Security
CVE Feed
Latest vulnerabilities from the National Vulnerability Database.
25121
Total
1793
Critical
7689
High
7893
Medium
| CVE ID | Severity | Score | Description | Published |
|---|---|---|---|---|
| CVE-2026-46264 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: drm/xe/pf: Fix sysfs initialization In case of devm_add_action_or_reset() failure the provided cleanup action will be … | Jun 03, 2026 |
| CVE-2026-46263 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix out-of-bounds stream encoder index v3 eng_id can be negative and that stream_enc_regs[] can … | Jun 03, 2026 |
| CVE-2026-46262 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: ASoC: fsl_xcvr: Revert fix missing lock in fsl_xcvr_mode_put() This reverts commit f51424872760 ("ASoC: fsl_xcvr: fix … | Jun 03, 2026 |
| CVE-2026-46261 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: spi: wpcm-fiu: Fix potential NULL pointer dereference in wpcm_fiu_probe() platform_get_resource_byname() can return NULL, which would … | Jun 03, 2026 |
| CVE-2026-46260 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: ipv6: Fix out-of-bound access in fib6_add_rt2node(). syzbot reported out-of-bound read in fib6_add_rt2node(). [0] When IPv6 … | Jun 03, 2026 |
| CVE-2026-46259 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: procfs: fix missing RCU protection when reading real_parent in do_task_stat() When reading /proc/[pid]/stat, do_task_stat() accesses … | Jun 03, 2026 |
| CVE-2026-46258 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: gpio: cdev: Avoid NULL dereference in linehandle_create() In linehandle_create(), there is a statement like this: … | Jun 03, 2026 |
| CVE-2026-46257 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: clocksource/drivers/timer-sp804: Fix an Oops when read_current_timer is called on ARM32 platforms where the SP804 is … | Jun 03, 2026 |
| CVE-2026-46256 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: NFS/localio: prevent direct reclaim recursion into NFS via nfs_writepages LOCALIO is an NFS loopback mount … | Jun 03, 2026 |
| CVE-2026-46255 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: dmaengine: fsl-edma: don't explicitly disable clocks in .remove() The clocks in fsl_edma_engine::muxclk are allocated and … | Jun 03, 2026 |
| CVE-2026-46254 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: AppArmor: Allow apparmor to handle unaligned dfa tables The dfa tables can originate from kernel … | Jun 03, 2026 |
| CVE-2026-46253 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: pstore/ram: fix buffer overflow in persistent_ram_save_old() persistent_ram_save_old() can be called multiple times for the same … | Jun 03, 2026 |
| CVE-2026-46252 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: regulator: core: fix locking in regulator_resolve_supply() error path If late enabling of a supply regulator … | Jun 03, 2026 |
| CVE-2026-46251 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: btrfs: fix block_group_tree dirty_list corruption When the incompat flag EXTENT_TREE_V2 is set, we unconditionally add … | Jun 03, 2026 |
| CVE-2026-46250 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: MIPS: Work around LLVM bug when gp is used as global register variable On MIPS, … | Jun 03, 2026 |
| CVE-2026-46249 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: octeontx2-af: Fix PF driver crash with kexec kernel booting During a kexec reboot the hardware … | Jun 03, 2026 |
| CVE-2026-46248 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: clear stale link mapping of ahvif->links_map When an arvif is initialized in non-AP … | Jun 03, 2026 |
| CVE-2026-46247 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: clk: qcom: gfx3d: add parent to parent request map After commit d228ece36345 ("clk: divider: remove … | Jun 03, 2026 |
| CVE-2026-46246 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: power: supply: pm8916_lbc: Fix use-after-free for extcon in IRQ handler Using the `devm_` variant for … | Jun 03, 2026 |
| CVE-2026-46245 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix dc_link NULL handling in HPD init amdgpu_dm_hpd_init() may see connectors without a valid … | Jun 03, 2026 |
| CVE-2026-46244 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_inner: Fix IPv6 inner_thoff desync In nft_inner_parse_l2l3(), when processing inner IPv6 packets, ipv6_find_hdr() correctly … | Jun 03, 2026 |
| CVE-2026-40290 | HIGH | 7.8 | OP-TEE is a Trusted Execution Environment (TEE) designed as companion to a non-secure Linux kernel running on Arm; Cortex-A cores using the TrustZone technology. Starting … | Jun 03, 2026 |
| CVE-2026-39107 | MEDIUM | 6.3 | A Cross Site Scripting vulnerability exists in the Kimi AI v1.0 web interface's 'Preview' feature. The application fails to properly sanitize or encode HTML/JavaScript payloads … | Jun 03, 2026 |
| CVE-2026-36618 | MEDIUM | 4.3 | Mercusys AC12G (EU) V1 with firmware AC12G(EU)_V1_200909 responds to version.bind CHAOS TXT queries, disclosing the DNS resolver software version (unbound 1.22.0), aiding targeted attacks against … | Jun 03, 2026 |
| CVE-2026-36616 | MEDIUM | 5.9 | Mercusys AC12G (EU) V1 with firmware AC12G(EU)_V1_200909 contains hardcoded WiFi driver credentials including a RADIUS shared secret, WPS test key, and default PSK embedded in … | Jun 03, 2026 |