SEARCHSearch the cs-graph

CVE-#### · MITRE T#### · CWE-#### · ATLAS AML.T#### · D3-XX · compliance article references. Authored by Adam Lundqvist.

40 results for “kev-cve-2026-21509” · 1.10 s · cached

Facets · 1 entity types

40 CVE
CVE-2026-47309CVE

CVE-2026-47309

Uncontrolled Recursion vulnerability in Samsung Open Source Escargot allows Oversized Serialized Data Payloads. This issue affects Escargot: 590345cc6258317c5da850d846ce6baaf2afc2d3.

CVSS 5.5EPSS 0.3%samsung
Match for kev-cve-2026-21509
CVE-2026-6207CVE

CVE-2026-6207

Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

Match for kev-cve-2026-21509
CVE-2026-31587CVE

CVE-2026-31587

In the Linux kernel, the following vulnerability has been resolved: ASoC: qcom: q6apm: move component registration to unmanaged version q6apm component registers dais dynamically from ASoC toplolog…

CVSS 7.8EPSS 0.2%linux
Match for kev-cve-2026-21509
CVE-2026-47315CVE

CVE-2026-47315

Improper Check for Unusual or Exceptional Conditions vulnerability in Samsung Open Source Escargot allows Input Data Manipulation. This issue affects Escargot: 590345cc6258317c5da850d846ce6baaf2afc2…

CVSS 5.5EPSS 0.3%samsung
Match for kev-cve-2026-21509
CVE-2026-31586CVE

CVE-2026-31586

In the Linux kernel, the following vulnerability has been resolved: mm: blk-cgroup: fix use-after-free in cgwb_release_workfn() cgwb_release_workfn() calls css_put(wb->blkcg_css) and then later acc…

CVSS 7.8EPSS 0.2%linux
Match for kev-cve-2026-21509
CVE-2026-6208CVE

CVE-2026-6208

Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

Match for kev-cve-2026-21509
CVE-2026-31589CVE

CVE-2026-31589

In the Linux kernel, the following vulnerability has been resolved: mm: call ->free_folio() directly in folio_unmap_invalidate() We can only call filemap_free_folio() if we have a reference to (or …

CVSS 9.8EPSS 0.7%
Match for kev-cve-2026-21509
CVE-2026-21531CVE

CVE-2026-21531

Deserialization of untrusted data in Azure SDK allows an unauthorized attacker to execute code over a network.

CVSS 9.8EPSS 2.5%
Match for kev-cve-2026-21509
CVE-2026-40527CVE

CVE-2026-40527

radare2 prior to commit bc5a890 contains a command injection vulnerability in the afsv/afsvj command path where crafted ELF binaries can embed malicious r2 command sequences as DWARF DW_TAG_formal_pa…

CVSS 7.8EPSS 1.5%radare
Match for kev-cve-2026-21509
CVE-2026-46221CVE

CVE-2026-46221

In the Linux kernel, the following vulnerability has been resolved: EDAC/versalnet: Fix device name memory leak The device name allocated via kzalloc() in init_one_mc() is assigned to dev->init_nam…

CVSS 5.5EPSS 0.2%linux
Match for kev-cve-2026-21509
CVE-2024-56122CVE

CVE-2024-56122

Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

Match for kev-cve-2026-21509
CVE-2026-31527CVE

CVE-2026-31527

In the Linux kernel, the following vulnerability has been resolved: driver core: platform: use generic driver_override infrastructure When a driver is probed through __driver_attach(), the bus' mat…

CVSS 7.8EPSS 0.2%linux
Match for kev-cve-2026-21509
CVE-2026-40528CVE

CVE-2026-40528

OpenSC before 0.27.0, fixed in commit 0358817, contains a stack and heap buffer overrun vulnerability in the do_key_value() function in src/pkcs15init/profile.c that allows attackers to corrupt memor…

CVSS 3.8EPSS 0.2%opensc_project
Match for kev-cve-2026-21509
CVE-2026-41509CVE

CVE-2026-41509

CROSS implementation contains reference and optimized implementations of the CROSS post-quantum signature algorithm. Prior to commit fc6b7e7, there is a buffer overflow in crypto_sign_open() caused b…

CVSS 9.8EPSS 0.6%
Match for kev-cve-2026-21509
CVE-2025-21515CVE

CVE-2025-21515

Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwards (component: Web Runtime SEC). Supported versions that are affected are Prior to 9.2.9.0. Easily exploitable vulnerabi…

CVSS 8.8EPSS 0.7%
Match for kev-cve-2026-21509
CVE-2026-24515CVE

CVE-2026-24515

In libexpat before 2.7.4, XML_ExternalEntityParserCreate does not copy unknown encoding handler user data.

CVSS 2.9EPSS 0.2%libexpat_project
Match for kev-cve-2026-21509
CVE-2026-42029CVE

CVE-2026-42029

Rejected reason: This CVE is a duplicate of another CVE.

Match for kev-cve-2026-21509
CVE-2026-46188CVE

CVE-2026-46188

In the Linux kernel, the following vulnerability has been resolved: octeon_ep_vf: add NULL check for napi_build_skb() napi_build_skb() can return NULL on allocation failure. In __octep_vf_oq_proces…

CVSS 5.5EPSS 0.2%linux
Match for kev-cve-2026-21509
CVE-2026-31583CVE

CVE-2026-31583

In the Linux kernel, the following vulnerability has been resolved: media: em28xx: fix use-after-free in em28xx_v4l2_open() em28xx_v4l2_open() reads dev->v4l2 without holding dev->lock, creating a …

CVSS 7.8EPSS 0.2%linux
Match for kev-cve-2026-21509
CVE-2026-31513CVE

CVE-2026-31513

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: Fix stack-out-of-bounds read in l2cap_ecred_conn_req Syzbot reported a KASAN stack-out-of-bounds read in l2cap_…

CVSS 8.1EPSS 0.4%
Match for kev-cve-2026-21509
Hybrid search: an exact-match keyword pass (title + MITRE-ID + body-head) fused with Vertex AI semantic similarity (text-embedding-005, cosine vector search over the corpus) via reciprocal-rank fusion — exact IDs stay pinned, related concepts surface by meaning. Curated by Adam Lundqvist, Founder at SQUR.