CVE Vulnerability Database

Search and browse 398,092 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-43289MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: kexec: derive purgatory entry from symbol kexec_lo...
CVE-2026-43288MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: ext4: move ext4_percpu_param_init() before ext4_mb_...
CVE-2026-43287MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm: Account property blob allocations to memcg DR...
CVE-2026-43286MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: mm/hugetlb: restore failed global reservations to s...
CVE-2026-43285MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: mm/slab: do not access current->mems_allowed_seq if...
CVE-2026-41512CRITICAL9.9ai-scanner is an AI model safety scanner built on NVIDIA garak. From version 1.0.0 to before version 1.4.1, there is a r...
CVE-2026-41509CRITICAL9.8CROSS implementation contains reference and optimized implementations of the CROSS post-quantum signature algorithm. Pri...
CVE-2026-41507CRITICAL9.8math-codegen generates code from mathematical expressions. Prior to version 0.4.3, string literal content passed to cg.p...
CVE-2026-41506HIGH7.4go-git is an extensible git implementation library written in pure Go. Prior to versions 5.18.0 and 6.0.0-alpha.2, go-gi...
CVE-2026-41497CRITICAL9.8PraisonAI is a multi-agent teams system. Prior to version 4.6.9, the fix for PraisonAI's MCP command handling does not a...
CVE-2026-41496HIGH8.1PraisonAI is a multi-agent teams system. Prior to praisonai version 4.6.9 and praisonaiagents version 1.6.9, the fix for...
CVE-2026-41493HIGH7.5YARD is a Ruby Documentation tool. Prior to version 0.9.42, a path traversal vulnerability was discovered in YARD when u...
CVE-2026-41491HIGH8.1Dapr is a portable, event-driven, runtime for building distributed applications across cloud and edge. From versions 1.3...
CVE-2026-41423MEDIUM5.3Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other...
CVE-2026-41161MEDIUM5.3Sync-in Server is a secure, open-source platform for file storage, sharing, collaboration, and syncing. Prior to version...
CVE-2026-39816HIGH8.8The optional extension component TinkerpopClientService is missing the Restricted annotation with the Execute Code Requi...
CVE-2026-32803LOW3.3Dell PowerScale OneFS versions 9.5.0.0 through 9.5.1.6, 9.6.0.0 through 9.7.1.13, 9.8.0.0 through 9.10.1.5 and 9.11.0.0 ...
CVE-2025-71302MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/panthor: fix for dma-fence safe access rules C...
CVE-2025-71301MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/tests: shmem: Hold reservation lock around vmap...
CVE-2025-71300MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: Revert "arm64: zynqmp: Add an OP-TEE node to the de...
CVE-2025-71299MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: spi: cadence-quadspi: Parse DT for flashes with the...
CVE-2025-71298MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/tests: shmem: Hold reservation lock around madv...
CVE-2025-71297MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: wifi: rtw88: 8822b: Avoid WARNING in rtw8822b_confi...
CVE-2025-71296MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/tests: shmem: Hold reservation lock around purg...
CVE-2026-8077HIGH8.6Lack of proper authorization implementation in the CashDro 3 web administration panel, version 24.01.00.26. The backend ...