SEARCHSearch the cs-graph

CVE-#### · MITRE T#### · CWE-#### · ATLAS AML.T#### · D3-XX · compliance article references. Authored by Adam Lundqvist.

45 results for “kev-cve-2026-5281” · 0.71 s · cached

Facets · 1 entity types

45 CVE
CVE-2026-5272CVE

CVE-2026-5272

Heap buffer overflow in GPU in Google Chrome prior to 146.0.7680.178 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium security severity: High)

CVSS 8.8EPSS 0.4%
Match for kev-cve-2026-5281
CVE-2024-56120CVE

CVE-2024-56120

Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

Match for kev-cve-2026-5281
CVE-2026-0029CVE

CVE-2026-0029

In __pkvm_init_vm of pkvm.c, there is a possible memory corruption due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. U…

CVSS 8.4EPSS 0.1%
Match for kev-cve-2026-5281
CVE-2026-46201CVE

CVE-2026-46201

In the Linux kernel, the following vulnerability has been resolved: drm/xe: Fix dma-buf attachment leak in xe_gem_prime_import() When xe_dma_buf_init_obj() fails, the attachment from dma_buf_dynami…

CVSS 7.8EPSS 0.2%linux
Match for kev-cve-2026-5281
CVE-2026-25276CVE

CVE-2026-25276

Memory corruption while using Strongbox due to missing bounds check.

CVSS 8.8EPSS 0.1%qualcomm
Match for kev-cve-2026-5281
CVE-2026-5292CVE

CVE-2026-5292

Out of bounds read in WebCodecs in Google Chrome prior to 146.0.7680.178 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page. (Chromium security severity: Medium)

CVSS 8.8EPSS 0.3%
Match for kev-cve-2026-5281
CVE-2026-46264CVE

CVE-2026-46264

In the Linux kernel, the following vulnerability has been resolved: drm/xe/pf: Fix sysfs initialization In case of devm_add_action_or_reset() failure the provided cleanup action will be run immedia…

CVSS 8.8EPSS 0.2%linux
Match for kev-cve-2026-5281
CVE-2026-5052CVE

CVE-2026-5052

Vault’s PKI engine’s ACME validation did not reject local targets when issuing http-01 and tls-alpn-01 challenges. This may lead to these requests being sent to local network targets, potentially lea…

CVSS 8.6EPSS 0.4%
Match for kev-cve-2026-5281
CVE-2024-56123CVE

CVE-2024-56123

Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

Match for kev-cve-2026-5281
CVE-2026-5228CVE

CVE-2026-5228

Improper Access Control, Missing Authorization vulnerability in Kurt Software Studio WriteUp Mobile App allows Accessing Functionality Not Properly Constrained by ACLs. This issue affects WriteUp Mo…

CVSS 8.8EPSS 0.4%
Match for kev-cve-2026-5281
CVE-2026-25258CVE

CVE-2026-25258

Memory corruption while processing IOCTL calls for escape operations.

CVSS 7.8EPSS 0.1%qualcomm
Match for kev-cve-2026-5281
CVE-2026-25259CVE

CVE-2026-25259

Memory corruption while processing multiple IOCTL command for escape operations.

CVSS 7.8EPSS 0.1%qualcomm
Match for kev-cve-2026-5281
CVE-2026-48556CVE

CVE-2026-48556

Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

Match for kev-cve-2026-5281
CVE-2026-46188CVE

CVE-2026-46188

In the Linux kernel, the following vulnerability has been resolved: octeon_ep_vf: add NULL check for napi_build_skb() napi_build_skb() can return NULL on allocation failure. In __octep_vf_oq_proces…

CVSS 5.5EPSS 0.2%linux
Match for kev-cve-2026-5281
CVE-2026-5686CVE

CVE-2026-5686

A security flaw has been discovered in Tenda CX12L 16.03.53.12. This vulnerability affects the function fromRouteStatic of the file /goform/RouteStatic. The manipulation of the argument page results …

CVSS 8.8EPSS 1.0%tenda
Match for kev-cve-2026-5281
CVE-2026-26210CVE

CVE-2026-26210

KTransformers through 0.5.3 contains an unsafe deserialization vulnerability in the balance_serve backend mode where the scheduler RPC server binds a ZMQ ROUTER socket to all interfaces with no authe…

CVSS 9.8EPSS 1.0%kvcache-ai
Match for kev-cve-2026-5281
CVE-2026-5386CVE

CVE-2026-5386

The affected KMW CCTV Security Cameras are vulnerable to a critical unauthenticated password reset. This flaw allows an attacker to remotely reset the administrator password to a known value without …

CVSS 9.1EPSS 0.6%
Match for kev-cve-2026-5281
CVE-2026-5152CVE

CVE-2026-5152

A vulnerability was detected in Tenda CH22 1.0.0.1. Impacted is the function formCreateFileName of the file /goform/createFileName. Performing a manipulation of the argument fileNameMit results in st…

CVSS 8.8EPSS 1.0%
Match for kev-cve-2026-5281
CVE-2026-4366CVE

CVE-2026-4366

A flaw was identified in Keycloak, an identity and access management solution, where it improperly follows HTTP redirects when processing certain client configuration requests. This behavior allows a…

CVSS 5.8EPSS 0.4%redhat
Match for kev-cve-2026-5281
CVE-2026-5604CVE

CVE-2026-5604

A security flaw has been discovered in Tenda CH22 1.0.0.1. The impacted element is the function formCertLocalPrecreate of the file /goform/CertLocalPrecreate of the component Parameter Handler. Perfo…

CVSS 8.8EPSS 0.9%tenda
Match for kev-cve-2026-5281
Hybrid search: an exact-match keyword pass (title + MITRE-ID + body-head) fused with Vertex AI semantic similarity (text-embedding-005, cosine vector search over the corpus) via reciprocal-rank fusion — exact IDs stay pinned, related concepts surface by meaning. Curated by Adam Lundqvist, Founder at SQUR.