Vulnerabilities

Summary — last 7 days

New vulnerabilities2,844▲ 206 vs. last week
Critical / high1,323▼ 110 vs. last week
New active exploitation (KEV)6▼ 1 vs. last week
Unscored (no CVSS)237▲ 223 vs. last week
–

1 results, sorted by published date (most recent first)

CVEStatusSeverityEPSS Active exploitationAffected technologiesPublished ▼Modified Description
ModifiedCritical (9.8)2.2%—XV Project XVOpensuse Leap3/5/20186/17/2026
xvpng.c in xv 3.10a has memory corruption (out-of-bounds write) when decoding PNG comment fields, leading to crashes or potentially code execution, because it uses an incorrect length value.