Security
CVE Feed
Latest vulnerabilities from the National Vulnerability Database.
27197
Total
2065
Critical
8240
High
8439
Medium
| CVE ID | Severity | Score | Description | Published |
|---|---|---|---|---|
| CVE-2026-20772 | UNKNOWN | — | Uncontrolled search path for some Intel(R) Connectivity Performance Suite software installers before version 50.25.1121.193 within Ring 3: User Applications may allow an escalation of privilege. … | May 12, 2026 |
| CVE-2026-20771 | UNKNOWN | — | Null pointer dereference for some Intel(R) QAT software drivers for Windows before version 1.13 within Ring 3: User Applications may allow a denial of service. … | May 12, 2026 |
| CVE-2026-20754 | UNKNOWN | — | Improper conditions check in some firmware for some Intel(R) NPU Drivers within Ring 1: Device Drivers may allow a denial of service. Unprivileged software adversary … | May 12, 2026 |
| CVE-2026-20753 | UNKNOWN | — | Integer overflow in the UEFI firmware for the Slim Bootloader may allow an escalation of privilege. System software adversary with a privileged user combined with … | May 12, 2026 |
| CVE-2026-20751 | UNKNOWN | — | Out-of-bounds read for the Intel(R) Data Center Graphics Driver for VMware ESXi software before version 2.0.2 within Ring 1: Device Drivers may allow a denial … | May 12, 2026 |
| CVE-2026-20738 | UNKNOWN | — | Untrusted pointer dereference for some Intel(R) QuickAssist Adapter 8960 software before version 1.13 within Ring 3: User Applications may allow an escalation of privilege. Unprivileged … | May 12, 2026 |
| CVE-2026-20718 | UNKNOWN | — | Incorrect default permissions for some Intel(R) NPU Driver software installers before version 32.0.100.4511 within Ring 3: User Applications may allow an escalation of privilege. Unprivileged … | May 12, 2026 |
| CVE-2026-20717 | UNKNOWN | — | Improper input validation for some Intel(R) QAT software drivers for Windows before version 1.13 within Ring 3: User Applications may allow a denial of service. … | May 12, 2026 |
| CVE-2025-65719 | CRITICAL | 9.8 | An issue in Open Source Kubectl MCP Server v1.1.1 allows attackers to execute arbitrary code on a victim system via user interaction with a crafted … | May 12, 2026 |
| CVE-2025-36515 | UNKNOWN | — | Uncontrolled search path for some AI Playground software before version 3.0.0 alpha within Ring 3: User Applications may allow an escalation of privilege. Unprivileged software … | May 12, 2026 |
| CVE-2025-36510 | UNKNOWN | — | Improper buffer restrictions for some Display Virtualization for Windows OS driver software within Ring 2: Device Drivers may allow a denial of service. Unprivileged software … | May 12, 2026 |
| CVE-2025-35991 | UNKNOWN | — | Improper initialization in the UEFI firmware for some Intel platforms within Ring 0: Bare Metal OS may allow an information disclosure. System software adversary with … | May 12, 2026 |
| CVE-2025-35990 | UNKNOWN | — | Improper input validation for some Intel Endpoint Management Assistant (EMA) software before version 1.14.5 within Ring 3: User Applications may allow an escalation of privilege. … | May 12, 2026 |
| CVE-2025-35979 | UNKNOWN | — | Exposure of sensitive information caused by shared microarchitectural predictor state that influences transient execution for some Intel(R) Processors within VMX non-root (guest) operation may allow … | May 12, 2026 |
| CVE-2025-35969 | UNKNOWN | — | Uncontrolled search path for some Intel(R) Server Firmware Update Utility Software before version 16.0.12. within Ring 3: User Applications may allow an escalation of privilege. … | May 12, 2026 |
| CVE-2025-27723 | UNKNOWN | — | Use after free for some Linux kernel driver for the Intel(R) Ethernet 800 series before version 2.3.14 within Ring 0: Kernel may allow a denial … | May 12, 2026 |
| CVE-2026-43515 | UNKNOWN | — | Improper Authorization vulnerability when multiple method constraints define an HTTP method for the same extension in Apache Tomcat. This issue affects Apache Tomcat: from 11.0.0-M1 … | May 12, 2026 |
| CVE-2026-43514 | UNKNOWN | — | Observable Timing Discrepancy vulnerability when comparing AJP secret in Apache Tomcat. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.21, from 10.1.0-M1 through 10.1.54, from … | May 12, 2026 |
| CVE-2026-43513 | UNKNOWN | — | Improper Handling of Case Sensitivity vulnerability in LockOutRealm in Apache Tomcat. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.21, from 10.1.0-M1 through 10.1.54, from … | May 12, 2026 |
| CVE-2026-43512 | UNKNOWN | — | DEPRECATED: Authentication Bypass Issues vulnerability in digest authentication in Apache Tomcat. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.21, from 10.1.0-M1 through 10.1.54, from … | May 12, 2026 |
| CVE-2026-42498 | UNKNOWN | — | Exposure of HTTP Authentication Header to unexpected hosts during WebSocket authentication vulnerability in Apache Tomcat. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.21, from … | May 12, 2026 |
| CVE-2026-41293 | UNKNOWN | — | Improper Input Validation vulnerability in Apache Tomcat. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.21, from 10.1.0-M1 through 10.1.54, from 9.0.0.M1 through 9.0.117, from … | May 12, 2026 |
| CVE-2026-41284 | UNKNOWN | — | Allocation of Resources Without Limits or Throttling vulnerability in Apache Tomcat. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.21, from 10.1.0-M1 through 10.1.54, from … | May 12, 2026 |
| CVE-2026-34187 | UNKNOWN | — | Improper Neutralization of Special Elements used in an SQL Command vulnerability allows SQL Injection via graph container parameter. This issue affects Pandora FMS: from 777 … | May 12, 2026 |
| CVE-2026-31228 | UNKNOWN | — | The Adversarial Robustness Toolbox (ART) thru 1.20.1 contains a remote code execution vulnerability in its Kubeflow component. The robustness evaluation function for PyTorch models uses … | May 12, 2026 |