SEARCHSearch the cs-graph

CVE-#### · MITRE T#### · CWE-#### · ATLAS AML.T#### · D3-XX · compliance article references. Authored by Adam Lundqvist.

43 results for “kev-cve-2026-35616” · 1.06 s · cached

Facets · 1 entity types

43 CVE
CVE-2026-46221CVE

CVE-2026-46221

In the Linux kernel, the following vulnerability has been resolved: EDAC/versalnet: Fix device name memory leak The device name allocated via kzalloc() in init_one_mc() is assigned to dev->init_nam…

CVSS 5.5EPSS 0.2%linux
Match for kev-cve-2026-35616
CVE-2026-35433CVE

CVE-2026-35433

Improper input validation in .NET allows an unauthorized attacker to elevate privileges locally.

CVSS 7.3EPSS 0.6%microsoft
Match for kev-cve-2026-35616
CVE-2026-45654CVE

CVE-2026-45654

Improper access control in Windows Secure Boot allows an authorized attacker to bypass a security feature locally.

CVSS 7.9EPSS 0.3%microsoft
Match for kev-cve-2026-35616
CVE-2026-45657CVE

CVE-2026-45657

Use after free in Windows Kernel allows an unauthorized attacker to execute code over a network.

CVSS 9.8EPSS 1.0%microsoft
Match for kev-cve-2026-35616
CVE-2026-5434CVE

CVE-2026-5434

Honeywell Control Network Module (CNM) contains insertion of sensitive information into an unintended directory. An attacker could exploit this vulnerability through probing system files, potentially…

CVSS 5.9EPSS 0.3%
Match for kev-cve-2026-35616
CVE-2026-5433CVE

CVE-2026-5433

Honeywell Control Network Module (CNM) contains command injection vulnerability in the web interface. An attacker could exploit this vulnerability via command delimiters, potentially resulting in Rem…

CVSS 9.1EPSS 1.6%
Match for kev-cve-2026-35616
CVE-2026-6207CVE

CVE-2026-6207

Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

Match for kev-cve-2026-35616
CVE-2026-25258CVE

CVE-2026-25258

Memory corruption while processing IOCTL calls for escape operations.

CVSS 7.8EPSS 0.1%qualcomm
Match for kev-cve-2026-35616
CVE-2026-45838CVE

CVE-2026-45838

In the Linux kernel, the following vulnerability has been resolved: bpf: fix end-of-list detection in cgroup_storage_get_next_key() list_next_entry() never returns NULL -- when the current element …

CVSS 5.5EPSS 0.2%linux
Match for kev-cve-2026-35616
CVE-2026-45637CVE

CVE-2026-45637

Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.

CVSS 7.8EPSS 0.3%microsoft
Match for kev-cve-2026-35616
CVE-2026-35171CVE

CVE-2026-35171

Kedro is a toolbox for production-ready data science. Prior to 1.3.0, Kedro allows the logging configuration file path to be set via the KEDRO_LOGGING_CONFIG environment variable and loads it without…

CVSS 9.8EPSS 0.9%linuxfoundation
Match for kev-cve-2026-35616
CVE-2026-33816CVE

CVE-2026-33816

Memory-safety vulnerability in github.com/jackc/pgx/v5.

CVSS 9.8EPSS 0.9%jackc
Match for kev-cve-2026-35616
CVE-2026-35417CVE

CVE-2026-35417

Use after free in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally.

CVSS 7.8EPSS 0.3%microsoft
Match for kev-cve-2026-35616
CVE-2026-23112CVE

CVE-2026-23112

In the Linux kernel, the following vulnerability has been resolved: nvmet-tcp: add bounds checks in nvmet_tcp_build_pdu_iovec nvmet_tcp_build_pdu_iovec() could walk past cmd->req.sg when a PDU leng…

CVSS 9.8EPSS 0.4%linux
Match for kev-cve-2026-35616
CVE-2026-6208CVE

CVE-2026-6208

Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

Match for kev-cve-2026-35616
CVE-2026-45638CVE

CVE-2026-45638

Heap-based buffer overflow in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

CVSS 7.8EPSS 0.3%microsoft
Match for kev-cve-2026-35616
CVE-2026-46154CVE

CVE-2026-46154

In the Linux kernel, the following vulnerability has been resolved: sched_ext: Read scx_root under scx_cgroup_ops_rwsem in cgroup setters scx_group_set_{weight,idle,bandwidth}() cache scx_root befo…

CVSS 7.0EPSS 0.2%linux
Match for kev-cve-2026-35616
CVE-2025-65716CVE

CVE-2025-65716

An issue in Visual Studio Code Extensions Markdown Preview Enhanced v0.8.18 allows attackers to execute arbitrary code via uploading a crafted .Md file.

CVSS 8.8EPSS 0.7%
Match for kev-cve-2026-35616
CVE-2026-21518CVE

CVE-2026-21518

Improper neutralization of special elements used in a command ('command injection') in GitHub Copilot and Visual Studio Code allows an unauthorized attacker to bypass a security feature over a networ…

CVSS 8.8EPSS 1.4%
Match for kev-cve-2026-35616
CVE-2026-40938CVE

CVE-2026-40938

Tekton Pipelines project provides k8s-style resources for declaring CI/CD-style pipelines. Starting in version 1.0.0 and prior to versions 1.0.2, 1.3.4, 1.6.2, 1.9.3, and 1.11.1, the git resolver's r…

CVSS 7.5EPSS 0.9%linuxfoundation
Match for kev-cve-2026-35616
Hybrid search: an exact-match keyword pass (title + MITRE-ID + body-head) fused with Vertex AI semantic similarity (text-embedding-005, cosine vector search over the corpus) via reciprocal-rank fusion — exact IDs stay pinned, related concepts surface by meaning. Curated by Adam Lundqvist, Founder at SQUR.