92,816 indexed
CVECVE vulnerabilities
92,816 CVEs indexed — newest first. Filter by CVSS severity or CISA KEV listing; KEV-flagged entries surface a rose pill. Authored by Adam Lundqvist.
Showing 3,051–3,100 of 92,816 · page 62 of 1857
| ID | Title | Summary |
|---|---|---|
| CVE-2026-93071 | CVE-2026-93071 | In the Linux kernel, the following vulnerability has been resolved: media: bcm2835-unicam: Fix asc leaked in error/remove path v4l2_async_nf_add_fwnode_remot… |
| CVE-2026-93070 | CVE-2026-93070 CVSS 7.8 | In the Linux kernel, the following vulnerability has been resolved: media: ipu6: Do not free aux device pdata after init ipu6_bus_initialize_device() stores … |
| CVE-2026-9307 | CVE-2026-9307 | A sensitive information disclosure security issue exists within the affected CompactLogix controllers. The controller's web server exposes CIP Connection IDs o… |
| CVE-2026-93069 | CVE-2026-93069 | In the Linux kernel, the following vulnerability has been resolved: OPP: Fix cleanup ordering Commit 173e02d67494 ("OPP: Initialize scope-based pointers inli… |
| CVE-2026-93068 | CVE-2026-93068 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix DM I2C teardown race DM I2C adapters can remain visible to userspace… |
| CVE-2026-93067 | CVE-2026-93067 | In the Linux kernel, the following vulnerability has been resolved: drm/bridge: tc358767: clamp the reported AUX read size to the request tc_aux_transfer() c… |
| CVE-2026-93066 | CVE-2026-93066 | In the Linux kernel, the following vulnerability has been resolved: x86/mm/pat: Take cpa_lock around large-page collapse Loading and unloading modules concur… |
| CVE-2026-93065 | CVE-2026-93065 | In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: fix counter type in iwl_fwrt_dump_error_logs The loop counter 'count' was … |
| CVE-2026-93064 | CVE-2026-93064 | In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: mvm: fix off-by-one in TXF key sanitiser iwl_mvm_frob_txf_key_iter() track… |
| CVE-2026-93063 | CVE-2026-93063 CVSS 8.4 | In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: mei: check SAP message length before reading it Verify the SAP message siz… |
| CVE-2026-93062 | CVE-2026-93062 | In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: guard against division by zero in iwl_dbg_tlv_alloc_fragments Make sure we… |
| CVE-2026-93061 | CVE-2026-93061 | In the Linux kernel, the following vulnerability has been resolved: gpu: host1x: Avoid stack over-read in debug output helpers host1x_debug_output() and host… |
| CVE-2026-93060 | CVE-2026-93060 | In the Linux kernel, the following vulnerability has been resolved: drm/msm/adreno: fix use after free on error path in a6xx_gpu_init() The a6xx_destroy() fu… |
| CVE-2026-9306 | CVE-2026-9306 CVSS 3.7 | A security vulnerability has been detected in QuantumNous new-api up to 0.12.1. This affects the function RelayMidjourneyImage/GetByOnlyMJId of the file router… |
| CVE-2026-93059 | CVE-2026-93059 | In the Linux kernel, the following vulnerability has been resolved: drm/msm: Fix task_struct reference leak in recover_worker get_pid_task() increments the t… |
| CVE-2026-93058 | CVE-2026-93058 | In the Linux kernel, the following vulnerability has been resolved: drm/msm: Only fini scheduler after successful init msm_ringbuffer_new() destroys a partia… |
| CVE-2026-93057 | CVE-2026-93057 | In the Linux kernel, the following vulnerability has been resolved: scsi: ufs: core: Avoid possible memory reclaim deadlock in TX EQTR context TX EQTR may ru… |
| CVE-2026-93056 | CVE-2026-93056 | In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_uac1_legacy: remove broken string configfs attributes The UAC1_STR_ATTRIBU… |
| CVE-2026-93055 | CVE-2026-93055 | In the Linux kernel, the following vulnerability has been resolved: UDF symlink pathComponent header OOB read udf_symlink_filler() can enter udf_pc_to_char()… |
| CVE-2026-93054 | CVE-2026-93054 CVSS 7.0 | In the Linux kernel, the following vulnerability has been resolved: uio: Fix stale info pointer in failed registration path After device_add(), the UIO devic… |
| CVE-2026-93053 | CVE-2026-93053 | In the Linux kernel, the following vulnerability has been resolved: speakup: keyhelp: guard letter_offsets possible out-of-range indexing help_init() builds … |
| CVE-2026-93052 | CVE-2026-93052 | In the Linux kernel, the following vulnerability has been resolved: misc: bcm-vk: Use acquire/release for msgq_inited bcm_vk_sync_msgq() fills the message qu… |
| CVE-2026-93051 | CVE-2026-93051 | In the Linux kernel, the following vulnerability has been resolved: misc: ad525x_dpot: use driver core groups for sysfs files ad_dpot_probe() creates per-RDA… |
| CVE-2026-93050 | CVE-2026-93050 | In the Linux kernel, the following vulnerability has been resolved: ipack: ipoctal: fix UAF, null-ptr-deref, and use-after-free in cleanup on remove Three is… |
| CVE-2026-9305 | CVE-2026-9305 CVSS 6.3 | A weakness has been identified in QuantumNous new-api up to 0.12.1. The impacted element is the function SearchUserTopUps/SearchAllTopUps of the file model/top… |
| CVE-2026-93049 | CVE-2026-93049 | In the Linux kernel, the following vulnerability has been resolved: mtd: mtdswap: Avoid freeing registered blktrans device twice In mtdswap_add_mtd(), debugf… |
| CVE-2026-93048 | CVE-2026-93048 | In the Linux kernel, the following vulnerability has been resolved: mtd: part: reject MTDPART_OFS_RETAIN in mtd_add_partition() mtd_add_partition() does not … |
| CVE-2026-93047 | CVE-2026-93047 | In the Linux kernel, the following vulnerability has been resolved: drm/v3d: Associate BOs with every job that accesses them A submission can expand into a c… |
| CVE-2026-93046 | CVE-2026-93046 CVSS 7.0 | In the Linux kernel, the following vulnerability has been resolved: software node: Fix software_node_get_reference_args() with index -1 The bounds check for … |
| CVE-2026-93045 | CVE-2026-93045 CVSS 7.8 | In the Linux kernel, the following vulnerability has been resolved: bpf: Reject arena frees below the arena base bpf_arena_free_pages() accepts scalar arena … |
| CVE-2026-93044 | CVE-2026-93044 | In the Linux kernel, the following vulnerability has been resolved: bpf: Disallow interpreter fallback for arena-related insns Since the interpreter does not… |
| CVE-2026-93043 | CVE-2026-93043 | In the Linux kernel, the following vulnerability has been resolved: bpf: Disallow interpreter fallback for gotox insn The interpreter does not recognize the … |
| CVE-2026-93042 | CVE-2026-93042 CVSS 8.8 | In the Linux kernel, the following vulnerability has been resolved: dmaengine: dw-edma: Terminate all descriptors without callbacks The DMA Engine client doc… |
| CVE-2026-93041 | CVE-2026-93041 | In the Linux kernel, the following vulnerability has been resolved: dmaengine: dw-edma: Serialize abort state updates dw_edma_abort_interrupt() drops vc.lock… |
| CVE-2026-93040 | CVE-2026-93040 | In the Linux kernel, the following vulnerability has been resolved: dmaengine: dw-edma: Serialize channel state checks pause() and resume() read and update c… |
| CVE-2026-9304 | CVE-2026-9304 CVSS 5.0 | A security flaw has been discovered in calcom cal.diy up to 4.9.4. The affected element is the function validateUrlForSSRF of the file apps/web/app/api/logo/ro… |
| CVE-2026-93039 | CVE-2026-93039 CVSS 7.4 | In the Linux kernel, the following vulnerability has been resolved: ASoC: meson: Keep link pointers valid on realloc failure meson_card_reallocate_links() gr… |
| CVE-2026-93038 | CVE-2026-93038 | In the Linux kernel, the following vulnerability has been resolved: iio: dac: ad5686: missing NULL check on match data Verify that chip_info pointer is not N… |
| CVE-2026-93037 | CVE-2026-93037 CVSS 7.8 | In the Linux kernel, the following vulnerability has been resolved: RDMA/hfi1: Propagate sdma_txinit_ahg() errors set_txreq_header_ahg() ignores the return v… |
| CVE-2026-93034 | CVE-2026-93034 CVSS 9.8 | SGLang contains an arbitrary code execution vulnerability caused by the ZMQ message decoder unconditionally deserializing PickleWrapper payloads via pickle.loa… |
| CVE-2026-93031 | CVE-2026-93031 CVSS 8.8 | The WP Cloud Plugins Use-your-Drive, Out-of-the-Box, Share-one-Drive, and Lets-Box plugins for WordPress are vulnerable to Arbitrary File Upload in all version… |
| CVE-2026-93030 | CVE-2026-93030 CVSS 6.5 | FTM 4.x ALL could allow a remote authenticated attacker to obtain sensitive information due to an XML external entity injection flaw. |
| CVE-2026-9303 | CVE-2026-9303 CVSS 4.3 | A vulnerability was identified in calcom cal.diy up to 4.9.4. Impacted is an unknown function. The manipulation leads to cross-site request forgery. It is poss… |
| CVE-2026-93029 | CVE-2026-93029 CVSS 9.0 | There is a stored XSS vulnerability allowing arbitrary code execution in the WHM Manage SSL Hosts interface. |
| CVE-2026-93026 | CVE-2026-93026 | This vulnerability in Veeam Backup & Replication allows a Backup Viewer to modify the Enterprise Manager master key and stored antivirus update credentials. |
| CVE-2026-9302 | CVE-2026-9302 CVSS 6.3 | A vulnerability was determined in 546669204 vps-inventory-monitoring up to 98c00b370668c96ae75e91c15548d9ea113652d9. This issue affects the function eval of th… |
| CVE-2026-93019 | CVE-2026-93019 CVSS 9.1 | Imager versions before 1.036 for Perl exit the process reading a TGA with a colour map length of 32768 or more in tga_palette_read. The reader unpacks the two… |
| CVE-2026-93018 | CVE-2026-93018 CVSS 5.5 | Imager versions before 1.036 for Perl disclose uninitialised heap memory reading a paletted image with pixel indexes past its colour map in i_gpix_p and i_glin… |
| CVE-2026-93017 | CVE-2026-93017 CVSS 7.7 | The `insights-operator-gather` ClusterRole grants the operator's service account read access to secrets in the core API group with no namespace or resourceName… |
| CVE-2026-93015 | CVE-2026-93015 CVSS 6.3 | BlueKitchen BTstack through 1.8.2 fails to validate the peer-reported endpoint count against table bounds in A2DP stream endpoint discovery. A bonded peer can … |