Vulnerabilities
Summary — last 7 days
New vulnerabilities3,335▲ 417 vs. last week
Critical / high1,494▲ 172 vs. last week
New active exploitation (KEV)7▼ 3 vs. last week
Unscored (no CVSS)579▲ 105 vs. last week
48 results, sorted by published date (most recent first)
| CVE | Status | Severity | EPSS | Active exploitation | Affected technologies | Published ▼ | Modified | Description |
|---|---|---|---|---|---|---|---|---|
| Analyzed | High (7.8) | 3.4% | ⚠ Active exploitation | Linux KernelRedhat Openshift Container PlatformRedhat Enterprise LinuxRedhat Enterprise Linux AUS+44 | 4/22/2026 | 9/8/2026 | In the Linux kernel, the following vulnerability has been resolved: crypto: algif_aead - Revert to operating out-of-place This mostly reverts commit 72548b093ee3 except for the copying of the associated data. There is no benefit in operating in-place in algif_aead since the source and destination come from different… | |
| Analyzed | High (7.3) | 0.28% | — | X.org X ServerX.org XwaylandIBM ViosIBM AIX+7 | 10/30/2025 | 7/1/2026 | A flaw was discovered in the X.Org X server’s X Keyboard (Xkb) extension when handling client resource cleanup. The software frees certain data structures without properly detaching related resources, leading to a use-after-free condition. This can cause memory corruption or a crash when affected clients disconnect. | |
| Analyzed | High (7.3) | 0.30% | — | X.org X ServerX.org XwaylandIBM ViosIBM AIX+7 | 10/30/2025 | 7/1/2026 | A flaw was identified in the X.Org X server’s X Keyboard (Xkb) extension where improper bounds checking in the XkbSetCompatMap() function can cause an unsigned short overflow. If an attacker sends specially crafted input data, the value calculation may overflow, leading to memory corruption or a crash. | |
| Analyzed | High (8.8) | 1.6% | ⚠ Active exploitation | Apple SafariApple IpadosApple Iphone OSApple Macos+11 | 7/30/2025 | 9/21/2026 | The issue was addressed with improved memory handling. This issue is fixed in Safari 18.6, iOS 18.6 and iPadOS 18.6, macOS Sequoia 15.6, tvOS 18.6, visionOS 2.6, watchOS 11.6. Processing maliciously crafted web content may lead to memory corruption. | |
| Modified | High (8.1) | 2.1% | — | Redhat Enterprise LinuxRedhat Enterprise Linux AUSRedhat Enterprise Linux EUSRedhat Enterprise Linux TUS+1 | 6/12/2024 | 6/17/2026 | A vulnerability was found in FreeIPA in a way when a Kerberos TGS-REQ is encrypted using the client’s session key. This key is different for each new session, which protects it from brute force attacks. However, the ticket it contains is encrypted using the target principal key directly. For user principals, this key… | |
| Modified | High (7.8) | 1.2% | — | X.org X ServerX.org XwaylandFedoraproject FedoraRedhat Enterprise Linux+4 | 2/9/2024 | 6/17/2026 | An out-of-bounds memory access flaw was found in the X.Org server. This issue can be triggered when a device frozen by a sync grab is reattached to a different master device. This issue may lead to an application crash, local privilege escalation (if the server runs with extended privileges), or remote code execution… | |
| Modified | High (7.8) | 0.81% | — | PerlFedoraproject FedoraRedhat Enterprise LinuxRedhat Enterprise Linux AUS+1 | 12/18/2023 | 6/17/2026 | A vulnerability was found in perl 5.30.0 through 5.38.0. This issue occurs when a crafted regular expression is compiled by perl, which can allow an attacker controlled byte buffer overflow in a heap allocated buffer. | |
| Modified | High (7.8) | 0.27% | — | Redhat Insights-clientRedhat Enterprise LinuxRedhat Enterprise Linux AUSRedhat Enterprise Linux Desktop+15 | 11/1/2023 | 6/17/2026 | A vulnerability was found in insights-client. This security issue occurs because of insecure file operations or unsafe handling of temporary files and directories that lead to local privilege escalation. Before the insights-client has been registered on the system by root, an unprivileged local user or attacker could… | |
| Modified | High (7.8) | 0.90% | — | X.org X ServerFedoraproject FedoraRedhat Enterprise LinuxRedhat Enterprise Linux AUS+14 | 3/27/2023 | 6/17/2026 | A vulnerability was found in X.Org. This issue occurs due to a dangling pointer in DeepCopyPointerClasses that can be exploited by ProcXkbSetDeviceInfo() and ProcXkbGetDeviceInfo() to read and write into freed memory. This can lead to local privilege elevation on systems where the X server runs privileged and remote… | |
| Modified | Medium (5.5) | 0.29% | — | Linux KernelIBM Spectrum Copy Data ManagementIBM Spectrum Protect PlusDebian Linux+19 | 8/26/2022 | 6/17/2026 | A flaw was found in the Linux kernel. Measuring usage of the shared memory does not scale with large shared memory segment counts which could lead to resource exhaustion and DoS. | |
| Modified | Medium (6.8) | 0.98% | — | SambaDebian LinuxRedhat Virtualization HostRedhat Enterprise Linux+3 | 8/23/2022 | 6/17/2026 | A flaw was found in the way Samba handled file/directory metadata. This flaw allows an authenticated attacker with permissions to read or modify share metadata, to perform this operation outside of the share. | |
| Modified | High (7) | 0.43% | — | Linux KernelRedhat 3scale API ManagementRedhat Build OF QuarkusRedhat Codeready Linux Builder EUS+28 | 3/3/2022 | 6/17/2026 | .A flaw was found in the CAN BCM networking protocol in the Linux kernel, where a local attacker can abuse a flaw in the CAN subsystem to corrupt memory, crash the system or escalate privileges. This race condition in net/can/bcm.c in the Linux kernel allows for local privilege escalation to root. | |
| Modified | High (8.8) | 3.0% | — | Linuxptp Project LinuxptpRedhat Enterprise LinuxRedhat Enterprise Linux AUSRedhat Enterprise Linux EUS+3 | 7/9/2021 | 6/17/2026 | A flaw was found in the ptp4l program of the linuxptp package. A missing length check when forwarding a PTP message between ports allows a remote attacker to cause an information leak, crash, or potentially remote code execution. The highest threat from this vulnerability is to data confidentiality and integrity as… | |
| Modified | Medium (6.6) | 2.7% | — | Spice Project SpiceRedhat OpenstackCanonical Ubuntu LinuxDebian Linux+6 | 10/7/2020 | 6/17/2026 | Multiple buffer overflow vulnerabilities were found in the QUIC image decoding process of the SPICE remote display system, before spice-0.14.2-1. Both the SPICE client (spice-gtk) and server are affected by these flaws. These flaws allow a malicious client or server to send specially crafted messages that, when… | |
| Modified | High (7.5) | 5.9% | — | Microsoft Asp.net CoreFedoraproject FedoraRedhat Enterprise LinuxRedhat Enterprise Linux AUS+2 | 9/11/2020 | 6/17/2026 | <p>A security feature bypass vulnerability exists in the way Microsoft ASP.NET Core parses encoded cookie names.</p> <p>The ASP.NET Core cookie parser decodes entire cookie strings which could allow a malicious attacker to set a second cookie with the name being percent encoded.</p> <p>The security update addresses… | |
| Modified | Medium (5.9) | 3.1% | — | Linux KernelRedhat 3scaleRedhat OpenstackRedhat Virtualization Host+7 | 5/22/2020 | 6/17/2026 | A NULL pointer dereference flaw was found in the Linux kernel's SELinux subsystem in versions before 5.7. This flaw occurs while importing the Commercial IP Security Option (CIPSO) protocol's category bitmap into the SELinux extensible bitmap via the' ebitmap_netlbl_import' routine. While processing the CIPSO… | |
| Modified | High (8.1) | 2.7% | — | Google AndroidApple Iphone OSApple MAC OS XApple Tvos+143 | 8/14/2019 | 6/17/2026 | The Bluetooth BR/EDR specification up to and including version 5.1 permits sufficiently low encryption key length and does not prevent an attacker from influencing the key length negotiation. This allows practical brute-force attacks (aka "KNOB") that can decrypt traffic and inject arbitrary ciphertext without the… | |
| Modified | High (7.5) | 95% | — | Linux KernelF5 Big-ip Advanced Firewall ManagerF5 Big-ip Access Policy ManagerF5 Big-ip Application Acceleration Manager+20 | 6/19/2019 | 6/17/2026 | Jonathan Looney discovered that the TCP retransmission queue implementation in tcp_fragment in the Linux kernel could be fragmented when handling certain TCP Selective Acknowledgment (SACK) sequences. A remote attacker could use this to cause a denial of service. This has been fixed in stable kernel releases 4.4.182,… | |
| Modified | High (7.5) | 99% | — | Linux KernelF5 Big-ip Advanced Firewall ManagerF5 Big-ip Access Policy ManagerF5 Big-ip Application Acceleration Manager+20 | 6/19/2019 | 6/17/2026 | Jonathan Looney discovered that the TCP_SKB_CB(skb)->tcp_gso_segs value was subject to an integer overflow in the Linux kernel when handling TCP Selective Acknowledgments (SACKs). A remote attacker could use this to cause a denial of service. This has been fixed in stable kernel releases 4.4.182, 4.9.182, 4.14.127,… | |
| Modified | Critical (9.8) | 6.8% | — | Linux KernelRedhat VirtualizationRedhat Enterprise LinuxRedhat Enterprise Linux AUS+19 | 6/14/2019 | 6/17/2026 | A flaw was found in the Linux kernel. A heap based buffer overflow in mwifiex_uap_parse_tail_ies function in drivers/net/wireless/marvell/mwifiex/ie.c might lead to memory corruption and possibly other consequences. | |
| Modified | High (7) | 0.45% | — | Linux KernelOpensuse LeapRedhat Enterprise LinuxRedhat Enterprise Linux AUS+5 | 5/7/2019 | 6/17/2026 | An issue was discovered in the Linux kernel before 5.0.4. There is a use-after-free upon attempted read access to /proc/ioports after the ipmi_si module is removed, related to drivers/char/ipmi/ipmi_si_intf.c, drivers/char/ipmi/ipmi_si_mem_io.c, and drivers/char/ipmi/ipmi_si_port_io.c. | |
| Modified | Medium (5.5) | 0.42% | — | Clusterlabs PacemakerCanonical Ubuntu LinuxFedoraproject FedoraDebian Linux+5 | 4/18/2019 | 6/17/2026 | A flaw was found in pacemaker up to and including version 2.0.1. An insufficient verification inflicted preference of uncontrolled processes can lead to DoS | |
| Modified | High (7.5) | 2.6% | — | Fedoraproject 389 Directory ServerRedhat Enterprise Linux AUSRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+3 | 9/14/2018 | 6/17/2026 | A flaw was found in 389-ds-base before version 1.3.8.4-13. The process ns-slapd crashes in delete_passwdPolicy function when persistent search connections are terminated unexpectedly leading to remote denial of service. | |
| Modified | High (7.8) | 1.0% | — | Linux KernelDebian LinuxCanonical Ubuntu LinuxFedoraproject Fedora+23 | 7/6/2018 | 6/17/2026 | The inode_init_owner function in fs/inode.c in the Linux kernel through 3.16 allows local users to create files with an unintended group ownership, in a scenario where a directory is SGID to a certain group and is writable by a user who is not a member of that group. Here, the non-member can trigger creation of a… | |
| Modified | Medium (4.3) | 1.6% | — | Debian LinuxRedhat Enterprise Linux AUSRedhat Enterprise Linux DesktopRedhat Enterprise Linux EUS+3 | 6/11/2018 | 6/17/2026 | Crafted CSS in an RSS feed can leak and reveal local path strings, which may contain user name. This vulnerability affects Thunderbird < 52.5.2. |