SEARCHSearch the cs-graph

CVE-#### · MITRE T#### · CWE-#### · ATLAS AML.T#### · D3-XX · compliance article references. Authored by Adam Lundqvist.

37 results for “kev-cve-2026-45321” · 1.96 s · cached

Facets · 1 entity types

37 CVE
CVE-2026-46291CVE

CVE-2026-46291

In the Linux kernel, the following vulnerability has been resolved: crypto: caam - guard HMAC key hex dumps in hash_digest_key Use print_hex_dump_devel() for dumping sensitive HMAC key bytes in has…

CVSS 5.5EPSS 0.2%linux
Match for kev-cve-2026-45321
CVE-2026-45838CVE

CVE-2026-45838

In the Linux kernel, the following vulnerability has been resolved: bpf: fix end-of-list detection in cgroup_storage_get_next_key() list_next_entry() never returns NULL -- when the current element …

CVSS 5.5EPSS 0.2%linux
Match for kev-cve-2026-45321
CVE-2026-45482CVE

CVE-2026-45482

Improper limitation of a pathname to a restricted directory ('path traversal') in GitHub Copilot and Visual Studio Code allows an unauthorized attacker to bypass a security feature locally.

CVSS 8.4EPSS 0.4%microsoft
Match for kev-cve-2026-45321
CVE-2026-40527CVE

CVE-2026-40527

radare2 prior to commit bc5a890 contains a command injection vulnerability in the afsv/afsvj command path where crafted ELF binaries can embed malicious r2 command sequences as DWARF DW_TAG_formal_pa…

CVSS 7.8EPSS 1.5%radare
Match for kev-cve-2026-45321
CVE-2026-35171CVE

CVE-2026-35171

Kedro is a toolbox for production-ready data science. Prior to 1.3.0, Kedro allows the logging configuration file path to be set via the KEDRO_LOGGING_CONFIG environment variable and loads it without…

CVSS 9.8EPSS 0.9%linuxfoundation
Match for kev-cve-2026-45321
CVE-2026-35433CVE

CVE-2026-35433

Improper input validation in .NET allows an unauthorized attacker to elevate privileges locally.

CVSS 7.3EPSS 0.6%microsoft
Match for kev-cve-2026-45321
CVE-2025-29778CVE

CVE-2025-29778

Kyverno is a policy engine designed for cloud native platform engineering teams. Prior to version 1.14.0-alpha.1, Kyverno ignores subjectRegExp and IssuerRegExp while verifying artifact's sign with k…

CVSS 8.0EPSS 0.3%
Match for kev-cve-2026-45321
CVE-2026-41323CVE

CVE-2026-41323

Kyverno is a policy engine designed for cloud native platform engineering teams. Prior to versions 1.18.0-rc1, 1.17.2-rc1, and 1.16.4, Kyverno's apiCall feature in ClusterPolicy automatically attache…

CVSS 9.1EPSS 0.6%
Match for kev-cve-2026-45321
CVE-2026-46322CVE

CVE-2026-46322

In the Linux kernel, the following vulnerability has been resolved: tun: free page on build_skb failure in tun_xdp_one() When build_skb() fails in tun_xdp_one(), the function sets ret to -ENOMEM an…

CVSS 7.1EPSS 0.2%linux
Match for kev-cve-2026-45321
CVE-2026-6207CVE

CVE-2026-6207

Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

Match for kev-cve-2026-45321
CVE-2026-45329CVE

CVE-2026-45329

ESF-IDF is the Espressif Internet of Things (IOT) Development Framework. In versions 5.5.4 and 6.0, several ESP-TEE secure-service wrappers in esp_secure_services.c and esp_secure_services_iram.c val…

CVSS 7.1EPSS 0.2%espressif
Match for kev-cve-2026-45321
CVE-2026-45641CVE

CVE-2026-45641

Access of resource using incompatible type ('type confusion') in Windows Hyper-V allows an unauthorized attacker to execute code locally.

CVSS 8.4EPSS 0.3%microsoft
Match for kev-cve-2026-45321
CVE-2026-45491CVE

CVE-2026-45491

Improper link resolution before file access ('link following') in .NET allows an unauthorized attacker to perform tampering locally.

CVSS 6.2EPSS 0.4%microsoft
Match for kev-cve-2026-45321
CVE-2026-47311CVE

CVE-2026-47311

Heap-based buffer overflow vulnerability in Samsung Open Source Escargot allows Overflow Buffers. This issue affects Escargot: 590345cc6258317c5da850d846ce6baaf2afc2d3.

CVSS 7.8EPSS 0.3%samsung
Match for kev-cve-2026-45321
CVE-2026-45446CVE

CVE-2026-45446

Issue summary: The implementations of AES-SIV (RFC 5297) and AES-GCM-SIV (RFC 8452) mishandle the authentication of AAD (Additional Authenticated Data) with an empty ciphertext allowing a forgery of …

CVSS 4.8EPSS 0.2%openssl
Match for kev-cve-2026-45321
CVE-2026-45391CVE

CVE-2026-45391

A command injection vulnerability in Cribl Edge for Linux versions 3.2.0 through 4.17.0 allows a local unprivileged user to execute arbitrary commands in the context of the Cribl Edge service account.

CVSS 7.8EPSS 1.7%
Match for kev-cve-2026-45321
CVE-2026-44697CVE

CVE-2026-44697

Klever-Go is the Go implementation of the Klever blockchain protocol. Prior to 1.7.17, a remote, unauthenticated denial-of-service vulnerability in Batch.Decompress (data/batch/batch.go) allows any p…

CVSS 8.6EPSS 0.5%
Match for kev-cve-2026-45321
Hybrid search: an exact-match keyword pass (title + MITRE-ID + body-head) fused with Vertex AI semantic similarity (text-embedding-005, cosine vector search over the corpus) via reciprocal-rank fusion — exact IDs stay pinned, related concepts surface by meaning. Curated by Adam Lundqvist, Founder at SQUR.