92,816 indexed
CVECVE vulnerabilities
92,816 CVEs indexed — newest first. Filter by CVSS severity or CISA KEV listing; KEV-flagged entries surface a rose pill. Authored by Adam Lundqvist.
Showing 3,001–3,050 of 92,816 · page 61 of 1857
| ID | Title | Summary |
|---|---|---|
| CVE-2026-93119 | CVE-2026-93119 | In the Linux kernel, the following vulnerability has been resolved: usb: ljca: bound bank_num in ljca_enumerate_gpio() ljca_enumerate_gpio() reads desc->bank… |
| CVE-2026-93118 | CVE-2026-93118 | In the Linux kernel, the following vulnerability has been resolved: usb: gadget: aspeed_udc: check endpoint DMA allocation ast_udc_probe() allocates a cohere… |
| CVE-2026-93117 | CVE-2026-93117 | In the Linux kernel, the following vulnerability has been resolved: usb: fix UAF when probe runs concurrent to dyn ID removal Dynamic IDs are only guaranteed… |
| CVE-2026-93116 | CVE-2026-93116 CVSS 7.0 | In the Linux kernel, the following vulnerability has been resolved: platform/x86: asus-wmi: fix resource leaks on probe failure During driver initialization … |
| CVE-2026-93115 | CVE-2026-93115 | In the Linux kernel, the following vulnerability has been resolved: platform/mellanox: mlxbf-pmc: Check ACPI_COMPANION() against NULL Every platform driver c… |
| CVE-2026-93114 | CVE-2026-93114 | In the Linux kernel, the following vulnerability has been resolved: platform/surface: acpi-notify: Check ACPI companion before use Since every platform drive… |
| CVE-2026-93113 | CVE-2026-93113 | In the Linux kernel, the following vulnerability has been resolved: clk: qcom: camcc-sc8280xp: unregister CAMCC_GDSC_CLK With the introduction of sync_state … |
| CVE-2026-93112 | CVE-2026-93112 CVSS 7.1 | In the Linux kernel, the following vulnerability has been resolved: bpf: Require a BPF cpumask for bpf_cpumask_populate() bpf_cpumask_populate() writes to it… |
| CVE-2026-93111 | CVE-2026-93111 CVSS 7.8 | In the Linux kernel, the following vulnerability has been resolved: bpf: Mark tracing_multi trampolines as ftrace managed Since tracing_multi link does not s… |
| CVE-2026-93110 | CVE-2026-93110 | In the Linux kernel, the following vulnerability has been resolved: RDMA/core: Wait for RCU callbacks before unloading ib_core put_gid_ndev() is queued with … |
| CVE-2026-9311 | CVE-2026-9311 CVSS 9.0ibm | IBM WebSphere Application Server 9.0, and 8.5 is vulnerable to remote code execution caused by the bypass of security controls. |
| CVE-2026-93109 | CVE-2026-93109 | In the Linux kernel, the following vulnerability has been resolved: RDMA/mlx5: Drain RCU callbacks during module teardown devx_free_subscription() can remain… |
| CVE-2026-93108 | CVE-2026-93108 | In the Linux kernel, the following vulnerability has been resolved: RDMA/ipoib: Drain RCU callbacks during module teardown IPoIB reclamation completions can … |
| CVE-2026-93107 | CVE-2026-93107 CVSS 8.2 | In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Avoid reprocessing the current packet after the QP enters the error state When … |
| CVE-2026-93106 | CVE-2026-93106 | In the Linux kernel, the following vulnerability has been resolved: crash_dump: release keyring reference at the correct time restore_dm_crypt_keys_to_thread… |
| CVE-2026-93105 | CVE-2026-93105 CVSS 7.8 | In the Linux kernel, the following vulnerability has been resolved: esp: do not unref managed frag pages in esp_ssg_unref() esp_ssg_unref() releases the page… |
| CVE-2026-93104 | CVE-2026-93104 | In the Linux kernel, the following vulnerability has been resolved: RDMA/rvt: Return NULL after port allocation failure rvt_alloc_device() deallocates the IB… |
| CVE-2026-93103 | CVE-2026-93103 | In the Linux kernel, the following vulnerability has been resolved: RDMA/hfi1: Preserve unit 0 on allocation failure hfi1_free_devdata() assumes that the dev… |
| CVE-2026-93102 | CVE-2026-93102 | In the Linux kernel, the following vulnerability has been resolved: RDMA/hfi1: Free RX data on late probe failure hfi1_init_dd() allocates the shared AIP/VNI… |
| CVE-2026-93101 | CVE-2026-93101 | In the Linux kernel, the following vulnerability has been resolved: media: v4l2-async: Unregister sub-device if asc_list is empty When my em28xx USB device t… |
| CVE-2026-93100 | CVE-2026-93100 | In the Linux kernel, the following vulnerability has been resolved: fs/resctrl: Prevent use-after-free in rdtgroup_kn_put() A struct rdtgroup is reference co… |
| CVE-2026-93099 | CVE-2026-93099 | In the Linux kernel, the following vulnerability has been resolved: fs/resctrl: Fix UAF from worker threads when domains are removed The mbm_handle_overflow(… |
| CVE-2026-93098 | CVE-2026-93098 | In the Linux kernel, the following vulnerability has been resolved: rpmsg: glink: fix deadlock in endpoint destroy during driver detach During driver detach,… |
| CVE-2026-93097 | CVE-2026-93097 | In the Linux kernel, the following vulnerability has been resolved: cxl/mbox: Break poison list loop on an empty payload A device that returns count == 0 wit… |
| CVE-2026-93096 | CVE-2026-93096 | In the Linux kernel, the following vulnerability has been resolved: cxl/features: Serialize multi-part Get/Set Feature transfers A Get or Set Feature payload… |
| CVE-2026-93095 | CVE-2026-93095 CVSS 7.8 | In the Linux kernel, the following vulnerability has been resolved: hfsplus: validate thread record before delete key rebuild hfsplus_delete_cat() is called … |
| CVE-2026-93094 | CVE-2026-93094 | In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: fix dp_link_peer dangling references on AP vdev rollback ath12k_mac_vdev_cr… |
| CVE-2026-93093 | CVE-2026-93093 | In the Linux kernel, the following vulnerability has been resolved: firmware: arm_scmi: Publish channel state before callbacks Transport setup can enable cal… |
| CVE-2026-93092 | CVE-2026-93092 | In the Linux kernel, the following vulnerability has been resolved: firmware: arm_scmi: Unregister device notifier before IDR teardown The requested-devices … |
| CVE-2026-93091 | CVE-2026-93091 | In the Linux kernel, the following vulnerability has been resolved: firmware: arm_scmi: Quiesce notifications before teardown scmi_notification_exit() clears… |
| CVE-2026-93090 | CVE-2026-93090 | In the Linux kernel, the following vulnerability has been resolved: firmware: arm_scmi: Clean up channels on setup failure scmi_channels_setup() can fail aft… |
| CVE-2026-9309 | CVE-2026-9309 CVSS 5.4mozilla | Firefox for iOS Reader View did not properly escape HTML tags in JSON-LD metadata. A malicious page could inject markup that changed Reader View behavior and l… |
| CVE-2026-93089 | CVE-2026-93089 | In the Linux kernel, the following vulnerability has been resolved: firmware: arm_scmi: Free transport channel on IDR failure If transport channel setup succ… |
| CVE-2026-93088 | CVE-2026-93088 CVSS 9.8 | SGLang's multimodal generation runtime is vulnerable to unauthenticated arbitrary code execution because the disaggregated-diffusion orchestrator's DiffusionSe… |
| CVE-2026-93086 | CVE-2026-93086 | In the Linux kernel, the following vulnerability has been resolved: firmware: arm_scmi: Avoid IDR updates while cleaning channels scmi_cleanup_channels() wal… |
| CVE-2026-93085 | CVE-2026-93085 | In the Linux kernel, the following vulnerability has been resolved: firmware: arm_scmi: Reject out of range DT protocol IDs SCMI protocol IDs carried in mess… |
| CVE-2026-93084 | CVE-2026-93084 | In the Linux kernel, the following vulnerability has been resolved: firmware: arm_scmi: Drop handle on protocol bind failures The SCMI bus notifier acquires … |
| CVE-2026-93083 | CVE-2026-93083 | In the Linux kernel, the following vulnerability has been resolved: firmware: arm_scmi: Unwind TX receiver mailbox setup failure mailbox_chan_setup() can req… |
| CVE-2026-93082 | CVE-2026-93082 | In the Linux kernel, the following vulnerability has been resolved: firmware: arm_scmi: Unwind P2A receiver mailbox setup failure mailbox_chan_setup() can re… |
| CVE-2026-93081 | CVE-2026-93081 | In the Linux kernel, the following vulnerability has been resolved: firmware: arm_scmi: Fix SCMI device destroy lifetimes scmi_child_dev_find() drops the ref… |
| CVE-2026-93080 | CVE-2026-93080 | In the Linux kernel, the following vulnerability has been resolved: firmware: arm_scmi: Fix transport device teardown lookup SCMI transport devices are delib… |
| CVE-2026-9308 | CVE-2026-9308 CVSS 5.4mozilla | Firefox for iOS Reader View replaced page content in its HTML template before replacing other internal placeholders. A malicious page could include a placehold… |
| CVE-2026-93079 | CVE-2026-93079 CVSS 7.8 | In the Linux kernel, the following vulnerability has been resolved: cxl/features: Reject Get Feature count larger than the output buffer cxlctl_get_feature()… |
| CVE-2026-93078 | CVE-2026-93078 | In the Linux kernel, the following vulnerability has been resolved: cxl/features: Reject Set Features output buffer smaller than the header cxlctl_set_featur… |
| CVE-2026-93077 | CVE-2026-93077 | In the Linux kernel, the following vulnerability has been resolved: cxl/features: Clamp Get Feature output size to the remaining buffer cxl_get_feature() rea… |
| CVE-2026-93076 | CVE-2026-93076 | In the Linux kernel, the following vulnerability has been resolved: dax/fsdev: clear vmemmap_shift when binding static pgmap Clear pgmap->vmemmap_shift for s… |
| CVE-2026-93075 | CVE-2026-93075 | In the Linux kernel, the following vulnerability has been resolved: dax/fsdev: clear pgmap ops and owner on unbind fsdev_dax_probe() sets pgmap->ops = &fsdev… |
| CVE-2026-93074 | CVE-2026-93074 CVSS 7.8 | In the Linux kernel, the following vulnerability has been resolved: dax/fsdev: use __va(phys) for kaddr in direct_access Use __va(phys) instead of virt_addr … |
| CVE-2026-93073 | CVE-2026-93073 | In the Linux kernel, the following vulnerability has been resolved: dax: read holder_ops once in dax_holder_notify_failure() dax_holder_notify_failure() read… |
| CVE-2026-93072 | CVE-2026-93072 | In the Linux kernel, the following vulnerability has been resolved: irqchip/renesas-irqc: Fix generic interrupt chip leak on remove The driver allocates doma… |