CVE Datenbank
Durchsuchbare Datenbank mit Sicherheitslücken. Filtere nach Hersteller, Schweregrad oder Zeitraum.
CVE-2026-46841 - Vulnerability in Oracle REST Data Services (component: General). Supported versions that are affect
CVE-2026-46840 - Vulnerability in Oracle REST Data Services (component: Backend-as-a-Service). Supported versions th
CVE-2026-46839 - Vulnerability in Oracle REST Data Services (component: Core). Supported versions that are affected
CVE-2026-46837 - Vulnerability in the Oracle Flow Manufacturing product of Oracle E-Business Suite (component: Securi
CVE-2026-46835 - Vulnerability in the Net Service component of Oracle Database Server. Supported versions that are a
CVE-2026-46834 - Vulnerability in the Net Service component of Oracle Database Server. Supported versions that are a
CVE-2026-46833 - Vulnerability in the Net Service component of Oracle Database Server. Supported versions that are a
CVE-2026-46830 - Vulnerability in Oracle REST Data Services (component: Mongoapi). Supported versions that are affec
CVE-2026-46829 - Vulnerability in Oracle REST Data Services (component: Mongoapi). Supported versions that are affec
CVE-2026-46828 - Vulnerability in the Oracle Payroll product of Oracle E-Business Suite (component: Internal Operatio
CVE-2026-46827 - Vulnerability in the Oracle Payroll product of Oracle E-Business Suite (component: Self Service Mana
CVE-2026-46826 - Vulnerability in the Oracle Payroll product of Oracle E-Business Suite (component: Internal Operatio
CVE-2026-46824 - Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business Suite (component: Work
CVE-2026-46823 - Vulnerability in the Oracle Public Sector Financials (International) product of Oracle E-Business Su
CVE-2026-46822 - Vulnerability in the Oracle iAssets product of Oracle E-Business Suite (component: Internal Operatio
CVE-2026-46821 - Vulnerability in the Oracle Financials Common Modules product of Oracle E-Business Suite (component:
CVE-2026-46820 - Vulnerability in the Oracle Financials Common Modules product of Oracle E-Business Suite (component:
CVE-2026-46819 - Vulnerability in the Oracle Internet Procurement Connector product of Oracle E-Business Suite (compo
CVE-2026-46818 - Vulnerability in the Oracle Payments product of Oracle E-Business Suite (component: File Transmissio
CVE-2026-46817 - Vulnerability in the Oracle Payments product of Oracle E-Business Suite (component: File Transmissio
CVE-2026-46775 - Vulnerability in Oracle REST Data Services (component: Core). Supported versions that are affected
CVE-2026-45288 - Marten is a .NET Transactional Document DB and Event Store on PostgreSQL. Prior to 8.36.1, Marten's
CVE-2026-44657 - Mantis Bug Tracker (MantisBT) is an open source issue tracker. Prior to 2.28.2, using show_inline=1
CVE-2026-44655 - Mantis Bug Tracker (MantisBT) is an open source issue tracker. From 1.3.0 to 2.28.1, unescaped Proje
CVE-2026-42400 - Uncontrolled Resource Consumption (CWE-400) in Kibana can lead to denial of service via Excessive Al
CVE-2026-42399 - Uncontrolled Resource Consumption (CWE-400) in Kibana can lead to denial of service via Excessive Al
CVE-2026-42398 - Server-Side Request Forgery (CWE-918) in Kibana allows authenticated users with connector management
CVE-2026-42071 - Mantis Bug Tracker (MantisBT) is an open source issue tracker. From 2.23.0 to 2.28.1, a missing auth
CVE-2026-42070 - Mantis Bug Tracker (MantisBT) is an open source issue tracker. Prior to 2.28.2, the mc_issue_update(
CVE-2026-41897 - Mantis Bug Tracker (MantisBT) is an open source issue tracker. From 1.0.0 to 2.28.1, lack of validat
CVE-2026-35277 - Vulnerability in Oracle REST Data Services (component: Core). Supported versions that are affected
CVE-2026-35266 - Vulnerability in Oracle REST Data Services (component: Core). Supported versions that are affected
CVE-2026-34311 - Vulnerability in the Oracle Hospitality OPERA 5 Property Services product of Oracle Hospitality Appl
CVE-2026-9039 - A configuration weakness in the device’s remote management service allows an authenticated session t
CVE-2026-9038 - A stack-based buffer overflow vulnerability in the charging controller’s signal-processing logic all
CVE-2026-9037 - A firmware update mechanism in the affected charging controller fails to validate the authenticity o
CVE-2026-49130 - Music Player Daemon (MPD) before version 0.24.11 contains a CRLF injection vulnerability in the xspf
CVE-2026-49129 - Music Player Daemon (MPD) before version 0.24.11 contains a server-side request forgery vulnerabilit
CVE-2026-49128 - Music Player Daemon (MPD) before version 0.24.11 contains a path traversal vulnerability in LocalSto
CVE-2026-49127 - Music Player Daemon (MPD) before version 0.24.11 contains a stack buffer overflow vulnerability in t
CVE-2026-42401 - Improper Neutralization of Input During Web Page Generation (CWE-79) in Kibana can lead to stored HT
CVE-2026-33590 - Insecure default settings of Portainer CE grant regular (non-admin) users privileges that allow host
CVE-2026-33464 - Uncontrolled Resource Consumption (CWE-400) in Kibana can lead to a denial of service via Excessive
CVE-2026-33463 - Operation on a Resource after Expiration or Termination (CWE-672) in Kibana can lead to unauthorized
CVE-2026-33462 - A path traversal vulnerability was identified in Kibana's dashboard management functionality. An aut
CVE-2026-32847 - DeepCode through commit c991dc2 contains a path traversal vulnerability in the SPA catch-all route i
CVE-2026-4944 - vllm-project/vllm version 0.14.1 contains a vulnerability where the `trust_remote_code=True` paramet
CVE-2026-47337 - Ubuntu Linux 6.8, 6.17 and 7.0 contain SAUCE patches with a possible NULL pointer dereference in the
CVE-2026-47336 - Ubuntu Linux 6.8 contains SAUCE patches with a possible use of an uninitialized variable in AppArmor
CVE-2026-47335 - Ubuntu Linux 6.8 contains SAUCE patches with a possible NULL pointer dereference in the handling of
CVE-2026-47334 - Ubuntu Linux 6.8, 6.17 and 7.0 contain AppArmor SAUCE patches which incorrectly sleep while holding
CVE-2026-47333 - Ubuntu Linux 6.8, 6.17 and 7.0 contain AppArmor SAUCE patches which can potentially incorrectly comp
CVE-2026-47332 - Ubuntu Linux 6.8, 6.17 and 7.0 contain AppArmor SAUCE patches which incorrectly validate the size of
CVE-2026-47331 - Ubuntu Linux 6.8 contains AppArmor SAUCE patches which fail to acquire a lock when modifying a linke
CVE-2026-47330 - Ubuntu Linux 6.8, 7.17 and 7.0 contain AppArmor SAUCE patches which can, under certain circumstances
CVE-2026-47329 - Ubuntu Linux 6.8, 6.17 and 7.0 contain SAUCE patches which fail to validate invalid sizes of the nam
CVE-2026-47328 - Ubuntu Linux 6.8, 6.17 and 7.0 contain AppArmor SAUCE patches which incorrectly attempt to free a po
CVE-2026-47327 - Ubuntu Linux 6.8, 6.17 and 7.0 contain SAUCE patches with a possible NULL pointer dereference in the
CVE-2026-47326 - Ubuntu Linux 6.8, 6.17 and 7.0 contain SAUCE patches with a memory leak in the handling of big respo
CVE-2026-47136 - RustFS is a distributed object storage system built in Rust. Prior to 1.0.0-beta.2, the RustFS conso
CVE-2026-46685 - RustFS is a distributed object storage system built in Rust. Prior to 1.0.0-beta.2, when RUSTFS_CORS
CVE-2026-46526 - Local Deep Research is an AI-powered research assistant for deep, iterative research. Prior to 1.6.1
CVE-2026-46509 - deepobj provides get, set, delete deep objects in javascript. Prior to 1.0.3, prototype pollution is
CVE-2026-45332 - Automad is a flat-file content management system and template engine. From 2.0.0-alpha.1 to 2.0.0-be
CVE-2026-45044 - RustFS is a distributed object storage system built in Rust. Prior to 1.0.0-beta.2, the admin router
CVE-2026-45042 - RustFS is a distributed object storage system built in Rust. Prior to 1.0.0-beta.2, improper authori
CVE-2026-45041 - RustFS is a distributed object storage system built in Rust. Prior to 1.0.0-beta.2, crates/appauth/s
CVE-2026-45040 - RustFS is a distributed object storage system built in Rust. Prior to 1.0.0-beta.2, RustFS suffers f
CVE-2026-45039 - RustFS is a distributed object storage system built in Rust. Prior to 1.0.0-beta.2, the internode RP
CVE-2026-44394 - An issue was discovered in OpenStack Keystone before 29.0.2. The Keystone federated token rescoping
CVE-2026-43979 - Local Deep Research is an AI-powered research assistant for deep, iterative research. Prior to 1.6.0
CVE-2026-43000 - An issue was discovered in OpenStack Keystone before 29.0.2. When combined with an application crede
CVE-2026-42999 - An issue was discovered in OpenStack Keystone before 29.0.2. The Keystone RBAC policy enforcer in en
CVE-2026-42998 - An issue was discovered in OpenStack Keystone before 29.0.2. The Keystone application credential aut
CVE-2026-30761 - An arbitrary file upload vulnerability in the pages/admin.uploadmapimg.php component of SourceBans M
CVE-2026-30760 - An issue in SourceBans Material Admin before v.1.1.6 (3ecd95e) allows attackers to manipulate arbitr
CVE-2026-46561 - pyLoad is a free and open-source download manager written in Python. Prior to 0.5.0b3.dev100, the PR
CVE-2026-45787 - electerm is an open-sourced terminal/ssh/sftp/telnet/serialport/RDP/VNC/Spice/ftp client. Prior to 3
CVE-2026-45374 - CodeWhale is a DeepSeek + MiMo coding agent in terminal. Prior to 0.8.26, the task_create tool spawn
CVE-2026-45373 - CodeWhale is a DeepSeek + MiMo coding agent in terminal. Prior to 0.8.26, although SSRF is validated
CVE-2026-45353 - electerm is an open-sourced terminal/ssh/sftp/telnet/serialport/RDP/VNC/Spice/ftp client. From 3.0.6
CVE-2026-45348 - pyLoad is a free and open-source download manager written in Python. Prior to 0.5.0b3.dev100, the pa
CVE-2026-45323 - MeshCore Card provides MeshCore Lovelace card for Home Assistant. Prior to 0.3.3, Meshcore node name
CVE-2026-45311 - CodeWhale is a DeepSeek + MiMo coding agent in terminal. From 0.3.0 to 0.8.23, the run_tests tool ex
CVE-2026-45310 - CodeWhale is a DeepSeek + MiMo coding agent in terminal. Prior to 0.8.22, the fetch_url tool validat
CVE-2026-45307 - Speakr is a personal, self-hosted web application designed for transcribing audio recordings. Prior
CVE-2026-45306 - pyLoad is a free and open-source download manager written in Python. Prior to 0.5.0b3.dev100, the fi
CVE-2026-45297 - OpenReplay is a self-hosted session replay suite. Prior to 1.26.0, there is a cross-tenant IDOR on f
CVE-2026-45296 - OpenReplay is a self-hosted session replay suite. Prior to 1.26.0, OpenReplay's Python API exposes s
CVE-2026-45058 - electerm is an open-sourced terminal/ssh/sftp/telnet/serialport/RDP/VNC/Spice/ftp client. In 3.8.8 a
CVE-2026-45021 - Kuma is a modern Envoy-based service mesh that can run on every cloud across both Kubernetes and VMs
CVE-2026-44798 - Nautobot is a Network Source of Truth and Network Automation Platform. Prior to 2.4.33 and 3.1.2, a
CVE-2026-44797 - Nautobot is a Network Source of Truth and Network Automation Platform. Prior to 2.4.33 and 3.1.2, Na
CVE-2026-44796 - Nautobot is a Network Source of Truth and Network Automation Platform. Prior to 2.4.33 and 3.1.2, Na
CVE-2026-44794 - Nautobot is a Network Source of Truth and Network Automation Platform. Prior to 2.4.33 and 3.1.2, in
CVE-2026-43898 - SandboxJS is a JavaScript sandboxing library. Prior to 0.9.6, sandbox-defined functions expose Funct
CVE-2026-34126 - TP-Link has identified a vulnerability in Tapo L535E v1.0 and v3.0, Tapo P300 v1.0, and Tapo D100C v
CVE-2026-9098 - In Casdoor versions 2.362.0 and earlier, the SAML callback handler in controllers/auth.go accepts an
CVE-2026-9097 - Casdoor versions 2.362.0 and earlier do not verify that a JWT used for token exchange is still activ
CVE-2026-9096 - Casdoor versions 2.362.0 and earlier do not enforce SAML assertion time bounds. The gosaml2 library
CVE-2026-9095 - Casdoor versions 2.362.0 and earlier map SAML assertions to user sessions without replay protection.
CVE-2026-9094 - Casdoor versions 2.362.0 and earlier contain a vulnerability enabling cross-organization token excha
CVE-2026-9093 - In Casdoor versions 2.362.0 and earlier, the SAML service provider implementation does not validate
CVE-2026-9092 - Casdoor versions 2.362.0 and earlier contain a vulnerability involving unverified email binding that
CVE-2026-9091 - Casdoor versions 2.362.0 and earlier contain a logic flaw in the social‑login binding flow that allo
CVE-2026-9090 - Casdoor versions 2.362.0 and earlier contain a vulnerability that allows an attacker to bypass authe
CVE-2026-8697 - Due to improper enforcement of authentication rate-limiting on a debug SSH service in Archer C64 v1,
CVE-2026-6720 - When calicoctl is invoked with --log-level=info or --log-level=debug, the client prints the full con
CVE-2026-47676 - Hono is a Web application framework that provides support for any JavaScript runtime. Prior to 4.12.
CVE-2026-47675 - Hono is a Web application framework that provides support for any JavaScript runtime. Prior to 4.12.
CVE-2026-47674 - Hono is a Web application framework that provides support for any JavaScript runtime. Prior to 4.12.
CVE-2026-47673 - Hono is a Web application framework that provides support for any JavaScript runtime. Prior to 4.12.
CVE-2026-45292 - opentelemetry-java is the Java implementation of the OpenTelemetry API for recording telemetry, and
CVE-2026-45261 - GitButler is a modern Git-based version control interface for AI-powered workflows. Prior to 0.19.7,
CVE-2026-45078 - Synapse is an open source Matrix homeserver implementation. Prior to 1.152.1, local authenticated us
CVE-2026-45076 - Synapse is an open source Matrix homeserver implementation. Prior to 1.152.1, in federated rooms, ma
CVE-2026-44543 - Local Path Provisioner provides a way for the Kubernetes users to utilize the local storage in each
CVE-2026-44477 - CloudNativePG is a platform designed to manage PostgreSQL databases within Kubernetes environments.
CVE-2026-44466 - Zed is a code editor. Prior to 0.229.0, Zed's terminal tool permission system can be bypassed via ba
CVE-2026-44465 - Zed is a code editor. Prior to 0.227.1, Zed IDE executes arbitrary commands when opening a folder wi
CVE-2026-44463 - Zed is a code editor. Prior to 0.229.0, Zed's terminal tool permission system can be bypassed by pre
CVE-2026-44462 - Zed is a code editor. Prior to 0.229.0, Zed's terminal tool permission system can be bypassed via ba
CVE-2026-44461 - Zed is a code editor. Prior to 0.227.1, Zed builds SSH/WSL remote commands as a shell command string
CVE-2026-41185 - When Calico is configured with the Azure IPAM plugin, the Calico CNI binary mutates the incoming CNI
CVE-2026-41184 - In Calico, the install-cni init container logs the rendered CNI configuration to standard output. Wh
CVE-2026-41160 - EspoCRM is an open source customer relationship management application. Prior to 9.3.5, a business l
CVE-2026-41141 - EspoCRM is an open source customer relationship management application. Prior to 9.3.5, the POST /ap
CVE-2026-38707 - A command injection vulnerability exists in the IPSec VPN feature of InHand Networks IR302 firmware
CVE-2026-38704 - A command injection vulnerability exists in the WireGuard VPN feature of InHand Networks IR302 firmw
CVE-2026-38703 - A command injection vulnerability exists in the ZeroTier VPN feature of InHand Networks IR302 firmwa
CVE-2026-38702 - A command injection vulnerability exists in the Admin Access feature of InHand Networks IR302 firmwa
CVE-2026-24444 - SDMC NE6037 cable modem routers running firmware 7.1.6.0.25 and 7.1.6.1.9_B9 contain a hardcoded pas
CVE-2026-48735 - pypdf is a free and open-source pure-python PDF library. Prior to 6.12.1, an attacker who uses this
CVE-2026-48526 - PyJWT is a JSON Web Token implementation in Python. Prior to 2.13.0, when the verifier is decoding J
CVE-2026-48525 - PyJWT is a JSON Web Token implementation in Python. From 2.8.0 to 2.12.1, when verifying detached JW
CVE-2026-48524 - PyJWT is a JSON Web Token implementation in Python. Prior to 2.13.0, PyJWKClient.get_signing_key() f
CVE-2026-48523 - PyJWT is a JSON Web Token implementation in Python. From 2.9.0 to 2.12.1, there is a verifier-side a
CVE-2026-48522 - PyJWT is a JSON Web Token implementation in Python. Prior to 2.13.0, PyJWKClient passes its uri argu
CVE-2026-48156 - pypdf is a free and open-source pure-python PDF library. Prior to 6.12.0, an attacker who uses this
CVE-2026-48155 - pypdf is a free and open-source pure-python PDF library. Prior to 6.12.0, an attacker who uses this
CVE-2026-47762 - TinyMCE is an open source rich text editor. Prior to 5.11.1, 7.9.3, and 8.5.1, there is a stored XSS
CVE-2026-47761 - TinyMCE is an open source rich text editor. Prior to 5.11.1, 7.9.3, and 8.5.1, there is a stored XSS
CVE-2026-47760 - TinyMCE is an open source rich text editor. From 6.8.0 to before 7.1.0, TinyMCE contains an XSS vuln
CVE-2026-47759 - TinyMCE is an open source rich text editor. Prior to 5.11.1, 7.9.3, and 8.5.1, there is a stored XSS
CVE-2026-45017 - Python Liquid is a Python engine for the Liquid template language. Prior to 2.2.0, the built-in File
CVE-2026-44672 - mapfish-print is a component of MapFish for printing templated cartographic maps. From 3.23.0 to bef
CVE-2026-44594 - esm.sh is a no-build content delivery network (CDN) for web development. In 137 and earlier, a Local
CVE-2026-44593 - esm.sh is a no-build content delivery network (CDN) for web development. In 137 and earlier, the leg
CVE-2026-44358 - Espressif Shared GitHub DangerJS is a reusable GitHub Action CI DangerJS workflow for Espressif GitH
CVE-2026-41565 - CryptX versions before 0.088_001 for Perl have a stack buffer overflow in four AEAD decrypt_verify h
CVE-2026-35676 - phpMyFAQ before 4.1.3 contains an unauthenticated password reset vulnerability in the user password
CVE-2026-35675 - phpMyFAQ before 4.1.3 contains an authentication bypass vulnerability in the password reset endpoint
CVE-2026-35672 - phpMyFAQ before 4.1.3 contains an authentication bypass vulnerability in API v4.0 where the default
CVE-2026-35671 - phpMyFAQ before 4.1.3 contains an insecure direct object reference vulnerability in the admin API us
CVE-2026-9828 - Deserialization of untrusted data vulnerability in QOS.CH Sarl logback logback-core (HardenedObjectI
CVE-2026-8990 - A user with physical access to a smartphone can bypass authentication mechanism of Kidsview mobile a
CVE-2026-8980 - The Mennekes Amtron series (firmware versions ≤ 5.22.3) is vulnerable to privilege escalation. An au
CVE-2026-8979 - The Mennekes Amtron series (firmware versions ≤ 5.22.3) is vulnerable to an authentication bypass. A
CVE-2026-49238 - An issue was discovered in Canonical Multipass before version 1.16.3. The host-side SFTP server comp
CVE-2026-49237 - An issue was discovered in Canonical Multipass for macOS before version 1.16.3 due to an incomplete
CVE-2026-42250 - bzip2 contains an off‑by‑one error in the bzip2recover utility. When processing a specially crafted
CVE-2026-37579 - An issue in SMSGate sms-core<=2.1.13.6 allows a remote attacker to execute arbitrary code via the Cm
CVE-2026-37266 - An issue in Responsive File Manager Responsive FileManager Version 9.14.0 allows a remote attacker t
CVE-2026-9818 - Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2026-9658 - Plack::Middleware::Security::Common versions before 0.13.1 for Perl did not block header injections
CVE-2026-40914 - A vulnerability exists in Apache Artemis whereby an application using the STOMP protocol with securi
CVE-2026-9813 - FlowIntel up to version 3.3.0 contains a server-side request forgery (SSRF) vulnerability in the ext
CVE-2026-4377 - Dlink DWR-X1820 router uses weak default password generated from its IMEI number and does not requir
CVE-2026-47074 - Improper Certificate Validation vulnerability in ex-aws ex_aws_sns (ExAws.SNS, ExAws.SNS.PublicKeyCa
CVE-2026-46241 - In the Linux kernel, the following vulnerability has been resolved: spi: mpc52xx: fix use-after-fre
CVE-2026-46240 - In the Linux kernel, the following vulnerability has been resolved: media: iris: Fix use-after-free
CVE-2026-46239 - In the Linux kernel, the following vulnerability has been resolved: media: i2c: ov5647: Fix runtime
CVE-2026-46238 - In the Linux kernel, the following vulnerability has been resolved: batman-adv: stop caching unowne
CVE-2026-46237 - Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2026-46236 - In the Linux kernel, the following vulnerability has been resolved: media: rc: xbox_remote: heed DM
CVE-2026-46235 - In the Linux kernel, the following vulnerability has been resolved: media: saa7164: add ioremap ret
CVE-2026-46234 - In the Linux kernel, the following vulnerability has been resolved: vsock: fix buffer size clamping
CVE-2026-46233 - In the Linux kernel, the following vulnerability has been resolved: batman-adv: bla: only purge non
CVE-2026-46232 - In the Linux kernel, the following vulnerability has been resolved: HID: playstation: Clamp num_tou
CVE-2026-46231 - In the Linux kernel, the following vulnerability has been resolved: batman-adv: bla: put backbone r
CVE-2026-46230 - In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu/vcn3: Prevent OOB re
CVE-2026-46229 - In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: Clear VRAM on alloc
CVE-2026-46228 - In the Linux kernel, the following vulnerability has been resolved: spi: ch341: fix devres lifetime
CVE-2026-46227 - In the Linux kernel, the following vulnerability has been resolved: sctp: revalidate list cursor af
CVE-2026-46226 - In the Linux kernel, the following vulnerability has been resolved: spi: fsl: fix controller deregi
CVE-2026-46225 - In the Linux kernel, the following vulnerability has been resolved: spi: rspi: fix controller dereg
CVE-2026-46224 - In the Linux kernel, the following vulnerability has been resolved: drm/xe: Fix bo leak in xe_dma_b
CVE-2026-46223 - In the Linux kernel, the following vulnerability has been resolved: cgroup: Defer css percpu_ref ki
CVE-2026-46222 - In the Linux kernel, the following vulnerability has been resolved: media: rockchip: rkcif: Add mis
CVE-2026-46221 - In the Linux kernel, the following vulnerability has been resolved: EDAC/versalnet: Fix device name
CVE-2026-46220 - In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu/sdma4: replace BUG_O
CVE-2026-46219 - In the Linux kernel, the following vulnerability has been resolved: spi: mpc52xx: fix use-after-fre
CVE-2026-46218 - In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Add bounds checking
CVE-2026-46217 - Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2026-46216 - In the Linux kernel, the following vulnerability has been resolved: drm/xe/hdcp: Add NULL check for
CVE-2026-46215 - In the Linux kernel, the following vulnerability has been resolved: drm: Set old handle to NULL bef
CVE-2026-46214 - In the Linux kernel, the following vulnerability has been resolved: vsock/virtio: fix accept queue
CVE-2026-46213 - In the Linux kernel, the following vulnerability has been resolved: HID: appletb-kbd: fix UAF in in
CVE-2026-46212 - In the Linux kernel, the following vulnerability has been resolved: batman-adv: bla: prevent use-af
CVE-2026-46211 - In the Linux kernel, the following vulnerability has been resolved: drm/msm/gem: fix error handling
CVE-2026-46210 - In the Linux kernel, the following vulnerability has been resolved: media: iris: fix use-after-free
CVE-2026-46209 - In the Linux kernel, the following vulnerability has been resolved: drm/gem: Fix inconsistent plane
CVE-2026-46208 - In the Linux kernel, the following vulnerability has been resolved: batman-adv: stop tp_meter sessi
CVE-2026-46207 - In the Linux kernel, the following vulnerability has been resolved: vsock/virtio: fix empty payload
CVE-2026-46206 - In the Linux kernel, the following vulnerability has been resolved: batman-adv: reject new tp_meter
CVE-2026-46205 - In the Linux kernel, the following vulnerability has been resolved: staging: media: atomisp: Disall
CVE-2026-46204 - In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu/vcn4: Prevent OOB re
CVE-2026-46203 - In the Linux kernel, the following vulnerability has been resolved: spi: cadence-quadspi: fix unclo
CVE-2026-46202 - In the Linux kernel, the following vulnerability has been resolved: HID: appletb-kbd: run inactivit
CVE-2026-46201 - In the Linux kernel, the following vulnerability has been resolved: drm/xe: Fix dma-buf attachment
CVE-2026-46200 - In the Linux kernel, the following vulnerability has been resolved: spi: mpc52xx: fix controller de
CVE-2026-46199 - In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu/vcn4: Prevent OOB re
CVE-2026-46198 - In the Linux kernel, the following vulnerability has been resolved: batman-adv: fix integer overflo
CVE-2026-46197 - In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: validate SVM ioctl
CVE-2026-46196 - In the Linux kernel, the following vulnerability has been resolved: tracepoint: balance regfunc() o
CVE-2026-46195 - In the Linux kernel, the following vulnerability has been resolved: smb: client: validate dacloffse
CVE-2026-46194 - Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2026-46193 - In the Linux kernel, the following vulnerability has been resolved: xfrm: ah: account for ESN high
CVE-2026-46192 - In the Linux kernel, the following vulnerability has been resolved: spi: microchip-core-qspi: don't
CVE-2026-46191 - In the Linux kernel, the following vulnerability has been resolved: fbcon: Avoid OOB font access if
CVE-2026-46190 - In the Linux kernel, the following vulnerability has been resolved: mtd: spi-nor: debugfs: fix out-
CVE-2026-46189 - In the Linux kernel, the following vulnerability has been resolved: RDMA/vmw_pvrdma: Fix double fre
CVE-2026-46188 - In the Linux kernel, the following vulnerability has been resolved: octeon_ep_vf: add NULL check fo
CVE-2026-46187 - In the Linux kernel, the following vulnerability has been resolved: wifi: rsi: fix kthread lifetime
CVE-2026-46186 - In the Linux kernel, the following vulnerability has been resolved: Bluetooth: virtio_bt: validate
CVE-2026-46185 - In the Linux kernel, the following vulnerability has been resolved: smb/client: fix out-of-bounds r
CVE-2026-46184 - In the Linux kernel, the following vulnerability has been resolved: sound: ua101: fix division by z
CVE-2026-46183 - In the Linux kernel, the following vulnerability has been resolved: mm/damon/sysfs-schemes: protect
CVE-2026-46182 - In the Linux kernel, the following vulnerability has been resolved: pseries/papr-hvpipe: Prevent ke
CVE-2026-46181 - In the Linux kernel, the following vulnerability has been resolved: RDMA/mlx4: Fix mis-use of RCU i
CVE-2026-46180 - In the Linux kernel, the following vulnerability has been resolved: wifi: brcmfmac: Fix potential u
CVE-2026-46179 - In the Linux kernel, the following vulnerability has been resolved: ASoC: SOF: Don't allow pointer
CVE-2026-46178 - In the Linux kernel, the following vulnerability has been resolved: RDMA/mlx4: Fix resource leak on
CVE-2026-46177 - In the Linux kernel, the following vulnerability has been resolved: ipmi: Add limits to event and r
CVE-2026-46176 - In the Linux kernel, the following vulnerability has been resolved: RDMA/mlx5: Fix error path fall-
CVE-2026-46175 - In the Linux kernel, the following vulnerability has been resolved: f2fs: fix fsck inconsistency ca
CVE-2026-46174 - In the Linux kernel, the following vulnerability has been resolved: x86/CPU/AMD: Prevent improper i
CVE-2026-46173 - In the Linux kernel, the following vulnerability has been resolved: exit: prevent preemption of oop
CVE-2026-46172 - In the Linux kernel, the following vulnerability has been resolved: ipv6: xfrm6: release dst on err
CVE-2026-46171 - In the Linux kernel, the following vulnerability has been resolved: riscv: kvm: fix vector context
CVE-2026-46170 - In the Linux kernel, the following vulnerability has been resolved: mptcp: pm: ADD_ADDR rtx: free s
CVE-2026-46169 - In the Linux kernel, the following vulnerability has been resolved: hfsplus: fix uninit-value by va
CVE-2026-46168 - In the Linux kernel, the following vulnerability has been resolved: mptcp: fix scheduling with atom
CVE-2026-46167 - In the Linux kernel, the following vulnerability has been resolved: usb: usblp: fix uninitialized h
CVE-2026-46166 - In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: use safe list i
CVE-2026-46165 - In the Linux kernel, the following vulnerability has been resolved: openvswitch: vport: fix self-de
CVE-2026-46164 - In the Linux kernel, the following vulnerability has been resolved: btrfs: fix double free in creat
CVE-2026-46163 - In the Linux kernel, the following vulnerability has been resolved: wifi: b43legacy: enforce bounds
CVE-2026-46162 - In the Linux kernel, the following vulnerability has been resolved: ice: fix double free in ice_sf_
CVE-2026-46161 - In the Linux kernel, the following vulnerability has been resolved: md/raid10: fix divide-by-zero i
🏢 CVE nach Hersteller
Empfohlene Sicherheitstools
Unterstütze uns durch einen Kauf - wir erhalten eine kleine Provision.