CVE-2024-21380 Microsoft Dynamics Business Central/NAV Information Disclosure Vulnerability 6 hours ago
CVE-2026-40417 Microsoft Dynamics 365 Business Central Elevation of Privilege Vulnerability 6 hours ago
CVE-2021-34474 Microsoft Dynamics 365 Business Central Remote Code Execution Vulnerability 6 hours ago
CVE-2024-38225 Microsoft Dynamics 365 Business Central Elevation of Privilege Vulnerability 6 hours ago
CVE-2026-56145 Uncontrolled Resource Consumption in Elasticsearch Leading to Denial of Service 11 hours ago
CVE-2026-64192 bpf: Reject BPF_MAP_TYPE_INODE_STORAGE creation if BPF LSM is uninitialized 11 hours ago
CVE-2026-26197 Array full size, element count, and element size are not checked to make sure they match in H5Odtype.c 11 hours ago
CVE-2026-38752 A stack overflow in the evaluate() function (editors/awk.c) of BusyBox commit 371fe9 allows attackers to cause a Denial of Service (DoS) via supplying a crafted AWK script. 11 hours ago
CVE-2026-38753 A use-after-free in the awk_sub() function (editors/awk.c) of Busybox v1.38.0 allows attackers to cause a Denial of Service (DoS) via supplying a crafted AWK script. 11 hours ago
CVE-2026-64584 usb: gadget: f_midi: cancel pending IN work before freeing the midi object Sunday August 9th, 2026
CVE-2026-64583 usb: gadget: udc: bdc: free IRQ and drain func_wake_notify before teardown Sunday August 9th, 2026
CVE-2026-64604 KVM: VMX: Grab vmcs12 on CR8 interception update iff vCPU is in guest mode Sunday August 9th, 2026
CVE-2026-64590 dma-buf/udmabuf: skip redundant cpu sync to fix cacheline EEXIST warning Sunday August 9th, 2026
CVE-2026-64569 mpls: fix NULL deref in mpls_valid_fib_dump_req() on CONFIG_INET=n Sunday August 9th, 2026
CVE-2026-64572 ipv4: fib: free fib_alias with kfree_rcu() on insert error path Sunday August 9th, 2026
CVE-2026-64580 xfrm6: clear dst.dev on error to avoid double netdev_put in xfrm6_fill_dst() Sunday August 9th, 2026
CVE-2026-64579 xfrm: policy: preallocate inexact bins before xfrm_hash_rebuild reinsert Sunday August 9th, 2026
CVE-2026-64571 wifi: p54: validate RX frame length in p54_rx_eeprom_readback() Sunday August 9th, 2026
CVE-2026-64578 ksmbd: validate compound request size before reading StructureSize2 Sunday August 9th, 2026
CVE-2026-64565 Input: ims-pcu - fix heap-buffer-overflow in ims_pcu_process_data() Sunday August 9th, 2026
CVE-2026-64564 sctp: don't free the ASCONF's own transport in DEL-IP processing Sunday August 9th, 2026
CVE-2026-64561 KVM: x86: Check for invalid/obsolete root *after* making MMU pages available Sunday August 9th, 2026
CVE-2026-64560 posix-cpu-timers: Prevent UAF caused by non-leader exec() race Sunday August 9th, 2026
CVE-2026-15788 WCOW cache mount source selector resolves NTFS junctions outside of cache root Sunday August 9th, 2026
CVE-2026-26081 HAProxy Community Edition 3.0 through 3.3 before 3.3.3 lacks a length check for the NEW_TOKEN format. HAProxy Enterprise and ALOHA are also affected. Sunday August 9th, 2026
CVE-2026-26080 HAProxy Community Edition 3.2.x through 3.3.x before 3.3.3 can enter a loop or crash because varint is mishandled. HAProxy Enterprise and ALOHA are also affected. Sunday August 9th, 2026
CVE-2026-15588 Gdbusserver: glib2: gdbusserver pre-authentication dos via unbounded sasl line buffering Sunday August 9th, 2026
CVE-2026-62994 CoreDNS `k8s_external` headless AXFR can emit an empty transfer batch that panics the `transfer` plugin Sunday August 9th, 2026
CVE-2026-63136 Uncontrolled Resource Consumption in Elasticsearch Leading to Denial of Service Sunday August 9th, 2026
CVE-2026-63263 Uncontrolled Resource Consumption in Elasticsearch Leading to Denial of Service Sunday August 9th, 2026
CVE-2026-63140 Reachable Assertion in Elasticsearch Leading to Denial of Service Sunday August 9th, 2026
CVE-2026-71227 Libkcapi: infinite loop denial of service in libkcapi _kcapi_aio_read_all() due to unhandled io_getevents() timeout return Sunday August 9th, 2026
CVE-2026-71226 Libkcapi: memory corruption via uncanceled aio requests on error in libkcapi's one-shot aio path Sunday August 9th, 2026
CVE-2026-71225 Libkcapi: iv reuse in libkcapi one-shot symmetric cipher chunking causes cipher state reset across chunk boundaries Sunday August 9th, 2026
CVE-2026-68081 KVM: nVMX: Put vmcs12 pages if nested VM-Enter fails due to invalid guest state Sunday August 9th, 2026
CVE-2026-34502 Apache Portable Runtime Utility: Heap buffer overflow in APR memcached client Sunday August 9th, 2026
CVE-2026-34501 Apache Portable Runtime Utility: Heap buffer overflow in APR redis client Sunday August 9th, 2026
CVE-2026-34191 Apache Portable Runtime Utility: SQL Injection in apr_dbd_oracle Sunday August 9th, 2026
CVE-2025-49506 Apache Portable Runtime Utility: apr_password_validate() vulnerable to timing attack Sunday August 9th, 2026
CVE-2026-47243 Kata guest escape: runtime-rs guest-root to host-root escape via virtiofs Sunday August 9th, 2026
CVE-2026-64676 Kata Containers: Unauthorized mem-agent ttRPC methods let an untrusted host tamper with confidential-guest memory Sunday August 9th, 2026
CVE-2026-50540 Kata Containers: Config Path Annotation Arbitrary File Loading Sunday August 9th, 2026
CVE-2026-44943 remote limited file-write as root via discovery in open-iscsi Saturday August 8th, 2026
CVE-2026-32597 PyJWT accepts unknown `crit` header extensions (RFC 7515 ยง4.1.11 MUST violation) Saturday August 8th, 2026
CVE-2026-48524 PyJWT: PyJWKClient unbounded JWKS endpoint requests via attacker-controlled kid values (DoS) Saturday August 8th, 2026
CVE-2025-62725 Docker Compose Vulnerable to Path Traversal via OCI Artifact Layer Annotations Saturday August 8th, 2026
CVE-2026-44508 Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-43618. Reason: This candidate is a duplicate of CVE-2026-43618. Notes: All CVE users should reference CVE-2026-43618 instead of this candidate. Saturday August 8th, 2026
CVE-2026-44510 Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-43620. Reason: This candidate is a duplicate of CVE-2026-43620. Notes: All CVE users should reference CVE-2026-43620 instead of this candidate. Saturday August 8th, 2026
CVE-2026-44509 Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-43619. Reason: This candidate is a duplicate of CVE-2026-43619. Notes: All CVE users should reference CVE-2026-43619 instead of this candidate. Saturday August 8th, 2026
CVE-2026-12080 Qemu-kvm: qemu-guest-agent: local privilege escalation via symlink attack in guest-ssh-add-authorized-keys Saturday August 8th, 2026
CVE-2019-9192 In the GNU C Library (aka glibc or libc6) through 2.29, check_dst_limits_calc_pos_1 in posix/regexec.c has Uncontrolled Recursion Friday August 7th, 2026
CVE-2019-9924 rbash in Bash before 4.4-beta2 did not prevent the shell user from modifying BASH_CMDS, thus allowing the user to execute any command with the permissions of the shell. Friday August 7th, 2026
CVE-2010-4052 Stack consumption vulnerability in the regcomp implementation in the GNU C Library (aka glibc or libc6) through 2.11.3, and 2.12.x through 2.12.2, allows context-dependent attackers to cause a denial of service (resource exhaustion) via a regular expression containing adjacent repetition operators, as demonstrated by a {10,}{10,}{10,}{10,} sequence in the proftpd.gnu.c exploit for ProFTPD. Friday August 7th, 2026
CVE-2019-6706 Lua 5.3.5 has a use-after-free in lua_upvaluejoin in lapi.c. For example a crash outcome might be achieved by an attacker who is able to trigger a debug.upvaluejoin call in which the arguments have certain relationships. Friday August 7th, 2026
CVE-2018-6829 cipher/elgamal.c in Libgcrypt through 1.8.2, when used to encrypt messages directly, improperly encodes plaintexts, which allows attackers to obtain sensitive information by reading ciphertext data (i.e., it does not have semantic security in face of a ciphertext-only attack). The Decisional Diffie-Hellman (DDH) assumption does not hold for Libgcrypt's ElGamal implementation. Friday August 7th, 2026
CVE-2018-1128 It was found that cephx authentication protocol did not verify ceph clients correctly and was vulnerable to replay attack. Any attacker having access to ceph cluster network who is able to sniff packets on network can use this vulnerability to authenticate with ceph service and perform actions allowed by ceph service. Ceph branches master, mimic, luminous and jewel are believed to be vulnerable. Friday August 7th, 2026
CVE-2018-5407 Simultaneous Multi-threading (SMT) in processors can enable local users to exploit software vulnerable to timing attacks via a side-channel timing attack on 'port contention'. Friday August 7th, 2026
CVE-2016-2568 pkexec, when used with --user nonpriv, allows local users to escape to the parent session Friday August 7th, 2026
CVE-2007-3205 The parse_str function in (1) PHP, (2) Hardened-PHP, and (3) Suhosin, when called without a second parameter, might allow remote attackers to overwrite arbitrary variables by specifying variable names and values in the string to be parsed. NOTE: it is not clear whether this is a design limitation of the function or a bug in PHP, although it is likely to be regarded as a bug in Hardened-PHP and Suhosin. Friday August 7th, 2026
CVE-2026-63508 Microsoft Planetary Computer Pro Elevation of Privilege Vulnerability Thursday August 6th, 2026
CVE-2026-62873 Microsoft 365 Admin Center Elevation of Privilege Vulnerability Thursday August 6th, 2026
CVE-2026-62836 Azure SQL Managed Instance Elevation of Privilege Vulnerability Thursday August 6th, 2026
CVE-2026-49163 Application Insights Profiler Elevation of Privilege Vulnerability Thursday August 6th, 2026
CVE-2026-59115 Microsoft Entra Provisioning Service Elevation of Privilege Vulnerability Thursday August 6th, 2026
CVE-2026-50516 Microsoft Azure Kubernetes Service Elevation of Privilege Vulnerability Thursday August 6th, 2026
CVE-2026-65668 Microsoft Purview eDiscovery Elevation of Privilege Vulnerability Thursday August 6th, 2026
CVE-2026-68823 Azure Confidential Ledger Remote Code Execution Vulnerability Thursday August 6th, 2026
CVE-2026-56197 Windows Admin Center (WAC) Remote Code Execution Vulnerability Thursday July 30th, 2026
CVE-2026-50697 Windows Common Log File System Driver Elevation of Privilege Vulnerability Monday July 27th, 2026
CVE-2026-16461 Rpcbind: rpcbind: stack buffer overflow in rpcinfo rpcbdump() short-mode version-list formatting Monday July 27th, 2026
CVE-2026-8450 HTTP::Daemon versions before 6.17 for Perl allow OS command injection via send_file() Monday July 27th, 2026
CVE-2026-16277 Rpcbind: rpcbind: stack buffer overflow in rpcinfo rpcbaddrlist() Monday July 27th, 2026
CVE-2026-64530 net/sched: cls_api: Handle TC_ACT_CONSUMED in tcf_qevent_handle Monday July 27th, 2026
CVE-2026-58630 Azure App Service on Azure Stack Hub Elevation of Privilege Vulnerability Thursday July 23rd, 2026
CVE-2026-35425 Azure API Management (APIM) Remote Code Execution Vulnerability Thursday July 23rd, 2026
CVE-2026-56160 Azure Red Hat OpenShift (ARO) Elevation of Privilege Vulnerability Thursday July 23rd, 2026
CVE-2026-56163 Microsoft Azure Kubernetes Service Elevation of Privilege Vulnerability Thursday July 23rd, 2026
CVE-2026-54171 Excon: redact additional sensitive/risky headers when following redirects Thursday July 23rd, 2026
CVE-2026-44508 Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-43618. Reason: This candidate is a duplicate of CVE-2026-43618. Notes: All CVE users should reference CVE-2026-43618 instead of this candidate. Thursday July 23rd, 2026
CVE-2026-44510 Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-43620. Reason: This candidate is a duplicate of CVE-2026-43620. Notes: All CVE users should reference CVE-2026-43620 instead of this candidate. Thursday July 23rd, 2026
CVE-2026-44509 Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-43619. Reason: This candidate is a duplicate of CVE-2026-43619. Notes: All CVE users should reference CVE-2026-43619 instead of this candidate. Thursday July 23rd, 2026
CVE-2026-16277 Rpcbind: rpcbind: stack buffer overflow in rpcinfo rpcbaddrlist() Thursday July 23rd, 2026
CVE-2026-12080 Qemu-kvm: qemu-guest-agent: local privilege escalation via symlink attack in guest-ssh-add-authorized-keys Thursday July 23rd, 2026
CVE-2026-15788 WCOW cache mount source selector resolves NTFS junctions outside of cache root Thursday July 23rd, 2026
CVE-2026-26081 HAProxy Community Edition 3.0 through 3.3 before 3.3.3 lacks a length check for the NEW_TOKEN format. HAProxy Enterprise and ALOHA are also affected. Thursday July 23rd, 2026
CVE-2026-26080 HAProxy Community Edition 3.2.x through 3.3.x before 3.3.3 can enter a loop or crash because varint is mishandled. HAProxy Enterprise and ALOHA are also affected. Thursday July 23rd, 2026
CVE-2026-15588 Gdbusserver: glib2: gdbusserver pre-authentication dos via unbounded sasl line buffering Thursday July 23rd, 2026
CVE-2026-50243 'response-ip'/'rpz' can rewrite BOGUS answers instead of returning SERVFAIL Thursday July 23rd, 2026
CVE-2026-41637 Degradation of resolution service from improperly accounted client-terminated DNS-over-QUIC queries Thursday July 23rd, 2026
CVE-2026-50252 Possible cache poisoning attack by mapping source port population per thread Thursday July 23rd, 2026
CVE-2026-50251 Attacker supplied '0.0.0.0'/'::' glue triggers defensive full-cache flush Thursday July 23rd, 2026
CVE-2026-55991 Remote DNS-over-QUIC (DoQ) flow-control assertion failure in libngtcp2 Thursday July 23rd, 2026
CVE-2026-50046 Possible heap use-after-free in an error path when a DoT forwarded query is jostled out Thursday July 23rd, 2026
CVE-2026-14586 Assertion in libngtcp2 when under pressure in high concurrency DNS-over-QUIC environments Thursday July 23rd, 2026
CVE-2026-42955 Extra fix for CVE-2026-40622 to also clamp the TTL of A/AAAA records disallowing a one-time 'ghost domain' delegation renewal via glue records Thursday July 23rd, 2026
CVE-2026-46582 A wildcard replay, as another piece of data, triggers poisoning in the serve expired reply path Thursday July 23rd, 2026
CVE-2026-56444 Degradation of resolution service when 'discard-timeout' and 'serve-expired-client-timeout' are combined in unusual configuration Thursday July 23rd, 2026
CVE-2026-32665 Remote DNS-over-QUIC denial of service due to `quic-size` budget bypass Thursday July 23rd, 2026
CVE-2026-55717 'serve-expired-client-timeout' and 'response-ip' CNAME redirect could lead to a crash Thursday July 23rd, 2026
CVE-2026-44621 Libunbound applications configured with 'unwanted-reply-threshold' could eventually be abruptly terminated Thursday July 23rd, 2026
CVE-2026-56416 Possible heap buffer overflow when validator canonicalizes RDATA that contains domain name Thursday July 23rd, 2026
CVE-2026-55708 Privacy/configuration issue when adding local data in views through 'unbound-control' Thursday July 23rd, 2026
CVE-2026-44690 Cross-zone wildcard cache poisoning via RRSIG.labels manipulation Thursday July 23rd, 2026
CVE-2026-50248 BOGUS configured primary hostname accepted for XFR in auth/rpz zones Thursday July 23rd, 2026
CVE-2026-44687 Off-by-one error in 'harden-below-nxdomain' logic can shadow a stub/forward zone by a legitimate parent's NXDOMAIN Thursday July 23rd, 2026
CVE-2026-62994 CoreDNS `k8s_external` headless AXFR can emit an empty transfer batch that panics the `transfer` plugin Thursday July 23rd, 2026
CVE-2026-63136 Uncontrolled Resource Consumption in Elasticsearch Leading to Denial of Service Thursday July 23rd, 2026
CVE-2026-63263 Uncontrolled Resource Consumption in Elasticsearch Leading to Denial of Service Thursday July 23rd, 2026
CVE-2026-63140 Reachable Assertion in Elasticsearch Leading to Denial of Service Thursday July 23rd, 2026
CVE-2026-56145 Uncontrolled Resource Consumption in Elasticsearch Leading to Denial of Service Thursday July 23rd, 2026
CVE-2026-38752 A stack overflow in the evaluate() function (editors/awk.c) of BusyBox commit 371fe9 allows attackers to cause a Denial of Service (DoS) via supplying a crafted AWK script. Thursday July 23rd, 2026
CVE-2026-38753 A use-after-free in the awk_sub() function (editors/awk.c) of Busybox v1.38.0 allows attackers to cause a Denial of Service (DoS) via supplying a crafted AWK script. Thursday July 23rd, 2026
CVE-2026-50458 Microsoft Brokering File System Elevation of Privilege Vulnerability Wednesday July 22nd, 2026
CVE-2026-50441 Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability Wednesday July 22nd, 2026
CVE-2026-50466 Microsoft Brokering File System Elevation of Privilege Vulnerability Wednesday July 22nd, 2026
CVE-2026-50407 Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability Wednesday July 22nd, 2026
CVE-2026-59886 pyasn1: Uncontrolled resource consumption when converting decoded REAL values Wednesday July 22nd, 2026
CVE-2026-59884 pyasn1 BER/CER/DER decoder denial of service via unbounded long-form tag IDs Wednesday July 22nd, 2026
CVE-2026-59885 pyasn1: Quadratic complexity in OBJECT IDENTIFIER and RELATIVE-OID processing allows denial of service Wednesday July 22nd, 2026
CVE-2026-57215 RabbitMQ: Direct-reply-to binding persistence can lead to unauthorized reply-channel injection and persistent phantom Wednesday July 22nd, 2026
CVE-2026-57216 RabbitMQ: AMQP 1.0, AMQP 0-9-1, Stream Protocol loopback enforcement can lead to remote guest sessions due to listener-address loopback checks Wednesday July 22nd, 2026
CVE-2026-57213 RabbitMQ: Stored XSS federation management plugin via unsanitized consumer_tag rendering Wednesday July 22nd, 2026
CVE-2026-57217 RabbitMQ: Topic authorization can lead to cross-tenant routing-key bypass Wednesday July 22nd, 2026
CVE-2026-57220 RabbitMQ: Stream listener does not enforce configured frame-size limit during authentication, permitting unauth'd mem-exhaust DoS Wednesday July 22nd, 2026
CVE-2026-57219 RabbitMQ: Unauthenticated disclosure of OAuth client credentials via an HTTP API endpoint with certain less common OAuth 2 configurations Wednesday July 22nd, 2026
CVE-2026-15028 Libarchive: heap overflow oob read while parsing a tar archive contains a pax extended header Wednesday July 22nd, 2026
CVE-2026-64188 net: qualcomm: rmnet: fix endpoint use-after-free in rmnet_dellink() Wednesday July 22nd, 2026
CVE-2026-64189 netfilter: ipset: fix race between dump and ip_set_list resize Wednesday July 22nd, 2026
CVE-2026-64206 Bluetooth: L2CAP: cancel pending_rx_work before taking conn->lock Wednesday July 22nd, 2026
CVE-2026-64190 net: team: fix NULL pointer dereference in team_xmit during mode change Wednesday July 22nd, 2026
CVE-2026-64205 i2c: i801: fix hardware state machine corruption in error path Wednesday July 22nd, 2026
CVE-2026-64192 bpf: Reject BPF_MAP_TYPE_INODE_STORAGE creation if BPF LSM is uninitialized Wednesday July 22nd, 2026
CVE-2026-26199 Buffer underflow in `H5Iget_name `/`H5G_get_name` if size is zero Wednesday July 22nd, 2026
CVE-2026-26197 Array full size, element count, and element size are not checked to make sure they match in H5Odtype.c Wednesday July 22nd, 2026
CVE-2026-50462 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability Tuesday July 21st, 2026
CVE-2026-3842 Qemu-kvm: hyperv/syndbg: missing mapped-length guard after cpu_physical_memory_map causes host oob write Tuesday July 21st, 2026
CVE-2026-38755 A heap overflow in the evalcommand() function (shell/ash.c) of Busybox v1.38.0 allows attackers to cause a Denial of Service (DoS) via supplying a crafted input. Tuesday July 21st, 2026
CVE-2026-38754 A heap overflow in the ifsbreakup() function (shell/ash.c) of Busybox v1.38.0 allows attackers to cause a Denial of Service (DoS) via supplying a crafted input. Tuesday July 21st, 2026
CVE-2026-62299 CoreDNS: rewrite-plugin EDNS0 response-revert nil-pointer panic (remote DoS) when a downstream plugin returns a response with no OPT record Tuesday July 21st, 2026
CVE-2026-60081 DBI::ProfileData versions before 1.651 for Perl do not limit the path index Tuesday July 21st, 2026
CVE-2026-15392 DBD::File versions before 1.651 for Perl do not ensure the table file is not a symlink to an untrusted location Tuesday July 21st, 2026
CVE-2026-60082 DBI versions before 1.651 for Perl do not enforce statement handle consistency with the row Tuesday July 21st, 2026
CVE-2026-15043 DBI::SQL::Nano versions from 1.42 before 1.651 for Perl have inverted <= and >= SQL operators on text Tuesday July 21st, 2026
CVE-2026-57433 Storable versions before 3.41 for Perl have a signed integer overflow when deserializing a crafted SX_HOOK record Tuesday July 21st, 2026
CVE-2026-48863 Libsolv: stack-based buffer overflow in libsolv eddsa pgp signature verification allows denial of service Tuesday July 21st, 2026
CVE-2026-63828 apparmor: mediate the implicit connect of TCP fast open sendmsg Tuesday July 21st, 2026
CVE-2026-42769 Trust-Anchor Substitution via cert/issuer Typo in CMP rootCaKeyUpdate Tuesday July 21st, 2026
CVE-2026-38752 A stack overflow in the evaluate() function (editors/awk.c) of BusyBox commit 371fe9 allows attackers to cause a Denial of Service (DoS) via supplying a crafted AWK script. Tuesday July 21st, 2026
CVE-2026-38753 A use-after-free in the awk_sub() function (editors/awk.c) of Busybox v1.38.0 allows attackers to cause a Denial of Service (DoS) via supplying a crafted AWK script. Tuesday July 21st, 2026
CVE-2026-64082 riscv: Fix register corruption from uninitialized cregs on error Tuesday July 21st, 2026
CVE-2026-63974 Bluetooth: hci_sync: Set HCI_CMD_DRAIN_WORKQUEUE during device close Tuesday July 21st, 2026
CVE-2026-63999 ethtool: rss: fix indir_table and hkey leak on get_rxfh failure Tuesday July 21st, 2026
CVE-2026-63979 net/handshake: hand off the pinned file reference to accept_doit Tuesday July 21st, 2026
CVE-2026-64060 netfs: Fix leak of request in netfs_write_begin() error handling Tuesday July 21st, 2026
CVE-2026-63963 usb: typec: tcpm: validate VDO count in Discover Identity ACK handlers Tuesday July 21st, 2026
CVE-2026-63961 usb: typec: altmodes/displayport: validate count before reading Status Update VDO Tuesday July 21st, 2026
CVE-2026-63881 drm/amdkfd: fix a vulnerability of integer overflow in kfd debugger Tuesday July 21st, 2026
CVE-2026-63960 usb: typec: wcove: don't write past struct pd_message in wcove_read_rx_buffer() Tuesday July 21st, 2026
CVE-2026-63964 usb: typec: ucsi: ccg: reject firmware images without a ':' record header Tuesday July 21st, 2026
CVE-2026-64078 netfilter: x_tables: add and use xtables_unregister_table_exit Tuesday July 21st, 2026
CVE-2026-64097 drm/amd/display: Validate GPIO pin LUT table size before iterating Tuesday July 21st, 2026
CVE-2026-64117 wifi: mac80211: capture fast-RX rate before mesh reuses skb->cb Tuesday July 21st, 2026
CVE-2026-63958 usb: typec: ucsi: validate connector number in ucsi_connector_change() Tuesday July 21st, 2026
CVE-2026-63962 usb: typec: tcpm: bound altmode_desc[] per iteration in svdm_consume_modes() Tuesday July 21st, 2026
CVE-2026-63959 usb: typec: tcpm/tcpci_maxim: validate header NDO against RX_BYTE_CNT Tuesday July 21st, 2026
CVE-2026-64138 ksmbd: validate SID in parent security descriptor during ACL inheritance Tuesday July 21st, 2026
CVE-2026-64160 netfs: Fix potential for tearing in ->remote_i_size and ->zero_point Tuesday July 21st, 2026
CVE-2024-35248 Microsoft Dynamics 365 Business Central Elevation of Privilege Vulnerability Monday July 20th, 2026
CVE-2026-50647 Active Directory Federation Server Denial of Service Vulnerability Monday July 20th, 2026
CVE-2026-50324 Windows Active Directory Federation Services Denial of Service Vulnerability Monday July 20th, 2026
CVE-2026-50411 Windows Active Directory Federation Services Denial of Service Vulnerability Monday July 20th, 2026
CVE-2026-50355 Windows Active Directory Federation Services Denial of Service Vulnerability Monday July 20th, 2026
CVE-2026-50368 Windows Active Directory Federation Services Denial of Service Vulnerability Monday July 20th, 2026
CVE-2026-50304 Windows Active Directory Federation Services Denial of Service Vulnerability Monday July 20th, 2026
CVE-2026-45784 rust-openssl: Potential out-of-bounds write in `CipherCtxRef::cipher_update_inplace` for AES-KW-PAD ciphers Monday July 20th, 2026
CVE-2026-53382 media: vidtv: fix NULL pointer dereference in vidtv_mux_push_si Monday July 20th, 2026
CVE-2026-63828 apparmor: mediate the implicit connect of TCP fast open sendmsg Monday July 20th, 2026
CVE-2026-53385 vc_screen: fix null-ptr-deref in vcs_notifier() during concurrent vcs_write Monday July 20th, 2026
CVE-2026-63812 f2fs: fix incorrect FI_NO_EXTENT handling in __destroy_extent_node() Monday July 20th, 2026
CVE-2026-63798 irqchip/imgpdc: Fix resource leak, add missing chained handler cleanup on remove Monday July 20th, 2026
CVE-2026-63794 KVM: SVM: Fix page overflow in sev_dbg_crypt() for ENCRYPT path Monday July 20th, 2026
CVE-2026-53391 NFSv4/pNFS: reject zero-length r_addr in nfs4_decode_mp_ds_addr Monday July 20th, 2026
CVE-2026-53384 serial: 8250_dw: unregister 8250 port if clk_notifier_register() fails Monday July 20th, 2026
CVE-2026-63807 KVM: x86/mmu: Ensure hugepage is in by slot before checking max mapping level Monday July 20th, 2026
CVE-2026-63829 net: ip_gre: require CAP_NET_ADMIN in the device netns for changelink Monday July 20th, 2026
CVE-2026-63858 netfilter: nf_tables: add hook transactions for device deletions Monday July 20th, 2026
CVE-2026-63871 Bluetooth: ISO: Fix data-race on iso_pi fields in hci_get_route calls Monday July 20th, 2026
CVE-2026-53368 f2fs: fix fsck inconsistency caused by incorrect nat_entry flag usage Monday July 20th, 2026
CVE-2026-63806 KVM: Replace guest-triggerable BUG_ON() in ioeventfd datamatch with get_unaligned() Monday July 20th, 2026
CVE-2026-53403 fbdev: Fix fb_new_modelist to prevent null-ptr-deref in fb_videomode_to_var Monday July 20th, 2026
CVE-2026-63811 f2fs: read COW data with the original inode during atomic write Monday July 20th, 2026
CVE-2026-53402 fbdev: fbcon: fix out-of-bounds read in err_out of fbcon_do_set_font() Monday July 20th, 2026
CVE-2026-63825 gcov: use atomic counter updates to fix concurrent access crashes Monday July 20th, 2026
CVE-2026-62299 CoreDNS: rewrite-plugin EDNS0 response-revert nil-pointer panic (remote DoS) when a downstream plugin returns a response with no OPT record Saturday July 18th, 2026
CVE-2026-62309 CoreDNS: proxyproto plugin panics on PPv2 datagram with non-UDP transport โ single 28-byte packet remote DoS Saturday July 18th, 2026
CVE-2026-59886 pyasn1: Uncontrolled resource consumption when converting decoded REAL values Friday July 17th, 2026
CVE-2026-59884 pyasn1 BER/CER/DER decoder denial of service via unbounded long-form tag IDs Friday July 17th, 2026
CVE-2026-59885 pyasn1: Quadratic complexity in OBJECT IDENTIFIER and RELATIVE-OID processing allows denial of service Friday July 17th, 2026
CVE-2026-60081 DBI::ProfileData versions before 1.651 for Perl do not limit the path index Friday July 17th, 2026
CVE-2026-15392 DBD::File versions before 1.651 for Perl do not ensure the table file is not a symlink to an untrusted location Friday July 17th, 2026
CVE-2026-60082 DBI versions before 1.651 for Perl do not enforce statement handle consistency with the row Friday July 17th, 2026
CVE-2026-15043 DBI::SQL::Nano versions from 1.42 before 1.651 for Perl have inverted <= and >= SQL operators on text Friday July 17th, 2026
CVE-2026-57433 Storable versions before 3.41 for Perl have a signed integer overflow when deserializing a crafted SX_HOOK record Friday July 17th, 2026
CVE-2026-15709 Soupwebsocketextensiondeflate: libsoup: libsoup: websocket permessage-deflate unbounded decompression remote denial of service Friday July 17th, 2026
CVE-2026-15712 Soupclientmessageiohttp2: libsoup3: libsoup: http/2 goaway frame parsing heap buffer over-read via invalid nul-termination assumption Friday July 17th, 2026
CVE-2026-15714 Libsoup: soupmultipartinputstream: libsoup: out-of-bounds read in soup_multipart_input_stream_read_headers via an oversized multipart boundary string Friday July 17th, 2026
CVE-2026-15713 Libsoup: soupcache: libsoup: http/2 frame window exhaustion remote denial of service via memory leak Friday July 17th, 2026
CVE-2026-15711 Libsoup: soupwebsocketconnection: libsoup: websocket remote denial of service via oversized control frame protocol violation Friday July 17th, 2026
CVE-2026-48863 Libsolv: stack-based buffer overflow in libsolv eddsa pgp signature verification allows denial of service Friday July 17th, 2026
CVE-2026-56171 Windows Remote Desktop Protocol (RDP) Information Disclosure Vulnerability Thursday July 16th, 2026
CVE-2026-50647 Active Directory Federation Server Denial of Service Vulnerability Thursday July 16th, 2026
CVE-2026-50411 Windows Active Directory Federation Services Denial of Service Vulnerability Thursday July 16th, 2026
CVE-2026-50355 Windows Active Directory Federation Services Denial of Service Vulnerability Thursday July 16th, 2026
CVE-2026-50324 Windows Active Directory Federation Services Denial of Service Vulnerability Thursday July 16th, 2026
CVE-2026-50304 Windows Active Directory Federation Services Denial of Service Vulnerability Thursday July 16th, 2026
CVE-2026-50368 Windows Active Directory Federation Services Denial of Service Vulnerability Thursday July 16th, 2026
CVE-2026-59831 GitHub CLI `gh codespace jupyter` could allow remote code execution when connecting to a malicious Codespace Thursday July 16th, 2026
CVE-2026-50375 DirectX Graphics Kernel Elevation of Privilege Vulnerability Wednesday July 15th, 2026
CVE-2026-45637 Microsoft DWM Core Library Elevation of Privilege Vulnerability Wednesday July 15th, 2026
CVE-2026-58209 NATS Server: MQTT retained and QoS replay bypass subscribe deny filters Wednesday July 15th, 2026
CVE-2026-58250 NATS Server: Pre-auth server crash via double INFO in leafnode handshake Wednesday July 15th, 2026
CVE-2026-58208 NATS Server: MQTT-over-WebSocket Path Can Crash WebSocket-Only JetStream Servers Before MQTT Is Enabled Wednesday July 15th, 2026
CVE-2026-58207 NATS Server: Remote crash via integer overflow in Connz pagination Wednesday July 15th, 2026
CVE-2026-43966 HTTP Response Splitting via Non-VCHAR Bytes in cow_http_struct_hd:escape_string/2 Wednesday July 15th, 2026
CVE-2026-44839 RabbitMQ: Unsanitized vhost names allow for XSS in management UI Wednesday July 15th, 2026
CVE-2025-44904 hdf5 v1.14.6 was discovered to contain a heap buffer overflow via the H5VM_memcpyvv function. Wednesday July 15th, 2026
CVE-2026-15308 Incremental HTMLParser feed() allows CPU-exhaustion DoS via repeated unterminated markup declarations Wednesday July 15th, 2026
CVE-2026-57215 RabbitMQ: Direct-reply-to binding persistence can lead to unauthorized reply-channel injection and persistent phantom Wednesday July 15th, 2026
CVE-2026-57216 RabbitMQ: AMQP 1.0, AMQP 0-9-1, Stream Protocol loopback enforcement can lead to remote guest sessions due to listener-address loopback checks Wednesday July 15th, 2026
CVE-2026-57213 RabbitMQ: Stored XSS federation management plugin via unsanitized consumer_tag rendering Wednesday July 15th, 2026
CVE-2026-57217 RabbitMQ: Topic authorization can lead to cross-tenant routing-key bypass Wednesday July 15th, 2026
CVE-2026-57220 RabbitMQ: Stream listener does not enforce configured frame-size limit during authentication, permitting unauth'd mem-exhaust DoS Wednesday July 15th, 2026
CVE-2026-57219 RabbitMQ: Unauthenticated disclosure of OAuth client credentials via an HTTP API endpoint with certain less common OAuth 2 configurations Wednesday July 15th, 2026
CVE-2026-59831 GitHub CLI `gh codespace jupyter` could allow remote code execution when connecting to a malicious Codespace Wednesday July 15th, 2026
CVE-2026-15028 Libarchive: heap overflow oob read while parsing a tar archive contains a pax extended header Wednesday July 15th, 2026
CVE-2026-59875 node-tar: Uncaught Exception DoS via NUL byte in PAX path/linkpath records Wednesday July 15th, 2026
CVE-2026-13221 Perl versions through 5.43.9 produce silently incorrect regular expression matches when an alternation of more than 65535 fixed string branches is compiled into a trie in Perl_study_chunk Wednesday July 15th, 2026
CVE-2026-57432 Perl versions through 5.43.10 have an integer overflow in S_measure_struct leading to an out-of-bounds heap read in pack and unpack Wednesday July 15th, 2026
CVE-2026-54115 Windows Message Queuing (MSMQ) Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-54121 Active Directory Certificate Services Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-50657 Microsoft Defender for Endpoint for Mac Information Disclosure Vulnerability Tuesday July 14th, 2026
CVE-2026-50647 Active Directory Federation Server Denial of Service Vulnerability Tuesday July 14th, 2026
CVE-2026-50655 Microsoft Windows Media Foundation Remote Code Execution Vulnerability Tuesday July 14th, 2026
CVE-2026-50658 Microsoft Defender for Endpoint for Mac Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-50667 Windows Common Log File System Driver Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-50668 Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-54126 Windows Remote Desktop Protocol (RDP) Information Disclosure Vulnerability Tuesday July 14th, 2026
CVE-2026-55010 Minecraft Bedrock Dedicated Server Remote Code Execution Vulnerability Tuesday July 14th, 2026
CVE-2026-50444 Windows Server Update Service (WSUS) Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-50447 Windows Message Queuing Service (MSMQ) Remote Code Execution Vulnerability Tuesday July 14th, 2026
CVE-2026-50362 Windows Resilient File System (ReFS) Remote Code Execution Vulnerability Tuesday July 14th, 2026
CVE-2026-50411 Windows Active Directory Federation Services Denial of Service Vulnerability Tuesday July 14th, 2026
CVE-2026-50453 Windows USB Audio Class Driver Information Disclosure Vulnerability Tuesday July 14th, 2026
CVE-2026-50458 Microsoft Brokering File System Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-50476 Windows Network Connections Service Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-50450 Windows Network Connections Service Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-50431 Windows Quality of Service (QoS) Packet Scheduler Information Disclosure Vulnerability Tuesday July 14th, 2026
CVE-2026-50462 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-50441 Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-50439 Microsoft Message Queuing Queue Manager Remote Code Execution Vulnerability Tuesday July 14th, 2026
CVE-2026-50432 Window Virtual Filtering Platform (VFP) Denial of Service Vulnerability Tuesday July 14th, 2026
CVE-2026-50470 Windows Network Policy Server SNMP Information Disclosure Vulnerability Tuesday July 14th, 2026
CVE-2026-50497 Windows Remote Desktop Protocol (RDP) Information Disclosure Vulnerability Tuesday July 14th, 2026
CVE-2026-50498 Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-50505 Windows Message Queuing Service (MSMQ) Remote Code Execution Vulnerability Tuesday July 14th, 2026
CVE-2026-50491 Code Integrity DLL (ci.dll) Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-50492 Windows Resilient File System (ReFS) Remote Code Execution Vulnerability Tuesday July 14th, 2026
CVE-2026-50501 Windows Resilient File System (ReFS) Remote Code Execution Vulnerability Tuesday July 14th, 2026
CVE-2026-50496 Windows Network Policy Server SNMP Information Disclosure Vulnerability Tuesday July 14th, 2026
CVE-2026-50504 Windows Remote Desktop Client Information Disclosure Vulnerability Tuesday July 14th, 2026
CVE-2026-50509 Wireless Wide Area Network Service (WwanSvc) Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-50483 Windows Graphics Component Information Disclosure Vulnerability Tuesday July 14th, 2026
CVE-2026-50480 Windows Web Proxy Auto-Discovery Protocol (WPAD) Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-50502 Windows Event Logging Service Remote Code Execution Vulnerability Tuesday July 14th, 2026
CVE-2026-57973 Windows Subsystem for Linux (WSL2) Kernel Tampering Vulnerability Tuesday July 14th, 2026
CVE-2026-57093 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-57096 Windows Routing and Remote Access Service (RRAS) Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-57968 Windows Subsystem for Linux (WSL2) Kernel Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-57982 Windows Remote Desktop Protocol (RDP) Information Disclosure Vulnerability Tuesday July 14th, 2026
CVE-2026-57087 Microsoft Windows Media Foundation Remote Code Execution Vulnerability Tuesday July 14th, 2026
CVE-2026-58528 Windows USB Audio Class Driver Information Disclosure Vulnerability Tuesday July 14th, 2026
CVE-2026-58530 Windows Resilient File System (ReFS) Remote Code Execution Vulnerability Tuesday July 14th, 2026
CVE-2026-58538 Windows Bluetooth Service Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-58533 Windows Remote Desktop Client Information Disclosure Vulnerability Tuesday July 14th, 2026
CVE-2026-57088 Extensible Storage Engine (ESENT) Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-57092 Microsoft Windows VMSwitch Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-58546 Windows Remote Desktop Client Information Disclosure Vulnerability Tuesday July 14th, 2026
CVE-2026-57083 Windows Media Photo Codec Information Disclosure Vulnerability Tuesday July 14th, 2026
CVE-2026-56647 Windows Remote Access Service Infrastructure Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-56649 Windows Network File System Remote Code Execution Vulnerability Tuesday July 14th, 2026
CVE-2026-56650 Windows Network File System Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-57090 Microsoft Windows Media Foundation Remote Code Execution Vulnerability Tuesday July 14th, 2026
CVE-2026-57094 Microsoft Windows Media Foundation Remote Code Execution Vulnerability Tuesday July 14th, 2026
CVE-2026-57091 Windows File History Service Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-57089 Windows SMB Server Network Transport Driver (srvnet.sys) Remote Code Execution Vulnerability Tuesday July 14th, 2026
CVE-2026-58535 Windows Remote Desktop Client Information Disclosure Vulnerability Tuesday July 14th, 2026
CVE-2026-58539 Windows Remote Desktop Client Information Disclosure Vulnerability Tuesday July 14th, 2026
CVE-2026-56642 Microsoft Fabric Data Warehouse Remote Code Execution Vulnerability Tuesday July 14th, 2026
CVE-2026-58628 Windows Wireless Network Manager Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-58632 Windows Win32 Kernel Subsystem Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-58637 Windows Client-Side Caching Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-56181 Windows Network Address Translation (NAT) Spoofing Vulnerability Tuesday July 14th, 2026
CVE-2026-58626 Windows Remote Desktop Services Remote Code Execution Vulnerability Tuesday July 14th, 2026
CVE-2026-58529 Windows Active Directory Federation Services (ADFS) Information Disclosure Vulnerability Tuesday July 14th, 2026
CVE-2026-50455 Universal Plug and Play (upnp.dll) Information Disclosure Vulnerability Tuesday July 14th, 2026
CVE-2026-58619 Windows Sensor Data Service Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-58537 Microsoft NAT Helper Components (ipnathlp.dll) Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-58534 Windows Input Method Editor (IME) Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-58536 Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-58547 Windows Universal Plug and Play (UPnP) Device Host Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-58544 Windows Management Services Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-58543 Universal Print Management Service Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-58541 Microsoft DWM Core Library Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-58613 Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-56178 Microsoft Defender for Endpoint for Mac Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-55051 Microsoft SharePoint Server Information Disclosure Vulnerability Tuesday July 14th, 2026
CVE-2026-55040 Microsoft SharePoint Server Security Feature Bypass Vulnerability Tuesday July 14th, 2026
CVE-2026-56197 Windows Admin Center (WAC) Remote Code Execution Vulnerability Tuesday July 14th, 2026
CVE-2026-56187 Windows MIDI Service Module Elevation of Privileges Vulnerability Tuesday July 14th, 2026
CVE-2026-56183 Windows MIDI Service Module Elevation of Privileges Vulnerability Tuesday July 14th, 2026
CVE-2026-50359 Microsoft XML Core Services Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-56188 Windows Server Network driver Remote Code Execution Vulnerability Tuesday July 14th, 2026
CVE-2026-56189 Microsoft Windows Media Foundation Remote Code Execution Vulnerability Tuesday July 14th, 2026
CVE-2026-56196 Windows Admin Center (WAC) Remote Code Execution Vulnerability Tuesday July 14th, 2026
CVE-2026-41109 GitHub Copilot and Visual Studio Code Security Feature Bypass Vulnerability Tuesday July 14th, 2026
CVE-2026-55944 Microsoft Dynamics NAV and Microsoft Dynamics 365 Business Central (On Premises) Remote Code Execution Vulnerability Tuesday July 14th, 2026
CVE-2026-50466 Microsoft Brokering File System Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-50451 Windows Routing and Remote Access Service (RRAS) Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-57976 Windows Active Directory Domain Services Denial of Service Vulnerability Tuesday July 14th, 2026
CVE-2026-57979 Windows Remote Desktop Protocol (RDP) Information Disclosure Vulnerability Tuesday July 14th, 2026
CVE-2026-55014 Windows Remote Help Defense Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-58601 Virtual Hard Disk (VHD) Miniport Driver Elevation of Privilege Vulernability Tuesday July 14th, 2026
CVE-2026-58602 Windows Kernel-Mode Driver Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-58609 Windows Graphics Component Remote Code Execution Vulnerability Tuesday July 14th, 2026
CVE-2026-58610 Microsoft Windows Media Foundation Remote Code Execution Vulnerability Tuesday July 14th, 2026
CVE-2026-55144 Windows Cryptography API: Next Generation (CNG) Tampering Vulnerability Tuesday July 14th, 2026
CVE-2026-56155 Active Directory Federation Services Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-56164 Microsoft SharePoint Server Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-50694 Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability Tuesday July 14th, 2026
CVE-2026-58631 Windows Admin Center (WAC) Remote Code Execution Vulnerability Tuesday July 14th, 2026
CVE-2026-45646 OData for ASP.NET and ASP.NET Core Denial of Service Vulnerability Tuesday July 14th, 2026
CVE-2026-49178 Windows Active Directory Domain Services Remote Code Execution Vulnerability Tuesday July 14th, 2026
CVE-2026-49180 Universal Plug and Play (upnp.dll) Information Disclosure Vulnerability Tuesday July 14th, 2026
CVE-2026-49790 Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-49791 Windows Routing and Remote Access Service (RRAS) Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-49792 Windows Resilient File System (ReFS) Remote Code Execution Vulnerability Tuesday July 14th, 2026
CVE-2026-49793 Windows Resilient File System (ReFS) Remote Code Execution Vulnerability Tuesday July 14th, 2026
CVE-2026-47632 Azure Monitor Agent Metrics Extension Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-44800 Windows Push Notifications Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-34348 Windows Event Logging Service Information Disclosure Vulnerability Tuesday July 14th, 2026
CVE-2026-40378 Windows Local Security Authority Subsystem Service (LSASS) Denial of Service Vulnerability Tuesday July 14th, 2026
CVE-2026-49170 Windows StateRepository API Server file Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-49166 Windows Print Configuration Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-49784 Microsoft Windows App Store Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-50506 OData for ASP.NET and ASP.NET Core Denial of Service Vulnerability Tuesday July 14th, 2026
CVE-2026-47282 GitHub Copilot and Visual Studio Code Information Disclosure Vulnerability Tuesday July 14th, 2026
CVE-2026-49165 Microsoft Windows App Store Information Disclosure Vulnerability Tuesday July 14th, 2026
CVE-2026-54983 Windows Active Directory Federation Services Denial of Service Vulnerability Tuesday July 14th, 2026
CVE-2026-42982 Windows Secure Kernel Mode Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-34346 Windows Ancillary Function Driver for WinSock Information Disclosure Vulnerability Tuesday July 14th, 2026
CVE-2026-42900 Microsoft Windows App Store Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-49164 Windows Active Directory Domain Services Remote Code Execution Vulnerability Tuesday July 14th, 2026
CVE-2026-48572 Windows App Package Installer Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-48571 Windows App Package Installer Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-49162 Microsoft Brokering File System Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-50663 Game: Age of Empires II: Definitive Edition Remote Code Execution Vulnerability Tuesday July 14th, 2026
CVE-2026-50695 Windows Active Directory Federation Services Denial of Service Vulnerability Tuesday July 14th, 2026
CVE-2026-54995 Windows Reliable Multicast Transport Driver (RMCAST) Remote Code Execution Vulnerability Tuesday July 14th, 2026
CVE-2026-55003 Windows Remote Desktop Protocol (RDP) Information Disclosure Vulnerability Tuesday July 14th, 2026
CVE-2026-54109 Windows Resilient File System (ReFS) Remote Code Execution Vulnerability Tuesday July 14th, 2026
CVE-2026-55006 Microsoft Exchange Server Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-55009 Microsoft Exchange Server Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-54982 Windows Reliable Multicast Transport Driver (RMCAST) Remote Code Execution Vulnerability Tuesday July 14th, 2026
CVE-2026-54992 Microsoft Message Queuing Queue Manager Remote Code Execution Vulnerability Tuesday July 14th, 2026
CVE-2026-54111 Universal Print Management Service Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-54989 Quality Windows Audio/Video Experience (QWAVE) Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-50696 Internet Key Exchange (IKE) Protocol Denial of Service Vulnerability Tuesday July 14th, 2026
CVE-2026-50697 Windows Common Log File System Driver Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-55004 Windows Print Configuration Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-54993 Microsoft Windows Media Foundation Remote Code Execution Vulnerability Tuesday July 14th, 2026
CVE-2026-55001 Active Directory Domain Services Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-49794 Windows USB Audio Class Driver Information Disclosure Vulnerability Tuesday July 14th, 2026
CVE-2026-50366 Windows Active Directory Domain Services Denial of Service Vulnerability Tuesday July 14th, 2026
CVE-2026-50355 Windows Active Directory Federation Services Denial of Service Vulnerability Tuesday July 14th, 2026
CVE-2026-50428 Windows Container Isolation FS Filter Driver (unionfs.sys) Information Disclosure Vulnerability Tuesday July 14th, 2026
CVE-2026-50371 Windows LUA File Virtualization Filter Driver Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-50317 Windows Operating Systems Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-50430 Windows Push Notification Information Disclosure Vulnerability Tuesday July 14th, 2026
CVE-2026-50310 Windows Human Interface Device Information Disclosure Vulnerability Tuesday July 14th, 2026
CVE-2026-50324 Windows Active Directory Federation Services Denial of Service Vulnerability Tuesday July 14th, 2026
CVE-2026-50312 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-50330 Windows Remote Desktop Client Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-50357 Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-50361 Microsoft Brokering File System Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-50335 Windows Operating Systems Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-50434 Windows Push Notification Information Disclosure Vulnerability Tuesday July 14th, 2026
CVE-2026-50369 Windows Remote Desktop Services Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-50469 Windows Projected File System Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-50454 Windows User Interface Core Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-50365 Remote Access Management service/API (RPC server) Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-50421 Windows Connected User Experiences and Telemetry Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-50374 Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-50367 Windows Sensor Data Service Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-50352 Windows Cryptographic Services Information Disclosure Vulnerability Tuesday July 14th, 2026
CVE-2026-50401 Windows Cloud Files Mini Filter Driver Information Disclosure Vulnerability Tuesday July 14th, 2026
CVE-2026-50376 Windows Remote Desktop Client Information Disclosure Vulnerability Tuesday July 14th, 2026
CVE-2026-50405 Windows Filtering Platform Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-50334 Windows Push Notification Information Disclosure Vulnerability Tuesday July 14th, 2026
CVE-2026-50445 Windows Remote Desktop Protocol (RDP) Information Disclosure Vulnerability Tuesday July 14th, 2026
CVE-2026-50339 Windows Push Notification Information Disclosure Vulnerability Tuesday July 14th, 2026
CVE-2026-50315 Windows Image Acquisition Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-50425 Windows Internal System User Profile Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-50293 Windows Internal Task Bar Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-50356 Microsoft Windows App Store Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-50350 Windows Trusted Runtime Interface Driver Information Disclosure Vulnerability Tuesday July 14th, 2026
CVE-2026-50381 Composite Image File System driver (cimfs.sys) Information Disclosure Vulnerability Tuesday July 14th, 2026
CVE-2026-50342 Windows MIDI Service Module Elevation of Privileges Vulnerability Tuesday July 14th, 2026
CVE-2026-50351 Windows Audio Compression Manager (ACM) Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-50299 Windows Storage Spaces Direct Remote Code Execution Vulnerability Tuesday July 14th, 2026
CVE-2026-49800 Windows Web Proxy Auto-Discovery Protocol (WPAD) Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-49799 Windows Local Security Authority Subsystem Service (LSASS) Denial of Service Vulnerability Tuesday July 14th, 2026
CVE-2026-50318 Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-49803 Windows AppX Deployment Extensions Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-50326 Windows Unified Consent System Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-50302 Windows Cryptographic Services Security Feature Bypass Vulnerability Tuesday July 14th, 2026
CVE-2026-50407 Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-50331 Windows Application Model Core API Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-50343 Microsoft Install Service Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-50396 Windows Kernel-Mode Driver Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-50368 Windows Active Directory Federation Services Denial of Service Vulnerability Tuesday July 14th, 2026
CVE-2026-50304 Windows Active Directory Federation Services Denial of Service Vulnerability Tuesday July 14th, 2026
CVE-2026-50372 Windows Redirected Drive Buffering System Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-50305 Microsoft Brokering File System Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-50329 Microsoft DWM Core Library Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-50363 Windows Push Notifications Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-50392 Windows Secure Kernel Mode Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-50393 Windows Kernel-Mode Driver Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-50400 Windows App Package Installer Elevation of Privilege Vulnerability Tuesday July 14th, 2026
CVE-2026-12480 Arbitrary HDF5 File Read via Virtual Dataset Bypass in keras-team/keras Tuesday July 14th, 2026
CVE-2022-4543 A flaw named "EntryBleed" was found in the Linux Kernel Page Table Isolation (KPTI). This issue could allow a local attacker to leak KASLR base via prefetch side-channels based on TLB timing for Intel systems. Monday July 13th, 2026
CVE-2026-59874 node-tar: Negative tar entry size causes infinite loop in archive replace Sunday July 12th, 2026
CVE-2026-15308 Incremental HTMLParser feed() allows CPU-exhaustion DoS via repeated unterminated markup declarations Sunday July 12th, 2026
Chromium: CVE-2026-14382 Insufficient validation of untrusted input in ANGLE Saturday July 11th, 2026
Chromium: CVE-2026-13995 Insufficient validation of untrusted input in Autofill Saturday July 11th, 2026
Chromium: CVE-2026-13994 Inappropriate implementation in Credential Management Saturday July 11th, 2026
Chromium: CVE-2026-13955 Insufficient validation of untrusted input in CustomTabs Saturday July 11th, 2026
Chromium: CVE-2026-13939 Insufficient validation of untrusted input in WebShare Saturday July 11th, 2026
Chromium: CVE-2026-13929 Insufficient validation of untrusted input in DevTools Saturday July 11th, 2026
Chromium: CVE-2026-13926 Insufficient validation of untrusted input in Network Saturday July 11th, 2026
Chromium: CVE-2026-13924 Insufficient validation of untrusted input in WebView Saturday July 11th, 2026
Chromium: CVE-2026-13872 Insufficient validation of untrusted input in WebAppInstalls Saturday July 11th, 2026
Chromium: CVE-2026-13866 Insufficient validation of untrusted input in Input Saturday July 11th, 2026
Chromium: CVE-2026-13863 Insufficient validation of untrusted input in CustomTabs Saturday July 11th, 2026
Chromium: CVE-2026-13856 Insufficient validation of untrusted input in Speech Saturday July 11th, 2026
Chromium: CVE-2026-13852 Insufficient validation of untrusted input in WebAppInstalls Saturday July 11th, 2026
Chromium: CVE-2026-13851 Insufficient validation of untrusted input in WebAppInstalls Saturday July 11th, 2026
Chromium: CVE-2026-13816 Insufficient validation of untrusted input in File Input Saturday July 11th, 2026
Chromium: CVE-2026-14137 Insufficient validation of untrusted input in Chrome for iOS Saturday July 11th, 2026
Chromium: CVE-2026-14066 Insufficient validation of untrusted input in Chrome for iOS Saturday July 11th, 2026
Chromium: CVE-2026-13991 Insufficient validation of untrusted input in Chrome for iOS Saturday July 11th, 2026
Chromium: CVE-2026-13917 Insufficient validation of untrusted input in Chrome for iOS Saturday July 11th, 2026
Chromium: CVE-2026-13908 Insufficient validation of untrusted input in Omnibox Saturday July 11th, 2026
Chromium: CVE-2026-13889 Insufficient validation of untrusted input in WebAuthentication Saturday July 11th, 2026
Chromium: CVE-2026-13850 Insufficient validation of untrusted input in Chrome for iOS Saturday July 11th, 2026
Chromium: CVE-2026-13847 Insufficient validation of untrusted input in Chrome for iOS Saturday July 11th, 2026
Chromium: CVE-2026-13843 Insufficient validation of untrusted input in Chrome for iOS Saturday July 11th, 2026
Chromium: CVE-2026-13813 Insufficient validation of untrusted input in Chrome for iOS Saturday July 11th, 2026
Chromium: CVE-2026-13812 Insufficient validation of untrusted input in Chrome for iOS Saturday July 11th, 2026
Chromium: CVE-2026-13777 Insufficient validation of untrusted input in iOSWeb Saturday July 11th, 2026
Chromium: CVE-2026-13791 Insufficient validation of untrusted input in Downloads Saturday July 11th, 2026
Chromium: CVE-2026-14401 Insufficient validation of untrusted input in ANGLE Saturday July 11th, 2026
Chromium: CVE-2026-14412 Insufficient validation of untrusted input in ANGLE Saturday July 11th, 2026
Chromium: CVE-2026-14411 Insufficient validation of untrusted input in ANGLE Saturday July 11th, 2026
CVE-2026-58281 Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability Saturday July 11th, 2026
CVE-2026-54908 Pion DTLS: Denial of service via panic while parsing a crafted ECDHE_PSK ServerKeyExchange message Saturday July 11th, 2026
CVE-2026-54886 SSH SFTP server denial of service via extended channel data infinite loop Saturday July 11th, 2026
CVE-2026-45570 go-git: Improper single-quote escaping in go-git SSH transport Saturday July 11th, 2026
CVE-2026-45571 go-git: Crafted repositories may modify main and submodule .git directories Saturday July 11th, 2026
CVE-2024-7598 Network restriction bypass via race condition during namespace termination Saturday July 11th, 2026
CVE-2026-56000 xorg-x11-server / xwayland GLX contextTags Use-After-Free in CommonMakeCurrent() Saturday July 11th, 2026
CVE-2026-58209 NATS Server: MQTT retained and QoS replay bypass subscribe deny filters Saturday July 11th, 2026
CVE-2026-58250 NATS Server: Pre-auth server crash via double INFO in leafnode handshake Saturday July 11th, 2026
CVE-2026-58208 NATS Server: MQTT-over-WebSocket Path Can Crash WebSocket-Only JetStream Servers Before MQTT Is Enabled Saturday July 11th, 2026
CVE-2026-58207 NATS Server: Remote crash via integer overflow in Connz pagination Saturday July 11th, 2026
CVE-2026-59869 js-yaml: YAML merge-key chains can force quadratic CPU consumption Saturday July 11th, 2026
CVE-2026-59890 setuptools: MANIFEST.in exclusion bypass in sdist via Unicode normalization collision (NFC/NFD) on macOS APFS/HFS+ Saturday July 11th, 2026
CVE-2026-59930 Mistune toc / TableOfContents directive: heading IDs use predictable `toc_N` numbering with no slugification, allowing collision with attacker-controlled `id="toc_N"` content Saturday July 11th, 2026
CVE-2026-59922 Mistune plugins/formatting: quadratic-time parsing on long runs of `~~x~~`, `==x==`, and `^^x^^` markers (strikethrough / mark / insert) Saturday July 11th, 2026
CVE-2026-59925 inline_parser: quadratic-time parsing on long runs of `**x**` and `***x***` emphasis pairs Saturday July 11th, 2026
CVE-2026-59926 Mistune: XSS via unescaped class option in Admonition directive Saturday July 11th, 2026
CVE-2026-59928 Mistune block_parser: quadratic-time parsing on long lists of repeated reference-link definitions Saturday July 11th, 2026
CVE-2026-14740 DBI versions before 1.650 for Perl read one byte out-of-bounds in preparse when deleting an initial SQL comment Saturday July 11th, 2026
CVE-2026-14380 DBI versions before 1.650 for Perl are vulnerable to code injection via caller-influenced Profile Saturday July 11th, 2026
CVE-2026-14739 DBI versions before 1.650 for Perl have a heap overflow when preparsing SQL statements with an extreme number of placeholders Saturday July 11th, 2026
CVE-2026-59998 sshd in OpenSSH before 10.4 has an undocumented security-relevant behavior: GSSAPIStrictAcceptorCheck has no value if the server is in Windows Active Directory. Saturday July 11th, 2026
CVE-2026-20243 ClamAV ALZ Archive Processing Denial of Service Vulnerability Saturday July 11th, 2026
CVE-2026-20217 ClamAV PESpin File Format Processing Out-of-Bounds Memory Corruption Vulnerability Saturday July 11th, 2026
CVE-2026-20216 ClamAV InstallShield File Format Processing Resource Exhaustion Vulnerability Saturday July 11th, 2026
CVE-2026-20215 ClamAV 7Zip File Format Processing Out-of-Bounds Memory Corruption Vulnerability Saturday July 11th, 2026
CVE-2026-20214 ClamAV FSG File Format Processing Out-of-Bounds Memory Corruption Vulnerability Saturday July 11th, 2026
CVE-2026-20213 ClamAV PE File Format Processing Out-of-Bounds Memory Corruption Vulnerability Saturday July 11th, 2026
CVE-2026-59818 etcd: gRPC client listener does not enforce `--client-crl-file` certificate revocation Friday July 10th, 2026
CVE-2026-54891 Plaintext APPLICATION_DATA injected during TLS handshake delivered to client application post-handshake in ssl Thursday July 9th, 2026
CVE-2026-55952 TLS 1.3 server denial of service via malformed ClientHello pre-shared key extension Thursday July 9th, 2026
CVE-2026-53359 KVM: x86: Fix shadow paging use-after-free due to unexpected role Thursday July 9th, 2026
CVE-2026-14355 ext/openssl: Memory corruption in openssl_encrypt with AES-WRAP-PAD Thursday July 9th, 2026
CVE-2026-46252 regulator: core: fix locking in regulator_resolve_supply() error path Thursday July 9th, 2026
CVE-2026-53332 slimbus: qcom-ngd-ctrl: Register callbacks after creating the ngd Thursday July 9th, 2026
CVE-2026-53345 KVM: Don't WARN if memory is dirtied without a vCPU when the VM is dying Thursday July 9th, 2026
CVE-2026-23278 netfilter: nf_tables: always walk all pending catchall elements Thursday July 9th, 2026
CVE-2026-58055 nghttp2 nghttpx - HTTP Request/Response Smuggling via Upgrade Request with Content-Length Thursday July 9th, 2026
CVE-2025-61727 Improper application of excluded DNS name constraints when verifying wildcard names in crypto/x509 Thursday July 9th, 2026
CVE-2026-47241 Net::IMAP: Denial of Service via incomplete raw argument validation Thursday July 9th, 2026
CVE-2025-58188 Panic when validating certificates with DSA public keys in crypto/x509 Thursday July 9th, 2026
CVE-2025-61724 Excessive CPU consumption in Reader.ReadResponse in net/textproto Thursday July 9th, 2026
CVE-2026-46140 Bluetooth: btmtk: validate WMT event SKB length before struct access Thursday July 9th, 2026
CVE-2026-46331 net/sched: fix pedit partial COW leading to page cache corruption Thursday July 9th, 2026
CVE-2026-54908 Pion DTLS: Denial of service via panic while parsing a crafted ECDHE_PSK ServerKeyExchange message Thursday July 9th, 2026
CVE-2026-38969 ruby webrick through v1.9.2 WEBrick reparses trailer Content-Length into canonical request state, enabling request smuggling. Thursday July 9th, 2026
CVE-2026-38968 ntopng through 6.6 is vulnerable to Predictable Session Identifier which can lead to Session Hijacking. HTTP session identifiers in src/HTTPserver.cpp use weak time-seeded pseudo-randomness during session creation. As a result, fresh authenticated logins can receive deterministic or colliding session cookies under attacker-controlled timing. Thursday July 9th, 2026
CVE-2026-14191 WinRAR / UnRAR RAR5 recovery-volume (.rev) out-of-bounds heap write in RecVolumes5::ReadHeader Thursday July 9th, 2026
CVE-2026-53269 netfilter: synproxy: add mutex to guard hook reference counting Thursday July 9th, 2026
CVE-2026-56000 xorg-x11-server / xwayland GLX contextTags Use-After-Free in CommonMakeCurrent() Thursday July 9th, 2026
CVE-2026-56001 libXfont2 BitmapScaleBitmaps Integer Overflow Heap Buffer Overflow Thursday July 9th, 2026
CVE-2026-60002 ssh in OpenSSH before 10.4 can have a use-after-free when a server changes its host key during a key re-exchange. (This outcome occurs only on the client side.) Thursday July 9th, 2026
CVE-2026-59999 In sshd in OpenSSH before 10.4, DisableForwarding=yes was supposed to take precedence over PermitTunnel=yes, but did not. Thursday July 9th, 2026
CVE-2026-60000 sshd in OpenSSH before 10.4 allows remote attackers to cause a denial of service (resource consumption from excessive authentication attempts) because MaxAuthTries was mishandled for GSSAPIAuthentication. Thursday July 9th, 2026
CVE-2026-60001 sshd in OpenSSH before 10.4 does not always honor the minimum authentication delay. Thursday July 9th, 2026
CVE-2026-59995 sftp in OpenSSH before 10.4 does not properly constrain the location of downloaded files when "sftp server:/path ." is used with an attacker-controlled server. Thursday July 9th, 2026
CVE-2026-59996 scp in OpenSSH before 10.4 may place a file in the parent directory of an intended directory when the copy occurs between two remote destinations. Thursday July 9th, 2026
CVE-2026-59997 internal-sftp in sshd in OpenSSH before 10.4 recognizes only the first 9 command-line arguments, which can be important if a later command-line argument would have helped to ensure the intended security properties of an SFTP connection. Thursday July 9th, 2026
CVE-2026-58525 Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability Wednesday July 8th, 2026
CVE-2026-45638 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability Tuesday July 7th, 2026
CVE-2026-39827 Invoking memory leak when rejecting channels can lead to DoS in golang.org/x/crypto/ssh Tuesday July 7th, 2026
CVE-2026-25681 Invoking incorrect handling of character references in DOCTYPE nodes in golang.org/x/net/html Tuesday July 7th, 2026
CVE-2026-14647 onnx onnxruntime old.cc convPoolShapeInference_opset19 out-of-bounds Tuesday July 7th, 2026
CVE-2026-12480 Arbitrary HDF5 File Read via Virtual Dataset Bypass in keras-team/keras Tuesday July 7th, 2026
CVE-2026-54891 Plaintext APPLICATION_DATA injected during TLS handshake delivered to client application post-handshake in ssl Tuesday July 7th, 2026
CVE-2026-54886 SSH SFTP server denial of service via extended channel data infinite loop Tuesday July 7th, 2026
CVE-2026-55952 TLS 1.3 server denial of service via malformed ClientHello pre-shared key extension Tuesday July 7th, 2026
Chromium: CVE-2026-14131 Insufficient validation of untrusted input in WebAppInstalls Friday July 3rd, 2026
Chromium: CVE-2026-13797 Insufficient validation of untrusted input in Chromecast Friday July 3rd, 2026
Chromium: CVE-2026-14116 Insufficient validation of untrusted input in DevTools Friday July 3rd, 2026
Chromium: CVE-2026-13794 Insufficient validation of untrusted input in WebAppInstalls Friday July 3rd, 2026
Chromium: CVE-2026-13865 Insufficient validation of untrusted input in Enterprise Friday July 3rd, 2026
Chromium: CVE-2026-14122 Insufficient validation of untrusted input in WebAppInstalls Friday July 3rd, 2026
Chromium: CVE-2026-14065 Insufficient validation of untrusted input in PageInfo Friday July 3rd, 2026
Chromium: CVE-2026-13942 Insufficient validation of untrusted input in Video Capture Friday July 3rd, 2026
Chromium: CVE-2026-14059 Insufficient policy enforcement in Related-Website-Sets Friday July 3rd, 2026
Chromium: CVE-2026-14117 Insufficient validation of untrusted input in DevTools Friday July 3rd, 2026
Chromium: CVE-2026-14060 Insufficient validation of untrusted input in Chromoting Friday July 3rd, 2026
Chromium: CVE-2026-13849 Insufficient validation of untrusted input in Chromoting Friday July 3rd, 2026
Chromium: CVE-2026-13961 Insufficient validation of untrusted input in DevTools Friday July 3rd, 2026
Chromium: CVE-2026-14055 Insufficient validation of untrusted input in Device Trust Friday July 3rd, 2026
Chromium: CVE-2026-13928 Insufficient validation of untrusted input in Enterprise Friday July 3rd, 2026
Chromium: CVE-2026-13921 Insufficient validation of untrusted input in DeviceBoundSessionCredentials Friday July 3rd, 2026
Chromium: CVE-2026-13990 Insufficient validation of untrusted input in DataTransfer Friday July 3rd, 2026
Chromium: CVE-2026-14104 Insufficient validation of untrusted input in WebAppInstalls Friday July 3rd, 2026
Chromium: CVE-2026-13900 Insufficient validation of untrusted input in Chromecast Friday July 3rd, 2026
Chromium: CVE-2026-13829 Insufficient validation of untrusted input in Settings Friday July 3rd, 2026
Chromium: CVE-2026-13824 Insufficient validation of untrusted input in Extensions Friday July 3rd, 2026
Chromium: CVE-2026-14038 Insufficient validation of untrusted input in New Tab Page Friday July 3rd, 2026
Chromium: CVE-2026-14089 Insufficient validation of untrusted input in PopupBlocker Friday July 3rd, 2026
Chromium: CVE-2026-13891 Insufficient validation of untrusted input in Extensions Friday July 3rd, 2026
Chromium: CVE-2026-13968 Insufficient validation of untrusted input in DevTools Friday July 3rd, 2026
Chromium: CVE-2026-14084 Insufficient validation of untrusted input in Chromoting Friday July 3rd, 2026
Chromium: CVE-2026-13806 Insufficient validation of untrusted input in Accessibility Friday July 3rd, 2026
Chromium: CVE-2026-14080 Insufficient validation of untrusted input in TabSwitcher Friday July 3rd, 2026
Chromium: CVE-2026-14023 Insufficient validation of untrusted input in SanitizerAPI Friday July 3rd, 2026
Chromium: CVE-2026-14021 Insufficient validation of untrusted input in StorageAccessAPI Friday July 3rd, 2026
CVE-2026-58291 Microsoft Edge (Chromium-based) Information Disclosure Vulnerability Friday July 3rd, 2026
CVE-2026-56645 Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability Friday July 3rd, 2026
CVE-2026-55945 Microsoft Edge (Chromium-based) Information Disclosure Vulnerability Friday July 3rd, 2026
CVE-2026-58523 Microsoft Edge for Android Security Feature Bypass Vulnerability Friday July 3rd, 2026
CVE-2026-57988 Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability Friday July 3rd, 2026
CVE-2026-57986 Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability Friday July 3rd, 2026
CVE-2026-57981 Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability Friday July 3rd, 2026
CVE-2026-57974 Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability Friday July 3rd, 2026
CVE-2026-57984 Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability Friday July 3rd, 2026
CVE-2026-57985 Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability Friday July 3rd, 2026
CVE-2026-57992 Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability Friday July 3rd, 2026
CVE-2026-58287 Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability Friday July 3rd, 2026
CVE-2026-57975 Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability Friday July 3rd, 2026
CVE-2026-58276 Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability Friday July 3rd, 2026
CVE-2026-58294 Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability Friday July 3rd, 2026
CVE-2026-57983 Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability Friday July 3rd, 2026
CVE-2026-58284 Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability Friday July 3rd, 2026
CVE-2026-58295 Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability Friday July 3rd, 2026
CVE-2026-58293 Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability Friday July 3rd, 2026
CVE-2026-58288 Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability Friday July 3rd, 2026
CVE-2026-58292 Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability Friday July 3rd, 2026
CVE-2026-58285 Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability Friday July 3rd, 2026
CVE-2026-58289 Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability Friday July 3rd, 2026
CVE-2026-58290 Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability Friday July 3rd, 2026
CVE-2026-57918 libnfs through 6.0.2 before 935b8db has an xid integer underflow in READ_IOVEC in rpc_read_from_socket in lib/socket.c during a connection to a crafted NFS server, when the expected pdu size exceeds the absolute pdu size from the xid/record-marker. Friday July 3rd, 2026
CVE-2026-57231 Podman: Malformed Image can trick podman run into leaking host environment variables into the container Friday July 3rd, 2026
CVE-2026-13322 Kubevirt: virt-handler-rhel9: kubevirt: unbounded virtio-serial readline in virt-handler causes oom denial of service Friday July 3rd, 2026
CVE-2026-58055 nghttp2 nghttpx - HTTP Request/Response Smuggling via Upgrade Request with Content-Length Friday July 3rd, 2026
CVE-2026-58051 libssh2 - Free of Uninitialized Pointer in publickey List Cleanup Friday July 3rd, 2026
CVE-2026-58050 libssh2 - Integer Overflow in publickey Subsystem Attribute Allocation Friday July 3rd, 2026
CVE-2026-53303 f2fs: protect extension_list reading with sb_lock in f2fs_sbi_show() Friday July 3rd, 2026
CVE-2026-53309 ocfs2/dlm: fix off-by-one in dlm_match_regions() region comparison Friday July 3rd, 2026
CVE-2026-53320 nilfs2: reject zero bd_oblocknr in nilfs_ioctl_mark_blocks_dirty() Friday July 3rd, 2026
CVE-2026-0864 Configuration Injection via Carriage Return (\r) in write() method Friday July 3rd, 2026
CVE-2026-3195 Qemu-kvm: virtio-snd: heap buffer overflow in virtio_snd_pcm_in_cb (incomplete fix for cve-2024-7730) Friday July 3rd, 2026
CVE-2026-56412 libexpat before 2.8.2 does not consider XML_TOK_DATA_CHARS in doCdataSection and thus lacks handler call depth tracking for various calls from within handlers in cases of a policy violation. Thus, a use-after-free can occur. NOTE: this issue exists because of an incomplete fix for CVE-2026-50219. Friday July 3rd, 2026
CVE-2026-56405 libexpat before 2.8.2 has an integer overflow in getAttributeId. Friday July 3rd, 2026
CVE-2026-56407 libexpat before 2.8.2 has an integer overflow in doProlog that is related to storeEntityValue and entity textLen. Friday July 3rd, 2026
CVE-2026-56406 libexpat before 2.8.2 has an integer overflow in XML_ParseBuffer because it lacked a check that was present in XML_Parse. Friday July 3rd, 2026
CVE-2026-56132 In libexpat before 2.8.2, there is a heap-based buffer overflow in doProlog in xmlparse.c because scaffold backing array reallocation is mishandled when there is data-structure sharing across parsers. Friday July 3rd, 2026
CVE-2026-56131 libexpat before 2.8.2 lacks handler call depth tracking for calls to XML_ResumeParser from within handlers in cases of a policy violation. Thus, a use-after-free can occur (similar to the CVE-2026-50219 situation). Friday July 3rd, 2026
CVE-2026-53046 ksmbd: fix use-after-free from async crypto on Qualcomm crypto engine Friday July 3rd, 2026
CVE-2026-57585 MessagePack: Out-of-bounds read/crash on Unpacker reuse after caught error Friday July 3rd, 2026
CVE-2026-13757 P11-kit: stack exhaustion via unbounded recursion in rpc attribute parsing Friday July 3rd, 2026
CVE-2026-53098 wifi: mt76: mt7915: fix use-after-free bugs in mt7915_mac_dump_work() Friday July 3rd, 2026
CVE-2026-12912 Libtiff: libtiff: heap-based buffer overflow via crafted pixarlog-compressed tiff image Friday July 3rd, 2026
CVE-2026-14164 Libarchive: double-free vulnerability in rar5 decompression logic via dangling filtered_buf pointer in init_unpack() Friday July 3rd, 2026
CVE-2026-53052 ASoC: qcom: qdsp6: topology: check widget type before accessing data Friday July 3rd, 2026
CVE-2026-14258 Dhcpcd: dhcpcd infinite loop and out-of-bounds read via zero-length ipv6 nd option in router advertisement handling Friday July 3rd, 2026
CVE-2026-55200 libssh2 - Out-of-Bounds Write via Unchecked packet_length in transport.c Friday July 3rd, 2026
CVE-2026-52944 ksmbd: fix FSCTL permission bypass by adding a permission check for FSCTL_SET_SPARSE Friday July 3rd, 2026
CVE-2026-53357 Bluetooth: fix UAF in l2cap_sock_cleanup_listen() vs l2cap_conn_del() Friday July 3rd, 2026
CVE-2026-56149 Allocation of Resources Without Limits or Throttling in Elasticsearch Leading to Denial of Service Friday July 3rd, 2026
CVE-2026-53097 wifi: mt76: mt7996: fix use-after-free bugs in mt7996_mac_dump_work() Friday July 3rd, 2026
CVE-2026-49090 Uncontrolled Resource Consumption in Elasticsearch Leading to Denial of Service Friday July 3rd, 2026
CVE-2026-50521 Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability Thursday July 2nd, 2026
CVE-2026-57100 Microsoft Entra Provisioning Service Elevation of Privilege Vulnerability Thursday July 2nd, 2026
CVE-2026-54998 Microsoft Exchange Online Elevation of Privilege Vulnerability Thursday July 2nd, 2026
CVE-2026-57062 CMS (Cryptographic Message Syntax) parsing in gpgsm in GnuPG through 2.5.20 mishandles the CMS format for AES-GCM because aes-ICVlen is supposed to be 12 bytes but 4 bytes is accepted. NOTE: this is related to CVE-2026-34182. Wednesday July 1st, 2026
CVE-2026-13595 Util-linux: util-linux: heap use-after-free in libblkid nested partition probing Wednesday July 1st, 2026
CVE-2026-11625 Bytes::Random::Secure versions through 0.29 for Perl share internal state across forked processes Wednesday July 1st, 2026
CVE-2026-58050 libssh2 - Integer Overflow in publickey Subsystem Attribute Allocation Wednesday July 1st, 2026
CVE-2026-58051 libssh2 - Free of Uninitialized Pointer in publickey List Cleanup Wednesday July 1st, 2026
CVE-2026-6412 Continued acceptance of SHA-1/MD5 digests in certificate processing Wednesday July 1st, 2026
CVE-2026-6092 Encrypt-then-MAC could fall back to MAC-then-Encrypt when HAVE_ENCRYPT_THEN_MAC is configured Wednesday July 1st, 2026
CVE-2026-11310 X.509 trust-chain bypass in wolfSSL_X509_verify_cert() via untrusted intermediate anchoring Wednesday July 1st, 2026
CVE-2026-10097 ML-KEM-1024 x64 AVX2 incomplete cipher text comparison enables IND-CCA2 break and static private-key recovery Wednesday July 1st, 2026
CVE-2026-10098 OCSP CertID serial-number length-confusion in wolfSSL_OCSP_resp_find_status Wednesday July 1st, 2026
CVE-2026-8720 HMAC-BLAKE2 final discards message when key length exceeds block size Wednesday July 1st, 2026
CVE-2026-12340 Out-of-bounds heap read in SM2/SM3 certificate Subject Key Identifier computation Wednesday July 1st, 2026
CVE-2026-10512 X25519 x86_64 assembly final reduction leaves non-canonical field element Wednesday July 1st, 2026
CVE-2026-6091 Partial-chain verification accepts untrusted intermediate as trust anchor Wednesday July 1st, 2026
CVE-2026-6325 Out-of-bounds write in SetSuitesHashSigAlgo on oversized signature algorithms list Wednesday July 1st, 2026
CVE-2026-55958 Renesas TSIP TLS 1.3 transcript buffer out-of-bounds write in tsip_StoreMessage Wednesday July 1st, 2026
CVE-2026-6731 X.509 name constraint bypass via Subject CN treated as a DNS name Wednesday July 1st, 2026
CVE-2026-7511 PKCS7_verify signer confusion allows forged signatures to be accepted Wednesday July 1st, 2026
CVE-2026-6330 ML-KEM ARM64 NEON ciphertext comparison only compares half of the input Wednesday July 1st, 2026
CVE-2026-6094 Heap buffer overread in wc_PKCS7_DecodeEnvelopedData parsing crafted PKCS7 EnvelopedData Wednesday July 1st, 2026
CVE-2026-6678 Integer underflow in wc_PKCS7_DecryptOri handling crafted Other Recipient Info Wednesday July 1st, 2026
CVE-2026-55961 wolfSSL_PKCS7_verify() reports success for degenerate (certs-only) PKCS#7 with no signer Wednesday July 1st, 2026
CVE-2026-6329 PKCS#12 MAC verification uses attacker-controlled comparison length Wednesday July 1st, 2026
CVE-2026-11999 X.509 trust-chain bypass via path-depth exhaustion in wolfSSL_X509_verify_cert() Wednesday July 1st, 2026
CVE-2026-55962 TLS 1.3 post-handshake authentication: server accepts Finished without client Certificate/CertificateVerify Wednesday July 1st, 2026
CVE-2026-55967 AES-GCM streaming APIs do not reject >64 GiB cumulative single messages, enabling counter wrap and keystream reuse Wednesday July 1st, 2026
CVE-2026-11703 Missing SNI/ALPN binding on stateful (session-ID) TLS session resumption Wednesday July 1st, 2026
CVE-2026-55964 Chain intermediate CA:TRUE without keyCertSign accepted as a signing CA (temporary CA exemption) Wednesday July 1st, 2026
CVE-2026-55960 Un-negotiated Raw Public Key (RFC 7250) accepted in place of X.509, bypassing chain validation Wednesday July 1st, 2026
CVE-2026-7532 iPAddress name constraints not enforced when WOLFSSL_IP_ALT_NAME is undefined Wednesday July 1st, 2026
CVE-2026-6291 Bleichenbacher padding oracle in PKCS#7 KTRI RSA PKCS#1 v1.5 decryption Wednesday July 1st, 2026
CVE-2026-57918 libnfs through 6.0.2 before 935b8db has an xid integer underflow in READ_IOVEC in rpc_read_from_socket in lib/socket.c during a connection to a crafted NFS server, when the expected pdu size exceeds the absolute pdu size from the xid/record-marker. Wednesday July 1st, 2026
CVE-2026-57231 Podman: Malformed Image can trick podman run into leaking host environment variables into the container Wednesday July 1st, 2026
CVE-2026-13325 Virt-handler-rhel9: kubevirt: kubevirt: disabletls migration setting removes authentication, exposing unauthenticated virtqemud proxy on all interfaces Wednesday July 1st, 2026
CVE-2026-13218 Kubevirt: kubevirt: symlink following in writetocachedfile allows host file overwrite from virt-launcher Wednesday July 1st, 2026
CVE-2026-13208 Kubevirt: virt-handler-rhel9: kubevirt: virt-handler notify server trusts vmi identity from unauthenticated grpc request body Wednesday July 1st, 2026
CVE-2026-13318 Virt-api-rhel9: kubevirt: kubevirt: ssrf in virt-api port-forward via unvalidated guest-agent-reported ip Wednesday July 1st, 2026
CVE-2026-13322 Kubevirt: virt-handler-rhel9: kubevirt: unbounded virtio-serial readline in virt-handler causes oom denial of service Wednesday July 1st, 2026
CVE-2026-58055 nghttp2 nghttpx - HTTP Request/Response Smuggling via Upgrade Request with Content-Length Wednesday July 1st, 2026
CVE-2026-58014 Glib: off-by-one error in glib/gkeyfile.c via "g_key_file_get_locale_string_list" Wednesday July 1st, 2026
CVE-2026-58013 Glib: buffer over-read in glib/giochannel.c via "g_io_channel_read_line_backend" Wednesday July 1st, 2026
CVE-2026-58011 Glib: out-of-bounds read in glib/gdatetime.c:g_date_time_get_ymd via invalid gdatetime Wednesday July 1st, 2026
CVE-2026-58012 Glib: buffer over-read in g_regex_replace() via glib/gregex.c:string_append() and g_utf8_next_char() Wednesday July 1st, 2026
CVE-2026-58016 Glib: integer underflow in gio/gdbusintrospection.c via "g_dbus_node_info_new_for_xml" Wednesday July 1st, 2026
CVE-2026-58015 Glib: path traversal in glib/gio/gdbusauthmechanismsha1.c via keyring_lookup_entry and mechanism_client_data_receive Wednesday July 1st, 2026
CVE-2026-58010 Glib: buffer over-read in glib/gvariant-serialiser.c via gvs_tuple_is_normal() Wednesday July 1st, 2026
CVE-2026-54371 attr < 2.6.0 Symlink Traversal Privilege Escalation via getfattr/setfattr Wednesday July 1st, 2026
CVE-2026-48779 ws: Memory exhaustion DoS from tiny fragments and data chunks Wednesday July 1st, 2026
CVE-2026-42055 NGINX ngx_http_proxy_v2_module and ngx_http_grpc_module vulnerability Wednesday July 1st, 2026
CVE-2026-42910 Windows Hotpatch Monitoring Service Elevation of Privilege Vulnerability Tuesday June 30th, 2026
CVE-2026-54371 attr < 2.6.0 Symlink Traversal Privilege Escalation via getfattr/setfattr Tuesday June 30th, 2026
CVE-2026-54369 acl < 2.4.0 Symlink Traversal Privilege Escalation via libacl Functions Tuesday June 30th, 2026
CVE-2026-58055 nghttp2 nghttpx - HTTP Request/Response Smuggling via Upgrade Request with Content-Length Monday June 29th, 2026
CVE-2026-58051 libssh2 - Free of Uninitialized Pointer in publickey List Cleanup Monday June 29th, 2026
CVE-2026-58050 libssh2 - Integer Overflow in publickey Subsystem Attribute Allocation Monday June 29th, 2026
CVE-2026-52961 ceph: fix BUG_ON in __ceph_build_xattrs_blob() due to stale blob size Sunday June 28th, 2026
CVE-2026-53097 wifi: mt76: mt7996: fix use-after-free bugs in mt7996_mac_dump_work() Sunday June 28th, 2026
CVE-2026-4786 Incomplete mitigation of CVE-2026-4519, %action expansion for command injection to webbrowser.open() Sunday June 28th, 2026
CVE-2026-3196 Qemu-kvm: virtio-snd: integer overflow leading to unbounded memory allocation Sunday June 28th, 2026
CVE-2026-53148 thunderbolt: Clamp XDomain response data copy to allocation size Sunday June 28th, 2026
CVE-2026-6100 Use-after-free in lzma.LZMADecompressor, bz2.BZ2Decompressor, and gzip.GzipFile after re-use under memory pressure Sunday June 28th, 2026
CVE-2026-3195 Qemu-kvm: virtio-snd: heap buffer overflow in virtio_snd_pcm_in_cb (incomplete fix for cve-2024-7730) Sunday June 28th, 2026
CVE-2026-53151 rxrpc: Fix the ACK parser to extract the SACK table for parsing Sunday June 28th, 2026
CVE-2026-0864 Configuration Injection via Carriage Return (\r) in write() method Sunday June 28th, 2026
CVE-2026-23472 serial: core: fix infinite loop in handle_tx() for PORT_UNKNOWN Sunday June 28th, 2026
CVE-2026-35387 OpenSSH before 10.3 can use unintended ECDSA algorithms. Listing of any ECDSA algorithm in PubkeyAcceptedAlgorithms or HostbasedAcceptedAlgorithms is misinterpreted to mean all ECDSA algorithms. Sunday June 28th, 2026
CVE-2026-5119 Libsoup: libsoup: information disclosure via cleartext transmission of cookies during https tunnel establishment Sunday June 28th, 2026
CVE-2025-38660 [ceph] parse_longname(): strrchr() expects NUL-terminated string Sunday June 28th, 2026
CVE-2026-53078 bpf: Fix same-register dst/src OOB read and pointer leak in sock_ops Sunday June 28th, 2026
CVE-2025-66038 OpenSC: `sc_compacttlv_find_tag` can return out-of-bounds pointers Sunday June 28th, 2026
CVE-2026-9697 undici vulnerable to TLS certificate validation bypass via dropped requestTls in SOCKS5 ProxyAgent Sunday June 28th, 2026
CVE-2025-38585 staging: media: atomisp: Fix stack buffer overflow in gmin_get_var_int() Sunday June 28th, 2026
CVE-2026-23371 sched/deadline: Fix missing ENQUEUE_REPLENISH during PI de-boosting Sunday June 28th, 2026
CVE-2024-58266 The shlex crate before 1.2.1 for Rust allows unquoted and unescaped instances of the { and \xa0 characters, which may facilitate command injection. Sunday June 28th, 2026
CVE-2026-53161 misc: fastrpc: fix use-after-free of fastrpc_user in workqueue context Sunday June 28th, 2026
CVE-2026-23383 bpf, arm64: Force 8-byte alignment for JIT buffer to prevent atomic tearing Sunday June 28th, 2026
CVE-2024-56782 ACPI: x86: Add adev NULL check to acpi_quirk_skip_serdev_enumeration() Sunday June 28th, 2026
CVE-2026-9675 undici WebSocket client vulnerable to denial of service via cumulative fragment bypass Sunday June 28th, 2026
CVE-2025-38359 s390/mm: Fix in_atomic() handling in do_secure_storage_access() Sunday June 28th, 2026
CVE-2026-23377 ice: change XDP RxQ frag_size from DMA write length to xdp.frame_sz Sunday June 28th, 2026
CVE-2026-52956 libceph: Fix potential out-of-bounds access in __ceph_x_decrypt() Sunday June 28th, 2026
CVE-2024-53201 drm/amd/display: Fix null check for pipe_ctx->plane_state in dcn20_program_pipe Sunday June 28th, 2026
CVE-2025-13462 tarfile: Skip DIRTYPE normalization during GNU LONGNAME/LONGLINK handling Sunday June 28th, 2026
CVE-2025-38269 btrfs: exit after state insertion failure at btrfs_convert_extent_bit() Sunday June 28th, 2026
CVE-2026-3099 Libsoup: libsoup: authentication bypass via digest authentication replay attack Sunday June 28th, 2026
CVE-2025-38279 bpf: Do not include stack ptr register in precision backtracking bookkeeping Sunday June 28th, 2026
CVE-2026-3633 Libsoup: libsoup: header and http request injection via crlf injection Sunday June 28th, 2026
CVE-2026-53246 sctp: validate cached peer INIT chunk length in COOKIE_ECHO processing Sunday June 28th, 2026
CVE-2026-3632 Libsoup: libsoup: http smuggling and server-side request forgery via malformed hostnames Sunday June 28th, 2026
CVE-2026-46140 Bluetooth: btmtk: validate WMT event SKB length before struct access Sunday June 28th, 2026
CVE-2026-53163 locking/rtmutex: Skip remove_waiter() when waiter is not enqueued Sunday June 28th, 2026
CVE-2026-3634 Libsoup: libsoup: http header injection and response splitting via crlf injection in content-type header Sunday June 28th, 2026
CVE-2026-12003 CPython >3.11 Insecure Input Validation resulting in privilege escalation Sunday June 28th, 2026
CVE-2024-53089 LoongArch: KVM: Mark hrtimer to expire in hard interrupt context Sunday June 28th, 2026
CVE-2026-55653 Openssh: double free in red hat enterprise linux versions of openssh dh-gex client path during fips known-group validation leads to client-side denial of service Sunday June 28th, 2026
CVE-2026-43966 HTTP Response Splitting via Non-VCHAR Bytes in cow_http_struct_hd:escape_string/2 Sunday June 28th, 2026
CVE-2026-55655 Openssh: local mitm of x11 forwarding via abstract unix socket pre-binding in red hat enterprise linux openssh client versions Sunday June 28th, 2026
CVE-2026-23278 netfilter: nf_tables: always walk all pending catchall elements Sunday June 28th, 2026
CVE-2026-9669 bz2.BZ2Decompressor reuse after error can cause a stack buffer overflow Sunday June 28th, 2026
CVE-2024-26962 dm-raid456, md/raid456: fix a deadlock for dm-raid456 while io concurrent with reshape Sunday June 28th, 2026
CVE-2026-11525 undici vulnerable to Set-Cookie SameSite attribute downgrade via permissive substring matching Sunday June 28th, 2026
CVE-2026-43973 gun HTTP/1.1 response buffer has no size limit allowing server-controlled memory exhaustion Sunday June 28th, 2026
CVE-2026-48914 Qemu-kvm: heap buffer overflow in virtio-blk scsi request handling Sunday June 28th, 2026
CVE-2026-4224 Stack overflow parsing XML with deeply nested DTD content models Sunday June 28th, 2026
CVE-2026-46331 net/sched: fix pedit partial COW leading to page cache corruption Sunday June 28th, 2026
CVE-2025-38041 clk: sunxi-ng: h616: Reparent GPU clock during frequency changes Sunday June 28th, 2026
CVE-2026-53159 misc: fastrpc: fix DMA address corruption due to find_vma misuse Sunday June 28th, 2026
CVE-2026-46325 RDMA/rxe: Fix iova-to-va conversion for MR page sizes != PAGE_SIZE Sunday June 28th, 2026
CVE-2026-53147 thunderbolt: Validate XDomain request packet size before type cast Sunday June 28th, 2026
CVE-2026-56412 libexpat before 2.8.2 does not consider XML_TOK_DATA_CHARS in doCdataSection and thus lacks handler call depth tracking for various calls from within handlers in cases of a policy violation. Thus, a use-after-free can occur. NOTE: this issue exists because of an incomplete fix for CVE-2026-50219. Sunday June 28th, 2026
CVE-2025-21870 ASoC: SOF: ipc4-topology: Harden loops for looking up ALH copiers Sunday June 28th, 2026
CVE-2026-56405 libexpat before 2.8.2 has an integer overflow in getAttributeId. Sunday June 28th, 2026
CVE-2026-53024 greybus: raw: fix use-after-free if write is called after disconnect Sunday June 28th, 2026
CVE-2026-49762 Unbounded integer parsing in the Version module enables CPU and memory exhaustion denial of service Sunday June 28th, 2026
CVE-2026-43059 Bluetooth: MGMT: Fix list corruption and UAF in command complete handlers Sunday June 28th, 2026
CVE-2026-56407 libexpat before 2.8.2 has an integer overflow in doProlog that is related to storeEntityValue and entity textLen. Sunday June 28th, 2026
CVE-2025-40213 Bluetooth: MGMT: fix crash in set_mesh_sync and set_mesh_complete Sunday June 28th, 2026
CVE-2024-53056 drm/mediatek: Fix potential NULL dereference in mtk_crtc_destroy() Sunday June 28th, 2026
CVE-2026-0989 Libxml2: unbounded relaxng include recursion leading to stack overflow Sunday June 28th, 2026
CVE-2024-36024 drm/amd/display: Disable idle reallow as part of command/gpint execution Sunday June 28th, 2026
CVE-2026-46314 drm/v3d: Reject empty multisync extension to prevent infinite loop Sunday June 28th, 2026
CVE-2026-56406 libexpat before 2.8.2 has an integer overflow in XML_ParseBuffer because it lacked a check that was present in XML_Parse. Sunday June 28th, 2026
CVE-2026-53027 fs/ntfs3: fix missing run load for vcn0 in attr_data_get_block_locked() Sunday June 28th, 2026
CVE-2024-50178 cpufreq: loongson3: Use raw_smp_processor_id() in do_service_request() Sunday June 28th, 2026
CVE-2025-40325 md/raid10: wait barrier before returning discard request with REQ_NOWAIT Sunday June 28th, 2026
CVE-2025-68822 Input: alps - fix use-after-free bugs caused by dev3_register_work Sunday June 28th, 2026
CVE-2024-30896 InfluxDB OSS 2.x through 2.7.11 stores the administrative operator token under the default organization which allows authorized users with read access to the authorization resource of the default organization to retrieve the operator token. InfluxDB OSS 1.x, Enterprise, Cloud, Cloud Dedicated and Clustered are not affected. NOTE: The researcher states that InfluxDB allows allAccess administrators to retrieve all raw tokens via an "influx auth ls" command. The supplier indicates that the organizations feature is operating as intended and that users may choose to add users to non-default organizations. A future release of InfluxDB 2.x will remove the ability to retrieve tokens from the API. Sunday June 28th, 2026
CVE-2024-58006 PCI: dwc: ep: Prevent changing BAR size/flags in pci_epc_set_bar() Sunday June 28th, 2026
CVE-2026-56132 In libexpat before 2.8.2, there is a heap-based buffer overflow in doProlog in xmlparse.c because scaffold backing array reallocation is mishandled when there is data-structure sharing across parsers. Sunday June 28th, 2026
CVE-2026-46275 Bluetooth: hci_uart: fix UAFs and race conditions in close and init paths Sunday June 28th, 2026
CVE-2025-58160 Tracing logging user input may result in poisoning logs with ANSI escape sequences Sunday June 28th, 2026
CVE-2025-37882 usb: xhci: Fix isochronous Ring Underrun/Overrun event handling Sunday June 28th, 2026
CVE-2026-7774 tarfile.data_filter path traversal bypass allows writing outside the extraction directory Sunday June 28th, 2026
CVE-2026-53207 mm/memory-failure: fix hugetlb_lock AA deadlock in get_huge_page_for_hwpoison Sunday June 28th, 2026
CVE-2026-3276 Potential DoS via quadratic complexity in unicodedata.normalize() Sunday June 28th, 2026
CVE-2026-56131 libexpat before 2.8.2 lacks handler call depth tracking for calls to XML_ResumeParser from within handlers in cases of a policy violation. Thus, a use-after-free can occur (similar to the CVE-2026-50219 situation). Sunday June 28th, 2026
CVE-2026-53136 drm/amd/display: Clamp VBIOS HDMI retimer register count to array size Sunday June 28th, 2026
CVE-2024-50217 btrfs: fix use-after-free of block device file in __btrfs_free_extra_devids() Sunday June 28th, 2026
CVE-2026-10275 OpenSC pkcs11-tool Key Generation pkcs11-tool.c test_kpgen_certwrite buffer overflow Sunday June 28th, 2026
CVE-2024-24856 NULL pointer deference in acpi_db_convert_to_package of Linux acpi module Sunday June 28th, 2026
CVE-2025-68304 Bluetooth: hci_core: lookup hci_conn on RX path on protocol side Sunday June 28th, 2026
CVE-2026-42507 Arbitrary inputs are included in errors without any escaping in net/textproto Sunday June 28th, 2026
CVE-2024-57898 wifi: cfg80211: clear link ID from bitmap during link delete after clean up Sunday June 28th, 2026
CVE-2025-68188 tcp: use dst_dev_rcu() in tcp_fastopen_active_disable_ofo_check() Sunday June 28th, 2026
CVE-2026-57453 Vim: PowerShell Command Injection via Unescaped Filename in zip.vim Extraction Sunday June 28th, 2026
CVE-2025-22115 btrfs: fix block group refcount race in btrfs_create_pending_block_groups() Sunday June 28th, 2026
CVE-2025-40355 sysfs: check visibility before changing group attribute ownership Sunday June 28th, 2026
CVE-2025-37745 PM: hibernate: Avoid deadlock in hibernate_compressor_param_set() Sunday June 28th, 2026
CVE-2025-21885 RDMA/bnxt_re: Fix the page details for the srq created by kernel consumers Sunday June 28th, 2026
CVE-2026-46252 regulator: core: fix locking in regulator_resolve_supply() error path Sunday June 28th, 2026
CVE-2025-68230 drm/amdgpu: fix gpu page fault after hibernation on PF passthrough Sunday June 28th, 2026
CVE-2026-57456 Vim: Arbitrary Code Execution via Python Omni-Completion Docstrings Sunday June 28th, 2026
CVE-2024-57804 scsi: mpi3mr: Fix corrupt config pages PHY state is switched in sysfs Sunday June 28th, 2026
CVE-2024-50004 drm/amd/display: update DML2 policy EnhancedPrefetchScheduleAccelerationFinal DCN35 Sunday June 28th, 2026
CVE-2026-52988 netfilter: nf_tables: join hook list via splice_list_rcu() in commit phase Sunday June 28th, 2026
CVE-2025-68190 drm/amdgpu/atom: Check kcalloc() for WS buffer in amdgpu_atom_execute_table_locked() Sunday June 28th, 2026
CVE-2026-55895 Vim: Vimscript Code Injection in netrw NetrwLocalRmFile() via crafted filename Sunday June 28th, 2026
CVE-2026-57455 Vim: Stack out-of-bounds write in `spell_soundfold_sofo()` via an over-length `soundfold()` argument Sunday June 28th, 2026
CVE-2024-49945 net/ncsi: Disable the ncsi work before freeing the associated structure Sunday June 28th, 2026
CVE-2026-8643 pip can extract console_scripts and gui_scripts outside installation directory Sunday June 28th, 2026
CVE-2026-53263 6lowpan: fix off-by-one in multicast context address compression Sunday June 28th, 2026
CVE-2025-21732 RDMA/mlx5: Fix a race for an ODP MR which leads to CQE with error Sunday June 28th, 2026
CVE-2024-49970 drm/amd/display: Implement bounds check for stream encoder creation in DCN401 Sunday June 28th, 2026
CVE-2026-53154 mm/hugetlb: restore reservation on error in hugetlb folio copy paths Sunday June 28th, 2026
CVE-2026-6324 Libsoup: libsoup: http request smuggling via unsigned to signed conversion error Sunday June 28th, 2026
CVE-2025-61727 Improper application of excluded DNS name constraints when verifying wildcard names in crypto/x509 Sunday June 28th, 2026
CVE-2026-52947 net: qrtr: fix refcount saturation and potential UAF in qrtr_port_remove Sunday June 28th, 2026
CVE-2026-44839 RabbitMQ: Unsanitized vhost names allow for XSS in management UI Sunday June 28th, 2026
CVE-2025-40180 mailbox: zynqmp-ipi: Fix out-of-bounds access in mailbox cleanup loop Sunday June 28th, 2026
CVE-2025-37826 scsi: ufs: core: Add NULL check in ufshcd_mcq_compl_pending_transfer() Sunday June 28th, 2026
CVE-2025-40168 smc: Use __sk_dst_get() and dst_dev_rcu() in smc_clc_prfx_match(). Sunday June 28th, 2026
CVE-2024-50028 thermal: core: Reference count the zone in thermal_zone_get_by_id() Sunday June 28th, 2026
CVE-2026-53143 drm/amdkfd: Fix buffer overflow in SDMA queue checkpoint/restore on GFX11 Sunday June 28th, 2026
CVE-2026-46130 dm-verity-fec: fix reading parity bytes split across blocks (take 3) Sunday June 28th, 2026
CVE-2025-40139 smc: Use __sk_dst_get() and dst_dev_rcu() in in smc_clc_prfx_set(). Sunday June 28th, 2026
CVE-2024-49918 drm/amd/display: Add null check for head_pipe in dcn32_acquire_idle_pipe_for_head_pipe_in_layer Sunday June 28th, 2026
CVE-2026-53102 wifi: mt76: Fix memory leak after mt76_connac_mcu_alloc_sta_req() Sunday June 28th, 2026
CVE-2026-46147 KVM: arm64: Fix pin leak and publication ordering in __pkvm_init_vcpu() Sunday June 28th, 2026
CVE-2024-47702 bpf: Fail verification for sign-extension of packet data/data_end/data_meta Sunday June 28th, 2026
CVE-2024-40999 net: ena: Add validation for completion descriptors consistency Sunday June 28th, 2026
CVE-2024-49916 drm/amd/display: Add NULL check for clk_mgr and clk_mgr->funcs in dcn401_init_hw Sunday June 28th, 2026
CVE-2026-53247 net: ethernet: mtk_eth_soc: Fix use-after-free in metadata dst teardown Sunday June 28th, 2026
CVE-2026-55200 libssh2 - Out-of-Bounds Write via Unchecked packet_length in transport.c Sunday June 28th, 2026
CVE-2025-22124 md/md-bitmap: fix wrong bitmap_limit for clustermd when write sb Sunday June 28th, 2026
CVE-2024-49908 drm/amd/display: Add null check for 'afb' in amdgpu_dm_update_cursor (v2) Sunday June 28th, 2026
CVE-2025-21907 mm: memory-failure: update ttu flag inside unmap_poisoned_folio Sunday June 28th, 2026
CVE-2024-49910 drm/amd/display: Add NULL check for function pointer in dcn401_set_output_transfer_func Sunday June 28th, 2026
CVE-2024-47662 drm/amd/display: Remove register from DCN35 DMCUB diagnostic collection Sunday June 28th, 2026
CVE-2024-57974 udp: Deal with race between UDP socket address change and rehash Sunday June 28th, 2026
CVE-2026-45571 go-git: Crafted repositories may modify main and submodule .git directories Sunday June 28th, 2026
CVE-2025-58188 Panic when validating certificates with DSA public keys in crypto/x509 Sunday June 28th, 2026
CVE-2025-61724 Excessive CPU consumption in Reader.ReadResponse in net/textproto Sunday June 28th, 2026
CVE-2024-46834 ethtool: fail closed if we can't get max channel used in indirection tables Sunday June 28th, 2026
CVE-2026-53264 net/sched: act_api: use RCU with deferred freeing for action lifecycle Sunday June 28th, 2026
CVE-2026-45893 apparmor: Fix & Optimize table creation from possibly unaligned memory Sunday June 28th, 2026
CVE-2025-58186 Lack of limit when parsing cookies can cause memory exhaustion in net/http Sunday June 28th, 2026
CVE-2026-53274 net/smc: fix sleep-inside-lock in __smc_setsockopt() causing local DoS Sunday June 28th, 2026
CVE-2024-46808 drm/amd/display: Add missing NULL pointer check within dpcd_extend_address_range Sunday June 28th, 2026
CVE-2025-58183 Unbounded allocation when parsing GNU sparse map in archive/tar Sunday June 28th, 2026
CVE-2025-22113 ext4: avoid journaling sb update on error if journal is destroying Sunday June 28th, 2026
CVE-2026-53053 iommu/amd: Fix clone_alias() to use the original device's devid Sunday June 28th, 2026
CVE-2024-46727 drm/amd/display: Add otg_master NULL check within resource_log_pipe_topology_update Sunday June 28th, 2026
CVE-2025-21825 bpf: Cancel the running bpf_timer through kworker for PREEMPT_RT Sunday June 28th, 2026
CVE-2026-45932 bpf: Fix tcx/netkit detach permissions when prog fd isn't given Sunday June 28th, 2026
CVE-2026-53230 net/mlx5: Fix slab-out-of-bounds in mlx5_query_nic_vport_mac_list Sunday June 28th, 2026
CVE-2026-45944 iommu/vt-d: Clear Present bit before tearing down context entry Sunday June 28th, 2026
CVE-2026-53238 netlabel: validate unlabeled address and mask attribute lengths Sunday June 28th, 2026
CVE-2025-37861 scsi: mpi3mr: Synchronous access b/w reset and tm thread for reply queue Sunday June 28th, 2026
CVE-2026-53242 ALSA: PCM: Fix wait queue list corruption in snd_pcm_drain() on linked streams Sunday June 28th, 2026
CVE-2025-40003 net: mscc: ocelot: Fix use-after-free caused by cyclic delayed work Sunday June 28th, 2026
CVE-2025-4035 Libsoup: cookie domain validation bypass via uppercase characters in libsoup Sunday June 28th, 2026
CVE-2024-1151 Kernel: stack overflow problem in open vswitch kernel module leading to dos Sunday June 28th, 2026
CVE-2025-46327 Go Snowflake Driver has race condition when checking access to Easy Logging configuration file Sunday June 28th, 2026
CVE-2026-46059 KVM: nSVM: Always use NextRIP as vmcb02's NextRIP after first L2 VMRUN Sunday June 28th, 2026
CVE-2026-53245 net/802/mrp: fix vector attribute parsing in mrp_pdu_parse_vecattr Sunday June 28th, 2026
CVE-2025-39932 smb: client: let smbd_destroy() call disable_work_sync(&info->post_send_credits_work) Sunday June 28th, 2026
CVE-2024-43824 PCI: endpoint: pci-epf-test: Make use of cached 'epc_features' in pci_epf_test_core_init() Sunday June 28th, 2026
CVE-2026-53239 xfrm: policy: fix use-after-free on inexact bin in xfrm_policy_bysel_ctx() Sunday June 28th, 2026
CVE-2025-39905 net: phylink: add lock for serializing concurrent pl->phydev writes with resolver Sunday June 28th, 2026
CVE-2024-43886 drm/amd/display: Add null check in resource_log_pipe_topology_update Sunday June 28th, 2026
CVE-2026-45877 HID: intel-ish-hid: fix NULL-ptr-deref in ishtp_bus_remove_all_clients Sunday June 28th, 2026
CVE-2025-21927 nvme-tcp: fix potential memory corruption in nvme_tcp_recv_pdu() Sunday June 28th, 2026
CVE-2026-46076 KVM: nSVM: Raise #UD if unhandled VMMCALL isn't intercepted by L1 Sunday June 28th, 2026
CVE-2025-39927 ceph: fix race condition validating r_parent before applying state Sunday June 28th, 2026
CVE-2024-26672 drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' Sunday June 28th, 2026
CVE-2024-43901 drm/amd/display: Fix NULL pointer dereference for DTN log in DCN401 Sunday June 28th, 2026
CVE-2026-52941 net/smc: avoid NULL deref of conn->lnk in smc_msg_event tracepoint Sunday June 28th, 2026
CVE-2026-53218 netfilter: nft_exthdr: fix register tracking for F_PRESENT flag Sunday June 28th, 2026
CVE-2026-45934 btrfs: fix EEXIST abort due to non-consecutive gaps in chunk allocation Sunday June 28th, 2026
CVE-2025-39850 vxlan: Fix NPD in {arp,neigh}_reduce() when using nexthop objects Sunday June 28th, 2026
CVE-2025-29923 go-redis allows potential out of order responses when `CLIENT SETINFO` times out during connection establishment Sunday June 28th, 2026
CVE-2026-53166 futex/requeue: Prevent NULL pointer dereference in remove_waiter() on self-deadlock Sunday June 28th, 2026
CVE-2025-39851 vxlan: Fix NPD when refreshing an FDB entry with a nexthop object Sunday June 28th, 2026
CVE-2026-53179 staging: rtl8723bs: fix buffer over-read in rtw_update_protection Sunday June 28th, 2026
CVE-2025-21693 mm: zswap: properly synchronize freeing resources during CPU hotunplug Sunday June 28th, 2026
CVE-2025-39810 bnxt_en: Fix memory corruption when FW resources change during ifdown Sunday June 28th, 2026
CVE-2026-53080 net/sched: cls_fw: fix NULL dereference of "old" filters before change() Sunday June 28th, 2026
CVE-2026-46032 KVM: nSVM: Triple fault if restore host CR3 fails on nested #VMEXIT Sunday June 28th, 2026
CVE-2026-53198 ksmbd: fix use-after-free of a deferred file_lock on double SMB2_CANCEL Sunday June 28th, 2026
CVE-2024-42066 drm/xe: Fix potential integer overflow in page size calculation Sunday June 28th, 2026
CVE-2026-53135 drm/amd/display: Fix NULL deref and buffer over-read in SDP debugfs Sunday June 28th, 2026
CVE-2026-45859 netfilter: nfnetlink_queue: do shared-unconfirmed check before segmentation Sunday June 28th, 2026
CVE-2025-21786 workqueue: Put the pwq after detaching the rescuer from the pool Sunday June 28th, 2026
CVE-2024-42227 drm/amd/display: Fix overlapping copy within dml_core_mode_programming Sunday June 28th, 2026
CVE-2026-53209 Bluetooth: hci_sync: reject oversized Broadcast Announcement prepend Sunday June 28th, 2026
CVE-2019-11254 Kubernetes API Server denial of service vulnerability from malicious YAML payloads Sunday June 28th, 2026
CVE-2026-46598 Invoking pathological inputs can lead to client panic in golang.org/x/crypto/ssh/agent Sunday June 28th, 2026
CVE-2024-58089 btrfs: fix double accounting race when btrfs_run_delalloc_range() failed Sunday June 28th, 2026
CVE-2026-52942 netfilter: nf_log: validate MAC header was set before dumping it Sunday June 28th, 2026
CVE-2013-1633 easy_install in setuptools before 0.7 uses HTTP to retrieve packages from the PyPI repository, and does not perform integrity checks on package contents, which allows man-in-the-middle attackers to execute arbitrary code via a crafted response to the default use of the product. Sunday June 28th, 2026
CVE-2026-9149 Libsolv: heap buffer overflow in libsolv repo_add_solv via negative maxsize from crafted .solv file Sunday June 28th, 2026
CVE-2026-53178 staging: rtl8723bs: rtw_mlme: add bounds checks before ie_length subtraction Sunday June 28th, 2026
CVE-2024-58012 ASoC: SOF: Intel: hda-dai: Ensure DAI widget is valid during params Sunday June 28th, 2026
CVE-2025-9901 Libsoup: improper handling of http vary header in libsoup caching Sunday June 28th, 2026
CVE-2026-9150 Libsolv: stack-based buffer overflow in libsolv's debian metadata parser when handling sha384/sha512 checksums Sunday June 28th, 2026
CVE-2024-25740 A memory leak flaw was found in the UBI driver in drivers/mtd/ubi/attach.c in the Linux kernel through 6.7.4 for UBI_IOCATT, because kobj->name is not released. Sunday June 28th, 2026
CVE-2025-39707 drm/amdgpu: check if hubbub is NULL in debugfs/amdgpu_dm_capabilities Sunday June 28th, 2026
CVE-2026-27136 Invoking duplicate attributes can cause XSS in golang.org/x/net/html Sunday June 28th, 2026
CVE-2026-53010 ksmbd: fix use-after-free in smb2_open during durable reconnect Sunday June 28th, 2026
CVE-2024-24864 Race condition vulnerability in Linux kernel media/dvb-core in dvbdmx_write() Sunday June 28th, 2026
CVE-2026-52943 net: skbuff: fix missing zerocopy reference in pskb_carve helpers Sunday June 28th, 2026
CVE-2025-21635 rds: sysctl: rds_tcp_{rcv,snd}buf: avoid using current->nsproxy Sunday June 28th, 2026
CVE-2024-23848 In the Linux kernel through 6.7.1, there is a use-after-free in cec_queue_msg_fh, related to drivers/media/cec/core/cec-adap.c and drivers/media/cec/core/cec-api.c. Sunday June 28th, 2026
CVE-2022-4543 A flaw named "EntryBleed" was found in the Linux Kernel Page Table Isolation (KPTI). This issue could allow a local attacker to leak KASLR base via prefetch side-channels based on TLB timing for Intel systems. Sunday June 28th, 2026
CVE-2026-53655 node-tar applies PAX size override to intermediary GNU long-name/long-link headers, causing tar parser interpretation differential (file smuggling) Sunday June 28th, 2026
CVE-2026-44889 WebOb: Location header normalization during redirect leads to open redirect Sunday June 28th, 2026
CVE-2026-53314 padata: Put CPU offline callback in ONLINE section to allow failure Sunday June 28th, 2026
CVE-2026-53303 f2fs: protect extension_list reading with sb_lock in f2fs_sbi_show() Sunday June 28th, 2026
CVE-2026-53313 drm/amd/display: Avoid NULL dereference in dc_dmub_srv error paths Sunday June 28th, 2026
CVE-2026-53284 btrfs: only release the dirty pages io tree after successful writes Sunday June 28th, 2026
CVE-2026-53292 net: phonet: do not BUG_ON() in pn_socket_autobind() on failed bind Sunday June 28th, 2026
CVE-2026-53309 ocfs2/dlm: fix off-by-one in dlm_match_regions() region comparison Sunday June 28th, 2026
CVE-2026-53320 nilfs2: reject zero bd_oblocknr in nilfs_ioctl_mark_blocks_dirty() Sunday June 28th, 2026
Chromium: CVE-2026-13025 Insufficient validation of untrusted input in DevTools Saturday June 27th, 2026
Chromium: CVE-2026-13024 Insufficient validation of untrusted input in Navigation Saturday June 27th, 2026
Chromium: CVE-2026-13021 Inappropriate implementation in DeviceBoundSessionCredentials Saturday June 27th, 2026
CVE-2026-4367 Libxpm: libxpm: denial of service via out-of-bounds read in xpm file parsing Friday June 26th, 2026
CVE-2025-68296 drm, fbcon, vga_switcheroo: Avoid race condition in fbcon setup Friday June 26th, 2026
CVE-2026-41086 Windows Admin Center in Azure Portal Elevation of Privilege Vulnerability Thursday June 25th, 2026
CVE-2026-45637 Microsoft DWM Core Library Elevation of Privilege Vulnerability Thursday June 25th, 2026
CVE-2026-4367 Libxpm: libxpm: denial of service via out-of-bounds read in xpm file parsing Thursday June 25th, 2026
CVE-2026-46140 Bluetooth: btmtk: validate WMT event SKB length before struct access Thursday June 25th, 2026
CVE-2026-45504 Microsoft Exchange Server Elevation of Privilege Vulnerability Tuesday June 23rd, 2026
CVE-2026-44967 opentelemetry-cpp: OTLP HTTP exporters read unbounded HTTP response Saturday June 20th, 2026
CVE-2026-46331 net/sched: fix pedit partial COW leading to page cache corruption Saturday June 20th, 2026
CVE-2026-7383 Possible Heap Buffer Overflow in ASN.1 Multibyte String Conversion Saturday June 20th, 2026
CVE-2026-45446 Incorrect Tag Processing for Empty Messages in AES-GCM-SIV and AES-SIV modes Saturday June 20th, 2026
CVE-2026-42768 Multi-RecipientInfo Bleichenbacher Oracle in CMS_decrypt() and PKCS7_decrypt() Saturday June 20th, 2026
CVE-2025-4574 Crossbeam-channel: crossbeam-channel vulnerable to double free on drop Saturday June 20th, 2026
Chromium: CVE-2026-12465 Insufficient validation of untrusted input in Metrics Friday June 19th, 2026
Chromium: CVE-2026-12460 Insufficient policy enforcement in File System Access Friday June 19th, 2026
Chromium: CVE-2026-12456 Insufficient validation of untrusted input in Extensions Friday June 19th, 2026
CVE-2026-48914 Qemu-kvm: heap buffer overflow in virtio-blk scsi request handling Friday June 19th, 2026
CVE-2026-10275 OpenSC pkcs11-tool Key Generation pkcs11-tool.c test_kpgen_certwrite buffer overflow Friday June 19th, 2026
CVE-2026-8376 Perl versions through 5.43.10 have a heap buffer overflow when compiling regular expressions with a repeated fixed string on 32-bit builds Friday June 19th, 2026
CVE-2026-43966 HTTP Response Splitting via Non-VCHAR Bytes in cow_http_struct_hd:escape_string/2 Friday June 19th, 2026
CVE-2026-9669 bz2.BZ2Decompressor reuse after error can cause a stack buffer overflow Friday June 19th, 2026
CVE-2026-12087 Socket versions before 2.041 for Perl have an out-of-bounds heap read Friday June 19th, 2026
CVE-2026-44967 opentelemetry-cpp: OTLP HTTP exporters read unbounded HTTP response Friday June 19th, 2026
CVE-2026-47645 Microsoft 365 Copilot's Business Chat Elevation of Privilege Vulnerability Thursday June 18th, 2026
CVE-2026-48582 Microsoft Exchange Online Elevation of Privilege Vulnerability Thursday June 18th, 2026
CVE-2026-47633 Microsoft Cost Management Information Disclosure Vulnerability Thursday June 18th, 2026
CVE-2026-46293 clk: microchip: mpfs-ccc: fix out of bounds access during output registration Thursday June 18th, 2026
CVE-2026-46274 io-wq: check that the predecessor is hashed in io_wq_remove_pending() Thursday June 18th, 2026
CVE-2026-46292 pmdomain: core: Fix detach procedure for virtual devices in genpd Thursday June 18th, 2026
CVE-2026-43308 btrfs: don't BUG() on unexpected delayed ref type in run_one_delayed_ref() Thursday June 18th, 2026
CVE-2026-7383 Possible Heap Buffer Overflow in ASN.1 Multibyte String Conversion Thursday June 18th, 2026
CVE-2026-25681 Invoking incorrect handling of character references in DOCTYPE nodes in golang.org/x/net/html Thursday June 18th, 2026
CVE-2026-25680 Invoking denial of service when parsing arbitrary HTML in golang.org/x/net/html Thursday June 18th, 2026
CVE-2026-48854 Unbounded request body accumulation causes memory exhaustion in elixir-grpc/grpc Thursday June 18th, 2026
CVE-2026-42828 Windows Projected File System Elevation of Privilege Vulnerability Wednesday June 17th, 2026
CVE-2026-40371 Microsoft Dynamics 365 (on-premises) Elevation of Privilege Vulnerability Tuesday June 16th, 2026
CVE-2026-45602 Windows Dynamic Host Configuration Protocol (DHCP) Tampering Vulnerability Tuesday June 16th, 2026
CVE-2026-54411 Linux-PAM through 1.7.2 contains an observable timing discrepancy (CWE-208) in the pam_userdb module's plaintext-password comparison path in modules/pam_userdb/pam_userdb.c that allows a local or network-adjacent attacker able to repeatedly drive authentication through a calling service to recover the plaintext password of a target account by measuring response-timing differences. The comparison uses strncmp() (or strncasecmp() when PAM_ICASE_ARG is set) preceded by a length-equality check, so the time to reject a candidate depends on the index of the first differing byte and on whether the candidate's length matches the stored password, leaking the password length and individual prefix bytes. The vulnerable path is reached when the administrator configures pam_userdb with crypt=none, with an unrecognized crypt method, or without a crypt= argument, causing the module to store and compare credentials in plaintext. Tuesday June 16th, 2026
Chromium: CVE-2026-11691 Insufficient validation of untrusted input in New Tab Page Tuesday June 16th, 2026
Chromium: CVE-2026-11689 Insufficient validation of untrusted input in Passwords Tuesday June 16th, 2026
Chromium: CVE-2026-11660 Insufficient validation of untrusted input in New Tab Page Tuesday June 16th, 2026
Chromium: CVE-2026-11658 Insufficient validation of untrusted input in Extensions Tuesday June 16th, 2026
Chromium: CVE-2026-11653 Insufficient validation of untrusted input in Extensions Tuesday June 16th, 2026
Chromium: CVE-2026-12017 Insufficient validation of untrusted inputย Extensions Monday June 15th, 2026
Chromium: CVE-2026-12009 Insufficient validation of untrusted inputย Accessibility Monday June 15th, 2026
CVE-2026-49762 Unbounded integer parsing in the Version module enables CPU and memory exhaustion denial of service Monday June 15th, 2026
CVE-2026-7774 tarfile.data_filter path traversal bypass allows writing outside the extraction directory Monday June 15th, 2026
CVE-2026-11526 GD versions before 2.86 for Perl allow OS command injection and file overwrite via a 2-arg open() of filename arguments in _make_filehandle Monday June 15th, 2026
CVE-2026-42768 Multi-RecipientInfo Bleichenbacher Oracle in CMS_decrypt() and PKCS7_decrypt() Monday June 15th, 2026
CVE-2026-11824 SQLite before 3.53.2 Heap Buffer Overflow via FTS5 fts5ChunkIterate Saturday June 13th, 2026
CVE-2026-40034 gitoxide - Command Injection via Partial .gitmodules Override in gix-submodule Saturday June 13th, 2026
CVE-2026-5223 Crates in third party registries can override the cached source of other crates Saturday June 13th, 2026
CVE-2023-5678 Excessive time spent in DH check / generation with large Q parameter value Saturday June 13th, 2026
CVE-2026-42769 Trust-Anchor Substitution via cert/issuer Typo in CMP rootCaKeyUpdate Saturday June 13th, 2026
CVE-2026-42764 NULL Pointer Dereference in QUIC Server Initial Packet Handling Saturday June 13th, 2026
CVE-2026-45446 Incorrect Tag Processing for Empty Messages in AES-GCM-SIV and AES-SIV modes Saturday June 13th, 2026
CVE-2026-42768 Multi-RecipientInfo Bleichenbacher Oracle in CMS_decrypt() and PKCS7_decrypt() Saturday June 13th, 2026
CVE-2026-7383 Possible Heap Buffer Overflow in ASN.1 Multibyte String Conversion Saturday June 13th, 2026
CVE-2026-44705 tmp: Path Traversal via unsanitized prefix/postfix enables directory escape Saturday June 13th, 2026
CVE-2026-47162 Vim: Vimscript Code Injection in netrw NetrwBookHistSave() via crafted directory name Saturday June 13th, 2026
CVE-2026-47167 Vim: Vimscript Code Injection in cucumber filetype plugin via crafted step-definition regex Saturday June 13th, 2026
CVE-2026-46683 Snappy: SSRF and local file read via the xsl-style-sheet option Friday June 12th, 2026
CVE-2026-46643 Snappy: Binary path is never shell-escaped due to an inverted is_executable check Friday June 12th, 2026
CVE-2026-8829 HTML::Entities versions before 3.84 for Perl read freed heap memory in _decode_entities Thursday June 11th, 2026
CVE-2026-5419 Guntls: gnutls: information disclosure via timing side-channel in pkcs#7 padding removal Thursday June 11th, 2026
CVE-2026-11332 Ansible-core: argument injection in ansible-galaxy role install leads to arbitrary code execution Thursday June 11th, 2026
CVE-2026-42012 Gnutls: gnutls: certificate validation bypass due to improper handling of uri and srv sans Thursday June 11th, 2026
CVE-2026-5260 Gnutls: gnutls: information disclosure via heap overread in rsa key exchange Thursday June 11th, 2026
CVE-2026-42015 Gnutls: gnutls: memory corruption due to off-by-one error in pkcs#12 bag handling Thursday June 11th, 2026
CVE-2026-42013 Gnutls: gnutls: certificate validation bypass due to oversized subject alternative name Thursday June 11th, 2026
CVE-2026-39833 Invoking key constraints not enforced in golang.org/x/crypto/ssh/agent Thursday June 11th, 2026
CVE-2026-50263 Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: use-after-free information disclosure in createsaverwindow() Thursday June 11th, 2026
CVE-2026-50258 Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: stack buffer overflow in xkb key types due to unchecked shift levels Thursday June 11th, 2026
CVE-2026-50257 Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: use-after-free in misyncdestroyfence() Thursday June 11th, 2026
CVE-2026-50259 Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: stack buffer overflow in xkb setmap request via mapwidths indexing Thursday June 11th, 2026
CVE-2026-50260 Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: use-after-free in freecounter() Thursday June 11th, 2026
CVE-2026-50262 Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: out-of-bounds read/write in glx changedrawableattributes Thursday June 11th, 2026
CVE-2026-50256 Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: stack buffer overflow in font alias resolution due to libxfont2 name length mismatch Thursday June 11th, 2026
CVE-2026-50261 Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: use-after-free in syncchangecounter() Thursday June 11th, 2026
CVE-2026-10879 DBI versions before 1.648 for Perl have a heap overflow when preparsing SQL statements with more than 9 binders Thursday June 11th, 2026
CVE-2026-43958 Rrdtool: rrdtool: stack buffer overflow allows local code execution or denial of service Thursday June 11th, 2026
CVE-2026-44185 Apache HTTP Server: Stack Buffer Over-Read in mod_ssl OCSP `send_request` Thursday June 11th, 2026
CVE-2026-34356 Apache HTTP Server: ProxyPassReverseCookieMap buffer overflow Thursday June 11th, 2026
CVE-2026-44186 Apache HTTP Server: Loop in `proxy_ftp_handler` in mod_proxy_ftp Thursday June 11th, 2026
CVE-2026-44631 Apache HTTP Server: Heap Underflow in `ap_regname` via Signed Char Overflow Thursday June 11th, 2026
CVE-2026-43951 Apache HTTP Server: OOB Read in `merge_response_headers` can cause crash Thursday June 11th, 2026
CVE-2026-44119 Apache HTTP Server: escalation of privilege through expressions in .htaccess in multiple modules Thursday June 11th, 2026
CVE-2026-48913 Apache HTTP Server: mod_http2 memory corruption when file handles exhausted Thursday June 11th, 2026
CVE-2026-11824 SQLite before 3.53.2 Heap Buffer Overflow via FTS5 fts5ChunkIterate Thursday June 11th, 2026
CVE-2026-40371 Microsoft Dynamics 365 (on-premises) Elevation of Privilege Vulnerability Wednesday June 10th, 2026
CVE-2026-47298 Microsoft SharePoint Server Remote Code Execution Vulnerability Wednesday June 10th, 2026
CVE-2026-45482 Microsoft Visual Studio Code CoPilot Chat Security Feature Bypass Vulnerability Wednesday June 10th, 2026
CVE-2026-47294 Microsoft SharePoint Server Remote Code Execution Vulnerability Wednesday June 10th, 2026
CVE-2026-42502 Invoking incorrect handling of HTML elements in foreign content in golang.org/x/net/html Wednesday June 10th, 2026
CVE-2026-46325 RDMA/rxe: Fix iova-to-va conversion for MR page sizes != PAGE_SIZE Wednesday June 10th, 2026
CVE-2026-49762 Unbounded integer parsing in the Version module enables CPU and memory exhaustion denial of service Wednesday June 10th, 2026
CVE-2026-43059 Bluetooth: MGMT: Fix list corruption and UAF in command complete handlers Wednesday June 10th, 2026
CVE-2026-46303 isofs: validate Rock Ridge CE continuation extent against volume size Wednesday June 10th, 2026
CVE-2026-46293 clk: microchip: mpfs-ccc: fix out of bounds access during output registration Wednesday June 10th, 2026
CVE-2026-46314 drm/v3d: Reject empty multisync extension to prevent infinite loop Wednesday June 10th, 2026
CVE-2026-46282 iio: frequency: admv1013: fix NULL pointer dereference on str Wednesday June 10th, 2026
CVE-2026-46274 io-wq: check that the predecessor is hashed in io_wq_remove_pending() Wednesday June 10th, 2026
CVE-2026-46280 lib: test_hmm: evict device pages on file close to avoid use-after-free Wednesday June 10th, 2026
CVE-2026-46275 Bluetooth: hci_uart: fix UAFs and race conditions in close and init paths Wednesday June 10th, 2026
CVE-2026-46292 pmdomain: core: Fix detach procedure for virtual devices in genpd Wednesday June 10th, 2026
CVE-2026-46289 lib/scatterlist: fix length calculations in extract_kvec_to_sg Wednesday June 10th, 2026
Chromium: CVE-2026-11035 Insufficient validation of untrusted input in Custom Tabs Tuesday June 9th, 2026
Chromium: CVE-2026-11034 Insufficient validation of untrusted input in Tab Group Sync Tuesday June 9th, 2026
Chromium: CVE-2026-11029 Insufficient validation of untrusted input in Drag and Drop Tuesday June 9th, 2026
Chromium: CVE-2026-11297 Insufficient validation of untrusted input in Reader Mode Tuesday June 9th, 2026
Chromium: CVE-2026-11287 Insufficient validation of untrusted input in Navigation Tuesday June 9th, 2026
Chromium: CVE-2026-11007 Insufficient validation of untrusted input in WebView Tuesday June 9th, 2026
CVE-2026-45596 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability Tuesday June 9th, 2026
CVE-2026-45602 Windows Dynamic Host Configuration Protocol (DHCP) Tampering Vulnerability Tuesday June 9th, 2026
CVE-2026-45638 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability Tuesday June 9th, 2026
CVE-2026-45603 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability Tuesday June 9th, 2026
CVE-2026-45637 Microsoft DWM Core Library Elevation of Privilege Vulnerability Tuesday June 9th, 2026
CVE-2026-45644 Microsoft Live Share Canvas SDK Elevation of Privilege Vulnerability Tuesday June 9th, 2026
CVE-2026-45647 Microsoft Defender for Endpoint for Mac Elevation of Privilege Vulnerability Tuesday June 9th, 2026
CVE-2026-47293 Microsoft Office Click-To-Run Elevation of Privilege Vulnerability Tuesday June 9th, 2026
CVE-2026-42910 Windows Hotpatch Monitoring Service Elevation of Privilege Vulnerability Tuesday June 9th, 2026
CVE-2026-42836 Windows Function Discovery Service (fdwsd.dll) Elevation of Privilege Vulnerability Tuesday June 9th, 2026
CVE-2024-49075 Windows Remote Desktop Servicesย Denial of Service Vulnerability Tuesday June 9th, 2026
CVE-2024-49123 Windows Remote Desktop Services Remote Code Execution Vulnerability Tuesday June 9th, 2026
CVE-2024-49132 Windows Remote Desktop Services Remote Code Execution Vulnerability Tuesday June 9th, 2026
CVE-2025-21330 Windows Remote Desktop Servicesย Denial of Service Vulnerability Tuesday June 9th, 2026
CVE-2024-43582 Remote Desktop Protocol Server Remote Code Execution Vulnerability Tuesday June 9th, 2026
CVE-2020-17103 Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability Tuesday June 9th, 2026
CVE-2026-44805 Windows Network Controller (NC) Host Agent Denial of Service Vulnerability Tuesday June 9th, 2026
CVE-2026-44810 Microsoft Cryptographic Services Elevation of Privilege Vulnerability Tuesday June 9th, 2026
CVE-2026-42837 Windows Projected File System Elevation of Privilege Vulnerability Tuesday June 9th, 2026
CVE-2026-42908 Windows Remote Desktop Protocol (RDP) Information Disclosure Vulnerability Tuesday June 9th, 2026
CVE-2026-42911 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability Tuesday June 9th, 2026
CVE-2026-44809 Windows Common Log File System Driver Elevation of Privilege Vulnerability Tuesday June 9th, 2026
CVE-2026-42981 Windows Performance Monitor Remote Code Execution Vulnerability Tuesday June 9th, 2026
CVE-2026-42974 Windows Performance Monitor Remote Code Execution Vulnerability Tuesday June 9th, 2026
CVE-2026-42986 Microsoft Graphics Component Elevation of Privilege Vulnerability Tuesday June 9th, 2026
CVE-2026-42978 Windows Push Notifications Elevation of Privilege Vulnerability Tuesday June 9th, 2026
CVE-2026-42977 Windows Push Notifications Elevation of Privilege Vulnerability Tuesday June 9th, 2026
CVE-2026-42979 Windows Push Notifications Elevation of Privilege Vulnerability Tuesday June 9th, 2026
CVE-2026-42991 Windows Push Notifications Elevation of Privilege Vulnerability Tuesday June 9th, 2026
CVE-2026-45600 Windows Kernel-Mode Driver Elevation of Privilege Vulnerability Tuesday June 9th, 2026
CVE-2026-45487 Windows Program Compatibility Assistant Service Elevation of Privilege Vulnerability Tuesday June 9th, 2026
CVE-2026-45639 Windows Remote Desktop Protocol (RDP) Information Disclosure Vulnerability Tuesday June 9th, 2026
CVE-2026-45640 Windows Bluetooth Port Driver Elevation of Privilege Vulnerability Tuesday June 9th, 2026
CVE-2026-45606 Microsoft UxTheme Library (uxtheme.dll) Denial of Service Vulnerability Tuesday June 9th, 2026
CVE-2026-45642 Microsoft Azure Attestation service and Device Health Attestation Service Spoofing Vulnerability Tuesday June 9th, 2026
CVE-2026-45648 Windows Active Directory Domain Services Remote Code Execution Vulnerability Tuesday June 9th, 2026
CVE-2026-47288 Windows Kerberos Key Distribution Center (KDC) Remote Code Execution Tuesday June 9th, 2026
CVE-2025-10263 ARM: CVE-2025-10263 Completion of affected memory accesses might not be guaranteed by completion of a TLBI [kernel] Tuesday June 9th, 2026
CVE-2026-45598 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability Tuesday June 9th, 2026
CVE-2026-40409 Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege Vulnerability Tuesday June 9th, 2026
CVE-2026-40404 Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege Vulnerability Tuesday June 9th, 2026
CVE-2026-33828 Windows Device Health Attestation (DHA) Elevation of Privilege Vulnerability Tuesday June 9th, 2026
CVE-2026-34335 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability Tuesday June 9th, 2026
CVE-2026-47292 Visual Studio Code MSSQL Extension Remote Code Execution Vulnerability Tuesday June 9th, 2026
CVE-2026-40371 Microsoft Dynamics 365 (on-premises) Elevation of Privilege Vulnerability Tuesday June 9th, 2026
CVE-2026-42828 Windows Projected File System Elevation of Privilege Vulnerability Tuesday June 9th, 2026
CVE-2026-42829 Windows Administrator Protection Secure Feature Bypass Vulnerability Tuesday June 9th, 2026
CVE-2026-42835 Microsoft Teams for Android Information Disclosure Vulnerability Tuesday June 9th, 2026
CVE-2026-45476 Microsoft Azure Network Adapter Elevation of Privilege Vulnerability Tuesday June 9th, 2026
CVE-2026-45482 Microsoft Visual Studio Code CoPilot Chat Extension Security Feature Bypass Vulnerability Tuesday June 9th, 2026
CVE-2026-45586 Windows Collaborative Translation Framework (CTFMON) Elevation of Privilege Vulnerability Tuesday June 9th, 2026
CVE-2026-45592 Windows Internet (wininet.dll) Elevation of Privilege Vulnerability Tuesday June 9th, 2026
CVE-2026-45597 Windows UI Automation Manager (uiamanager.dll) Elevation of Privilege Vulnerability Tuesday June 9th, 2026
CVE-2026-45601 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability Tuesday June 9th, 2026
CVE-2026-45594 Windows Application Identity (AppID) Information Disclosure Vulnerability Tuesday June 9th, 2026
CVE-2026-32193 Azure Kubernetes Service (AKS) Remote Code Execution Vulnerability Tuesday June 9th, 2026
CVE-2026-47298 Microsoft SharePoint Server Remote Code Execution Vulnerability Tuesday June 9th, 2026
CVE-2026-7774 tarfile.data_filter path traversal bypass allows writing outside the extraction directory Tuesday June 9th, 2026
CVE-2026-8643 pip can extract console_scripts and gui_scripts outside installation directory Tuesday June 9th, 2026
CVE-2026-43958 Rrdtool: rrdtool: stack buffer overflow allows local code execution or denial of service Tuesday June 9th, 2026
CVE-2026-10722 cilium ebpf LoadCollectionSpec/LoadCollectionSpecFromReader btf.go loadRawSpec integer overflow Tuesday June 9th, 2026
CVE-2026-37460 Missing input validation in the rfapiRibBi2Ri() function (rfapi_rib.c) of FRRouting (FRR) stable/10.0 to stable/10.6 allows attackers to cause a Denial of Service (DoS) via supplying a crafted BGP UPDATE message. Tuesday June 9th, 2026
CVE-2026-50219 libexpat before 2.8.2 lacks handler call depth tracking for calls to XML_GetBuffer, XML_Parse, XML_ParseBuffer, XML_ParserFree, or XML_ParserReset from within handlers in cases of a policy violation. Thus, a use-after-free can occur, Tuesday June 9th, 2026
CVE-2026-50292 In libinput before 1.30.4 and 1.31.x before 1.31.3, libinput-device-group unescaped phys output can inject udev properties leading to arbitrary root code execution Tuesday June 9th, 2026
CVE-2026-42507 Arbitrary inputs are included in errors without any escaping in net/textproto Tuesday June 9th, 2026
CVE-2026-46272 coresight: tmc-etr: Fix race condition between sysfs and perf mode Tuesday June 9th, 2026
CVE-2026-46250 MIPS: Work around LLVM bug when gp is used as global register variable Tuesday June 9th, 2026
CVE-2026-50031 ipmi-oem in FreeIPMI before 1.6.18 has exploitable buffer overflows on response messages. The Intelligent Platform Management Interface (IPMI) specification defines a set of interfaces for platform management. It is implemented by a large number of hardware manufacturers to support system management. It is most commonly used for sensor reading (e.g., CPU temperatures through the ipmi-sensors command within FreeIPMI) and remote power control (the ipmipower command). The ipmi-oem client command implements a set of a IPMI OEM commands for specific hardware vendors. If a user has supported hardware, they may wish to use the ipmi-oem command to send a request to a server to retrieve specific information. Two subcommands "ipmi-oem dell get-active-directory-config" and "ipmi-oem fujitsu get-sel-entry-long-text" were found to have exploitable buffer overflows on response messages. Tuesday June 9th, 2026
CVE-2026-48959 IO::Uncompress::Unzip versions before 2.220 for Perl allow CPU exhaustion via per-byte read loop in fastForward Tuesday June 9th, 2026
CVE-2025-15649 IO::Uncompress::Unzip versions before 2.215 for Perl propagate uncaught exception when parsing zip header with malformed DOS date Tuesday June 9th, 2026
CVE-2026-48962 IO::Compress versions before 2.220 for Perl can execute arbitrary code in File::GlobMapper via an attacker-controlled output glob Tuesday June 9th, 2026
CVE-2026-42790 nameConstraints DNS bypass via subject CommonName fallback in public_key hostname verification Tuesday June 9th, 2026
CVE-2026-42789 Non-CA certificate accepted as intermediate issuer in public_key path validation Tuesday June 9th, 2026
CVE-2026-40510 OpenSC < 0.27.0-rc1 Stack Buffer Overflow via piv_process_history() in card-piv.c Tuesday June 9th, 2026
CVE-2026-42496 Archive::Tar versions before 3.08 for Perl extract symlinks with attacker controlled targets outside the extraction directory Tuesday June 9th, 2026
CVE-2026-42502 Invoking incorrect handling of HTML elements in foreign content in golang.org/x/net/html Tuesday June 9th, 2026
CVE-2026-39833 Invoking key constraints not enforced in golang.org/x/crypto/ssh/agent Tuesday June 9th, 2026
CVE-2026-46598 Invoking pathological inputs can lead to client panic in golang.org/x/crypto/ssh/agent Tuesday June 9th, 2026
CVE-2026-39827 Invoking memory leak when rejecting channels can lead to DoS in golang.org/x/crypto/ssh Tuesday June 9th, 2026
CVE-2026-39835 Invoking server panic during CheckHostKey/Authenticate in golang.org/x/crypto/ssh Tuesday June 9th, 2026
CVE-2026-25681 Invoking incorrect handling of character references in DOCTYPE nodes in golang.org/x/net/html Tuesday June 9th, 2026
CVE-2026-39836 Panic in Dial and LookupPort when handling NUL byte on Windows in net Tuesday June 9th, 2026
CVE-2026-23479 redis-server use-after-free in unblock client flow may allow remote code execution Tuesday June 9th, 2026
CVE-2026-23631 redis-server Lua use-after-free may allow remote code execution Tuesday June 9th, 2026
CVE-2026-25243 redis-server RESTORE invalid memory access may allow remote code execution Tuesday June 9th, 2026
CVE-2026-27144 Miscompilation allows memory corruption via CONVNOP-wrapped array copy in cmd/compile Tuesday June 9th, 2026
CVE-2026-27143 Missing bound checks can lead to memory corruption in safe Go in cmd/compile Tuesday June 9th, 2026
CVE-2026-27142 URLs in meta content attribute actions are not escaped in html/template Tuesday June 9th, 2026
CVE-2026-50263 Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: use-after-free information disclosure in createsaverwindow() Tuesday June 9th, 2026
CVE-2026-50258 Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: stack buffer overflow in xkb key types due to unchecked shift levels Tuesday June 9th, 2026
CVE-2026-50257 Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: use-after-free in misyncdestroyfence() Tuesday June 9th, 2026
CVE-2026-50259 Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: stack buffer overflow in xkb setmap request via mapwidths indexing Tuesday June 9th, 2026
CVE-2026-50260 Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: use-after-free in freecounter() Tuesday June 9th, 2026
CVE-2026-50262 Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: out-of-bounds read/write in glx changedrawableattributes Tuesday June 9th, 2026
CVE-2026-50256 Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: stack buffer overflow in font alias resolution due to libxfont2 name length mismatch Tuesday June 9th, 2026
CVE-2026-50261 Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: use-after-free in syncchangecounter() Tuesday June 9th, 2026
CVE-2026-10879 DBI versions before 1.648 for Perl have a heap overflow when preparsing SQL statements with more than 9 binders Tuesday June 9th, 2026
CVE-2026-40930 LIBPNG: Chunk smuggling in push-mode APNG parser via unconsumed chunk body Tuesday June 9th, 2026
CVE-2026-50265 Rejected reason: This CVE ID was assigned as a duplicate of CVE-2026-50292 Tuesday June 9th, 2026
CVE-2026-35429 Microsoft Edge (Chromium-based) for Android Spoofing Vulnerability Monday June 8th, 2026
CVE-2026-7774 tarfile.data_filter path traversal bypass allows writing outside the extraction directory Sunday June 7th, 2026
CVE-2026-3276 Potential DoS via quadratic complexity in unicodedata.normalize() Sunday June 7th, 2026
CVE-2026-8643 pip can extract console_scripts and gui_scripts outside installation directory Sunday June 7th, 2026
CVE-2026-8829 HTML::Entities versions before 3.84 for Perl read freed heap memory in _decode_entities Sunday June 7th, 2026
CVE-2026-43958 Rrdtool: rrdtool: stack buffer overflow allows local code execution or denial of service Sunday June 7th, 2026
CVE-2026-5419 Guntls: gnutls: information disclosure via timing side-channel in pkcs#7 padding removal Sunday June 7th, 2026
CVE-2026-42507 Arbitrary inputs are included in errors without any escaping in net/textproto Sunday June 7th, 2026
CVE-2026-37460 Missing input validation in the rfapiRibBi2Ri() function (rfapi_rib.c) of FRRouting (FRR) stable/10.0 to stable/10.6 allows attackers to cause a Denial of Service (DoS) via supplying a crafted BGP UPDATE message. Sunday June 7th, 2026
CVE-2026-10722 cilium ebpf LoadCollectionSpec/LoadCollectionSpecFromReader btf.go loadRawSpec integer overflow Sunday June 7th, 2026
CVE-2026-50219 libexpat before 2.8.2 lacks handler call depth tracking for calls to XML_GetBuffer, XML_Parse, XML_ParseBuffer, XML_ParserFree, or XML_ParserReset from within handlers in cases of a policy violation. Thus, a use-after-free can occur, Sunday June 7th, 2026
CVE-2026-11332 Ansible-core: argument injection in ansible-galaxy role install leads to arbitrary code execution Sunday June 7th, 2026
CVE-2026-25680 Invoking denial of service when parsing arbitrary HTML in golang.org/x/net/html Friday June 5th, 2026
CVE-2026-46598 Invoking pathological inputs can lead to client panic in golang.org/x/crypto/ssh/agent Friday June 5th, 2026
CVE-2026-42502 Invoking incorrect handling of HTML elements in foreign content in golang.org/x/net/html Friday June 5th, 2026
CVE-2026-39827 Invoking memory leak when rejecting channels can lead to DoS in golang.org/x/crypto/ssh Friday June 5th, 2026
CVE-2026-39835 Invoking server panic during CheckHostKey/Authenticate in golang.org/x/crypto/ssh Friday June 5th, 2026
CVE-2026-25681 Invoking incorrect handling of character references in DOCTYPE nodes in golang.org/x/net/html Friday June 5th, 2026
CVE-2026-47644 Copilot Chat (Microsoft Edge) Information Disclosure Vulnerability Thursday June 4th, 2026
CVE-2026-48579 Microsoft Exchange Online Information Disclosure Vulnerability Thursday June 4th, 2026
CVE-2026-9149 Libsolv: heap buffer overflow in libsolv repo_add_solv via negative maxsize from crafted .solv file Thursday June 4th, 2026
CVE-2026-9150 Libsolv: stack-based buffer overflow in libsolv's debian metadata parser when handling sha384/sha512 checksums Thursday June 4th, 2026
CVE-2026-46598 Invoking pathological inputs can lead to client panic in golang.org/x/crypto/ssh/agent Thursday June 4th, 2026
CVE-2026-27136 Invoking duplicate attributes can cause XSS in golang.org/x/net/html Thursday June 4th, 2026
CVE-2026-42506 Invoking incorrect handling of namespaced elements in foreign content in golang.org/x/net/html Thursday June 4th, 2026
CVE-2026-25681 Invoking incorrect handling of character references in DOCTYPE nodes in golang.org/x/net/html Thursday June 4th, 2026
CVE-2026-39827 Invoking memory leak when rejecting channels can lead to DoS in golang.org/x/crypto/ssh Thursday June 4th, 2026
CVE-2026-39835 Invoking server panic during CheckHostKey/Authenticate in golang.org/x/crypto/ssh Thursday June 4th, 2026
CVE-2026-25680 Invoking denial of service when parsing arbitrary HTML in golang.org/x/net/html Thursday June 4th, 2026
CVE-2026-42502 Invoking incorrect handling of HTML elements in foreign content in golang.org/x/net/html Thursday June 4th, 2026
CVE-2026-39828 Invoking bypass of certificate restrictions in golang.org/x/crypto/ssh Thursday June 4th, 2026
CVE-2026-43964 Postfix before 3.8.16, 3.9 before 3.9.10, and 3.10 before 3.10.9 sometimes allows a buffer over-read and process crash via an enhanced status code that lacks text after the third number. Thursday June 4th, 2026
CVE-2026-41140 Poetry: Path traversal in tar extraction on Python 3.10.0 - 3.10.12 and 3.11.0 - 3.11.4 Thursday June 4th, 2026
CVE-2026-35414 OpenSSH before 10.3 mishandles the authorized_keys principals option in uncommon scenarios involving a principals list in conjunction with a Certificate Authority that makes certain use of comma characters. Thursday June 4th, 2026
CVE-2026-42151 Prometheus Azure AD remote write OAuth client secret exposed via config API Wednesday June 3rd, 2026
CVE-2026-8177 XML::LibXML versions through 2.0210 for Perl read out-of-bounds heap memory when parsing XML node names containing truncated UTF-8 byte sequences Wednesday June 3rd, 2026
CVE-2026-41256 jq: Embedded NUL truncates top-level jq programs loaded with -f Wednesday June 3rd, 2026
CVE-2026-44896 Mistune: XSS via unescaped figclass/figwidth in Figure directive Wednesday June 3rd, 2026
CVE-2026-43895 jq: Embedded NUL in jq import paths causes local redaction-policy bypass and preserves sensitive fields in published artifacts Wednesday June 3rd, 2026
CVE-2026-43894 jq: Wild stack write via signed-integer overflow in decNumber D2U() macro Wednesday June 3rd, 2026
CVE-2026-40226 In nspawn in systemd 233 through 259 before 260, an escape-to-host action can occur via a crafted optional config file. Wednesday June 3rd, 2026
CVE-2026-5223 Crates in third party registries can override the cached source of other crates Wednesday June 3rd, 2026
CVE-2026-27144 Miscompilation allows memory corruption via CONVNOP-wrapped array copy in cmd/compile Wednesday June 3rd, 2026
CVE-2026-41889 pgx: SQL Injection via placeholder confusion with dollar quoted string literals Wednesday June 3rd, 2026
CVE-2026-8466 Unbounded buffer accumulation in multipart header parsing causes denial of service in cowboy Wednesday June 3rd, 2026
CVE-2026-27143 Missing bound checks can lead to memory corruption in safe Go in cmd/compile Wednesday June 3rd, 2026
CVE-2026-42501 Malicious module proxy can bypass checksum database in cmd/go Wednesday June 3rd, 2026
CVE-2026-39834 Invoking infinite loop on large channel writes in golang.org/x/crypto/ssh Wednesday June 3rd, 2026
CVE-2026-27136 Invoking duplicate attributes can cause XSS in golang.org/x/net/html Wednesday June 3rd, 2026
CVE-2026-27140 Code execution vulnerability in SWIG code generation in cmd/go Wednesday June 3rd, 2026
CVE-2026-39836 Panic in Dial and LookupPort when handling NUL byte on Windows in net Wednesday June 3rd, 2026
CVE-2026-42506 Invoking incorrect handling of namespaced elements in foreign content in golang.org/x/net/html Wednesday June 3rd, 2026
CVE-2026-32283 Unauthenticated TLS 1.3 KeyUpdate record can cause persistent connection retention and DoS in crypto/tls Wednesday June 3rd, 2026
CVE-2026-39829 Invoking pathological RSA/DSA parameters may cause DoS in golang.org/x/crypto/ssh Wednesday June 3rd, 2026
CVE-2026-39825 ReverseProxy forwards queries with more than urlmaxqueryparams parameters in net/http/httputil Wednesday June 3rd, 2026
CVE-2026-39823 Bypass of meta content URL escaping causes XSS in html/template Wednesday June 3rd, 2026
CVE-2026-46597 Invoking byte arithmetic causes underflow and panic in golang.org/x/crypto/ssh Wednesday June 3rd, 2026
CVE-2026-39820 Quadratic string concatentation in consumeComment in net/mail Wednesday June 3rd, 2026
CVE-2026-39830 Invoking client can cause server deadlock on unexpected responses in golang.org/x/crypto/ssh Wednesday June 3rd, 2026
CVE-2026-32282 TOCTOU permits root escape on Linux via Root.Chmod in os in internal/syscall/unix Wednesday June 3rd, 2026
CVE-2026-39819 Invoking "go bug" follows symlinks in predictable temporary filenames in cmd/go Wednesday June 3rd, 2026
CVE-2026-39821 Invoking failure to reject ASCII-only Punycode-encoded labels in golang.org/x/net/idna Wednesday June 3rd, 2026
CVE-2026-29181 OpenTelemetry-Go multi-value `baggage` header extraction causes excessive allocations (remote dos amplification) Wednesday June 3rd, 2026
CVE-2026-39817 Invoking "go tool pack" does not sanitize output paths in cmd/go Wednesday June 3rd, 2026
CVE-2026-33814 Infinite loop in HTTP/2 transport when given bad SETTINGS_MAX_FRAME_SIZE in net/http/internal/http2 in golang.org/x/net Wednesday June 3rd, 2026
CVE-2026-39882 OpenTelemetry-Go OTLP HTTP exporters read unbounded HTTP response bodies Wednesday June 3rd, 2026
CVE-2026-0968 Libssh: libssh: denial of service due to malformed sftp message Wednesday June 3rd, 2026
CVE-2026-39833 Invoking key constraints not enforced in golang.org/x/crypto/ssh/agent Wednesday June 3rd, 2026
CVE-2026-46598 Invoking pathological inputs can lead to client panic in golang.org/x/crypto/ssh/agent Wednesday June 3rd, 2026
CVE-2025-13462 tarfile: Skip DIRTYPE normalization during GNU LONGNAME/LONGLINK handling Wednesday June 3rd, 2026
CVE-2026-25681 Invoking incorrect handling of character references in DOCTYPE nodes in golang.org/x/net/html Wednesday June 3rd, 2026
CVE-2026-4224 Stack overflow parsing XML with deeply nested DTD content models Wednesday June 3rd, 2026
CVE-2026-33846 Gnutls: gnutls: denial of service via heap buffer overflow in dtls handshake fragment reassembly Wednesday June 3rd, 2026
CVE-2026-27142 URLs in meta content attribute actions are not escaped in html/template Wednesday June 3rd, 2026
CVE-2026-23479 redis-server use-after-free in unblock client flow may allow remote code execution Wednesday June 3rd, 2026
CVE-2026-23631 redis-server Lua use-after-free may allow remote code execution Wednesday June 3rd, 2026
CVE-2026-3713 pnggroup libpng pnm2png pnm2png.c do_pnm2png heap-based overflow Wednesday June 3rd, 2026
CVE-2026-25243 redis-server RESTORE invalid memory access may allow remote code execution Wednesday June 3rd, 2026
CVE-2026-39827 Invoking memory leak when rejecting channels can lead to DoS in golang.org/x/crypto/ssh Wednesday June 3rd, 2026
CVE-2026-6383 Kubevirt: kubevirt: unauthorized subresource access due to improper rbac evaluation Wednesday June 3rd, 2026
CVE-2025-58160 Tracing logging user input may result in poisoning logs with ANSI escape sequences Wednesday June 3rd, 2026
CVE-2026-3832 Gnutls: gnutls: security bypass allows acceptance of revoked server certificates via crafted ocsp response Wednesday June 3rd, 2026
CVE-2026-39835 Invoking server panic during CheckHostKey/Authenticate in golang.org/x/crypto/ssh Wednesday June 3rd, 2026
CVE-2025-61727 Improper application of excluded DNS name constraints when verifying wildcard names in crypto/x509 Wednesday June 3rd, 2026
CVE-2026-37457 An off-by-one out-of-bounds write vulnerability in the bgp_flowspec_op_decode() function (bgpd/bgp_flowspec_util.c) of FRRouting (FRR) stable/10.0 allows attackers to cause a Denial of Service (DoS) via supplying a crafted FlowSpec component. Wednesday June 3rd, 2026
CVE-2025-61729 Excessive resource consumption when printing error string for host certificate validation in crypto/x509 Wednesday June 3rd, 2026
CVE-2026-6843 Nano: nano: format string vulnerability leads to denial of service Wednesday June 3rd, 2026
CVE-2026-6842 Nano: nano: local attacker can inject malicious .desktop launcher due to insecure directory permissions Wednesday June 3rd, 2026
CVE-2026-25680 Invoking denial of service when parsing arbitrary HTML in golang.org/x/net/html Wednesday June 3rd, 2026
CVE-2025-60876 BusyBox wget thru 1.3.7 accepted raw CR (0x0D)/LF (0x0A) and other C0 control bytes in the HTTP request-target (path/query), allowing the request line to be split and attacker-controlled headers to be injected. To preserve the HTTP/1.1 request-line shape METHOD SP request-target SP HTTP/1.1, a raw space (0x20) in the request-target must also be rejected (clients should use %20). Wednesday June 3rd, 2026
CVE-2025-11083 GNU Binutils Linker elfcode.h elf_swap_shdr heap-based overflow Wednesday June 3rd, 2026
CVE-2025-58188 Panic when validating certificates with DSA public keys in crypto/x509 Wednesday June 3rd, 2026
CVE-2026-42502 Invoking incorrect handling of HTML elements in foreign content in golang.org/x/net/html Wednesday June 3rd, 2026
CVE-2025-61724 Excessive CPU consumption in Reader.ReadResponse in net/textproto Wednesday June 3rd, 2026
CVE-2025-58186 Lack of limit when parsing cookies can cause memory exhaustion in net/http Wednesday June 3rd, 2026
CVE-2025-58183 Unbounded allocation when parsing GNU sparse map in archive/tar Wednesday June 3rd, 2026
CVE-2026-4948 Firewalld: firewalld: local unprivileged user can modify firewall state due to d-bus setter mis-authorization Wednesday June 3rd, 2026
CVE-2026-3087 shutil.unpack_archive() doesn't check for Windows absolute paths in ZIPs Wednesday June 3rd, 2026
CVE-2026-40356 In MIT Kerberos 5 (aka krb5) before 1.22.3, there is an integer underflow and resultant out-of-bounds read if an application calls gss_accept_sec_context() on a system with a NegoEx mechanism registered in /etc/gss/mech. An unauthenticated remote attacker can trigger this, possibly causing the process to terminate in parse_message. Wednesday June 3rd, 2026
CVE-2025-55554 pytorch v2.8.0 was discovered to contain an integer overflow in the component torch.nan_to_num-.long(). Wednesday June 3rd, 2026
CVE-2026-40355 In MIT Kerberos 5 (aka krb5) before 1.22.3, there is a NULL pointer dereference if an application calls gss_accept_sec_context() on a system with a NegoEx mechanism registered in /etc/gss/mech. An unauthenticated remote attacker can trigger this, causing the process to terminate in parse_nego_message. Wednesday June 3rd, 2026
CVE-2025-55551 An issue in the component torch.linalg.lu of pytorch v2.8.0 allows attackers to cause a Denial of Service (DoS) when performing a slice operation. Wednesday June 3rd, 2026
CVE-2026-39828 Invoking bypass of certificate restrictions in golang.org/x/crypto/ssh Wednesday June 3rd, 2026
CVE-2026-41526 In KDE KCoreAddons before 6.25, KShell::quoteArgs is intended to safely quote arguments so that they can be passed to a shell command. This parsing does not adequately handle metacharacters, leading to an escape from the shell. All applications relying on this method in a security-critical path to handle user input are affected and could be exploited. In particular, because sendInput() sends a string to a terminal, a control character such as \x01 can be used during injection. Wednesday June 3rd, 2026
CVE-2026-42009 Gnutls: gnutls: denial of service via dtls packet reordering vulnerability Wednesday June 3rd, 2026
CVE-2024-58266 The shlex crate before 1.2.1 for Rust allows unquoted and unescaped instances of the { and \xa0 characters, which may facilitate command injection. Wednesday June 3rd, 2026
CVE-2026-45803 gh: GitHub Actions log output in `gh run view` allows terminal escape sequence injection Wednesday June 3rd, 2026
CVE-2025-1176 GNU Binutils ld elflink.c _bfd_elf_gc_mark_rsec heap-based overflow Wednesday June 3rd, 2026
CVE-2026-6357 pip self-update functionality can import newly installed modules after wheel installation Wednesday June 3rd, 2026
CVE-2025-4574 Crossbeam-channel: crossbeam-channel vulnerable to double free on drop Wednesday June 3rd, 2026
CVE-2025-46327 Go Snowflake Driver has race condition when checking access to Easy Logging configuration file Wednesday June 3rd, 2026
CVE-2026-8328 FTP PASV SSRF, ftpcp() does not use actual peer address, trusts server-supplied PASV host address Wednesday June 3rd, 2026
CVE-2025-46394 In tar in BusyBox through 1.37.0, a TAR archive can have filenames hidden from a listing through the use of terminal escape sequences. Wednesday June 3rd, 2026
CVE-2026-8368 LWP::UserAgent versions before 6.83 for Perl leak Authorization and Proxy-Authorization headers on cross-origin redirects Wednesday June 3rd, 2026
CVE-2024-58251 In netstat in BusyBox through 1.37.0, local users can launch of network application with an argv[0] containing an ANSI terminal escape sequence, leading to a denial of service (terminal locked up) when netstat is used by a victim. Wednesday June 3rd, 2026
CVE-2026-43968 CR Injection in SSE Encoder Enables Event Splitting via cow_sse:event/1 Wednesday June 3rd, 2026
CVE-2025-29923 go-redis allows potential out of order responses when `CLIENT SETINFO` times out during connection establishment Wednesday June 3rd, 2026
CVE-2026-7790 Unbounded chunk-size hex digits in cowlib cause quadratic CPU and memory DoS Wednesday June 3rd, 2026
CVE-2026-6019 BaseCookie.js_output() does not neutralize embedded characters Wednesday June 3rd, 2026
CVE-2026-43969 Cookie Request Header Injection via Unvalidated Encoder in cow_cookie:cookie/1 Wednesday June 3rd, 2026
CVE-2024-7598 Network restriction bypass via race condition during namespace termination Wednesday June 3rd, 2026
CVE-2026-40225 In udev in systemd before 260, local root execution can occur via malicious hardware devices and unsanitized kernel output. Wednesday June 3rd, 2026
CVE-2026-7210 The expat and elementtree parsers use insufficient entropy for XML hash-flooding protection Wednesday June 3rd, 2026
CVE-2026-34956 Openvswitch: open vswitch: denial of service via malformed ftp epasv command Wednesday June 3rd, 2026
CVE-2025-1180 GNU Binutils ld elf-eh-frame.c _bfd_elf_write_section_eh_frame memory corruption Wednesday June 3rd, 2026
CVE-2026-42010 Gnutls: gnutls: authentication bypass via nul character in username Wednesday June 3rd, 2026
CVE-2026-42304 Twisted: Denial of Service (DoS) in twisted.names via Crafted DNS Compression Pointer Chains Wednesday June 3rd, 2026
CVE-2024-30896 InfluxDB OSS 2.x through 2.7.11 stores the administrative operator token under the default organization which allows authorized users with read access to the authorization resource of the default organization to retrieve the operator token. InfluxDB OSS 1.x, Enterprise, Cloud, Cloud Dedicated and Clustered are not affected. NOTE: The researcher states that InfluxDB allows allAccess administrators to retrieve all raw tokens via an "influx auth ls" command. The supplier indicates that the organizations feature is operating as intended and that users may choose to add users to non-default organizations. A future release of InfluxDB 2.x will remove the ability to retrieve tokens from the API. Wednesday June 3rd, 2026
CVE-2019-11254 Kubernetes API Server denial of service vulnerability from malicious YAML payloads Wednesday June 3rd, 2026
CVE-2026-4786 Incomplete mitigation of CVE-2026-4519, %action expansion for command injection to webbrowser.open() Wednesday June 3rd, 2026
CVE-2013-1633 easy_install in setuptools before 0.7 uses HTTP to retrieve packages from the PyPI repository, and does not perform integrity checks on package contents, which allows man-in-the-middle attackers to execute arbitrary code via a crafted response to the default use of the product. Wednesday June 3rd, 2026
CVE-2026-6100 Use-after-free in lzma.LZMADecompressor, bz2.BZ2Decompressor, and gzip.GzipFile after re-use under memory pressure Wednesday June 3rd, 2026
CVE-2023-27043 The email module of Python through 3.11.3 incorrectly parses e-mail addresses that contain a special character. The wrong portion of an RFC2822 header is identified as the value of the addr-spec. In some applications, an attacker can bypass a protection mechanism in which application access is granted only after verifying receipt of e-mail to a specific domain (e.g., only @company.example.com addresses may be used for signup). This occurs in email/_parseaddr.py in recent versions of Python. Wednesday June 3rd, 2026
CVE-2026-44839 RabbitMQ: Unsanitized vhost names allow for XSS in management UI Tuesday June 2nd, 2026
CVE-2025-15649 IO::Uncompress::Unzip versions before 2.215 for Perl propagate uncaught exception when parsing zip header with malformed DOS date Tuesday June 2nd, 2026
CVE-2026-25833 Mbed TLS 3.5.0 to 3.6.5 fixed in 3.6.6 and 4.1.0 has a buffer overflow in the x509_inet_pton_ipv6() function Tuesday June 2nd, 2026
CVE-2026-25834 Mbed TLS v3.3.0 up to 3.6.5 and 4.0.0 allows Algorithm Downgrade. Tuesday June 2nd, 2026
CVE-2026-34873 An issue was discovered in Mbed TLS 3.5.0 through 4.0.0. Client impersonation can occur while resuming a TLS 1.3 session. Tuesday June 2nd, 2026
CVE-2026-34874 An issue was discovered in Mbed TLS through 3.6.5 and 4.x through 4.0.0. There is a NULL pointer dereference in distinguished name parsing that allows an attacker to write to address 0. Tuesday June 2nd, 2026
CVE-2025-15504 lief-project LIEF ELF Binary Parser.tcc parse_binary null pointer dereference Tuesday June 2nd, 2026
CVE-2026-2673 OpenSSL TLS 1.3 server may choose unexpected key agreement group Tuesday June 2nd, 2026
CVE-2026-34875 An issue was discovered in Mbed TLS through 3.6.5 and TF-PSA-Crypto 1.0.0. A buffer overflow can occur in public key export for FFDH keys. Tuesday June 2nd, 2026
CVE-2026-34871 An issue was discovered in Mbed TLS before 3.6.6 and 4.x before 4.1.0 and TF-PSA-Crypto before 1.1.0. There is a Predictable Seed in a Pseudo-Random Number Generator (PRNG). Tuesday June 2nd, 2026
CVE-2026-21711 A flaw in Node.js Permission Model network enforcement leaves Unix Domain Socket (UDS) server operations without the required permission checks, while all comparable network paths correctly enforce them. As a result, code running under `--permission` without `--allow-net` can create and expose local IPC endpoints, allowing communication with other processes on the same host outside of the intended network restriction boundary. This vulnerability affects Node.js **25.x** processes using the Permission Model where `--allow-net` is intentionally omitted to restrict network access. Note that `--allow-net` is currently an experimental feature. Tuesday June 2nd, 2026
CVE-2026-28390 Possible NULL Dereference When Processing CMS KeyTransportRecipientInfo Tuesday June 2nd, 2026
CVE-2026-25835 Mbed TLS before 3.6.6 and TF-PSA-Crypto before 1.1.0 misuse seeds in a Pseudo-Random Number Generator (PRNG). Tuesday June 2nd, 2026
CVE-2026-33672 Picomatch: Method Injection in POSIX Character Classes causes incorrect Glob Matching Tuesday June 2nd, 2026
CVE-2026-34872 An issue was discovered in Mbed TLS 3.5.x and 3.6.x through 3.6.5 and TF-PSA-Crypto 1.0. There is a lack of contributory behavior in FFDH due to improper input validation. Using finite-field Diffie-Hellman, the other party can force the shared secret into a small set of values (lack of contributory behavior). This is a problem for protocols that depend on contributory behavior (which is not the case for TLS). The attack can be carried by the peer, or depending on the protocol by an active network attacker (person in the middle). Tuesday June 2nd, 2026
CVE-2026-28389 Possible NULL Dereference When Processing CMS KeyAgreeRecipientInfo Tuesday June 2nd, 2026
CVE-2017-3736 There is a carry propagating bug in the x86_64 Montgomery squaring procedure in OpenSSL before 1.0.2m and 1.1.0 before 1.1.0g. No EC algorithms are affected. Analysis suggests that attacks against RSA and DSA as a result of this defect would be very difficult to perform and are not believed likely. Attacks against DH are considered just feasible (although very difficult) because most of the work necessary to deduce information about a private key may be performed offline. The amount of resources required for such an attack would be very significant and likely only accessible to a limited number of attackers. An attacker would additionally need online access to an unpatched system using the target private key in a scenario with persistent DH parameters and a private key that is shared between multiple clients. This only affects processors that support the BMI1, BMI2 and ADX extensions like Intel Broadwell (5th generation) and later or AMD Ryzen. Tuesday June 2nd, 2026
CVE-2025-66442 In Mbed TLS through 4.0.0, there is a compiler-induced timing side channel (in RSA and CBC/ECB decryption) that only occurs with LLVM's select-optimize feature. TF-PSA-Crypto through 1.0.0 is also affected. Tuesday June 2nd, 2026
CVE-2026-34876 An issue was discovered in Mbed TLS 3.x before 3.6.6. An out-of-bounds read vulnerability in mbedtls_ccm_finish() in library/ccm.c allows attackers to obtain adjacent CCM context data via invocation of the multipart CCM API with an oversized tag_len parameter. This is caused by missing validation of the tag_len parameter against the size of the internal 16-byte authentication buffer. The issue affects the public multipart CCM API in Mbed TLS 3.x, where mbedtls_ccm_finish() can be invoked directly by applications. In Mbed TLS 4.x versions prior to the fix, the same missing validation exists in the internal implementation; however, the function is not exposed as part of the public API. Exploitation requires application-level invocation of the multipart CCM API. Tuesday June 2nd, 2026
CVE-2026-42015 Gnutls: gnutls: memory corruption due to off-by-one error in pkcs#12 bag handling Tuesday June 2nd, 2026
CVE-2026-9538 Archive::Tar versions before 3.10 for Perl allow memory exhaustion via attacker controlled entry size field in tar header Tuesday June 2nd, 2026
CVE-2026-46179 ASoC: SOF: Don't allow pointer operations on unconfigured streams Tuesday June 2nd, 2026
CVE-2026-7259 Null pointer dereference in php_mb_check_encoding() via mb_ereg_search_init() Tuesday June 2nd, 2026
CVE-2026-46194 f2fs: fix node_cnt race between extent node destroy and writeback Tuesday June 2nd, 2026
CVE-2026-7262 NULL pointer dereference in SOAP apache:Map decoder with missing Tuesday June 2nd, 2026
CVE-2026-46121 mm/damon/sysfs-schemes: protect memcg_path kfree() with damon_sysfs_lock Tuesday June 2nd, 2026
CVE-2026-7261 SoapServer session-persisted object use-after-free via SOAP header fault Tuesday June 2nd, 2026
CVE-2026-35579 CoreDNS TSIG authentication bypass on gRPC, QUIC, DoH, and DoH3 transports Tuesday June 2nd, 2026
CVE-2026-44844 eml_parser: Recursion DoS via nested message/rfc822 attachments Tuesday June 2nd, 2026
CVE-2026-34757 LIBPNG has a yse-after-free in png_set_PLTE, png_set_tRNS and png_set_hIST leading to corrupted chunk data and potential heap information disclosure Tuesday June 2nd, 2026
CVE-2026-6402 webpack-dev-server vulnerable to cross-origin source code exposure on non-HTTPS origins Tuesday June 2nd, 2026
CVE-2026-41080 libexpat before 2.8.0 uses insufficient entropy, and thus hash flooding can occur via a crafted XML document. Tuesday June 2nd, 2026
CVE-2026-42506 Invoking incorrect handling of namespaced elements in foreign content in golang.org/x/net/html Tuesday June 2nd, 2026
CVE-2026-27136 Invoking duplicate attributes can cause XSS in golang.org/x/net/html Tuesday June 2nd, 2026
CVE-2026-39833 Invoking key constraints not enforced in golang.org/x/crypto/ssh/agent Tuesday June 2nd, 2026
CVE-2026-25681 Invoking incorrect handling of character references in DOCTYPE nodes in golang.org/x/net/html Tuesday June 2nd, 2026
CVE-2026-25680 Invoking denial of service when parsing arbitrary HTML in golang.org/x/net/html Tuesday June 2nd, 2026
CVE-2026-39834 Invoking infinite loop on large channel writes in golang.org/x/crypto/ssh Tuesday June 2nd, 2026
CVE-2026-39835 Invoking server panic during CheckHostKey/Authenticate in golang.org/x/crypto/ssh Tuesday June 2nd, 2026
CVE-2026-39830 Invoking client can cause server deadlock on unexpected responses in golang.org/x/crypto/ssh Tuesday June 2nd, 2026
CVE-2026-39829 Invoking pathological RSA/DSA parameters may cause DoS in golang.org/x/crypto/ssh Tuesday June 2nd, 2026
CVE-2026-39827 Invoking memory leak when rejecting channels can lead to DoS in golang.org/x/crypto/ssh Tuesday June 2nd, 2026
CVE-2026-39832 Invoking agent constraints dropped when forwarding keys in golang.org/x/crypto/ssh/agent Tuesday June 2nd, 2026
CVE-2026-42508 Invoking auth bypass via unenforced @revoked status in golang.org/x/crypto/ssh/knownhosts Tuesday June 2nd, 2026
CVE-2026-46598 Invoking pathological inputs can lead to client panic in golang.org/x/crypto/ssh/agent Tuesday June 2nd, 2026
CVE-2026-21717 A flaw in V8's string hashing mechanism causes integer-like strings to be hashed to their numeric value, making hash collisions trivially predictable. By crafting a request that causes many such collisions in V8's internal string table, an attacker can significantly degrade performance of the Node.js process. The most common trigger is any endpoint that calls `JSON.parse()` on attacker-controlled input, as JSON parsing automatically internalizes short strings into the affected hash table. This vulnerability affects **20.x, 22.x, 24.x, and 25.x**. Tuesday June 2nd, 2026
CVE-2026-42502 Invoking incorrect handling of HTML elements in foreign content in golang.org/x/net/html Tuesday June 2nd, 2026
CVE-2026-46597 Invoking byte arithmetic causes underflow and panic in golang.org/x/crypto/ssh Tuesday June 2nd, 2026
CVE-2026-39821 Invoking failure to reject ASCII-only Punycode-encoded labels in golang.org/x/net/idna Tuesday June 2nd, 2026
CVE-2026-39828 Invoking bypass of certificate restrictions in golang.org/x/crypto/ssh Tuesday June 2nd, 2026
CVE-2026-46595 Invoking VerifiedPublicKeyCallback permissions skip enforcement in golang.org/x/crypto/ssh Tuesday June 2nd, 2026
CVE-2026-39831 Invoking bypass of FIDO/U2F security keys physical interaction in golang.org/x/crypto/ssh Tuesday June 2nd, 2026
CVE-2026-39824 Invoking integer overflow in NewNTUnicodeString in golang.org/x/sys/windows Tuesday June 2nd, 2026
CVE-2025-14575 Uncontrolled Search Path Element in Qt Network OpenSSL TLS backend allows rogue CA certificate loading Tuesday June 2nd, 2026
CVE-2026-8723 qs.stringify crashes on null/undefined entries in comma-format arrays under encodeValuesOnly Tuesday June 2nd, 2026
CVE-2026-42009 Gnutls: gnutls: denial of service via dtls packet reordering vulnerability Tuesday June 2nd, 2026
CVE-2025-23167 A flaw in Node.js 20's HTTP parser allows improper termination of HTTP/1 headers using `\r\n\rX` instead of the required `\r\n\r\n`. This inconsistency enables request smuggling, allowing attackers to bypass proxy-based access controls and submit unauthorized requests. The issue was resolved by upgrading `llhttp` to version 9, which enforces correct header termination. Impact: * This vulnerability affects only Node.js 20.x users prior to the `llhttp` v9 upgrade. Tuesday June 2nd, 2026
CVE-2026-48959 IO::Uncompress::Unzip versions before 2.220 for Perl allow CPU exhaustion via per-byte read loop in fastForward Tuesday June 2nd, 2026
CVE-2026-6324 Libsoup: libsoup: http request smuggling via unsigned to signed conversion error Tuesday June 2nd, 2026
CVE-2026-10028 Glib-networking: infinite loop in glib-networking gnutls backend allows remote denial of service via circular certificate chain Tuesday June 2nd, 2026
CVE-2026-45495 Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability Monday June 1st, 2026
CVE-2026-39829 Invoking pathological RSA/DSA parameters may cause DoS in golang.org/x/crypto/ssh Monday June 1st, 2026
CVE-2026-39821 Invoking failure to reject ASCII-only Punycode-encoded labels in golang.org/x/net/idna Monday June 1st, 2026
CVE-2026-39835 Invoking server panic during CheckHostKey/Authenticate in golang.org/x/crypto/ssh Monday June 1st, 2026
CVE-2026-21717 A flaw in V8's string hashing mechanism causes integer-like strings to be hashed to their numeric value, making hash collisions trivially predictable. By crafting a request that causes many such collisions in V8's internal string table, an attacker can significantly degrade performance of the Node.js process. The most common trigger is any endpoint that calls `JSON.parse()` on attacker-controlled input, as JSON parsing automatically internalizes short strings into the affected hash table. This vulnerability affects **20.x, 22.x, 24.x, and 25.x**. Sunday May 31st, 2026
Type Confusion in V8 in Google Chrome prior to 142.0.7444.59 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) Sunday May 31st, 2026
Type Confusion in V8 in Google Chrome prior to 142.0.7444.59 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) Sunday May 31st, 2026
Type Confusion in V8 in Google Chrome prior to 142.0.7444.59 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) Sunday May 31st, 2026
CVE-2025-23167 A flaw in Node.js 20's HTTP parser allows improper termination of HTTP/1 headers using `\r\n\rX` instead of the required `\r\n\r\n`. This inconsistency enables request smuggling, allowing attackers to bypass proxy-based access controls and submit unauthorized requests. The issue was resolved by upgrading `llhttp` to version 9, which enforces correct header termination. Impact: * This vulnerability affects only Node.js 20.x users prior to the `llhttp` v9 upgrade. Sunday May 31st, 2026
CVE-2024-36137 A vulnerability has been identified in Node.js, affecting users of the experimental permission model when the --allow-fs-write flag is used. Node.js Permission Model do not operate on file descriptors, however, operations such as fs.fchown or fs.fchmod can use a "read-only" file descriptor to change the owner and permissions of a file. Sunday May 31st, 2026
CVE-2024-22018 A vulnerability has been identified in Node.js, affecting users of the experimental permission model when the --allow-fs-read flag is used. This flaw arises from an inadequate permission model that fails to restrict file stats through the fs.lstat API. As a result, malicious actors can retrieve stats from files that they do not have explicit read access to. This vulnerability affects all users using the experimental permission model in Node.js 20 and Node.js 21. Please note that at the time this CVE was issued, the permission model is an experimental feature of Node.js. Sunday May 31st, 2026
CVE-2026-40034 gitoxide - Command Injection via Partial .gitmodules Override in gix-submodule Sunday May 31st, 2026
CVE-2026-44839 RabbitMQ: Unsanitized vhost names allow for XSS in management UI Sunday May 31st, 2026
CVE-2025-15649 IO::Uncompress::Unzip versions before 2.215 for Perl propagate uncaught exception when parsing zip header with malformed DOS date Sunday May 31st, 2026
CVE-2026-48962 IO::Compress versions before 2.220 for Perl can execute arbitrary code in File::GlobMapper via an attacker-controlled output glob Sunday May 31st, 2026
CVE-2026-25833 Mbed TLS 3.5.0 to 3.6.5 fixed in 3.6.6 and 4.1.0 has a buffer overflow in the x509_inet_pton_ipv6() function Sunday May 31st, 2026
CVE-2026-25834 Mbed TLS v3.3.0 up to 3.6.5 and 4.0.0 allows Algorithm Downgrade. Sunday May 31st, 2026
CVE-2026-34873 An issue was discovered in Mbed TLS 3.5.0 through 4.0.0. Client impersonation can occur while resuming a TLS 1.3 session. Sunday May 31st, 2026
CVE-2026-34874 An issue was discovered in Mbed TLS through 3.6.5 and 4.x through 4.0.0. There is a NULL pointer dereference in distinguished name parsing that allows an attacker to write to address 0. Sunday May 31st, 2026
CVE-2025-15504 lief-project LIEF ELF Binary Parser.tcc parse_binary null pointer dereference Sunday May 31st, 2026
CVE-2026-34875 An issue was discovered in Mbed TLS through 3.6.5 and TF-PSA-Crypto 1.0.0. A buffer overflow can occur in public key export for FFDH keys. Sunday May 31st, 2026
CVE-2026-34871 An issue was discovered in Mbed TLS before 3.6.6 and 4.x before 4.1.0 and TF-PSA-Crypto before 1.1.0. There is a Predictable Seed in a Pseudo-Random Number Generator (PRNG). Sunday May 31st, 2026
CVE-2026-28390 Possible NULL Dereference When Processing CMS KeyTransportRecipientInfo Sunday May 31st, 2026
CVE-2026-25835 Mbed TLS before 3.6.6 and TF-PSA-Crypto before 1.1.0 misuse seeds in a Pseudo-Random Number Generator (PRNG). Sunday May 31st, 2026
CVE-2026-33672 Picomatch: Method Injection in POSIX Character Classes causes incorrect Glob Matching Sunday May 31st, 2026
CVE-2026-34872 An issue was discovered in Mbed TLS 3.5.x and 3.6.x through 3.6.5 and TF-PSA-Crypto 1.0. There is a lack of contributory behavior in FFDH due to improper input validation. Using finite-field Diffie-Hellman, the other party can force the shared secret into a small set of values (lack of contributory behavior). This is a problem for protocols that depend on contributory behavior (which is not the case for TLS). The attack can be carried by the peer, or depending on the protocol by an active network attacker (person in the middle). Sunday May 31st, 2026
CVE-2026-28389 Possible NULL Dereference When Processing CMS KeyAgreeRecipientInfo Sunday May 31st, 2026
CVE-2017-3736 There is a carry propagating bug in the x86_64 Montgomery squaring procedure in OpenSSL before 1.0.2m and 1.1.0 before 1.1.0g. No EC algorithms are affected. Analysis suggests that attacks against RSA and DSA as a result of this defect would be very difficult to perform and are not believed likely. Attacks against DH are considered just feasible (although very difficult) because most of the work necessary to deduce information about a private key may be performed offline. The amount of resources required for such an attack would be very significant and likely only accessible to a limited number of attackers. An attacker would additionally need online access to an unpatched system using the target private key in a scenario with persistent DH parameters and a private key that is shared between multiple clients. This only affects processors that support the BMI1, BMI2 and ADX extensions like Intel Broadwell (5th generation) and later or AMD Ryzen. Sunday May 31st, 2026
CVE-2025-66442 In Mbed TLS through 4.0.0, there is a compiler-induced timing side channel (in RSA and CBC/ECB decryption) that only occurs with LLVM's select-optimize feature. TF-PSA-Crypto through 1.0.0 is also affected. Sunday May 31st, 2026
CVE-2026-34876 An issue was discovered in Mbed TLS 3.x before 3.6.6. An out-of-bounds read vulnerability in mbedtls_ccm_finish() in library/ccm.c allows attackers to obtain adjacent CCM context data via invocation of the multipart CCM API with an oversized tag_len parameter. This is caused by missing validation of the tag_len parameter against the size of the internal 16-byte authentication buffer. The issue affects the public multipart CCM API in Mbed TLS 3.x, where mbedtls_ccm_finish() can be invoked directly by applications. In Mbed TLS 4.x versions prior to the fix, the same missing validation exists in the internal implementation; however, the function is not exposed as part of the public API. Exploitation requires application-level invocation of the multipart CCM API. Sunday May 31st, 2026
CVE-2026-48864 Libsolv: heap buffer overflow in libsolv repopagestore via unchecked decompression of malicious .solv page data Sunday May 31st, 2026
CVE-2026-9804 Kubevirt: kubevirt: vmexport directory symlink escape enables exporter pod file read Sunday May 31st, 2026
CVE-2026-7374 Kubevirt: kubevirt virt-handler: privilege escalation and node compromise via symlink following vulnerability Sunday May 31st, 2026
CVE-2026-42012 Gnutls: gnutls: certificate validation bypass due to improper handling of uri and srv sans Sunday May 31st, 2026
CVE-2026-5260 Gnutls: gnutls: information disclosure via heap overread in rsa key exchange Sunday May 31st, 2026
CVE-2026-42015 Gnutls: gnutls: memory corruption due to off-by-one error in pkcs#12 bag handling Sunday May 31st, 2026
CVE-2026-42013 Gnutls: gnutls: certificate validation bypass due to oversized subject alternative name Sunday May 31st, 2026
CVE-2026-42790 nameConstraints DNS bypass via subject CommonName fallback in public_key hostname verification Sunday May 31st, 2026
CVE-2026-42789 Non-CA certificate accepted as intermediate issuer in public_key path validation Sunday May 31st, 2026
CVE-2026-40510 OpenSC < 0.27.0-rc1 Stack Buffer Overflow via piv_process_history() in card-piv.c Sunday May 31st, 2026
CVE-2026-21711 A flaw in Node.js Permission Model network enforcement leaves Unix Domain Socket (UDS) server operations without the required permission checks, while all comparable network paths correctly enforce them. As a result, code running under `--permission` without `--allow-net` can create and expose local IPC endpoints, allowing communication with other processes on the same host outside of the intended network restriction boundary. This vulnerability affects Node.js **25.x** processes using the Permission Model where `--allow-net` is intentionally omitted to restrict network access. Note that `--allow-net` is currently an experimental feature. Sunday May 31st, 2026
CVE-2026-46138 Bluetooth: hci_event: Fix OOB read and infinite loop in hci_le_create_big_complete_evt Saturday May 30th, 2026
CVE-2026-46157 ALSA: pcm: oss: Fix data race at accessing runtime.oss.trigger Saturday May 30th, 2026
CVE-2026-46196 tracepoint: balance regfunc() on func_add() failure in tracepoint_add_func() Saturday May 30th, 2026
CVE-2026-46116 xfrm: defensively unhash xfrm_state lists in __xfrm_state_delete Saturday May 30th, 2026
CVE-2026-46179 ASoC: SOF: Don't allow pointer operations on unconfigured streams Saturday May 30th, 2026
CVE-2026-46149 scsi: target: configfs: Bound snprintf() return in tg_pt_gp_members_show() Saturday May 30th, 2026
CVE-2026-46220 drm/amdgpu/sdma4: replace BUG_ON with WARN_ON in fence emission Saturday May 30th, 2026
CVE-2026-46161 md/raid10: fix divide-by-zero in setup_geo() with zero far_copies Saturday May 30th, 2026
CVE-2026-46180 wifi: brcmfmac: Fix potential use-after-free issue when stopping watchdog task Saturday May 30th, 2026
CVE-2026-46160 btrfs: fix missing last_unlink_trans update when removing a directory Saturday May 30th, 2026
CVE-2026-46229 drm/amdkfd: Clear VRAM on allocation to prevent stale data exposure Saturday May 30th, 2026
CVE-2026-46194 f2fs: fix node_cnt race between extent node destroy and writeback Saturday May 30th, 2026
CVE-2026-46195 smb: client: validate dacloffset before building DACL pointers Saturday May 30th, 2026
CVE-2026-46163 wifi: b43legacy: enforce bounds check on firmware key index in RX path Saturday May 30th, 2026
CVE-2026-46209 drm/gem: Fix inconsistent plane dimension calculation in drm_gem_fb_init_with_funcs() Saturday May 30th, 2026
CVE-2026-46214 vsock/virtio: fix accept queue count leak on transport mismatch Saturday May 30th, 2026
CVE-2026-46231 batman-adv: bla: put backbone reference on failed claim hash insert Saturday May 30th, 2026
CVE-2026-46174 x86/CPU/AMD: Prevent improper isolation of shared resources in Zen2's op cache Saturday May 30th, 2026
CVE-2026-46106 eventfs: Hold eventfs_mutex and SRCU when remount walks events Saturday May 30th, 2026
CVE-2026-46121 mm/damon/sysfs-schemes: protect memcg_path kfree() with damon_sysfs_lock Saturday May 30th, 2026
CVE-2026-46124 isofs: validate block number from NFS file handle in isofs_export_iget Saturday May 30th, 2026
CVE-2026-46151 usb: usblp: fix heap leak in IEEE 1284 device ID via short response Saturday May 30th, 2026
CVE-2026-46130 dm-verity-fec: fix reading parity bytes split across blocks (take 3) Saturday May 30th, 2026
CVE-2026-46119 libceph: Fix slab-out-of-bounds access in auth message processing Saturday May 30th, 2026
CVE-2026-46113 KVM: x86: Fix shadow paging use-after-free due to unexpected GFN Saturday May 30th, 2026
CVE-2026-46189 RDMA/vmw_pvrdma: Fix double free on pvrdma_alloc_ucontext() error path Saturday May 30th, 2026
CVE-2026-46147 KVM: arm64: Fix pin leak and publication ordering in __pkvm_init_vcpu() Saturday May 30th, 2026
CVE-2026-46187 wifi: rsi: fix kthread lifetime race between self-exit and external-stop Saturday May 30th, 2026
CVE-2026-46227 sctp: revalidate list cursor after sctp_sendmsg_to_asoc() in SCTP_SENDALL Saturday May 30th, 2026
CVE-2026-41184 ServiceAccount token disclosure via install-cni container logs Saturday May 30th, 2026
CVE-2026-26168 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability Friday May 29th, 2026
CVE-2026-24293 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability Friday May 29th, 2026
CVE-2026-41088 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability Friday May 29th, 2026
CVE-2026-42898 Microsoft Dynamics 365 On-Premises Remote Code Execution Vulnerability Friday May 29th, 2026
CVE-2026-46032 KVM: nSVM: Triple fault if restore host CR3 fails on nested #VMEXIT Friday May 29th, 2026
CVE-2026-45859 netfilter: nfnetlink_queue: do shared-unconfirmed check before segmentation Friday May 29th, 2026
CVE-2026-46043 RDMA/rxe: Validate pad and ICRC before payload_size() in rxe_rcv Friday May 29th, 2026
CVE-2026-46033 crypto: authencesn - reject short ahash digests during instance creation Friday May 29th, 2026
CVE-2026-45834 Bluetooth: L2CAP: Fix null-ptr-deref in l2cap_sock_state_change_cb() Friday May 29th, 2026
CVE-2026-45835 Bluetooth: L2CAP: Fix null-ptr-deref in l2cap_sock_new_connection_cb() Friday May 29th, 2026
CVE-2026-45846 bareudp: fix NULL pointer dereference in bareudp_fill_metadata_dst() Friday May 29th, 2026
CVE-2026-45893 apparmor: Fix & Optimize table creation from possibly unaligned memory Friday May 29th, 2026
CVE-2026-45839 bpf: reject negative CO-RE accessor indices in bpf_core_parse_spec() Friday May 29th, 2026
CVE-2026-45840 openvswitch: cap upcall PID array size and pre-size vport replies Friday May 29th, 2026
CVE-2026-46080 ocfs2: split transactions in dio completion to avoid credit exhaustion Friday May 29th, 2026
CVE-2026-46062 ntfs3: fix integer overflow in run_unpack() volume boundary check Friday May 29th, 2026
CVE-2026-46094 ext4: fix bounds check in check_xattrs() to prevent out-of-bounds access Friday May 29th, 2026
CVE-2026-46076 KVM: nSVM: Raise #UD if unhandled VMMCALL isn't intercepted by L1 Friday May 29th, 2026
CVE-2026-45934 btrfs: fix EEXIST abort due to non-consecutive gaps in chunk allocation Friday May 29th, 2026
CVE-2026-46174 x86/CPU/AMD: Prevent improper isolation of shared resources in Zen2's op cache Friday May 29th, 2026
CVE-2026-46121 mm/damon/sysfs-schemes: protect memcg_path kfree() with damon_sysfs_lock Friday May 29th, 2026
CVE-2026-46124 isofs: validate block number from NFS file handle in isofs_export_iget Friday May 29th, 2026
CVE-2026-46151 usb: usblp: fix heap leak in IEEE 1284 device ID via short response Friday May 29th, 2026
CVE-2026-46130 dm-verity-fec: fix reading parity bytes split across blocks (take 3) Friday May 29th, 2026
CVE-2026-46119 libceph: Fix slab-out-of-bounds access in auth message processing Friday May 29th, 2026
CVE-2026-9538 Archive::Tar versions before 3.10 for Perl allow memory exhaustion via attacker controlled entry size field in tar header Friday May 29th, 2026
CVE-2026-46113 KVM: x86: Fix shadow paging use-after-free due to unexpected GFN Friday May 29th, 2026
CVE-2026-42497 Archive::Tar versions before 3.08 for Perl extract hardlinks to attacker controlled paths outside the extraction directory Friday May 29th, 2026
CVE-2026-46189 RDMA/vmw_pvrdma: Fix double free on pvrdma_alloc_ucontext() error path Friday May 29th, 2026
CVE-2026-42496 Archive::Tar versions before 3.08 for Perl extract symlinks with attacker controlled targets outside the extraction directory Friday May 29th, 2026
CVE-2026-46138 Bluetooth: hci_event: Fix OOB read and infinite loop in hci_le_create_big_complete_evt Friday May 29th, 2026
CVE-2026-46147 KVM: arm64: Fix pin leak and publication ordering in __pkvm_init_vcpu() Friday May 29th, 2026
CVE-2026-46187 wifi: rsi: fix kthread lifetime race between self-exit and external-stop Friday May 29th, 2026
CVE-2026-46227 sctp: revalidate list cursor after sctp_sendmsg_to_asoc() in SCTP_SENDALL Friday May 29th, 2026
CVE-2026-46122 wifi: b43: enforce bounds check on firmware key index in b43_rx() Friday May 29th, 2026
CVE-2026-46146 ALSA: usb-audio: Avoid potential endless loop in convert_chmap_v3() Friday May 29th, 2026
CVE-2026-46190 mtd: spi-nor: debugfs: fix out-of-bounds read in spi_nor_params_show() Friday May 29th, 2026
CVE-2026-46132 net: rtnetlink: zero ifla_vf_broadcast to avoid stack infoleak in rtnl_fill_vfinfo Friday May 29th, 2026
CVE-2026-46196 tracepoint: balance regfunc() on func_add() failure in tracepoint_add_func() Friday May 29th, 2026
CVE-2026-46127 RDMA/ocrdma: Don't NULL deref uctx on errors in ocrdma_copy_pd_uresp() Friday May 29th, 2026
CVE-2026-46164 btrfs: fix double free in create_space_info_sub_group() error path Friday May 29th, 2026
CVE-2026-46116 xfrm: defensively unhash xfrm_state lists in __xfrm_state_delete Friday May 29th, 2026
CVE-2026-46179 ASoC: SOF: Don't allow pointer operations on unconfigured streams Friday May 29th, 2026
CVE-2026-46149 scsi: target: configfs: Bound snprintf() return in tg_pt_gp_members_show() Friday May 29th, 2026
CVE-2026-46176 RDMA/mlx5: Fix error path fall-through in mlx5_ib_dev_res_srq_init() Friday May 29th, 2026
CVE-2026-46165 openvswitch: vport: fix self-deadlock on release of tunnel ports Friday May 29th, 2026
CVE-2026-46161 md/raid10: fix divide-by-zero in setup_geo() with zero far_copies Friday May 29th, 2026
CVE-2026-46159 btrfs: fix btrfs_ioctl_space_info() slot_count TOCTOU which can lead to info-leak Friday May 29th, 2026
CVE-2026-46180 wifi: brcmfmac: Fix potential use-after-free issue when stopping watchdog task Friday May 29th, 2026
CVE-2026-46160 btrfs: fix missing last_unlink_trans update when removing a directory Friday May 29th, 2026
CVE-2026-46229 drm/amdkfd: Clear VRAM on allocation to prevent stale data exposure Friday May 29th, 2026
CVE-2026-46194 f2fs: fix node_cnt race between extent node destroy and writeback Friday May 29th, 2026
CVE-2026-46163 wifi: b43legacy: enforce bounds check on firmware key index in RX path Friday May 29th, 2026
CVE-2026-46209 drm/gem: Fix inconsistent plane dimension calculation in drm_gem_fb_init_with_funcs() Friday May 29th, 2026
CVE-2026-46231 batman-adv: bla: put backbone reference on failed claim hash insert Friday May 29th, 2026
CVE-2026-5223 Crates in third party registries can override the cached source of other crates Thursday May 28th, 2026
CVE-2026-9149 Libsolv: heap buffer overflow in libsolv repo_add_solv via negative maxsize from crafted .solv file Thursday May 28th, 2026
CVE-2026-9150 Libsolv: stack-based buffer overflow in libsolv's debian metadata parser when handling sha384/sha512 checksums Thursday May 28th, 2026
CVE-2026-46597 Invoking byte arithmetic causes underflow and panic in golang.org/x/crypto/ssh Thursday May 28th, 2026
CVE-2026-46598 Invoking pathological inputs can lead to client panic in golang.org/x/crypto/ssh/agent Thursday May 28th, 2026
CVE-2026-27136 Invoking duplicate attributes can cause XSS in golang.org/x/net/html Thursday May 28th, 2026
CVE-2026-39828 Invoking bypass of certificate restrictions in golang.org/x/crypto/ssh Thursday May 28th, 2026
CVE-2026-39835 Invoking server panic during CheckHostKey/Authenticate in golang.org/x/crypto/ssh Thursday May 28th, 2026
CVE-2026-39827 Invoking memory leak when rejecting channels can lead to DoS in golang.org/x/crypto/ssh Thursday May 28th, 2026
CVE-2026-25681 Invoking incorrect handling of character references in DOCTYPE nodes in golang.org/x/net/html Thursday May 28th, 2026
CVE-2026-42502 Invoking incorrect handling of HTML elements in foreign content in golang.org/x/net/html Thursday May 28th, 2026
CVE-2026-25680 Invoking denial of service when parsing arbitrary HTML in golang.org/x/net/html Thursday May 28th, 2026
CVE-2026-46094 ext4: fix bounds check in check_xattrs() to prevent out-of-bounds access Thursday May 28th, 2026
CVE-2026-46076 KVM: nSVM: Raise #UD if unhandled VMMCALL isn't intercepted by L1 Thursday May 28th, 2026
CVE-2026-46000 rxrpc: Fix conn-level packet handling to unshare RESPONSE packets Thursday May 28th, 2026
CVE-2026-46016 remoteproc: xlnx: Only access buffer information if IPI is buffered Thursday May 28th, 2026
CVE-2026-46022 misc: ibmasm: fix OOB MMIO read in ibmasm_handle_mouse_interrupt() Thursday May 28th, 2026
CVE-2026-46024 libceph: Prevent potential null-ptr-deref in ceph_handle_auth_reply() Thursday May 28th, 2026
CVE-2026-45934 btrfs: fix EEXIST abort due to non-consecutive gaps in chunk allocation Thursday May 28th, 2026
CVE-2026-45858 ext4: don't zero the entire extent if EXT4_EXT_DATA_PARTIAL_VALID1 Thursday May 28th, 2026
CVE-2026-45843 slip: bound decode() reads against the compressed packet length Thursday May 28th, 2026
CVE-2026-46068 crypto: nx - fix bounce buffer leaks in nx842_crypto_{alloc,free}_ctx Thursday May 28th, 2026
CVE-2026-45987 KVM: nSVM: Sync interrupt shadow to cached vmcb12 after VMRUN of L2 Thursday May 28th, 2026
CVE-2026-46056 Bluetooth: hci_event: fix potential UAF in SSP passkey handlers Thursday May 28th, 2026
CVE-2026-45956 drm/exynos: vidi: use priv->vidi_dev for ctx lookup in vidi_connection_ioctl() Thursday May 28th, 2026
CVE-2026-46065 fbdev: defio: Disconnect deferred I/O from the lifetime of struct fb_info Thursday May 28th, 2026
CVE-2026-45842 slip: reject VJ receive packets on instances with no rstate array Thursday May 28th, 2026
CVE-2026-46032 KVM: nSVM: Triple fault if restore host CR3 fails on nested #VMEXIT Thursday May 28th, 2026
CVE-2026-46019 crypto: atmel-aes - Fix 3-page memory leak in atmel_aes_buff_cleanup Thursday May 28th, 2026
CVE-2026-45859 netfilter: nfnetlink_queue: do shared-unconfirmed check before segmentation Thursday May 28th, 2026
CVE-2026-46040 inotify: fix watch count leak when fsnotify_add_inode_mark_locked() fails Thursday May 28th, 2026
CVE-2026-46069 wifi: mwifiex: fix use-after-free in mwifiex_adapter_cleanup() Thursday May 28th, 2026
CVE-2026-45994 ibmasm: fix OOB reads in command_file_write due to missing size checks Thursday May 28th, 2026
CVE-2026-46043 RDMA/rxe: Validate pad and ICRC before payload_size() in rxe_rcv Thursday May 28th, 2026
CVE-2026-46070 md/raid5: validate payload size before accessing journal metadata Thursday May 28th, 2026
CVE-2026-45570 go-git: Improper single-quote escaping in go-git SSH transport Thursday May 28th, 2026
CVE-2026-45571 go-git: Crafted repositories may modify main and submodule .git directories Thursday May 28th, 2026
CVE-2026-46009 PCI: endpoint: pci-epf-ntb: Remove duplicate resource teardown Thursday May 28th, 2026
CVE-2026-45997 scsi: sd: fix missing put_disk() when device_add(&disk_dev) fails Thursday May 28th, 2026
CVE-2026-46033 crypto: authencesn - reject short ahash digests during instance creation Thursday May 28th, 2026
CVE-2026-45943 erofs: fix inline data read failure for ztailpacking pclusters Thursday May 28th, 2026
CVE-2026-45846 bareudp: fix NULL pointer dereference in bareudp_fill_metadata_dst() Thursday May 28th, 2026
CVE-2026-45958 drm/exynos: vidi: fix to avoid directly dereferencing user pointer Thursday May 28th, 2026
CVE-2026-45893 apparmor: Fix & Optimize table creation from possibly unaligned memory Thursday May 28th, 2026
CVE-2026-44896 Mistune: XSS via unescaped figclass/figwidth in Figure directive Thursday May 28th, 2026
CVE-2026-45839 bpf: reject negative CO-RE accessor indices in bpf_core_parse_spec() Thursday May 28th, 2026
CVE-2026-44844 eml_parser: Recursion DoS via nested message/rfc822 attachments Thursday May 28th, 2026
CVE-2026-45836 Bluetooth: L2CAP: Fix null-ptr-deref in l2cap_sock_get_sndtimeo_cb() Thursday May 28th, 2026
CVE-2026-45932 bpf: Fix tcx/netkit detach permissions when prog fd isn't given Thursday May 28th, 2026
CVE-2026-45834 Bluetooth: L2CAP: Fix null-ptr-deref in l2cap_sock_state_change_cb() Thursday May 28th, 2026
CVE-2026-45944 iommu/vt-d: Clear Present bit before tearing down context entry Thursday May 28th, 2026
CVE-2026-45835 Bluetooth: L2CAP: Fix null-ptr-deref in l2cap_sock_new_connection_cb() Thursday May 28th, 2026
CVE-2026-46088 ALSA: control: Validate buf_len before strnlen() in snd_ctl_elem_init_enum_names() Thursday May 28th, 2026
CVE-2026-45840 openvswitch: cap upcall PID array size and pre-size vport replies Thursday May 28th, 2026
CVE-2026-46080 ocfs2: split transactions in dio completion to avoid credit exhaustion Thursday May 28th, 2026
CVE-2026-46059 KVM: nSVM: Always use NextRIP as vmcb02's NextRIP after first L2 VMRUN Thursday May 28th, 2026
CVE-2026-45838 bpf: fix end-of-list detection in cgroup_storage_get_next_key() Thursday May 28th, 2026
CVE-2026-46062 ntfs3: fix integer overflow in run_unpack() volume boundary check Thursday May 28th, 2026
CVE-2026-46075 crypto: atmel-sha204a - Fix potential UAF and memory leak in remove path Thursday May 28th, 2026
CVE-2026-45841 netfilter: nfnetlink_osf: fix divide-by-zero in OSF_WSS_MODULO Thursday May 28th, 2026
CVE-2026-45877 HID: intel-ish-hid: fix NULL-ptr-deref in ishtp_bus_remove_all_clients Thursday May 28th, 2026
CVE-2026-46078 erofs: fix the out-of-bounds nameoff handling for trailing dirents Thursday May 28th, 2026
CVE-2026-46011 media: mtk-jpeg: fix use-after-free in release path due to uncancelled work Thursday May 28th, 2026
CVE-2026-46002 ext2: reject inodes with zero i_nlink and valid mode in ext2_iget() Thursday May 28th, 2026
CVE-2026-46050 md/raid10: fix deadlock with check operation and nowait requests Thursday May 28th, 2026
CVE-2026-40225 In udev in systemd before 260, local root execution can occur via malicious hardware devices and unsanitized kernel output. Wednesday May 27th, 2026
CVE-2026-40226 In nspawn in systemd 233 through 259 before 260, an escape-to-host action can occur via a crafted optional config file. Wednesday May 27th, 2026
CVE-2026-5223 Crates in third party registries can override the cached source of other crates Wednesday May 27th, 2026
CVE-2026-8466 Unbounded buffer accumulation in multipart header parsing causes denial of service in cowboy Wednesday May 27th, 2026
CVE-2026-6402 webpack-dev-server vulnerable to cross-origin source code exposure on non-HTTPS origins Wednesday May 27th, 2026
CVE-2026-9149 Libsolv: heap buffer overflow in libsolv repo_add_solv via negative maxsize from crafted .solv file Wednesday May 27th, 2026
CVE-2026-9150 Libsolv: stack-based buffer overflow in libsolv's debian metadata parser when handling sha384/sha512 checksums Wednesday May 27th, 2026
CVE-2026-42508 Invoking auth bypass via unenforced @revoked status in golang.org/x/crypto/ssh/knownhosts Wednesday May 27th, 2026
CVE-2026-39833 Invoking key constraints not enforced in golang.org/x/crypto/ssh/agent Wednesday May 27th, 2026
CVE-2026-46595 Invoking VerifiedPublicKeyCallback permissions skip enforcement in golang.org/x/crypto/ssh Wednesday May 27th, 2026
CVE-2026-46598 Invoking pathological inputs can lead to client panic in golang.org/x/crypto/ssh/agent Wednesday May 27th, 2026
CVE-2026-39832 Invoking agent constraints dropped when forwarding keys in golang.org/x/crypto/ssh/agent Wednesday May 27th, 2026
CVE-2026-39828 Invoking bypass of certificate restrictions in golang.org/x/crypto/ssh Wednesday May 27th, 2026
CVE-2026-39834 Invoking infinite loop on large channel writes in golang.org/x/crypto/ssh Wednesday May 27th, 2026
CVE-2026-39835 Invoking server panic during CheckHostKey/Authenticate in golang.org/x/crypto/ssh Wednesday May 27th, 2026
CVE-2026-39827 Invoking memory leak when rejecting channels can lead to DoS in golang.org/x/crypto/ssh Wednesday May 27th, 2026
CVE-2026-39831 Invoking bypass of FIDO/U2F security keys physical interaction in golang.org/x/crypto/ssh Wednesday May 27th, 2026
CVE-2026-46597 Invoking byte arithmetic causes underflow and panic in golang.org/x/crypto/ssh Wednesday May 27th, 2026
CVE-2026-39830 Invoking client can cause server deadlock on unexpected responses in golang.org/x/crypto/ssh Wednesday May 27th, 2026
CVE-2026-39829 Invoking pathological RSA/DSA parameters may cause DoS in golang.org/x/crypto/ssh Wednesday May 27th, 2026
CVE-2026-25681 Invoking incorrect handling of character references in DOCTYPE nodes in golang.org/x/net/html Wednesday May 27th, 2026
CVE-2026-27136 Invoking duplicate attributes can cause XSS in golang.org/x/net/html Wednesday May 27th, 2026
CVE-2026-42502 Invoking incorrect handling of HTML elements in foreign content in golang.org/x/net/html Wednesday May 27th, 2026
CVE-2026-39824 Invoking integer overflow in NewNTUnicodeString in golang.org/x/sys/windows Wednesday May 27th, 2026
CVE-2026-25680 Invoking denial of service when parsing arbitrary HTML in golang.org/x/net/html Wednesday May 27th, 2026
CVE-2026-42506 Invoking incorrect handling of namespaced elements in foreign content in golang.org/x/net/html Wednesday May 27th, 2026
CVE-2026-39821 Invoking failure to reject ASCII-only Punycode-encoded labels in golang.org/x/net/idna Wednesday May 27th, 2026
CVE-2026-8376 Perl versions through 5.43.10 have a heap buffer overflow when compiling regular expressions with a repeated fixed string on 32-bit builds Wednesday May 27th, 2026
CVE-2026-43503 net: skbuff: propagate shared-frag marker through frag-transfer helpers Wednesday May 27th, 2026
CVE-2026-45495 Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability Tuesday May 26th, 2026
CVE-2025-1176 GNU Binutils ld elflink.c _bfd_elf_gc_mark_rsec heap-based overflow Tuesday May 26th, 2026
CVE-2026-44283 etcd: Read access via PrevKv in etcd transactions may bypass RBAC authorization checks Tuesday May 26th, 2026
CVE-2026-43968 CR Injection in SSE Encoder Enables Event Splitting via cow_sse:event/1 Tuesday May 26th, 2026
CVE-2026-7790 Unbounded chunk-size hex digits in cowlib cause quadratic CPU and memory DoS Tuesday May 26th, 2026
CVE-2026-33814 Infinite loop in HTTP/2 transport when given bad SETTINGS_MAX_FRAME_SIZE in net/http/internal/http2 in golang.org/x/net Tuesday May 26th, 2026
CVE-2026-41054 Missing exit out of permission check in haveged could lead to root exploit Sunday May 24th, 2026
CVE-2026-7246 Pallets Click contains a command injection via Unsanitized Filename "click.edit()" Saturday May 23rd, 2026
CVE-2026-44673 libyang: lyb_read_string() integer overflow โ heap buffer overflow Saturday May 23rd, 2026
CVE-2026-44390 Unbounded name compression in certain cases causes degradation of service Saturday May 23rd, 2026
CVE-2025-51480 Path Traversal vulnerability in onnx.external_data_helper.save_external_data in ONNX 1.17.0 allows attackers to overwrite arbitrary files by supplying crafted external_data.location paths containing traversal sequences, bypassing intended directory restrictions. Saturday May 23rd, 2026
CVE-2026-42944 Heap overflow with multiple NSID, COOKIE, PADDING EDNS options Saturday May 23rd, 2026
CVE-2026-41035 In rsync 3.0.1 through 3.4.1, receive_xattr relies on an untrusted length value during a qsort call, leading to a receiver use-after-free. The victim must run rsync with -X (aka --xattrs). On Linux, many (but not all) common configurations are vulnerable. Non-Linux platforms are more widely vulnerable. Saturday May 23rd, 2026
CVE-2026-42960 Possible cache poisoning via promiscuous records for the authority section Saturday May 23rd, 2026
CVE-2026-29518 Rsync < 3.4.3 TOCTOU Race Condition Allows Symlink-Based Arbitrary File Write Saturday May 23rd, 2026
CVE-2025-14575 Uncontrolled Search Path Element in Qt Network OpenSSL TLS backend allows rogue CA certificate loading Saturday May 23rd, 2026
CVE-2026-8723 qs.stringify crashes on null/undefined entries in comma-format arrays under encodeValuesOnly Saturday May 23rd, 2026
CVE-2026-41054 Missing exit out of permission check in haveged could lead to root exploit Saturday May 23rd, 2026
CVE-2026-42009 Gnutls: gnutls: denial of service via dtls packet reordering vulnerability Saturday May 23rd, 2026
CVE-2026-5947 SIG(0) validation during query flood may lead to undefined behavior Saturday May 23rd, 2026
CVE-2026-3593 Heap use-after-free vulnerability in BIND 9 DNS-over-HTTPS implementation Saturday May 23rd, 2026
CVE-2026-3039 BIND 9 server memory exhaustion during GSS-API TKEY negotiation Saturday May 23rd, 2026
CVE-2026-23383 bpf, arm64: Force 8-byte alignment for JIT buffer to prevent atomic tearing Friday May 22nd, 2026
CVE-2026-23377 ice: change XDP RxQ frag_size from DMA write length to xdp.frame_sz Friday May 22nd, 2026
CVE-2025-39810 bnxt_en: Fix memory corruption when FW resources change during ifdown Friday May 22nd, 2026
CVE-2026-43416 powerpc, perf: Check that current->mm is alive before getting user callchain Friday May 22nd, 2026
CVE-2026-23272 netfilter: nf_tables: unconditionally bump set->nelems before insertion Friday May 22nd, 2026
CVE-2026-43199 net/mlx5e: Fix "scheduling while atomic" in IPsec MAC address query Friday May 22nd, 2026
CVE-2026-43101 ipv6: ioam: fix potential NULL dereferences in __ioam6_fill_trace_data() Friday May 22nd, 2026
CVE-2025-39707 drm/amdgpu: check if hubbub is NULL in debugfs/amdgpu_dm_capabilities Friday May 22nd, 2026
CVE-2026-43119 Bluetooth: hci_sync: annotate data-races around hdev->req_status Friday May 22nd, 2026
CVE-2025-38660 [ceph] parse_longname(): strrchr() expects NUL-terminated string Friday May 22nd, 2026
CVE-2026-23229 crypto: virtio - Add spinlock protection with virtqueue notification Friday May 22nd, 2026
CVE-2025-38585 staging: media: atomisp: Fix stack buffer overflow in gmin_get_var_int() Friday May 22nd, 2026
CVE-2025-38269 btrfs: exit after state insertion failure at btrfs_convert_extent_bit() Friday May 22nd, 2026
CVE-2025-38279 bpf: Do not include stack ptr register in precision backtracking bookkeeping Friday May 22nd, 2026
CVE-2025-68822 Input: alps - fix use-after-free bugs caused by dev3_register_work Friday May 22nd, 2026
CVE-2026-43161 iommu/vt-d: Skip dev-iotlb flush for inaccessible PCIe device without scalable mode Friday May 22nd, 2026
CVE-2025-38041 clk: sunxi-ng: h616: Reparent GPU clock during frequency changes Friday May 22nd, 2026
CVE-2026-43073 x86-64: rename misleadingly named '__copy_user_nocache()' function Friday May 22nd, 2026
CVE-2025-68324 scsi: imm: Fix use-after-free bug caused by unfinished delayed work Friday May 22nd, 2026
CVE-2025-68304 Bluetooth: hci_core: lookup hci_conn on RX path on protocol side Friday May 22nd, 2026
CVE-2025-68188 tcp: use dst_dev_rcu() in tcp_fastopen_active_disable_ofo_check() Friday May 22nd, 2026
CVE-2026-43009 bpf: Fix incorrect pruning due to atomic fetch precision tracking Friday May 22nd, 2026
CVE-2025-40355 sysfs: check visibility before changing group attribute ownership Friday May 22nd, 2026
CVE-2026-31709 smb: client: validate the whole DACL before rewriting it in cifsacl Friday May 22nd, 2026
CVE-2025-68230 drm/amdgpu: fix gpu page fault after hibernation on PF passthrough Friday May 22nd, 2026
CVE-2026-31771 Bluetooth: hci_event: move wake reason storage into validated event handlers Friday May 22nd, 2026
CVE-2025-68190 drm/amdgpu/atom: Check kcalloc() for WS buffer in amdgpu_atom_execute_table_locked() Friday May 22nd, 2026
CVE-2026-43049 HID: logitech-hidpp: Prevent use-after-free on force feedback initialisation failure Friday May 22nd, 2026
CVE-2026-31706 ksmbd: validate num_aces and harden ACE walk in smb_inherit_dacl() Friday May 22nd, 2026
CVE-2025-37826 scsi: ufs: core: Add NULL check in ufshcd_mcq_compl_pending_transfer() Friday May 22nd, 2026
CVE-2026-31692 rtnetlink: add missing netlink_ns_capable() check for peer netns Friday May 22nd, 2026
CVE-2026-6357 pip self-update functionality can import newly installed modules after wheel installation Friday May 22nd, 2026
CVE-2025-40180 mailbox: zynqmp-ipi: Fix out-of-bounds access in mailbox cleanup loop Friday May 22nd, 2026
CVE-2025-22113 ext4: avoid journaling sb update on error if journal is destroying Friday May 22nd, 2026
CVE-2025-40168 smc: Use __sk_dst_get() and dst_dev_rcu() in smc_clc_prfx_match(). Friday May 22nd, 2026
CVE-2025-21825 bpf: Cancel the running bpf_timer through kworker for PREEMPT_RT Friday May 22nd, 2026
CVE-2026-31592 KVM: SEV: Protect *all* of sev_mem_enc_register_region() with kvm->lock Friday May 22nd, 2026
CVE-2025-40139 smc: Use __sk_dst_get() and dst_dev_rcu() in in smc_clc_prfx_set(). Friday May 22nd, 2026
CVE-2025-37861 scsi: mpi3mr: Synchronous access b/w reset and tm thread for reply queue Friday May 22nd, 2026
CVE-2025-21927 nvme-tcp: fix potential memory corruption in nvme_tcp_recv_pdu() Friday May 22nd, 2026
CVE-2025-22124 md/md-bitmap: fix wrong bitmap_limit for clustermd when write sb Friday May 22nd, 2026
CVE-2024-26672 drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' Friday May 22nd, 2026
CVE-2026-31536 smb: server: let send_done handle a completion without IB_SEND_SIGNALED Friday May 22nd, 2026
CVE-2025-21693 mm: zswap: properly synchronize freeing resources during CPU hotunplug Friday May 22nd, 2026
CVE-2025-21786 workqueue: Put the pwq after detaching the rescuer from the pool Friday May 22nd, 2026
CVE-2026-43492 lib/crypto: mpi: Fix integer underflow in mpi_read_raw_from_sgl() Friday May 22nd, 2026
CVE-2025-40003 net: mscc: ocelot: Fix use-after-free caused by cyclic delayed work Friday May 22nd, 2026
CVE-2026-31488 drm/amd/display: Do not skip unrelated mode changes in DSC validation Friday May 22nd, 2026
CVE-2026-31516 xfrm: prevent policy_hthresh.work from racing with netns teardown Friday May 22nd, 2026
CVE-2025-39932 smb: client: let smbd_destroy() call disable_work_sync(&info->post_send_credits_work) Friday May 22nd, 2026
CVE-2025-39905 net: phylink: add lock for serializing concurrent pl->phydev writes with resolver Friday May 22nd, 2026
CVE-2026-31767 drm/i915/dsi: Don't do DSC horizontal timing adjustments in command mode Friday May 22nd, 2026
CVE-2025-39927 ceph: fix race condition validating r_parent before applying state Friday May 22nd, 2026
CVE-2024-50217 btrfs: fix use-after-free of block device file in __btrfs_free_extra_devids() Friday May 22nd, 2026
CVE-2025-39850 vxlan: Fix NPD in {arp,neigh}_reduce() when using nexthop objects Friday May 22nd, 2026
CVE-2025-39851 vxlan: Fix NPD when refreshing an FDB entry with a nexthop object Friday May 22nd, 2026
CVE-2026-43496 net/sched: sch_red: Replace direct dequeue call with peek and qdisc_dequeue_peeked Friday May 22nd, 2026
CVE-2026-43502 net/rds: handle zerocopy send cleanup before the message is queued Friday May 22nd, 2026
CVE-2026-43497 fbdev: udlfb: add vm_ops to dlfb_ops_mmap to prevent use-after-free Friday May 22nd, 2026
CVE-2026-43495 net: wwan: t7xx: validate port_count against message length in t7xx_port_enum_msg_handler Friday May 22nd, 2026
CVE-2026-43970 Decompression Bomb in cow_spdy:inflate/2 Allows Memory Exhaustion via Crafted SPDY Frame Thursday May 21st, 2026
CVE-2026-45803 gh: GitHub Actions log output in `gh run view` allows terminal escape sequence injection Thursday May 21st, 2026
CVE-2026-44390 Unbounded name compression in certain cases causes degradation of service Thursday May 21st, 2026
CVE-2026-42944 Heap overflow with multiple NSID, COOKIE, PADDING EDNS options Thursday May 21st, 2026
CVE-2026-42960 Possible cache poisoning via promiscuous records for the authority section Thursday May 21st, 2026
CVE-2026-29518 Rsync < 3.4.3 TOCTOU Race Condition Allows Symlink-Based Arbitrary File Write Thursday May 21st, 2026
CVE-2026-47783 In memcached before 1.6.42, username data for SASL password database authentication has a timing side channel because a loop exits as soon as a valid username is found by sasl_server_userdb_checkpass. Thursday May 21st, 2026
CVE-2026-47784 In memcached before 1.6.42, password data for SASL password database authentication has a timing side channel because memcmp is used by sasl_server_userdb_checkpass. Thursday May 21st, 2026
CVE-2026-46483 Vim: Command injection in tar#Vimuntar via missing shellescape {special} flag Wednesday May 20th, 2026
CVE-2026-34956 Openvswitch: open vswitch: denial of service via malformed ftp epasv command Wednesday May 20th, 2026
CVE-2026-43491 net: qrtr: ns: Limit the maximum server registration per node Wednesday May 20th, 2026
CVE-2026-43492 lib/crypto: mpi: Fix integer underflow in mpi_read_raw_from_sgl() Wednesday May 20th, 2026
CVE-2026-8328 FTP PASV SSRF, ftpcp() does not use actual peer address, trusts server-supplied PASV host address Tuesday May 19th, 2026
CVE-2026-7246 Pallets Click contains a command injection via Unsanitized Filename "click.edit()" Tuesday May 19th, 2026
CVE-2026-43443 ASoC: amd: acp-mach-common: Add missing error check for clock acquisition Tuesday May 19th, 2026
CVE-2026-44662 rust-openssl: Heap buffer overflow when encrypting with AES key-wrap-with-padding Tuesday May 19th, 2026
CVE-2026-43352 i3c: mipi-i3c-hci: Correct RING_CTRL_ABORT handling in DMA dequeue Tuesday May 19th, 2026
CVE-2026-41673 xmldom: Denial of service via uncontrolled recursion in XML serialization Tuesday May 19th, 2026
CVE-2026-41675 xmldom: XML node injection through unvalidated processing instruction serialization Tuesday May 19th, 2026
CVE-2026-41674 xmldom: XML injection through unvalidated DocumentType serialization Tuesday May 19th, 2026
CVE-2026-41672 xmldom: XML node injection through unvalidated comment serialization Tuesday May 19th, 2026
CVE-2026-43868 Apache Thrift: Rust implementation vulnerable to CVE-2020-13949 pattern Tuesday May 19th, 2026
CVE-2026-41082 In OCaml opam before 2.5.1, a .install field containing a destination filepath can use ../ to reach a parent directory. Tuesday May 19th, 2026
CVE-2026-25833 Mbed TLS 3.5.0 to 3.6.5 fixed in 3.6.6 and 4.1.0 has a buffer overflow in the x509_inet_pton_ipv6() function Tuesday May 19th, 2026
CVE-2026-25834 Mbed TLS v3.3.0 up to 3.6.5 and 4.0.0 allows Algorithm Downgrade. Tuesday May 19th, 2026
CVE-2026-34872 An issue was discovered in Mbed TLS 3.5.x and 3.6.x through 3.6.5 and TF-PSA-Crypto 1.0. There is a lack of contributory behavior in FFDH due to improper input validation. Using finite-field Diffie-Hellman, the other party can force the shared secret into a small set of values (lack of contributory behavior). This is a problem for protocols that depend on contributory behavior (which is not the case for TLS). The attack can be carried by the peer, or depending on the protocol by an active network attacker (person in the middle). Tuesday May 19th, 2026
CVE-2026-7210 The expat and elementtree parsers use insufficient entropy for XML hash-flooding protection Tuesday May 19th, 2026
CVE-2026-34871 An issue was discovered in Mbed TLS before 3.6.6 and 4.x before 4.1.0 and TF-PSA-Crypto before 1.1.0. There is a Predictable Seed in a Pseudo-Random Number Generator (PRNG). Tuesday May 19th, 2026
CVE-2026-34873 An issue was discovered in Mbed TLS 3.5.0 through 4.0.0. Client impersonation can occur while resuming a TLS 1.3 session. Tuesday May 19th, 2026
CVE-2025-66442 In Mbed TLS through 4.0.0, there is a compiler-induced timing side channel (in RSA and CBC/ECB decryption) that only occurs with LLVM's select-optimize feature. TF-PSA-Crypto through 1.0.0 is also affected. Tuesday May 19th, 2026
CVE-2026-42011 Gnutls: gnutls: security bypass due to incorrect name constraint handling Tuesday May 19th, 2026
CVE-2026-25835 Mbed TLS before 3.6.6 and TF-PSA-Crypto before 1.1.0 misuse seeds in a Pseudo-Random Number Generator (PRNG). Tuesday May 19th, 2026
CVE-2026-34876 An issue was discovered in Mbed TLS 3.x before 3.6.6. An out-of-bounds read vulnerability in mbedtls_ccm_finish() in library/ccm.c allows attackers to obtain adjacent CCM context data via invocation of the multipart CCM API with an oversized tag_len parameter. This is caused by missing validation of the tag_len parameter against the size of the internal 16-byte authentication buffer. The issue affects the public multipart CCM API in Mbed TLS 3.x, where mbedtls_ccm_finish() can be invoked directly by applications. In Mbed TLS 4.x versions prior to the fix, the same missing validation exists in the internal implementation; however, the function is not exposed as part of the public API. Exploitation requires application-level invocation of the multipart CCM API. Tuesday May 19th, 2026
CVE-2026-34874 An issue was discovered in Mbed TLS through 3.6.5 and 4.x through 4.0.0. There is a NULL pointer dereference in distinguished name parsing that allows an attacker to write to address 0. Tuesday May 19th, 2026
CVE-2026-3833 Gnutls: gnutls: policy bypass due to case-sensitive nameconstraints comparison Tuesday May 19th, 2026
CVE-2026-43267 wifi: rtw89: fix potential zero beacon interval in beacon tracking Tuesday May 19th, 2026
CVE-2026-43213 wifi: rtw89: pci: validate sequence number of TX release report Tuesday May 19th, 2026
CVE-2025-71272 most: core: fix resource leak in most_register_interface error paths Tuesday May 19th, 2026
CVE-2026-43219 net: cpsw_new: Fix potential unregister of netdev that has not been registered yet Tuesday May 19th, 2026
CVE-2026-43185 ksmbd: fix signededness bug in smb_direct_prepare_negotiation() Tuesday May 19th, 2026
CVE-2026-6210 Type confusion and heap-buffer-overflow in Qt SVG marker handling causing application crash Tuesday May 19th, 2026
CVE-2026-43176 wifi: rtw89: pci: validate release report content before using for RTL8922DE Tuesday May 19th, 2026
CVE-2026-39817 Invoking "go tool pack" does not sanitize output paths in cmd/go Tuesday May 19th, 2026
CVE-2026-39819 Invoking "go bug" follows symlinks in predictable temporary filenames in cmd/go Tuesday May 19th, 2026
CVE-2026-40170 ngtcp2 has a qlog transport parameter serialization stack buffer overflow Tuesday May 19th, 2026
CVE-2026-39823 Bypass of meta content URL escaping causes XSS in html/template Tuesday May 19th, 2026
CVE-2026-39825 ReverseProxy forwards queries with more than urlmaxqueryparams parameters in net/http/httputil Tuesday May 19th, 2026
CVE-2026-34757 LIBPNG has a yse-after-free in png_set_PLTE, png_set_tRNS and png_set_hIST leading to corrupted chunk data and potential heap information disclosure Tuesday May 19th, 2026
CVE-2026-39836 Panic in Dial and LookupPort when handling NUL byte on Windows in net Tuesday May 19th, 2026
CVE-2026-33814 Infinite loop in HTTP/2 transport when given bad SETTINGS_MAX_FRAME_SIZE in net/http/internal/http2 in golang.org/x/net Tuesday May 19th, 2026
CVE-2025-8224 GNU Binutils BFD Library elf.c bfd_elf_get_str_section null pointer dereference Tuesday May 19th, 2026
CVE-2026-31702 f2fs: fix use-after-free of sbi in f2fs_compress_write_end_io() Tuesday May 19th, 2026
CVE-2026-31704 ksmbd: use check_add_overflow() to prevent u16 DACL size overflow Tuesday May 19th, 2026
CVE-2026-31721 usb: gadget: f_hid: move list and spinlock inits from bind to alloc Tuesday May 19th, 2026
CVE-2026-31715 f2fs: fix UAF caused by decrementing sbi->nr_pages[] in f2fs_write_end_io() Tuesday May 19th, 2026
CVE-2026-31729 usb: typec: ucsi: validate connector number in ucsi_notify_common() Tuesday May 19th, 2026
CVE-2026-31722 usb: gadget: f_rndis: Fix net_device lifecycle with device_move Tuesday May 19th, 2026
CVE-2026-31723 usb: gadget: f_subset: Fix net_device lifecycle with device_move Tuesday May 19th, 2026
CVE-2026-3087 shutil.unpack_archive() doesn't check for Windows absolute paths in ZIPs Tuesday May 19th, 2026
CVE-2026-6357 pip self-update functionality can import newly installed modules after wheel installation Tuesday May 19th, 2026
CVE-2026-45186 In libexpat before 2.8.1, the computational complexity of attribute name collision checks allows a denial of service via moderately sized crafted XML input. Tuesday May 19th, 2026
CVE-2026-42246 net-imap vulnerable to STARTTLS stripping via invalid response timing Tuesday May 19th, 2026
CVE-2026-42256 net-imap: Denial of service via high iteration count for `SCRAM-*` authentication Tuesday May 19th, 2026
CVE-2026-42257 net-imap: Command Injection via "raw" arguments to multiple commands Tuesday May 19th, 2026
CVE-2026-37459 An integer underflow in FRRouting (FRR) stable/10.0 to stable/10.6 allows attackers to cause a Denial of Service (DoS) via supplying a crafted BGP UPDATE message. Tuesday May 19th, 2026
CVE-2026-37458 Missing input validation in the MP_REACH_NLRI component of FRRouting (FRR) stable/10.0 to stable/10.6 allows authenticated attackers to cause a Denial of Service (DoS) via supplying a crafted UPDATE message. Tuesday May 19th, 2026
CVE-2026-28808 ScriptAlias CGI targets bypass directory auth in inets httpd (mod_auth vs mod_cgi path mismatch) Tuesday May 19th, 2026
CVE-2026-41080 libexpat before 2.8.0 uses insufficient entropy, and thus hash flooding can occur via a crafted XML document. Tuesday May 19th, 2026
CVE-2026-43310 media: verisilicon: Avoid G2 bus error while decoding H.264 and HEVC Tuesday May 19th, 2026
CVE-2026-6473 PostgreSQL server undersizes allocations, via integer wraparound Tuesday May 19th, 2026
CVE-2026-6477 PostgreSQL libpq lo_* functions let server superuser overwrite client stack memory Tuesday May 19th, 2026
CVE-2025-1176 GNU Binutils ld elflink.c _bfd_elf_gc_mark_rsec heap-based overflow Tuesday May 19th, 2026
CVE-2026-42822 Azure Local Disconnected Operations (ALDO) Elevation of Privilege Vulnerability Monday May 18th, 2026
CVE-2026-43308 btrfs: don't BUG() on unexpected delayed ref type in run_one_delayed_ref() Monday May 18th, 2026
CVE-2026-8328 FTP PASV SSRF, ftpcp() does not use actual peer address, trusts server-supplied PASV host address Sunday May 17th, 2026
CVE-2026-8368 LWP::UserAgent versions before 6.83 for Perl leak Authorization and Proxy-Authorization headers on cross-origin redirects Sunday May 17th, 2026
CVE-2026-7210 The expat and elementtree parsers use insufficient entropy for XML hash-flooding protection Sunday May 17th, 2026
CVE-2026-44283 etcd: Read access via PrevKv in etcd transactions may bypass RBAC authorization checks Sunday May 17th, 2026
CVE-2026-46483 Vim: Command injection in tar#Vimuntar via missing shellescape {special} flag Sunday May 17th, 2026
CVE-2026-44662 rust-openssl: Heap buffer overflow when encrypting with AES key-wrap-with-padding Saturday May 16th, 2026
CVE-2026-44431 urllib3: Sensitive headers forwarded across origins in proxied low-level redirects Saturday May 16th, 2026
CVE-2026-42946 NGINX ngx_http_scgi_module and ngx_http_uwsgi_module vulnerability Saturday May 16th, 2026
CVE-2026-6479 PostgreSQL SSL/GSS init causes denial of service, via uncontrolled recursion Saturday May 16th, 2026
CVE-2026-6477 PostgreSQL libpq lo_* functions let server superuser overwrite client stack memory Saturday May 16th, 2026
CVE-2026-6637 PostgreSQL refint allows stack buffer overflow and SQL injection Saturday May 16th, 2026
CVE-2026-6472 PostgreSQL CREATE TYPE does not check multirange schema CREATE privilege Saturday May 16th, 2026
CVE-2026-6475 PostgreSQL pg_basebackup and pg_rewind can overwrite unrelated files of origin superuser choice Saturday May 16th, 2026
CVE-2026-6638 PostgreSQL REFRESH PUBLICATION allows SQL injection via table name Saturday May 16th, 2026
CVE-2026-6473 PostgreSQL server undersizes allocations, via integer wraparound Saturday May 16th, 2026
CVE-2026-6478 PostgreSQL discloses MD5-hashed passwords via covert timing channel Saturday May 16th, 2026
CVE-2026-44673 libyang: lyb_read_string() integer overflow โ heap buffer overflow Saturday May 16th, 2026
CVE-2026-32161 Windows Native WiFi Miniport Driver Remote Code Execution Vulnerability Friday May 15th, 2026
CVE-2026-33814 Infinite loop in HTTP/2 transport when given bad SETTINGS_MAX_FRAME_SIZE in net/http/internal/http2 in golang.org/x/net Friday May 15th, 2026
CVE-2026-29181 OpenTelemetry-Go multi-value `baggage` header extraction causes excessive allocations (remote dos amplification) Friday May 15th, 2026
CVE-2026-43968 CR Injection in SSE Encoder Enables Event Splitting via cow_sse:event/1 Friday May 15th, 2026
CVE-2026-7790 Unbounded chunk-size hex digits in cowlib cause quadratic CPU and memory DoS Friday May 15th, 2026
CVE-2026-43969 Cookie Request Header Injection via Unvalidated Encoder in cow_cookie:cookie/1 Friday May 15th, 2026
CVE-2026-7210 The expat and elementtree parsers use insufficient entropy for XML hash-flooding protection Friday May 15th, 2026
CVE-2026-34956 Openvswitch: open vswitch: denial of service via malformed ftp epasv command Friday May 15th, 2026
CVE-2026-42011 Gnutls: gnutls: security bypass due to incorrect name constraint handling Friday May 15th, 2026
CVE-2026-42010 Gnutls: gnutls: authentication bypass via nul character in username Friday May 15th, 2026
CVE-2026-42304 Twisted: Denial of Service (DoS) in twisted.names via Crafted DNS Compression Pointer Chains Friday May 15th, 2026
CVE-2026-42833 Microsoft Dynamics 365 On-Premises Remote Code Execution Vulnerability Wednesday May 13th, 2026
CVE-2026-42898 Microsoft Dynamics 365 On-Premises Remote Code Execution Vulnerability Wednesday May 13th, 2026
CVE-2026-42898 Microsoft Dynamics 365 On-Premises Remote Code Execution Vulnerability Wednesday May 13th, 2026
CVE-2026-6667 PgBouncer missing authorization check in KILL_CLIENT admin command Wednesday May 13th, 2026
CVE-2026-6664 PgBouncer integer overflow in PgBouncer network packet parsing Wednesday May 13th, 2026
CVE-2026-41603 Apache Thrift: Java TSSLTransportFactory hostname verification Wednesday May 13th, 2026
CVE-2025-48431 Apache Thrift: Specially crafted input can crash a c_glib Thrift server with invalid pointer error. Wednesday May 13th, 2026
CVE-2026-42151 Prometheus Azure AD remote write OAuth client secret exposed via config API Wednesday May 13th, 2026
CVE-2026-42154 Prometheus: remote read endpoint allows denial of service via crafted snappy payload Wednesday May 13th, 2026
CVE-2026-6210 Type confusion and heap-buffer-overflow in Qt SVG marker handling causing application crash Wednesday May 13th, 2026
CVE-2026-39817 Invoking "go tool pack" does not sanitize output paths in cmd/go Wednesday May 13th, 2026
CVE-2026-8177 XML::LibXML versions through 2.0210 for Perl read out-of-bounds heap memory when parsing XML node names containing truncated UTF-8 byte sequences Wednesday May 13th, 2026
CVE-2026-42501 Malicious module proxy can bypass checksum database in cmd/go Wednesday May 13th, 2026
CVE-2026-39819 Invoking "go bug" follows symlinks in predictable temporary filenames in cmd/go Wednesday May 13th, 2026
CVE-2026-39823 Bypass of meta content URL escaping causes XSS in html/template Wednesday May 13th, 2026
CVE-2026-39820 Quadratic string concatentation in consumeComment in net/mail Wednesday May 13th, 2026
CVE-2026-39825 ReverseProxy forwards queries with more than urlmaxqueryparams parameters in net/http/httputil Wednesday May 13th, 2026
CVE-2026-39836 Panic in Dial and LookupPort when handling NUL byte on Windows in net Wednesday May 13th, 2026
CVE-2026-33814 Infinite loop in HTTP/2 transport when given bad SETTINGS_MAX_FRAME_SIZE in net/http/internal/http2 in golang.org/x/net Wednesday May 13th, 2026
CVE-2026-31767 drm/i915/dsi: Don't do DSC horizontal timing adjustments in command mode Wednesday May 13th, 2026
CVE-2026-41256 jq: Embedded NUL truncates top-level jq programs loaded with -f Wednesday May 13th, 2026
CVE-2026-43895 jq: Embedded NUL in jq import paths causes local redaction-policy bypass and preserves sensitive fields in published artifacts Wednesday May 13th, 2026
CVE-2026-43894 jq: Wild stack write via signed-integer overflow in decNumber D2U() macro Wednesday May 13th, 2026
CVE-2026-33838 Windows Message Queuing (MSMQ) Elevation of Privilege Vulnerability Tuesday May 12th, 2026
CVE-2026-34340 Windows Projected File System Elevation of Privilege Vulnerability Tuesday May 12th, 2026
CVE-2026-34337 Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability Tuesday May 12th, 2026
CVE-2026-34339 Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability Tuesday May 12th, 2026
CVE-2026-34341 Windows Link-Layer Discovery Protocol (LLDP) Elevation of Privilege Vulnerability Tuesday May 12th, 2026
CVE-2026-40357 Microsoft SharePoint Server Remote Code Execution Vulnerability Tuesday May 12th, 2026
CVE-2026-33835 Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability Tuesday May 12th, 2026
CVE-2026-33112 Microsoft SharePoint Server Remote Code Execution Vulnerability Tuesday May 12th, 2026
CVE-2026-33110 Microsoft SharePoint Server Remote Code Execution Vulnerability Tuesday May 12th, 2026
CVE-2026-42898 Microsoft Dynamics 365 On-Premises Remote Code Execution Vulnerability Tuesday May 12th, 2026
CVE-2026-32161 Windows Native WiFi Miniport Driver Remote Code Execution Vulnerability Tuesday May 12th, 2026
CVE-2026-40420 Microsoft Office Click-To-Run Elevation of Privilege Vulnerability Tuesday May 12th, 2026
CVE-2026-42833 Microsoft Dynamics 365 On-Premises Remote Code Execution Vulnerability Tuesday May 12th, 2026
CVE-2026-42830 Azure Monitor Agent Metrics Extension Elevation of Privilege Vulnerability Tuesday May 12th, 2026
CVE-2026-41103 Microsoft SSO Plugin for Jira & Confluence Elevation of Privilege Vulnerability Tuesday May 12th, 2026
CVE-2026-40381 Azure Connected Machine Agent Elevation of Privilege Vulnerability Tuesday May 12th, 2026
CVE-2026-41086 Windows Admin Center in Azure Portal Elevation of Privilege Vulnerability Tuesday May 12th, 2026
CVE-2026-35436 Microsoft Office Click-To-Run Elevation of Privilege Vulnerability Tuesday May 12th, 2026
CVE-2026-40418 Microsoft Office Click-To-Run Elevation of Privilege Vulnerability Tuesday May 12th, 2026
CVE-2026-40398 Windows Remote Desktop Services Elevation of Privilege Vulnerability Tuesday May 12th, 2026
CVE-2026-32209 Windows Filtering Platform (WFP) Security Feature Bypass Vulnerability Tuesday May 12th, 2026
CVE-2026-40397 Windows Common Log File System Driver Elevation of Privilege Vulnerability Tuesday May 12th, 2026
CVE-2026-40365 Microsoft SharePoint Server Remote Code Execution Vulnerability Tuesday May 12th, 2026
CVE-2026-34344 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability Tuesday May 12th, 2026
CVE-2026-35418 Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability Tuesday May 12th, 2026
CVE-2026-35416 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability Tuesday May 12th, 2026
CVE-2026-35415 Windows Storage Spaces Controller Elevation of Privilege Vulnerability Tuesday May 12th, 2026
CVE-2026-34350 Windows Storport Miniport Driver Denial of Service Vulnerability Tuesday May 12th, 2026
CVE-2026-34345 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability Tuesday May 12th, 2026
CVE-2026-34343 Windows Application Identity (AppID) Subsystem Elevation of Privilege Vulnerability Tuesday May 12th, 2026
CVE-2026-35424 Internet Key Exchange (IKE) Protocol Denial of Service Vulnerability Tuesday May 12th, 2026
CVE-2026-34329 Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability Tuesday May 12th, 2026
CVE-2026-33834 Windows Event Logging Service Elevation of Privilege Vulnerability Tuesday May 12th, 2026
CVE-2026-41088 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability Tuesday May 12th, 2026
CVE-2026-40419 Microsoft Office Click-To-Run Elevation of Privilege Vulnerability Tuesday May 12th, 2026
CVE-2026-40417 Microsoft Dynamics 365 Business Central Elevation of Privilege Vulnerability Tuesday May 12th, 2026
CVE-2026-40407 Windows Common Log File System Driver Elevation of Privilege Vulnerability Tuesday May 12th, 2026
CVE-2026-35439 Microsoft SharePoint Server Remote Code Execution Vulnerability Tuesday May 12th, 2026
CVE-2026-40368 Microsoft SharePoint Server Remote Code Execution Vulnerability Tuesday May 12th, 2026
CVE-2026-40374 Microsoft Power Automate Desktop Information Disclosure Vulnerability Tuesday May 12th, 2026
CVE-2026-40377 Microsoft Cryptographic Services Elevation of Privilege Vulnerability Tuesday May 12th, 2026
CVE-2026-40380 Windows Volume Manager Extension Driver Remote Code Execution Vulnerability Tuesday May 12th, 2026
CVE-2026-29181 OpenTelemetry-Go multi-value `baggage` header extraction causes excessive allocations (remote dos amplification) Tuesday May 12th, 2026
CVE-2026-39882 OpenTelemetry-Go OTLP HTTP exporters read unbounded HTTP response bodies Tuesday May 12th, 2026
CVE-2026-43500 rxrpc: Also unshare DATA/RESPONSE packets when paged frags are present Tuesday May 12th, 2026