() … |
| CVE-2026-93190 | CVE-2026-93190 CVSS 8.4 | In the Linux kernel, the following vulnerability has been resolved: platform/chrome: cros_ec_typec: Reject out-of-bounds PD cap count cros_typec_register_par… |
| CVE-2026-9319 | CVE-2026-9319 CVSS 9.0ibm | IBM WebSphere Application Server 9.0, and 8.5 is vulnerable to potential remote code execution due to deserialization of untrusted data via JAX-WS endpoints wi… |
| CVE-2026-93189 | CVE-2026-93189 CVSS 8.8 | In the Linux kernel, the following vulnerability has been resolved: HID: core: quiesce input in hid_hw_stop() to prevent use-after-free A driver's probe call… |
| CVE-2026-93188 | CVE-2026-93188 | In the Linux kernel, the following vulnerability has been resolved: HID: roccat: bound device-supplied profile index kone_keep_values_up_to_date() and kone_p… |
| CVE-2026-93187 | CVE-2026-93187 | In the Linux kernel, the following vulnerability has been resolved: ASoC: SOF: ipc4-topology: Return error for invalid number of formats When the number of i… |
| CVE-2026-93186 | CVE-2026-93186 | In the Linux kernel, the following vulnerability has been resolved: cxl/mbox: Clamp mailbox output allocation to the payload size CXL_MEM_SEND_COMMAND bounds… |
| CVE-2026-93185 | CVE-2026-93185 | In the Linux kernel, the following vulnerability has been resolved: ASoC: rt700-sdw: always drain jack work on remove rt700_sdw_remove() drains jack_detect_w… |
| CVE-2026-93184 | CVE-2026-93184 | In the Linux kernel, the following vulnerability has been resolved: ASoC: fsl_audmix: rework runtime PM handling in probe After pm_runtime_enable() the AUDMI… |
| CVE-2026-93183 | CVE-2026-93183 | In the Linux kernel, the following vulnerability has been resolved: drm/lima: call drm_mm_init() with a valid allocation range lima_vm_create() is currently … |
| CVE-2026-93182 | CVE-2026-93182 | In the Linux kernel, the following vulnerability has been resolved: sched/fair: Fix overflow in update_tg_cfs_runnable() A divide-by-zero crash is observed w… |
| CVE-2026-93181 | CVE-2026-93181 | In the Linux kernel, the following vulnerability has been resolved: perf/x86/intel/uncore: Fix uncore_box ref/unref ordering In uncore_event_cpu_online(), un… |
| CVE-2026-93180 | CVE-2026-93180 | In the Linux kernel, the following vulnerability has been resolved: drm/panthor: Fix NPD issue on partial unmap of an evicted BO This commit fixes the NULL p… |
| CVE-2026-9318 | CVE-2026-9318 CVSS 5.4 | tablib prior to 3.10.0 contains a stored cross-site scripting vulnerability in the HTML export functionality that allows attackers to execute arbitrary JavaScr… |
| CVE-2026-93179 | CVE-2026-93179 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/powerplay: fix VoltageObjectInfo zero-stride loop and OOB read Reject voltage obj… |
| CVE-2026-93178 | CVE-2026-93178 CVSS 7.1 | In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu/pm/powerplay: bounds-check voltage index in SMU7 lookup vddInd and vddcInd fie… |
| CVE-2026-93177 | CVE-2026-93177 CVSS 7.3 | In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu/pm/powerplay: bounds-check voltage index in Vega10 lookup vddInd, vddciInd and… |
| CVE-2026-93176 | CVE-2026-93176 CVSS 7.0 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix dangling pointer in plane reset function amdgpu_dm_plane_drm_plane_r… |
| CVE-2026-93175 | CVE-2026-93175 CVSS 7.8 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix dangling pointer in CRTC reset function amdgpu_dm_crtc_reset_state()… |
| CVE-2026-93174 | CVE-2026-93174 | In the Linux kernel, the following vulnerability has been resolved: bpf: Copy per-CPU map value padding in copy_map_value_long() In kernel, per-CPU map eleme… |
| CVE-2026-93173 | CVE-2026-93173 | In the Linux kernel, the following vulnerability has been resolved: bpf,lsm: Drop bpf_prog_free from sleepable_lsm_hooks __bpf_prog_put_rcu() is the call_rcu… |
| CVE-2026-93172 | CVE-2026-93172 | In the Linux kernel, the following vulnerability has been resolved: mm/mm_init: handle alloc_percpu failure in free_area_init_core_hotplug We miss a failed a… |
| CVE-2026-93171 | CVE-2026-93171 | In the Linux kernel, the following vulnerability has been resolved: leds: lp5860: Fix a potential double-unlock In lp5860_device_init(), if lp5860_init_dt() … |
| CVE-2026-93170 | CVE-2026-93170 CVSS 7.8 | In the Linux kernel, the following vulnerability has been resolved: dmaengine: xilinx_dma: Fix channel idle state management in AXIDMA and MCDMA interrupt han… |
| CVE-2026-9317 | CVE-2026-9317 CVSS 8.1 | Nango before 0.71.6 contains a missing authentication vulnerability in the runner tRPC server that allows unauthenticated attackers to execute arbitrary JavaSc… |
| CVE-2026-93169 | CVE-2026-93169 | In the Linux kernel, the following vulnerability has been resolved: dmaengine: zynqmp_dma: fix race between runtime PM and device removal In zynqmp_dma_remov… |
| CVE-2026-93168 | CVE-2026-93168 | In the Linux kernel, the following vulnerability has been resolved: dmaengine: xilinx_dma: Fix CPU stall in xilinx_dma_poll_timeout Currently when calling xi… |
| CVE-2026-93167 | CVE-2026-93167 | In the Linux kernel, the following vulnerability has been resolved: csky: Fix a4/a5 restoration in syscall trace path The syscall trace path reloads syscall … |