Search

Found 5,388 results in 699ms · Match type: Filtered list

0
KEVHas exploit
Reset
CVE Severity CVSS Risk Flags OS Vendor Published Description
CVE-2026-6757 high 8.0 FIX rheldebian debian rocky 1mo ago Invalid pointer in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10.
CVE-2026-6754 high 8.0 FIX rheldebian debian rocky 1mo ago Use-after-free in the JavaScript Engine component. This vulnerability was fixed in Firefox 150, Firefox ESR 115.35, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10.
CVE-2026-6753 high 8.0 FIX rheldebian debian rocky 1mo ago Incorrect boundary conditions in the WebRTC component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10.
CVE-2026-6752 high 8.0 FIX rheldebian debian rocky 1mo ago Incorrect boundary conditions in the WebRTC component. This vulnerability was fixed in Firefox 150, Firefox ESR 115.35, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10.
CVE-2026-6751 high 8.0 FIX rheldebian debian rocky 1mo ago Uninitialized memory in the Audio/Video: Web Codecs component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10.
CVE-2026-6750 high 8.0 FIX rheldebian debian rocky 1mo ago Privilege escalation in the Graphics: WebRender component. This vulnerability was fixed in Firefox 150, Firefox ESR 115.35, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10.
CVE-2026-6749 high 8.0 FIX rheldebian debian rocky 1mo ago Information disclosure due to uninitialized memory in the Graphics: Canvas2D component. This vulnerability was fixed in Firefox 150, Firefox ESR 115.35, Firefox ESR 140.10, Thunderbird 150, and Thund…
CVE-2026-6748 high 8.0 FIX rheldebian debian rocky 1mo ago Uninitialized memory in the Audio/Video: Web Codecs component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10.
CVE-2026-6747 high 8.0 FIX rheldebian debian rocky 1mo ago Use-after-free in the WebRTC component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10.
CVE-2026-6746 high 8.0 FIX rheldebian debian rocky 1mo ago Use-after-free in the DOM: Core & HTML component. This vulnerability was fixed in Firefox 150, Firefox ESR 115.35, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10.
CVE-2026-6100 high 8.0 FIX rhel slesdebian debian 1mo ago Use-after-free (UAF) was possible in the `lzma.LZMADecompressor`, `bz2.BZ2Decompressor`, and `gzip.GzipFile` when a memory allocation fails with a `MemoryError` and the decompression instance is re-u…
CVE-2026-5201 high 7.5 7.5 FIX rheldebian debian sles gnome 1mo ago Important: gdk-pixbuf2 security update
CVE-2026-4800 critical 9.8 9.8 FIX rheldebian debian rocky lodash 1mo ago Important: pcs security update
CVE-2026-4786 high 8.0 FIX rheldebian debian sles 1mo ago Mitgation of CVE-2026-4519 was incomplete. If the URL contained "%action" the mitigation could be bypassed for certain browser types the "webbrowser.open()" API could have commands injected into the …
CVE-2026-34352 high 8.5 8.5 FIX rhel slesdebian debian tigervnc 1mo ago In TigerVNC before 1.16.2, Image.cxx in x0vncserver allows other users to observe or manipulate the screen contents, or cause an application crash, because of incorrect permissions.
CVE-2026-34003 high 7.8 7.8 FIX rhel sles rocky 1mo ago A flaw was found in the X.Org X server's XKB key types request validation. A local attacker could send a specially crafted request to the X server, leading to an out-of-bounds memory access vulnerabi…
CVE-2026-34001 high 7.8 7.8 FIX rhel sles rocky 1mo ago A flaw was found in the X.Org X server. This use-after-free vulnerability occurs in the XSYNC fence triggering logic, specifically within the miSyncTriggerFence() function. An attacker with access to…
CVE-2026-33999 high 7.8 7.8 FIX rhel sles rocky 1mo ago A flaw was found in the X.Org X server. This integer underflow vulnerability, specifically in the XKB compatibility map handling, allows an attacker with local or remote X11 server access to trigger …
CVE-2026-33186 high 8.0 FIX rheldebian debian sles google 1mo ago RHSA-2026:22714: osbuild-composer security update (Important)
CVE-2026-31685 critical 9.4 9.4 FIX sles rheldebian debian 1mo ago In the Linux kernel, the following vulnerability has been resolved: netfilter: ip6t_eui64: reject invalid MAC header for all packets `eui64_mt6()` derives a modified EUI-64 from the Ethernet source…
CVE-2026-34986 high 7.5 7.5 FIX rheldebian debian sles go-jose_projectgoogle 1mo ago RHSA-2026:22714: osbuild-composer security update (Important)
CVE-2026-34282 high 8.0 FIX rhel slesdebian debian 1mo ago RHSA-2026:9689: java-21-openjdk security update (Important)
CVE-2026-34268 high 8.0 FIX rhel slesdebian debian 1mo ago RHSA-2026:22139: java-1.8.0-ibm security update (Important)
CVE-2026-32283 high 8.0 FIX rheldebian debian sles google 1mo ago RHSA-2026:22714: osbuild-composer security update (Important)
CVE-2026-32282 high 8.0 FIX rheldebian debian sles google 1mo ago RHSA-2026:22714: osbuild-composer security update (Important)
CVE-2026-32280 high 8.0 FIX rheldebian debian sles google 1mo ago Unexpected work during chain building in crypto/x509
CVE-2026-27877 high 7.5 7.5 FIX rhel sles rocky grafana 1mo ago Important: grafana security update
CVE-2026-27144 high 8.0 FIX rheldebian debian sles google 1mo ago RHSA-2026:10704: go-toolset:rhel8 security update (Important)
CVE-2026-27143 high 8.0 FIX rheldebian debian sles google 1mo ago RHSA-2026:10704: go-toolset:rhel8 security update (Important)
CVE-2026-27140 high 8.0 FIX rheldebian debian sles google 1mo ago RHSA-2026:10704: go-toolset:rhel8 security update (Important)
CVE-2026-22021 high 8.0 FIX rhel slesdebian debian 1mo ago RHSA-2026:22139: java-1.8.0-ibm security update (Important)
CVE-2026-22020 high 8.0 FIX debian debian rhel 1mo ago RHSA-2026:9686: java-17-openjdk security update (Important)
CVE-2026-22018 high 8.0 FIX rhel slesdebian debian 1mo ago RHSA-2026:22139: java-1.8.0-ibm security update (Important)
CVE-2026-22016 high 8.0 FIX rhel slesdebian debian 1mo ago RHSA-2026:22139: java-1.8.0-ibm security update (Important)
CVE-2026-22013 high 8.0 FIX rhel slesdebian debian 1mo ago RHSA-2026:22139: java-1.8.0-ibm security update (Important)
CVE-2026-22007 high 8.0 FIX rhel slesdebian debian 1mo ago RHSA-2026:22139: java-1.8.0-ibm security update (Important)
CVE-2026-6732 high 7.5 7.5 debian debian sles rhel xmlsoftredhatgoogle 1mo ago A flaw was found in libxml2. This vulnerability occurs when the library processes a specially crafted XML Schema Definition (XSD) validated document that includes an internal entity reference. An att…
CVE-2026-6846 high 7.8 7.8 debian debian sles rhel gnuredhat 1mo ago A flaw was found in binutils. A heap-buffer-overflow vulnerability exists when processing a specially crafted XCOFF (Extended Common Object File Format) object file during linking. A local attacker c…
CVE-2026-26740 high 8.0 FIX rheldebian debian sles 1mo ago Buffer Overflow vulnerability in giflib v.5.2.2 allows a remote attacker to cause a denial of service via the EGifGCBToExtension overwriting an existing Graphic Control Extension block without valida…
CVE-2026-22008 high 8.0 FIX rhel slesdebian debian 1mo ago Important: java-25-openjdk security update
CVE-2026-27622 high 8.0 FIX rhel slesdebian debian 2mo ago RHSA-2026:8863: OpenEXR security update (Important)
CVE-2026-5121 high 7.5 7.5 FIX rheldebian debian sles libarchiveredhat 2mo ago Important: libarchive security update
CVE-2026-33116 high 7.5 7.5 rhel linux-kernelmacos macos microsoft 2mo ago Important: .NET 10.0 security update
CVE-2026-32203 high 7.5 7.5 rhel linux-kernelmacos macos microsoft 2mo ago Important: .NET 10.0 security update
CVE-2026-32178 high 7.5 7.5 rhel linux-kernelmacos macos microsoft 2mo ago Important: .NET 10.0 security update
CVE-2026-26171 high 7.5 7.5 rhel linux-kernelmacos macos microsoft 2mo ago Important: .NET 10.0 security update
CVE-2026-6384 high 7.8 7.8 FIX debian debian rhel gimp 2mo ago A flaw was found in gimp. This buffer overflow vulnerability in the GIF image loading component's `ReadJeffsImage` function allows an attacker to write beyond an allocated buffer by processing a spec…
CVE-2026-40917 high 7.1 7.1 FIX debian debian rhel gimp 2mo ago A flaw was found in GIMP. This vulnerability, a heap buffer over-read in the `icns_slurp()` function, occurs when processing specially crafted ICNS image files. An attacker could provide a malicious …
CVE-2026-40915 high 7.8 7.8 FIX debian debian rhel gimp 2mo ago A flaw was found in GIMP. A remote attacker could exploit an integer overflow vulnerability in the FITS image loader by providing a specially crafted FITS file. This integer overflow leads to a zero-…
CVE-2026-33412 high 8.0 FIX rocky rhel sles 2mo ago Important: vim security update
CVE-2026-5734 high 8.0 FIX rhelalmalinux almalinuxdebian debian 2mo ago Memory safety bugs present in Firefox ESR 140.9.0, Thunderbird ESR 140.9.0, Firefox 149.0.1 and Thunderbird 149.0.1. Some of these bugs showed evidence of memory corruption and we presume that with e…
CVE-2026-5732 high 8.0 FIX rhelalmalinux almalinuxdebian debian 2mo ago Incorrect boundary conditions, integer overflow in the Graphics: Text component. This vulnerability was fixed in Firefox 149.0.2, Firefox ESR 140.9.1, Thunderbird 149.0.2, and Thunderbird 140.9.1.
CVE-2026-5731 high 8.0 FIX rhelalmalinux almalinuxdebian debian 2mo ago Memory safety bugs present in Firefox ESR 115.34.0, Firefox ESR 140.9.0, Thunderbird ESR 140.9.0, Firefox 149.0.1 and Thunderbird 149.0.1. Some of these bugs showed evidence of memory corruption and …
CVE-2026-1519 high 7.5 7.5 FIX rheldebian debian sles isc 2mo ago Important: bind security update
CVE-2006-10003 high 8.0 FIX sles rheldebian debian 2mo ago RHSA-2026:7681: perl-XML-Parser security update (Important)
CVE-2006-10002 high 8.0 FIX sles rheldebian debian 2mo ago RHSA-2026:7681: perl-XML-Parser security update (Important)
CVE-2026-4631 critical 10.0 EXPFIX rheldebian debian sles 2mo ago Cockpit's remote login feature passes user-supplied hostnames and usernames from the web interface to the SSH client without validation or sanitization. An attacker with network access to the Cockpit…
CVE-2026-4878 high 7.0 7.0 FIX rheldebian debian sles libcap_projectredhatgoogle 2mo ago A flaw was found in libcap. A local unprivileged user can exploit a Time-of-check-to-time-of-use (TOCTOU) race condition in the `cap_set_file()` function. This allows an attacker with write access to…
CVE-2026-27904 high 8.0 FIX rocky rhel sles 2mo ago RHSA-2026:8339: nodejs:20 security update (Important)
CVE-2026-27135 high 7.5 7.5 FIX rocky rhel sles nghttp2google 2mo ago RHSA-2026:8339: nodejs:20 security update (Important)
CVE-2026-26996 high 8.0 FIX rocky rhel sles 2mo ago RHSA-2026:8339: nodejs:20 security update (Important)
CVE-2026-2581 high 8.0 FIX rheldebian debianalmalinux almalinux 2mo ago RHSA-2026:7670: nodejs:24 security update (Important)
CVE-2026-25547 high 8.0 FIX rocky rhel sles 2mo ago RHSA-2026:7123: nodejs:22 security update (Important)
CVE-2026-2229 high 8.0 FIX rocky rheldebian debian 2mo ago RHSA-2026:7670: nodejs:24 security update (Important)
CVE-2026-21716 high 8.0 FIX rhel slesdebian debian 2mo ago RHSA-2026:7670: nodejs:24 security update (Important)
CVE-2026-21715 high 8.0 FIX rhel slesdebian debian 2mo ago RHSA-2026:7670: nodejs:24 security update (Important)
CVE-2026-21714 high 8.0 FIX rhel slesdebian debian 2mo ago RHSA-2026:7670: nodejs:24 security update (Important)
CVE-2026-21711 high 8.0 FIX rhel slesdebian debian 2mo ago RHSA-2026:7670: nodejs:24 security update (Important)
CVE-2026-21710 high 8.0 FIX rocky rhel sles 2mo ago RHSA-2026:8339: nodejs:20 security update (Important)
CVE-2026-1528 high 8.0 FIX rocky rheldebian debian 2mo ago RHSA-2026:7670: nodejs:24 security update (Important)
CVE-2026-1527 high 8.0 FIX rheldebian debianalmalinux almalinux 2mo ago RHSA-2026:7670: nodejs:24 security update (Important)
CVE-2026-1526 high 8.0 FIX rocky rheldebian debian 2mo ago RHSA-2026:7670: nodejs:24 security update (Important)
CVE-2026-1525 high 8.0 FIX rocky rheldebian debian 2mo ago RHSA-2026:7670: nodejs:24 security update (Important)
CVE-2026-34588 high 8.0 FIX rhel slesdebian debian 2mo ago Important: openexr security update
CVE-2026-28390 high 7.5 7.5 FIX slesdebian debian rhel opensslgoogle 2mo ago Moderate: compat-openssl11 security update
CVE-2026-32647 high 8.0 FIX rhelalmalinux almalinux rocky 2mo ago RHSA-2026:6907: nginx:1.24 security update (Important)
CVE-2026-27784 high 8.0 FIX rhelalmalinux almalinux rocky 2mo ago RHSA-2026:6907: nginx:1.24 security update (Important)
CVE-2026-27654 high 8.0 FIX rhel rocky sles 2mo ago RHSA-2026:6907: nginx:1.24 security update (Important)
CVE-2026-27651 high 8.0 FIX rhel rocky sles 2mo ago RHSA-2026:6907: nginx:1.24 security update (Important)
CVE-2026-5673 high 7.1 7.1 debian debian sles rhel xiph 2mo ago A flaw was found in libtheora. This heap-based out-of-bounds read vulnerability exists within the AVI (Audio Video Interleave) parser, specifically in the avi_parse_input_file() function. A local att…
CVE-2026-31408 high 8.8 8.8 FIX sles rheldebian debian 2mo ago In the Linux kernel, the following vulnerability has been resolved: Bluetooth: SCO: Fix use-after-free in sco_recv_frame() due to missing sock_hold sco_recv_frame() reads conn->sk under sco_conn_lo…
CVE-2026-23231 high 7.8 8.8 EXPFIX rhel slesdebian debian 2mo ago In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: fix use-after-free in nf_tables_addchain() nf_tables_addchain() publishes the chain to table->chains via li…
CVE-2026-23111 high 7.8 7.8 FIX rhel slesdebian debian 2mo ago In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: fix inverted genmask check in nft_map_catchall_activate() nft_map_catchall_activate() has an inverted eleme…
CVE-2025-15270 high 8.0 FIX rheldebian debian sles 2mo ago Important: fontforge security update
CVE-2026-23455 critical 9.1 9.1 FIX sles rheldebian debian 2mo ago In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_conntrack_h323: check for zero length in DecodeQ931() In DecodeQ931(), the UserUserIE code path reads a 16-bit leng…
CVE-2026-4177 high 8.0 FIX debian debian rocky rhel 2mo ago RHSA-2026:6470: perl-YAML-Syck security update (Important)
CVE-2026-3497 high 7.5 7.5 FIX rocky rhel sles canonicalopenbsd 2mo ago Vulnerability in the OpenSSH GSSAPI delta included in various Linux distributions. This vulnerability affects the GSSAPI patches added by various Linux distributions and does not affect the OpenSSH u…
CVE-2026-31806 high 8.0 FIX rocky rheldebian debian 2mo ago RHSA-2026:6918: freerdp security update (Important)
CVE-2026-24684 high 8.0 FIX rocky rheldebian debian 2mo ago RHSA-2026:6918: freerdp security update (Important)
CVE-2026-24683 high 8.0 FIX rocky rheldebian debian 2mo ago RHSA-2026:6918: freerdp security update (Important)
CVE-2026-24681 high 8.0 FIX rocky rheldebian debian 2mo ago RHSA-2026:6918: freerdp security update (Important)
CVE-2026-24679 high 8.0 FIX rocky rheldebian debian 2mo ago RHSA-2026:6918: freerdp security update (Important)
CVE-2026-24676 high 8.0 FIX rocky rheldebian debian 2mo ago RHSA-2026:6918: freerdp security update (Important)
CVE-2026-24675 high 8.0 FIX rocky rheldebian debian 2mo ago RHSA-2026:6918: freerdp security update (Important)
CVE-2026-24491 high 8.0 FIX rocky rheldebian debian 2mo ago RHSA-2026:6918: freerdp security update (Important)
CVE-2026-23948 high 8.0 FIX rocky rheldebian debian 2mo ago RHSA-2026:6918: freerdp security update (Important)
CVE-2026-23732 high 8.0 FIX rocky rheldebian debian 2mo ago RHSA-2026:6918: freerdp security update (Important)
CVE-2026-22856 high 8.0 FIX rocky rheldebian debian 2mo ago RHSA-2026:6918: freerdp security update (Important)
CVE-2026-22854 high 8.0 FIX rocky rheldebian debian 2mo ago RHSA-2026:6918: freerdp security update (Important)
CVE-2026-22852 high 8.0 FIX rocky rheldebian debian 2mo ago RHSA-2026:6918: freerdp security update (Important)