CVE Vulnerability Database

Search and browse 384,178 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-64225HIGH7.8In the Linux kernel, the following vulnerability has been resolved: octeontx2-af: CGX: add bounds check to cgx_speed_mb...
CVE-2026-64224HIGH7.8In the Linux kernel, the following vulnerability has been resolved: octeontx2-pf: fix double free in rvu_rep_rsrc_init(...
CVE-2026-64223HIGH8.1In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: consume only present negotiated TTL...
CVE-2026-64222HIGH7In the Linux kernel, the following vulnerability has been resolved: octeontx2-pf: avoid double free of pool->stack on A...
CVE-2026-64221HIGH7.8In the Linux kernel, the following vulnerability has been resolved: spi: ti-qspi: fix use-after-free after DMA setup fa...
CVE-2026-64220MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: device property: set fwnode->secondary to NULL in f...
CVE-2026-64219HIGH7In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Validate payload length and link_i...
CVE-2026-64218HIGH7.8In the Linux kernel, the following vulnerability has been resolved: batman-adv: bla: fix report_work leak on backbone_g...
CVE-2026-64217HIGH7.8In the Linux kernel, the following vulnerability has been resolved: netfs: Fix overrun check in netfs_extract_user_iter...
CVE-2026-64216CRITICAL9.8In the Linux kernel, the following vulnerability has been resolved: netfs: Fix potential UAF in netfs_unlock_abandoned_...
CVE-2026-64215MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/msm/a6xx: Check kzalloc return in a8xx_hfi_send...
CVE-2026-64214MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: powerpc/time: Remove redundant preempt_disable|enab...
CVE-2026-64213MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: hwmon: (lm90) Add lock protection to lm90_alert Sa...
CVE-2026-64212MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: mld: don't dereference a pointer bef...
CVE-2026-64211MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: srcu: Don't queue workqueue handlers to never-onlin...
CVE-2026-64210HIGH7.5In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: xsk: Fix unlocked writing to ICOSQ Duri...
CVE-2026-64209HIGH7.1In the Linux kernel, the following vulnerability has been resolved: phy: qcom: qmp-usbc: Fix out-of-bounds array access...
CVE-2026-64208HIGH7.5In the Linux kernel, the following vulnerability has been resolved: crypto/krb5, rxrpc: Fix lack of pre-decrypt/pre-ver...
CVE-2026-17039LOW3.1A flaw was found in pki-core. The certificate authority (CA) renewal request path does not perform the realm-based autho...
CVE-2026-8789HIGH8.1The Easy Appointments plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capabilit...
CVE-2026-8308MEDIUM6.1Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Polen Media Softwa...
CVE-2026-7007MEDIUM4.6The Zephyr ext2 file system validates the on-disk superblock in ext2_verify_disk_superblock() (subsys/fs/ext2/ext2_impl....
CVE-2026-66007MEDIUM6.5Datasets through 5.0.0, fixed in commit f989ef9, contains a path traversal vulnerability in folder-based dataset builder...
CVE-2026-66006MEDIUM6.9lakeFS through 1.83.0, fixed in commit 71a45ee, contains an authentication bypass vulnerability in the /setup_comm_prefs...
CVE-2026-66005MEDIUM6.3Jan through 0.8.4, fixed in commit 3e1c1e7, contains a CORS misconfiguration vulnerability in its local API server that ...