CVE Vulnerability Database

Search and browse 394,249 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-53290HIGH7.8In the Linux kernel, the following vulnerability has been resolved: drm/xe/eustall: Fix drm_dev_put called before strea...
CVE-2026-53289MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: ice: fix NULL pointer dereference in ice_reset_all_...
CVE-2026-53288MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: arm64: Reserve an extra page for early kernel mappi...
CVE-2026-53287MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: audit: fix incorrect inheritable capability in CAPS...
CVE-2026-53286HIGH7.8In the Linux kernel, the following vulnerability has been resolved: idpf: fix double free and use-after-free in aux dev...
CVE-2026-53285MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Wrap DCN32 phantom-plane allocatio...
CVE-2026-53284HIGH7.5In the Linux kernel, the following vulnerability has been resolved: btrfs: only release the dirty pages io tree after s...
CVE-2026-53283MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: iommu/amd: Bounds-check devid in __rlookup_amd_iomm...
CVE-2026-53282MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: x86/kexec: Push kjump return address even for non-k...
CVE-2026-53281HIGH8.8In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Avoid NULL pointer dereference or refco...
CVE-2026-53280MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: iommu: Fix NULL group->domain dereference in pci_de...
CVE-2026-53279MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/gma500/oaktrail_lvds: fix hang on init failure ...
CVE-2026-53278MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: arm_mpam: Check whether the config array is allocat...
CVE-2026-52785CRITICAL9.9OpenProject is open-source, web-based project management software. Prior to 17.3.3 and 17.4.1, there is a SQL injection ...
CVE-2026-52784HIGH8.8OpenProject is open-source, web-based project management software. Prior to 17.3.3 and 17.4.1, there is a CSRF on TARGET...
CVE-2026-52783HIGH8.2OpenProject is open-source, web-based project management software. Prior to 17.3.3 and 17.4.1, OpenProject's Storages mo...
CVE-2026-52782CRITICAL9.9OpenProject is open-source, web-based project management software. Prior to 17.3.3 and 17.4.1, there is an IDOR through ...
CVE-2026-52781MEDIUM6.4OpenProject is open-source, web-based project management software. Prior to 17.3.3 and 17.4.1, the HTML sanitizer grants...
CVE-2026-52780CRITICAL9.6OpenProject is open-source, web-based project management software. Prior to 17.3.3 and 17.4.1, cache store poisoning lea...
CVE-2026-52779MEDIUM5.4OpenProject is open-source, web-based project management software. Prior to 17.3.3 and 17.4.1, a cross-project IDOR / au...
CVE-2026-49991HIGH8.6RustFS is a distributed object storage system built in Rust. In 1.0.0-beta.4, authenticated users with only PutObject pe...
CVE-2026-49355MEDIUM4.3OpenProject is open-source, web-based project management software. Prior to 17.4.0, `GET /api/v3/meetings/:meeting_id/ag...
CVE-2026-47193HIGH7.5OpenProject is open-source, web-based project management software. Prior to 17.3.3 and 17.4.1, the journal diff endpoint...
CVE-2026-46386CRITICAL9.9OpenProject is open-source, web-based project management software. Prior to , the official openproject/openproject Docke...
CVE-2026-44736MEDIUM6.5OpenProject is open-source, web-based project management software. Prior to 17.4.0, the GET /api/v3/relations endpoint a...