Search

Found 962 results in 1042ms · Match type: Filtered list

0
KEVHas exploit
Reset
CVE Severity CVSS Risk Flags OS Vendor Published Description
CVE-2026-5919 medium 6.5 6.5 FIX debian debian linux-kernelmacos macos google 2mo ago Insufficient validation of untrusted input in WebSockets in Google Chrome prior to 147.0.7727.55 allowed a remote attacker who had compromised the renderer process to bypass same origin policy via a …
CVE-2026-5911 medium 4.3 4.3 FIX debian debian linux-kernelmacos macos google 2mo ago Policy bypass in ServiceWorkers in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to bypass content security policy via a crafted HTML page. (Chromium security severity: Low)
CVE-2026-5890 medium 5.3 5.3 FIX debian debianmacos macos linux-kernel google 2mo ago Race in WebCodecs in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security severit…
CVE-2026-5867 medium 4.3 4.3 FIX debian debian linux-kernelmacos macos google 2mo ago Heap buffer overflow in WebML in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium secu…
CVE-2026-39883 unknown FIX debian debian google 2mo ago OpenTelemetry-Go is the Go implementation of OpenTelemetry. From 1.15.0 to 1.42.0, the fix for CVE-2026-24051 changed the Darwin ioreg command to use an absolute path but left the BSD kenv command us…
CVE-2026-29181 unknown FIX debian debian google 2mo ago OpenTelemetry-Go is the Go implementation of OpenTelemetry. From 1.36.0 to 1.40.0, multi-value baggage: header extraction parses each header field-value independently and aggregates members across va…
CVE-2026-23442 medium 5.5 5.5 FIX slesdebian debian linux-kernel google 2mo ago In the Linux kernel, the following vulnerability has been resolved: ipv6: add NULL checks for idev in SRv6 paths __in6_dev_get() can return NULL when the device has no IPv6 configuration (e.g. MTU …
CVE-2026-5273 medium 6.3 6.3 FIX debian debianmacos macos linux-kernel google 2mo ago Use after free in CSS in Google Chrome prior to 146.0.7680.178 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
CVE-2026-23399 medium 5.5 5.5 FIX slesdebian debian linux-kernel google 2mo ago In the Linux kernel, the following vulnerability has been resolved: nf_tables: nft_dynset: fix possible stateful expression memleak in error path If cloning the second stateful expression in the el…
CVE-2026-33997 unknown FIX debian debian sles google 2mo ago Moby is an open source container framework. Prior to version 29.3.1, a security vulnerability has been detected that allows plugins privilege validation to be bypassed during docker plugin install. D…
CVE-2026-33871 unknown slesdebian debian google 2mo ago Netty HTTP/2 CONTINUATION Frame Flood DoS via Zero-Byte Frame Bypass
CVE-2026-33870 unknown slesdebian debian google 2mo ago Netty: HTTP Request Smuggling via Chunked Extension Quoted-String Parsing
CVE-2026-23302 medium 4.7 4.7 FIX slesdebian debian linux-kernel google 2mo ago In the Linux kernel, the following vulnerability has been resolved: net: annotate data-races around sk->sk_{data_ready,write_space} skmsg (and probably other layers) are changing these pointers whi…
CVE-2026-33176 medium 5.5 FIX slesdebian debian google 2mo ago Active Support is a toolkit of support libraries and Ruby core extensions extracted from the Rails framework. Prior to versions 8.1.2.1, 8.0.4.1, and 7.2.3.1, Active Support number helpers accept str…
CVE-2026-33170 medium 5.5 FIX slesdebian debian google 2mo ago Active Support is a toolkit of support libraries and Ruby core extensions extracted from the Rails framework. Prior to versions 8.1.2.1, 8.0.4.1, and 7.2.3.1, `SafeBuffer#%` does not propagate the `@…
CVE-2026-33169 medium 5.5 FIX slesdebian debian google 2mo ago Active Support is a toolkit of support libraries and Ruby core extensions extracted from the Rails framework. `NumberToDelimitedConverter` uses a lookahead-based regular expression with `gsub!` to in…
CVE-2026-23277 medium 5.5 5.5 FIX slesdebian debian linux-kernel google 3mo ago In the Linux kernel, the following vulnerability has been resolved: net/sched: teql: fix NULL pointer dereference in iptunnel_xmit on TEQL slave xmit teql_master_xmit() calls netdev_start_xmit(skb,…
CVE-2026-23255 medium 5.5 5.5 FIX slesdebian debian linux-kernel google 3mo ago In the Linux kernel, the following vulnerability has been resolved: net: add proper RCU protection to /proc/net/ptype Yin Fengwei reported an RCU stall in ptype_seq_show() and provided a patch. Re…
CVE-2026-24734 unknown FIX slesdebian debian google 4mo ago Improper Input Validation vulnerability in Apache Tomcat Native, Apache Tomcat. When using an OCSP responder, Tomcat Native (and Tomcat's FFM port of the Tomcat Native code) did not complete verific…
CVE-2026-0915 medium 5.5 FIX rocky rheldebian debian google 4mo ago RHSA-2026:4772: glibc security update (Moderate)
CVE-2026-0861 medium 5.5 FIX rheldebian debian sles google 4mo ago Moderate: glibc security update
CVE-2025-15281 medium 5.5 FIX rocky rheldebian debian google 4mo ago RHSA-2026:4772: glibc security update (Moderate)
CVE-2026-23157 medium 5.5 5.5 FIX slesdebian debian linux-kernel google 4mo ago In the Linux kernel, the following vulnerability has been resolved: btrfs: do not strictly require dirty metadata threshold for metadata writepages [BUG] There is an internal report that over 1000 …
CVE-2025-40135 medium 5.5 FIX rocky rhel sles google 4mo ago In the Linux kernel, the following vulnerability has been resolved: ipv6: use RCU in ip6_xmit() Use RCU in ip6_xmit() in order to use dst_dev_rcu() to prevent possible UAF.
CVE-2026-24051 unknown FIX debian debian google 4mo ago OpenTelemetry-Go is the Go implementation of OpenTelemetry. The OpenTelemetry Go SDK in version v1.20.0-1.39.0 is vulnerable to Path Hijacking (Untrusted Search Paths) on macOS/Darwin systems. The re…
CVE-2025-71161 medium 5.5 5.5 FIX slesdebian debian linux-kernel google 4mo ago In the Linux kernel, the following vulnerability has been resolved: dm-verity: disable recursive forward error correction There are two problems with the recursive correction: 1. It may cause deni…
CVE-2025-68239 unknown FIX slesdebian debian google 6mo ago In the Linux kernel, the following vulnerability has been resolved: binfmt_misc: restore write access before closing files opened by open_exec() bm_register_write() opens an executable file using o…
CVE-2025-22116 medium 5.5 FIX rhel slesdebian debian google 7mo ago In the Linux kernel, the following vulnerability has been resolved: idpf: check error for register_netdev() on init Current init logic ignores the error code from register_netdev(), which will caus…
CVE-2025-48913 unknown google 10mo ago Apache CXF: Untrusted JMS configuration can lead to RCE
CVE-2024-12798 unknown slesdebian debian google 2y ago QOS.CH logback-core Expression Language Injection vulnerability
CVE-2023-6460 medium 5.5 5.5 google 3y ago Logging of the firestore key within nodejs-firestore
CVE-2023-2976 unknown FIX slesdebian debian google 3y ago Guava vulnerable to insecure use of temporary directory
CVE-2022-40897 medium 5.5 FIX rhel rocky sles google 3y ago RHSA-2024:2987: python27:2.7 security update (Moderate)
CVE-2022-2160 medium 6.5 6.5 FIX debian debianfedora fedora google 4y ago Insufficient policy enforcement in DevTools in Google Chrome on Windows prior to 103.0.5060.53 allowed an attacker who convinced a user to install a malicious extension to obtain potentially sensitiv…
CVE-2020-8908 unknown FIX slesdebian debian google 5y ago Information Disclosure in Guava
CVE-2017-5120 medium 6.5 6.5 FIX arch archmacos macos linux-kernel google 9y ago multiple issues in chromium
CVE-2017-5119 medium 4.3 4.3 FIX arch archdebian debian google 9y ago multiple issues in chromium
CVE-2017-5118 medium 4.3 4.3 FIX arch arch rhelmacos macos google 9y ago multiple issues in chromium
CVE-2017-5117 medium 6.5 6.5 FIX arch arch linux-kerneldebian debian google 9y ago multiple issues in chromium
CVE-2017-5110 medium 6.5 6.5 FIX arch arch rhelmacos macos google 9y ago multiple issues in chromium
CVE-2017-5109 medium 4.3 4.3 FIX arch arch rhelmacos macos google 9y ago multiple issues in chromium
CVE-2017-5107 medium 5.3 5.3 FIX arch arch rhelmacos macos google 9y ago multiple issues in chromium
CVE-2017-5106 medium 6.5 6.5 FIX arch arch rhelmacos macos google 9y ago multiple issues in chromium
CVE-2017-5105 medium 6.5 6.5 FIX arch arch rhelmacos macos google 9y ago multiple issues in chromium
CVE-2017-5104 medium 6.5 6.5 FIX arch arch rhelmacos macos google 9y ago multiple issues in chromium
CVE-2017-5103 medium 4.3 4.3 FIX arch archmacos macos linux-kernel google 9y ago multiple issues in chromium
CVE-2017-5102 medium 4.3 4.3 FIX arch arch rhelmacos macos google 9y ago multiple issues in chromium
CVE-2017-5101 medium 6.5 6.5 FIX arch arch rhelmacos macos google 9y ago multiple issues in chromium
CVE-2017-5096 medium 4.3 4.3 google 9y ago Insufficient policy enforcement during navigation between different schemes in Google Chrome prior to 60.0.3112.78 for Android allowed a remote attacker to perform cross origin content download via a…
CVE-2017-5094 medium 6.5 6.5 FIX arch arch rhelmacos macos google 9y ago multiple issues in chromium
CVE-2017-5093 medium 6.5 6.5 FIX arch arch rhelmacos macos google 9y ago multiple issues in chromium
CVE-2017-5090 medium 6.5 6.5 macos macos google 9y ago Insufficient Policy Enforcement in Omnibox in Google Chrome prior to 59.0.3071.115 for Mac allowed a remote attacker to perform domain spoofing via a crafted domain name containing a U+0620 character…
CVE-2017-5089 medium 6.5 6.5 FIX arch arch rhelmacos macos google 9y ago multiple issues in chromium
CVE-2017-5086 medium 6.5 6.5 FIX arch archmacos macos rhel google 9y ago multiple issues in chromium
CVE-2017-5083 medium 4.3 4.3 FIX arch arch rhelmacos macos google 9y ago multiple issues in chromium
CVE-2017-5082 medium 5.5 5.5 FIX arch arch google 9y ago multiple issues in chromium
CVE-2017-5079 medium 4.3 4.3 FIX arch arch rhelmacos macos google 9y ago multiple issues in chromium
CVE-2017-5076 medium 6.5 6.5 FIX arch arch rhelmacos macos google 9y ago multiple issues in chromium
CVE-2017-5075 medium 4.3 4.3 FIX arch arch rhelmacos macos google 9y ago multiple issues in chromium
CVE-2017-5072 medium 6.5 6.5 FIX arch arch google 9y ago multiple issues in chromium
CVE-2017-5071 medium 6.3 6.3 FIX arch arch rhelmacos macos google 9y ago multiple issues in chromium
CVE-2017-5069 medium 6.1 6.1 FIX arch arch rhelmacos macos google 9y ago multiple issues in chromium
CVE-2017-5067 medium 6.5 6.5 FIX arch arch rhel linux-kernel google 9y ago multiple issues in chromium
CVE-2017-5066 medium 6.5 6.5 FIX arch arch rhel linux-kernel google 9y ago multiple issues in chromium
CVE-2017-5065 medium 4.7 4.7 FIX arch arch rhelmacos macos google 9y ago multiple issues in chromium
CVE-2017-5061 medium 5.3 5.3 FIX arch arch rhel linux-kernel google 9y ago multiple issues in chromium
CVE-2017-5060 medium 6.5 6.5 FIX arch arch rhel linux-kernel google 9y ago multiple issues in chromium
CVE-2015-1239 medium 6.5 6.5 FIX slesdebian debian uclouvaingoogle 9y ago Double free vulnerability in the j2k_read_ppm_v3 function in OpenJPEG before r2997, as used in PDFium in Google Chrome, allows remote attackers to cause a denial of service (process crash) via a craf…
CVE-2015-1206 medium 5.5 5.5 google 9y ago Heap-based buffer overflow in Google Chrome before M40 allows remote attackers to cause a denial of service (unpaged memory write and process crash) via a crafted MP4 file.
CVE-2015-1207 medium 6.5 6.5 FIX debian debian google 9y ago Double-free vulnerability in libavformat/mov.c in FFMPEG in Google Chrome 41.0.2251.0 allows remote attackers to cause a denial of service (memory corruption and crash) via a crafted .m4a file.
CVE-2017-9045 medium 5.9 5.9 google 9y ago The Google I/O 2017 application before 5.1.4 for Android downloads multiple .json files from http://storage.googleapis.com without SSL, which makes it easier for man-in-the-middle attackers to spoof …
CVE-2017-5046 medium 4.3 4.3 FIX arch arch rheldebian debian google 9y ago multiple issues in chromium
CVE-2017-5045 medium 6.1 6.1 FIX arch arch rheldebian debian google 9y ago multiple issues in chromium
CVE-2017-5044 medium 6.3 6.3 FIX arch arch rheldebian debian google 9y ago multiple issues in chromium
CVE-2017-5042 medium 5.7 5.7 FIX arch arch rheldebian debian google 9y ago multiple issues in chromium
CVE-2017-5041 medium 4.3 4.3 FIX arch arch google 9y ago multiple issues in chromium
CVE-2017-5040 medium 4.3 4.3 FIX arch arch rheldebian debian google 9y ago multiple issues in chromium
CVE-2017-5038 medium 6.3 6.3 FIX arch arch rheldebian debian google 9y ago multiple issues in chromium
CVE-2017-5033 medium 4.3 4.3 FIX arch arch rheldebian debian google 9y ago multiple issues in chromium
CVE-2017-5027 medium 4.3 4.3 google 9y ago Blink in Google Chrome prior to 56.0.2924.76 for Linux, Windows and Mac, and 56.0.2924.87 for Android, failed to properly enforce unsafe-inline content security policy, which allowed a remote attacke…
CVE-2017-5026 medium 4.3 4.3 FIX arch arch google 9y ago multiple issues in chromium
CVE-2017-5025 medium 5.5 5.5 FIX arch archdebian debian google 9y ago multiple issues in chromium
CVE-2017-5024 medium 5.5 5.5 FIX arch archdebian debian google 9y ago multiple issues in chromium
CVE-2017-5023 medium 4.3 4.3 FIX arch arch google 9y ago multiple issues in chromium
CVE-2017-5022 medium 4.3 4.3 FIX arch arch google 9y ago multiple issues in chromium
CVE-2017-5021 medium 4.3 4.3 FIX arch arch google 9y ago multiple issues in chromium
CVE-2017-5020 medium 6.1 6.1 FIX arch arch google 9y ago multiple issues in chromium
CVE-2017-5019 medium 6.3 6.3 FIX arch arch google 9y ago multiple issues in chromium
CVE-2017-5018 medium 6.1 6.1 FIX arch arch google 9y ago multiple issues in chromium
CVE-2017-5017 medium 4.3 4.3 FIX arch arch google 9y ago multiple issues in chromium
CVE-2017-5016 medium 6.5 6.5 FIX arch arch google 9y ago multiple issues in chromium
CVE-2017-5015 medium 6.5 6.5 FIX arch arch google 9y ago multiple issues in chromium
CVE-2017-5014 medium 6.3 6.3 FIX arch arch google 9y ago multiple issues in chromium
CVE-2017-5013 medium 6.5 6.5 FIX arch arch google 9y ago multiple issues in chromium
CVE-2017-5011 medium 6.5 6.5 FIX arch arch google 9y ago multiple issues in chromium
CVE-2017-5010 medium 6.1 6.1 FIX arch arch google 9y ago multiple issues in chromium
CVE-2017-5008 medium 6.1 6.1 FIX arch arch google 9y ago multiple issues in chromium
CVE-2017-5007 medium 6.1 6.1 FIX arch arch google 9y ago multiple issues in chromium
CVE-2017-5006 medium 6.1 6.1 FIX arch arch google 9y ago multiple issues in chromium
CVE-2016-9650 medium 4.3 4.3 FIX arch arch google 10y ago multiple issues in chromium