CVE Vulnerability Database
Search and browse 398,092 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-43362 | HIGH | 8.1 | 0.2% | May 8, 2026 | In the Linux kernel, the following vulnerability has been resolved: smb: client: fix in-place encryption corruption in ... |
| CVE-2026-43361 | MEDIUM | 5.5 | 0.1% | May 8, 2026 | In the Linux kernel, the following vulnerability has been resolved: btrfs: fix transaction abort when snapshotting rece... |
| CVE-2026-43360 | MEDIUM | 5.5 | 0.2% | May 8, 2026 | In the Linux kernel, the following vulnerability has been resolved: btrfs: fix transaction abort on file creation due t... |
| CVE-2026-43359 | MEDIUM | 5.5 | 0.1% | May 8, 2026 | In the Linux kernel, the following vulnerability has been resolved: btrfs: fix transaction abort on set received ioctl ... |
| CVE-2026-43358 | MEDIUM | 5.5 | 0.1% | May 8, 2026 | In the Linux kernel, the following vulnerability has been resolved: btrfs: add missing RCU unlock in error path in try_... |
| CVE-2026-43357 | MEDIUM | 5.5 | 0.1% | May 8, 2026 | In the Linux kernel, the following vulnerability has been resolved: iio: gyro: mpu3050-core: fix pm_runtime error handl... |
| CVE-2026-43356 | MEDIUM | 5.5 | 0.1% | May 8, 2026 | In the Linux kernel, the following vulnerability has been resolved: iio: imu: adis: Fix NULL pointer dereference in adi... |
| CVE-2026-43355 | MEDIUM | 5.5 | 0.1% | May 8, 2026 | In the Linux kernel, the following vulnerability has been resolved: iio: light: bh1780: fix PM runtime leak on error pa... |
| CVE-2026-43354 | MEDIUM | 5.5 | 0.1% | May 8, 2026 | In the Linux kernel, the following vulnerability has been resolved: iio: proximity: hx9023s: Protect against division b... |
| CVE-2026-43353 | HIGH | 7.8 | 0.1% | May 8, 2026 | In the Linux kernel, the following vulnerability has been resolved: i3c: mipi-i3c-hci: Fix race in DMA ring dequeue Th... |
| CVE-2026-43352 | HIGH | 7.8 | 0.1% | May 8, 2026 | In the Linux kernel, the following vulnerability has been resolved: i3c: mipi-i3c-hci: Correct RING_CTRL_ABORT handling... |
| CVE-2026-43351 | MEDIUM | 5.5 | 0.1% | May 8, 2026 | In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: Eagerly init vgic dist/redist on vgic c... |
| CVE-2026-41588 | HIGH | 8.1 | 0.4% | May 8, 2026 | RELATE is a web-based courseware package. Prior to commit 2f68e16, there is a timing attack vulnerability in course/auth... |
| CVE-2026-41585 | MEDIUM | 6.5 | 0.3% | May 8, 2026 | ZEBRA is a Zcash node written entirely in Rust. From zebrad versions 2.2.0 to before 4.3.1 and from zebra-rpc versions 1... |
| CVE-2026-41584 | HIGH | 7.5 | 0.3% | May 8, 2026 | ZEBRA is a Zcash node written entirely in Rust. Prior to zebrad version 4.3.1 and prior to zebra-chain version 6.0.2, Or... |
| CVE-2026-41583 | CRITICAL | 9.1 | 0.3% | May 8, 2026 | ZEBRA is a Zcash node written entirely in Rust. Prior to zebrad version 4.3.1 and prior to zebra-script version 5.0.2, a... |
| CVE-2026-41576 | HIGH | 7.1 | 0.3% | May 8, 2026 | Brave CMS is an open-source CMS. Prior to commit 6c56603, the contact form is publicly accessible (no authentication req... |
| CVE-2026-41575 | MEDIUM | 6.1 | 0.2% | May 8, 2026 | In th30d4y/IP from version 1.0.1 to before version 2.0.1, a DOM-Based Cross-Site Scripting (XSS) vulnerability was ident... |
| CVE-2026-41574 | CRITICAL | 9.8 | 0.8% | May 8, 2026 | Nhost is an open source Firebase alternative with GraphQL. Prior to version 0.49.1, Nhost automatically links an incomin... |
| CVE-2026-41570 | HIGH | 7.8 | 0.2% | May 8, 2026 | PHPUnit is a testing framework for PHP. In versions 12.5.21 and 13.1.5, PHPUnit forwards PHP INI settings to child proce... |
| CVE-2026-41524 | HIGH | 8.7 | 0.2% | May 8, 2026 | Brave CMS is an open-source CMS. Prior to commit 6c56603, page and article body content entered through the CKEditor ric... |
| CVE-2026-41487 | MEDIUM | 5.4 | 0.2% | May 8, 2026 | Langfuse is an open source large language model engineering platform. From version 3.68.0 to before version 3.167.0, the... |
| CVE-2026-41308 | MEDIUM | 6.5 | 0.3% | May 8, 2026 | Password Pusher is an open source application to communicate sensitive information over the web. Prior to versions 1.69.... |
| CVE-2026-38361 | HIGH | 7.5 | 2.6% | May 8, 2026 | Multiple unauthenticated denial-of-service (DoS) issues in fohrloop dash-uploader v0.1.0 through v0.7.0a2. The chunked-u... |
| CVE-2026-37431 | CRITICAL | 9.8 | 0.3% | May 8, 2026 | Beauty Parlour Management System v1.1 was discovered to contain a SQL injection vulnerability via the aptnumber paramete... |
