Search

Found 10,560 results in 1560ms · Match type: Filtered list

0
KEVHas exploit
Reset
CVE Severity CVSS Risk Flags OS Vendor Published Description
CVE-2026-6749 high 8.0 FIX rheldebian debian rocky 1mo ago Information disclosure due to uninitialized memory in the Graphics: Canvas2D component. This vulnerability was fixed in Firefox 150, Firefox ESR 115.35, Firefox ESR 140.10, Thunderbird 150, and Thund…
CVE-2026-6748 high 8.0 FIX rheldebian debian rocky 1mo ago Uninitialized memory in the Audio/Video: Web Codecs component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10.
CVE-2026-6747 high 8.0 FIX rheldebian debian rocky 1mo ago Use-after-free in the WebRTC component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10.
CVE-2026-6746 high 8.0 FIX rheldebian debian rocky 1mo ago Use-after-free in the DOM: Core & HTML component. This vulnerability was fixed in Firefox 150, Firefox ESR 115.35, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10.
CVE-2026-6100 high 8.0 FIX rhel slesdebian debian 1mo ago Important: python3.12 security update
CVE-2026-5201 high 7.5 7.5 FIX rheldebian debian sles gnome 1mo ago Important: gdk-pixbuf2 security update
CVE-2026-4800 critical 9.8 9.8 FIX rheldebian debian rocky lodash 1mo ago Important: pcs security update
CVE-2026-4786 high 8.0 FIX rheldebian debian sles 1mo ago Important: python3.12 security update
CVE-2026-34352 high 8.5 8.5 FIX rhel slesdebian debian tigervnc 1mo ago In TigerVNC before 1.16.2, Image.cxx in x0vncserver allows other users to observe or manipulate the screen contents, or cause an application crash, because of incorrect permissions.
CVE-2026-34003 high 7.8 7.8 FIX rhel sles rocky 1mo ago A flaw was found in the X.Org X server's XKB key types request validation. A local attacker could send a specially crafted request to the X server, leading to an out-of-bounds memory access vulnerabi…
CVE-2026-34001 high 7.8 7.8 FIX rhel sles rocky 1mo ago A flaw was found in the X.Org X server. This use-after-free vulnerability occurs in the XSYNC fence triggering logic, specifically within the miSyncTriggerFence() function. An attacker with access to…
CVE-2026-33999 high 7.8 7.8 FIX rhel sles rocky 1mo ago A flaw was found in the X.Org X server. This integer underflow vulnerability, specifically in the XKB compatibility map handling, allows an attacker with local or remote X11 server access to trigger …
CVE-2026-33186 high 8.0 FIX rheldebian debian sles google 1mo ago RHSA-2026:23228: image-builder security update (Important)
CVE-2026-31685 critical 9.4 9.4 FIX sles rheldebian debian 1mo ago In the Linux kernel, the following vulnerability has been resolved: netfilter: ip6t_eui64: reject invalid MAC header for all packets `eui64_mt6()` derives a modified EUI-64 from the Ethernet source…
CVE-2026-31684 medium 5.5 5.5 FIX sles rheldebian debian 1mo ago In the Linux kernel, the following vulnerability has been resolved: net: sched: act_csum: validate nested VLAN headers tcf_csum_act() walks nested VLAN headers directly from skb->data when an skb s…
CVE-2026-34986 high 7.5 7.5 FIX rheldebian debian sles go-jose_projectgoogle 1mo ago RHSA-2026:23228: image-builder security update (Important)
CVE-2026-34282 high 8.0 FIX rhel slesdebian debian 1mo ago RHSA-2026:9689: java-21-openjdk security update (Important)
CVE-2026-34268 high 8.0 FIX rhel slesdebian debian 1mo ago RHSA-2026:22139: java-1.8.0-ibm security update (Important)
CVE-2026-32283 high 8.0 FIX rheldebian debian sles google 1mo ago Unauthenticated TLS 1.3 KeyUpdate record can cause persistent connection retention and DoS in crypto/tls
CVE-2026-32282 high 8.0 FIX rheldebian debian sles google 1mo ago TOCTOU permits root escape on Linux via Root.Chmod in os in internal/syscall/unix
CVE-2026-32280 high 8.0 FIX rheldebian debian sles google 1mo ago During chain building, the amount of work that is done is not correctly limited when a large number of intermediate certificates are passed in VerifyOptions.Intermediates, which can lead to a denial …
CVE-2026-27877 high 7.5 7.5 FIX rhel sles rocky grafana 1mo ago Important: grafana security update
CVE-2026-27144 high 8.0 FIX rheldebian debian sles google 1mo ago The compiler is meant to unwrap pointers which are the operands of a memory move; a no-op interface conversion prevented the compiler from making the correct determination about non-overlapping moves…
CVE-2026-27143 high 8.0 FIX rheldebian debian sles google 1mo ago Arithmetic over induction variables in loops were not correctly checked for underflow or overflow. As a result, the compiler would allow for invalid indexing to occur at runtime, potentially leading …
CVE-2026-27140 high 8.0 FIX rheldebian debian sles google 1mo ago SWIG file names containing 'cgo' and well-crafted payloads could lead to code smuggling and arbitrary code execution at build time due to trust layer bypass.
CVE-2026-23865 medium 5.3 5.3 FIX rheldebian debian sles freetype 1mo ago RHSA-2026:9689: java-21-openjdk security update (Important)
CVE-2026-22021 high 8.0 FIX rhel slesdebian debian 1mo ago RHSA-2026:22139: java-1.8.0-ibm security update (Important)
CVE-2026-22020 high 8.0 FIX debian debian rhel 1mo ago RHSA-2026:9686: java-17-openjdk security update (Important)
CVE-2026-22018 high 8.0 FIX rhel slesdebian debian 1mo ago RHSA-2026:22139: java-1.8.0-ibm security update (Important)
CVE-2026-22016 high 8.0 FIX rhel slesdebian debian 1mo ago RHSA-2026:22139: java-1.8.0-ibm security update (Important)
CVE-2026-22013 high 8.0 FIX rhel slesdebian debian 1mo ago RHSA-2026:22139: java-1.8.0-ibm security update (Important)
CVE-2026-22007 high 8.0 FIX rhel slesdebian debian 1mo ago RHSA-2026:22139: java-1.8.0-ibm security update (Important)
CVE-2026-6732 high 7.5 7.5 debian debian sles rhel xmlsoftredhatgoogle 1mo ago A flaw was found in libxml2. This vulnerability occurs when the library processes a specially crafted XML Schema Definition (XSD) validated document that includes an internal entity reference. An att…
CVE-2026-2708 medium 5.3 5.3 debian debian sles rhel gnome 1mo ago A request smuggling vulnerability exists in libsoup's HTTP/1 header parsing logic. The soup_message_headers_append_common() function in libsoup/soup-message-headers.c unconditionally appends each hea…
CVE-2026-6846 high 7.8 7.8 debian debian sles rhel gnuredhat 2mo ago A flaw was found in binutils. A heap-buffer-overflow vulnerability exists when processing a specially crafted XCOFF (Extended Common Object File Format) object file during linking. A local attacker c…
CVE-2026-6845 medium 5.0 5.0 debian debian sles rhel gnuredhat 2mo ago A flaw was found in binutils, specifically within the `readelf` utility. This vulnerability allows a local attacker to cause a Denial of Service (DoS) by tricking a user into processing a specially c…
CVE-2026-6844 medium 5.5 5.5 debian debian sles rhel gnuredhat 2mo ago A flaw was found in the `readelf` utility of the binutils package. A local attacker could exploit two Denial of Service (DoS) vulnerabilities by providing a specially crafted Executable and Linkable …
CVE-2026-6843 medium 5.5 5.5 FIX debian debian rhel gnuredhat 2mo ago A flaw was found in nano. A local user could exploit a format string vulnerability in the `statusline()` function. By creating a directory with a name containing `printf` specifiers, the application …
CVE-2026-26740 high 8.0 FIX rheldebian debian sles 2mo ago Buffer Overflow vulnerability in giflib v.5.2.2 allows a remote attacker to cause a denial of service via the EGifGCBToExtension overwriting an existing Graphic Control Extension block without valida…
CVE-2026-22008 high 8.0 FIX rhel slesdebian debian 2mo ago Important: java-25-openjdk security update
CVE-2026-27622 high 8.0 FIX rhel slesdebian debian 2mo ago RHSA-2026:8863: OpenEXR security update (Important)
CVE-2026-5121 high 7.5 7.5 FIX rheldebian debian sles libarchiveredhat 2mo ago A flaw was found in libarchive. On 32-bit systems, an integer overflow vulnerability exists in the zisofs block pointer allocation logic. A remote attacker can exploit this by providing a specially c…
CVE-2026-33116 high 7.5 7.5 rhel linux-kernelmacos macos microsoft 2mo ago Important: .NET 8.0 security update
CVE-2026-32203 high 7.5 7.5 rhel linux-kernelmacos macos microsoft 2mo ago Important: .NET 8.0 security update
CVE-2026-32178 high 7.5 7.5 rhel linux-kernelmacos macos microsoft 2mo ago Important: .NET 8.0 security update
CVE-2026-26171 high 7.5 7.5 rhel linux-kernelmacos macos microsoft 2mo ago Important: .NET 8.0 security update
CVE-2026-6384 high 7.8 7.8 FIX debian debian rhel gimp 2mo ago A flaw was found in gimp. This buffer overflow vulnerability in the GIF image loading component's `ReadJeffsImage` function allows an attacker to write beyond an allocated buffer by processing a spec…
CVE-2026-40919 medium 5.5 5.5 FIX debian debian rhel gimp 2mo ago A flaw was found in GIMP. This vulnerability, a buffer overflow in the `file-seattle-filmworks` plugin, can be exploited when a user opens a specially crafted Seattle Filmworks file. A remote attacke…
CVE-2026-40918 medium 5.5 5.5 FIX debian debian rhel gimp 2mo ago A flaw was found in GIMP. Processing a specially crafted PVR image file with large dimensions can lead to a denial of service (DoS). This occurs due to a stack-based buffer overflow and an out-of-bou…
CVE-2026-40917 high 7.1 7.1 FIX debian debian rhel gimp 2mo ago A flaw was found in GIMP. This vulnerability, a heap buffer over-read in the `icns_slurp()` function, occurs when processing specially crafted ICNS image files. An attacker could provide a malicious …
CVE-2026-40916 medium 5.5 5.5 FIX debian debian rhel gimp 2mo ago A flaw was found in GIMP. A stack buffer overflow vulnerability in the TIM image loader's 4BPP decoding path allows a local user to cause a Denial of Service (DoS). By opening a specially crafted TIM…
CVE-2026-40915 high 7.8 7.8 FIX debian debian rhel gimp 2mo ago A flaw was found in GIMP. A remote attacker could exploit an integer overflow vulnerability in the FITS image loader by providing a specially crafted FITS file. This integer overflow leads to a zero-…
CVE-2026-33412 high 8.0 FIX rocky rhel sles 2mo ago Important: vim security update
CVE-2026-28421 medium 5.3 5.3 FIX rocky rhel sles 2mo ago Important: vim security update
CVE-2026-28417 medium 4.4 4.4 FIX rocky rhel sles 2mo ago Important: vim security update
CVE-2026-5734 high 8.0 FIX rhelalmalinux almalinuxdebian debian 2mo ago Important: thunderbird security update
CVE-2026-5732 high 8.0 FIX rhelalmalinux almalinuxdebian debian 2mo ago Important: thunderbird security update
CVE-2026-5731 high 8.0 FIX rhelalmalinux almalinuxdebian debian 2mo ago Important: thunderbird security update
CVE-2026-1519 high 7.5 7.5 FIX rheldebian debian sles isc 2mo ago Important: bind security update
CVE-2006-10003 high 8.0 FIX sles rheldebian debian 2mo ago RHSA-2026:7681: perl-XML-Parser security update (Important)
CVE-2006-10002 high 8.0 FIX sles rheldebian debian 2mo ago RHSA-2026:7681: perl-XML-Parser security update (Important)
CVE-2026-4631 critical 10.0 EXPFIX rheldebian debian sles 2mo ago Cockpit's remote login feature passes user-supplied hostnames and usernames from the web interface to the SSH client without validation or sanitization. An attacker with network access to the Cockpit…
CVE-2026-4878 high 7.0 7.0 FIX rheldebian debian sles libcap_projectredhatgoogle 2mo ago A flaw was found in libcap. A local unprivileged user can exploit a Time-of-check-to-time-of-use (TOCTOU) race condition in the `cap_set_file()` function. This allows an attacker with write access to…
CVE-2026-27904 high 8.0 FIX rocky rhel sles 2mo ago RHSA-2026:8339: nodejs:20 security update (Important)
CVE-2026-27135 high 7.5 7.5 FIX rocky rhel sles nghttp2google 2mo ago RHSA-2026:8339: nodejs:20 security update (Important)
CVE-2026-26996 high 8.0 FIX rocky rhel sles 2mo ago RHSA-2026:8339: nodejs:20 security update (Important)
CVE-2026-2581 high 8.0 FIX rheldebian debianalmalinux almalinux 2mo ago RHSA-2026:7670: nodejs:24 security update (Important)
CVE-2026-25547 high 8.0 FIX rocky rhel sles 2mo ago RHSA-2026:7123: nodejs:22 security update (Important)
CVE-2026-2229 high 8.0 FIX rocky rheldebian debian 2mo ago RHSA-2026:7670: nodejs:24 security update (Important)
CVE-2026-21717 medium 5.9 5.9 FIX rhel slesdebian debian 2mo ago RHSA-2026:7670: nodejs:24 security update (Important)
CVE-2026-21716 high 8.0 FIX rhel slesdebian debian 2mo ago RHSA-2026:7670: nodejs:24 security update (Important)
CVE-2026-21715 high 8.0 FIX rhel slesdebian debian 2mo ago RHSA-2026:7670: nodejs:24 security update (Important)
CVE-2026-21714 high 8.0 FIX rhel slesdebian debian 2mo ago RHSA-2026:7670: nodejs:24 security update (Important)
CVE-2026-21713 medium 5.9 5.9 FIX rhel slesdebian debian 2mo ago RHSA-2026:7670: nodejs:24 security update (Important)
CVE-2026-21712 medium 5.7 5.7 FIX rhel slesdebian debian 2mo ago RHSA-2026:7670: nodejs:24 security update (Important)
CVE-2026-21711 high 8.0 FIX rhel slesdebian debian 2mo ago RHSA-2026:7670: nodejs:24 security update (Important)
CVE-2026-21710 high 8.0 FIX rocky rhel sles 2mo ago RHSA-2026:8339: nodejs:20 security update (Important)
CVE-2026-1528 high 8.0 FIX rocky rheldebian debian 2mo ago RHSA-2026:7670: nodejs:24 security update (Important)
CVE-2026-1527 high 8.0 FIX rheldebian debianalmalinux almalinux 2mo ago RHSA-2026:7670: nodejs:24 security update (Important)
CVE-2026-1526 high 8.0 FIX rocky rheldebian debian 2mo ago RHSA-2026:7670: nodejs:24 security update (Important)
CVE-2026-1525 high 8.0 FIX rocky rheldebian debian 2mo ago RHSA-2026:7670: nodejs:24 security update (Important)
CVE-2026-34588 high 8.0 FIX rhel slesdebian debian 2mo ago Important: openexr security update
CVE-2026-28390 high 7.5 7.5 FIX slesdebian debian rhel opensslgoogle 2mo ago Moderate: openssl security update
CVE-2026-5745 medium 5.5 5.5 debian debian sles rhel libarchiveredhat 2mo ago A flaw was found in libarchive. A NULL pointer dereference vulnerability exists in the ACL parsing logic, specifically within the archive_acl_from_text_nl() function. When processing a malformed ACL …
CVE-2026-32647 high 8.0 FIX rhelalmalinux almalinux rocky 2mo ago Important: nginx security update
CVE-2026-27784 high 8.0 FIX rhelalmalinux almalinux rocky 2mo ago Important: nginx security update
CVE-2026-27654 high 8.0 FIX rhel rocky sles 2mo ago Important: nginx security update
CVE-2026-27651 high 8.0 FIX rhel rocky sles 2mo ago Important: nginx security update
CVE-2026-5673 high 7.1 7.1 debian debian sles rhel xiph 2mo ago A flaw was found in libtheora. This heap-based out-of-bounds read vulnerability exists within the AVI (Audio Video Interleave) parser, specifically in the avi_parse_input_file() function. A local att…
CVE-2026-31408 high 8.8 8.8 FIX sles rheldebian debian 2mo ago In the Linux kernel, the following vulnerability has been resolved: Bluetooth: SCO: Fix use-after-free in sco_recv_frame() due to missing sock_hold sco_recv_frame() reads conn->sk under sco_conn_lo…
CVE-2026-23231 high 7.8 8.8 EXPFIX rhel slesdebian debian 2mo ago Moderate: kernel security update
CVE-2026-23210 medium 5.5 FIX rhel slesdebian debian 2mo ago Moderate: kernel security update
CVE-2026-23111 high 7.8 7.8 FIX rhel slesdebian debian 2mo ago Moderate: kernel security update
CVE-2025-71238 medium 5.5 FIX slesdebian debian rocky 2mo ago In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Fix bsg_done() causing double free Kernel panic observed on system, [5353358.825191] BUG: unable to handle page f…
CVE-2025-38109 medium 5.5 FIX rhel slesdebian debian 2mo ago Moderate: kernel security update
CVE-2025-15270 high 8.0 FIX rheldebian debian sles 2mo ago Important: fontforge security update
CVE-2026-2625 medium 5.5 5.5 FIX rheldebian debian redhatsequoia-pgp 2mo ago A flaw was found in rust-rpm-sequoia. An attacker can exploit this vulnerability by providing a specially crafted Red Hat Package Manager (RPM) file. During the RPM signature verification process, th…
CVE-2026-23455 critical 9.1 9.1 FIX sles rheldebian debian 2mo ago In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_conntrack_h323: check for zero length in DecodeQ931() In DecodeQ931(), the UserUserIE code path reads a 16-bit leng…
CVE-2026-4177 high 8.0 FIX debian debian rocky rhel 2mo ago RHSA-2026:6470: perl-YAML-Syck security update (Important)
CVE-2026-3497 high 7.5 7.5 FIX rocky rhel sles canonicalopenbsd 2mo ago Vulnerability in the OpenSSH GSSAPI delta included in various Linux distributions. This vulnerability affects the GSSAPI patches added by various Linux distributions and does not affect the OpenSSH u…