Edition of June 24, 2026, continued — page 2 of 2. Back to page 1
| CVE | CVSS | EPSS %ile | Vendor | Product | CWE | Title |
|---|---|---|---|---|---|---|
| CVE-2026-53022 | 5.5 | 2.5 | Linux | Linux | — | platform/x86: dell-wmi-sysman: bound enumeration string aggregation |
| CVE-2026-53023 | 5.5 | 2.5 | Linux | Linux | — | fs/ntfs3: terminate the cached volume label after UTF-8 conversion |
| CVE-2026-53039 | 5.5 | 2.5 | Linux | Linux | CWE-617 | ocfs2: validate group add input before caching |
| CVE-2026-53048 | 5.5 | 2.5 | Linux | Linux | CWE-476 | gfs2: prevent NULL pointer dereference during unmount |
| CVE-2026-53052 | 5.5 | 2.4 | Linux | Linux | — | ASoC: qcom: qdsp6: topology: check widget type before accessing data |
| CVE-2026-53061 | 5.5 | 2.5 | Linux | Linux | — | dm cache: fix dirty mapping checking in passthrough mode switching |
| CVE-2026-53064 | 5.5 | 2.5 | Linux | Linux | CWE-476 | dm cache: fix null-deref with concurrent writes in passthrough mode |
| CVE-2026-53093 | 5.5 | 2.4 | Linux | Linux | CWE-476 | wifi: brcmfmac: Fix error pointer dereference |
| CVE-2026-53081 | 7.8 | 2.4 | Linux | Linux | CWE-386 | bpf: Enforce regsafe base id consistency for BPF_ADD_CONST scalars |
| CVE-2026-53117 | 7.8 | 2.4 | Linux | Linux | CWE-416 | s390/cio: use generic driver_override infrastructure |
| CVE-2026-52988 | 7.1 | 2.4 | Linux | Linux | — | netfilter: nf_tables: join hook list via splice_list_rcu() in commit phase |
| CVE-2026-53040 | 7.1 | 2.4 | Linux | Linux | CWE-416 | ocfs2: validate bg_bits during freefrag scan |
| CVE-2026-13006 | 7.0 | 2.4 | QOS.CH Sarl | Logback-core | CWE-20 | Incomplete protection against CVE-2025-11226 |
| CVE-2026-52980 | 5.5 | 2.4 | Linux | Linux | CWE-476 | sched/fair: Clear rel_deadline when initializing forked entities |
| CVE-2026-53013 | 5.5 | 2.3 | Linux | Linux | — | macvlan: fix macvlan_get_size() not reserving space for IFLA_MACVLAN_BC_CUTOFF |
| CVE-2026-53014 | 5.5 | 2.3 | Linux | Linux | — | net/sched: act_mirred: fix wrong device for mac_header_xmit check in tcf_bloc… |
| CVE-2026-53015 | 5.5 | 2.3 | Linux | Linux | — | erofs: unify lcn as u64 for 32-bit platforms |
| CVE-2026-53027 | 5.5 | 2.4 | Linux | Linux | — | fs/ntfs3: fix missing run load for vcn0 in attr_data_get_block_locked() |
| CVE-2026-53032 | 5.5 | 2.4 | Linux | Linux | CWE-476 | bpf: Fix NULL deref in map_kptr_match_type for scalar regs |
| CVE-2026-53038 | 5.5 | 2.4 | Linux | Linux | CWE-125 | ima_fs: Correctly create securityfs files for unsupported hash algos |
| CVE-2026-53058 | 5.5 | 2.3 | Linux | Linux | CWE-476 | drm/bridge: cadence: cdns-mhdp8546-core: Set the mhdp connector earlier in at… |
| CVE-2026-53105 | 5.5 | 2.4 | Linux | Linux | CWE-476 | wifi: mt76: mt7925: prevent NULL vif dereference in mt7925_mac_write_txwi |
| CVE-2026-53946 | 5.4 | 2.3 | TryGhost | Ghost | CWE-918 | Ghost: Mobiledoc image-size fetch SSRF |
| CVE-2026-52944 | 5.5 | 2.3 | Linux | Linux | — | ksmbd: fix FSCTL permission bypass by adding a permission check for FSCTL_SET… |
| CVE-2026-53018 | 5.5 | 2.2 | Linux | Linux | — | f2fs: avoid reading already updated pages during GC |
| CVE-2026-53019 | 5.5 | 2.2 | Linux | Linux | — | clk: spacemit: ccu_mix: fix inverted condition in ccu_mix_trigger_fc() |
| CVE-2026-53028 | 5.5 | 2.2 | Linux | Linux | CWE-476 | usb: typec: Fix error pointer dereference |
| CVE-2026-53030 | 5.5 | 2.2 | Linux | Linux | CWE-401 | i3c: master: renesas: Fix memory leak in renesas_i3c_i3c_xfers() |
| CVE-2026-53042 | 5.5 | 2.2 | Linux | Linux | CWE-824 | fwctl: Fix class init ordering to avoid NULL pointer dereference on device re… |
| CVE-2026-53095 | 5.5 | 2.3 | Linux | Linux | — | bpf: Fix abuse of kprobe_write_ctx via freplace |
| CVE-2026-53104 | 5.5 | 2.3 | Linux | Linux | CWE-401 | wifi: mt76: Fix memory leak destroying device |
| CVE-2026-53111 | 5.5 | 2.3 | Linux | Linux | CWE-476 | bpf: test_run: Fix the null pointer dereference issue in bpf_lwt_xmit_push_encap |
| CVE-2026-53128 | 5.5 | 2.3 | Linux | Linux | — | drbd: Balance RCU calls in drbd_adm_dump_devices() |
| CVE-2026-56370 | 4.8 | 2.3 | ImageMagick | ImageMagick | CWE-125 | ImageMagick - Out-of-bounds Access in ConnectedComponentsImage via connected-… |
| CVE-2026-42450 | 8.4 | 2.1 | AcademySoftwareFoundation | OpenColorIO | CWE-120 | OpenColorIO vulnerable to stack buffer overflow via unbounded `sscanf %s` in … |
| CVE-2026-52927 | 7.8 | 2.2 | Linux | Linux | CWE-125 | netfilter: ebtables: fix OOB read in compat_mtw_from_user |
| CVE-2026-52933 | 7.8 | 2.2 | Linux | Linux | CWE-835 | io_uring/poll: fix signed comparison in io_poll_get_ownership() |
| CVE-2026-52935 | 7.8 | 2.2 | Linux | Linux | CWE-787 | xfrm: espintcp: do not reuse an in-progress partial send |
| CVE-2026-53077 | 7.8 | 2.2 | Linux | Linux | — | net/rds: Restrict use of RDS/IB to the initial network namespace |
| CVE-2026-53078 | 7.8 | 2.1 | Linux | Linux | CWE-125 | bpf: Fix same-register dst/src OOB read and pointer leak in sock_ops |
| CVE-2026-53110 | 7.8 | 2.1 | Linux | Linux | — | s390/bpf: Zero-extend bpf prog return values and kfunc arguments |
| CVE-2026-53115 | 7.8 | 2.2 | Linux | Linux | CWE-416 | bus: fsl-mc: use generic driver_override infrastructure |
| CVE-2026-53119 | 7.8 | 2.2 | Linux | Linux | CWE-416 | platform/wmi: use generic driver_override infrastructure |
| CVE-2026-53120 | 7.8 | 2.2 | Linux | Linux | CWE-416 | PCI: use generic driver_override infrastructure |
| CVE-2026-53067 | 7.8 | 2.0 | Linux | Linux | CWE-415 | PCI: endpoint: pci-ep-msi: Fix error unwind and prevent double alloc |
| CVE-2026-53085 | 7.8 | 2.1 | Linux | Linux | CWE-416 | bpf: fix mm lifecycle in open-coded task_vma iterator |
| CVE-2026-53118 | 7.8 | 2.1 | Linux | Linux | CWE-416 | vdpa: use generic driver_override infrastructure |
| CVE-2026-52941 | 5.5 | 2.1 | Linux | Linux | CWE-476 | net/smc: avoid NULL deref of conn->lnk in smc_msg_event tracepoint |
| CVE-2026-53065 | 5.5 | 2.1 | Linux | Linux | CWE-401 | ASoC: sti: use managed regmap_field allocations |
| CVE-2026-47733 | 4.4 | 2.0 | RocketChat | Rocket.Chat | CWE-79 | Rocket.Chat: Missing URL protocol sanitization in ImageElement allows javascr… |
| CVE-2026-52919 | 7.8 | 1.9 | Linux | Linux | CWE-191 | batman-adv: fix tp_meter counter underflow during shutdown |
| CVE-2026-53112 | 7.8 | 1.9 | Linux | Linux | CWE-416 | wifi: rtlwifi: pci: fix possible use-after-free caused by unfinished irq_prep… |
| CVE-2026-53129 | 7.8 | 1.9 | Linux | Linux | CWE-416 | fs/mbcache: cancel shrink work before destroying the cache |
| CVE-2026-53068 | 7.1 | 2.0 | Linux | Linux | CWE-190 | drm/komeda: fix integer overflow in AFBC framebuffer size check |
| CVE-2026-53076 | 7.1 | 1.9 | Linux | Linux | CWE-125 | bpf: Fix OOB in pcpu_init_value |
| CVE-2026-52939 | 5.5 | 1.9 | Linux | Linux | CWE-476 | net/rds: fix NULL deref in rds_ib_send_cqe_handler() on masked atomic completion |
| CVE-2026-53123 | 5.5 | 1.9 | Linux | Linux | — | md: wake raid456 reshape waiters before suspend |
| CVE-2026-52930 | 5.5 | 1.8 | Linux | Linux | — | ipc/shm: serialize orphan cleanup with shm_nattch updates |
| CVE-2026-52921 | 5.5 | 1.7 | Linux | Linux | CWE-835 | netfilter: ipset: stop hash:* range iteration at end |
| CVE-2026-52925 | 5.5 | 1.7 | Linux | Linux | CWE-476 | vrf: Fix a potential NPD when removing a port from a VRF |
| CVE-2026-52926 | 5.5 | 1.7 | Linux | Linux | — | batman-adv: clear current gateway during teardown |
| CVE-2026-52928 | 5.5 | 1.7 | Linux | Linux | — | af_unix: Reject SIOCATMARK on non-stream sockets |
| CVE-2026-52936 | 5.5 | 1.7 | Linux | Linux | — | crypto: jitterentropy - replace long-held spinlock with mutex |
| CVE-2026-53066 | 5.5 | 1.7 | Linux | Linux | CWE-476 | drm/sun4i: backend: fix error pointer dereference |
| CVE-2026-53073 | 5.5 | 1.7 | Linux | Linux | CWE-476 | Bluetooth: hci_ldisc: Clear HCI_UART_PROTO_INIT on error |
| CVE-2026-53074 | 5.5 | 1.7 | Linux | Linux | — | bpf: reject short IPv4/IPv6 inputs in bpf_prog_test_run_skb |
| CVE-2026-53080 | 5.5 | 1.7 | Linux | Linux | CWE-476 | net/sched: cls_fw: fix NULL dereference of "old" filters before change() |
| CVE-2026-53082 | 5.5 | 1.7 | Linux | Linux | CWE-908 | net: hamradio: 6pack: fix uninit-value in sixpack_receive_buf |
| CVE-2026-53083 | 5.5 | 1.7 | Linux | Linux | — | bpf: Fix RCU stall in bpf_fd_array_map_clear() |
| CVE-2026-53084 | 5.5 | 1.7 | Linux | Linux | — | bpf: return VMA snapshot from task_vma iterator |
| CVE-2026-53126 | 5.5 | 1.7 | Linux | Linux | — | blk-cgroup: fix disk reference leak in blkcg_maybe_throttle_current() |
| CVE-2026-53107 | 5.5 | 1.6 | Linux | Linux | — | wifi: libertas: don't kill URBs in interrupt context |
| CVE-2026-53121 | 5.5 | 1.6 | Linux | Linux | CWE-401 | amd-pstate: Fix memory leak in amd_pstate_epp_cpu_init() |
| CVE-2026-53089 | 7.8 | 1.6 | Linux | Linux | CWE-416 | bpf: Fix use-after-free in offloaded map/prog info fill |
| CVE-2026-53116 | 7.8 | 1.6 | Linux | Linux | CWE-416 | s390/ap: use generic driver_override infrastructure |
| CVE-2026-52937 | 5.5 | 1.6 | Linux | Linux | CWE-401 | tap: fix stack info leak in tap_ioctl() SIOCGIFHWADDR |
| CVE-2026-52940 | 5.5 | 1.6 | Linux | Linux | — | tun: zero the whole vnet header in tun_put_user() |
| CVE-2026-52949 | 5.5 | 1.6 | Linux | Linux | — | drm/ttm: Fix ttm_bo_shrink() infinite LRU walk on backup failure |
| CVE-2026-53017 | 5.5 | 1.6 | Linux | Linux | — | f2fs: fix data loss caused by incorrect use of nat_entry flag |
| CVE-2026-53114 | 5.5 | 1.6 | Linux | Linux | — | perf/amd/ibs: Avoid calling perf_allow_kernel() from the IBS NMI handler |
| CVE-2026-57306 | 4.2 | 1.5 | Jenkins Project | Jenkins Zowe zDevOps Plugin | CWE-352 | A cross-site request forgery (CSRF) vulnerability in Jenkins Zowe zDevOps Plu… |
| CVE-2026-53099 | 5.5 | 1.4 | Linux | Linux | — | bpf: Switch CONFIG_CFI_CLANG to CONFIG_CFI |
| CVE-2026-53102 | 5.5 | 1.4 | Linux | Linux | CWE-401 | wifi: mt76: Fix memory leak after mt76_connac_mcu_alloc_sta_req() |
| CVE-2026-53113 | 5.5 | 1.4 | Linux | Linux | CWE-401 | wifi: ath11k: fix memory leaks in beacon template setup |
| CVE-2026-57289 | 4.8 | 1.4 | Jenkins Project | Jenkins Bitbucket Push and Pull Request Plugin | CWE-295 | Jenkins Bitbucket Push and Pull Request Plugin 3.3.8 and earlier unconditiona… |
| CVE-2026-52991 | 7.8 | 1.3 | Linux | Linux | CWE-362 | sched/psi: fix race between file release and pressure write |
| CVE-2026-53766 | 6.1 | 1.3 | ChromeDevTools | chrome-devtools-mcp | CWE-22 | chrome-devtools-mcp: validatePath() does not canonicalize symlinks before enf… |
| CVE-2026-53007 | 5.5 | 1.3 | Linux | Linux | CWE-476 | ice: fix potential NULL pointer deref in error path of ice_set_ringparam() |
| CVE-2026-53029 | 5.5 | 1.3 | Linux | Linux | CWE-908 | fs/ntfs3: prevent uninitialized lcn caused by zero len |
| CVE-2026-9539 | 6.5 | 1.3 | freedesktop.org | libslirp | CWE-125 | libslirp TCP URG OOB Read Information Leak |
| CVE-2026-54905 | 2.0 | 1.3 | ruby-concurrency | concurrent-ruby | CWE-128 | concurrent-ruby: `ReentrantReadWriteLock` read-count overflow grants a write … |
| CVE-2026-13037 | 7.8 | 1.2 | Chrome | CWE-416 | Use after free in WebView in Google Chrome on Android prior to 149.0.7827.197… | |
| CVE-2026-9721 | 4.3 | 1.1 | chuhpl | Book a Room Event Calendar | CWE-352 | Book a Room Event Calendar <= 1.9 - Cross-Site Request Forgery to Settings Up… |
| CVE-2026-57292 | 5.4 | 1.0 | Jenkins Project | Jenkins Gitee Plugin | CWE-352 | A cross-site request forgery (CSRF) vulnerability in Jenkins Gitee Plugin 128… |
| CVE-2026-57298 | 5.4 | 1.0 | Jenkins Project | Jenkins Contrast Continuous Application Security Plugin | CWE-352 | A cross-site request forgery (CSRF) vulnerability in Jenkins Contrast Continu… |
| CVE-2026-53050 | 7.8 | 1.0 | Linux | Linux | CWE-362 | quota: Fix race of dquot_scan_active() with quota deactivation |
| CVE-2026-52938 | 5.5 | 1.0 | Linux | Linux | CWE-476 | bpf: Fix NULL pointer dereference in bpf_sk_storage_clone and diag paths |
| CVE-2026-53079 | 5.5 | 1.0 | Linux | Linux | CWE-401 | net_sched: fix skb memory leak in deferred qdisc drops |
| CVE-2026-53106 | 5.5 | 1.0 | Linux | Linux | CWE-401 | bpf: Do not allow deleting local storage in NMI |
| CVE-2026-53124 | 5.5 | 1.0 | Linux | Linux | — | ublk: reset per-IO canceled flag on each fetch |
| CVE-2026-53127 | 5.5 | 1.0 | Linux | Linux | CWE-401 | block: fix zones_cond memory leak on zone revalidation error paths |
| CVE-2026-53054 | 7.8 | 0.9 | Linux | Linux | CWE-667 | drm/msm: Fix VM_BIND UNMAP locking |
| CVE-2026-53062 | 7.8 | 0.8 | Linux | Linux | CWE-667 | dm cache policy smq: fix missing locks in invalidating cache blocks |
| CVE-2026-7539 | 7.3 | 0.8 | HP Inc. | HP Dock Accessory | CWE-379 | HP Dock Accessory WMI Provider Installer Security Update |
| CVE-2026-53765 | 6.1 | 0.8 | ChromeDevTools | chrome-devtools-mcp | CWE-59 | chrome-devtools-mcp: daemon.pid write follows symlinks in /tmp fallback runti… |
| CVE-2026-53035 | 5.5 | 0.7 | Linux | Linux | CWE-667 | bpf, sockmap: Fix af_unix iter deadlock |
| CVE-2026-53037 | 5.5 | 0.7 | Linux | Linux | CWE-667 | HID: usbhid: fix deadlock in hid_post_reset() |
| CVE-2026-53101 | 5.5 | 0.7 | Linux | Linux | CWE-667 | wifi: mt76: mt7921: fix potential deadlock in mt7921_roc_abort_sync |
| CVE-2026-53100 | 5.5 | 0.7 | Linux | Linux | CWE-667 | wifi: mt76: fix deadlock in remain-on-channel |
| CVE-2026-53103 | 5.5 | 0.7 | Linux | Linux | CWE-667 | wifi: mt76: mt7925: fix potential deadlock in mt7925_roc_abort_sync |
| CVE-2026-52959 | 7.8 | 0.6 | Linux | Linux | — | virt: sev-guest: Do not use host-controlled page order in cleanup path |
| CVE-2026-53020 | 7.8 | 0.6 | Linux | Linux | CWE-362 | um: Fix potential race condition in TLB sync |
| CVE-2026-52979 | 5.5 | 0.7 | Linux | Linux | CWE-667 | net: psp: check for device unregister when creating assoc |
| CVE-2026-53122 | 5.5 | 0.6 | Linux | Linux | CWE-667 | btrfs: fix deadlock between reflink and transaction commit when using flushon… |
| CVE-2026-56269 | 4.3 | 0.7 | Flowise | Flowise | CWE-798 | Flowise - Weak Default Token Hash Secret in JWT Token Encryption |
| CVE-2026-53125 | 5.5 | 0.6 | Linux | Linux | CWE-667 | md: fix array_state=clear sysfs deadlock |
| CVE-2026-13208 | 6.5 | 0.5 | Red Hat | Red Hat OpenShift Virtualization 4 | CWE-287 | Kubevirt: virt-handler-rhel9: kubevirt: virt-handler notify server trusts vmi… |
| CVE-2026-53008 | 4.7 | 0.1 | Linux | Linux | CWE-362 | ice: fix race condition in TX timestamp ring cleanup |
| CVE-2026-53108 | 4.7 | 0.1 | Linux | Linux | CWE-362 | powerpc/64s: Fix unmap race with PMD migration entries |
| CVE-2026-56272 | 5.6 | 0.1 | Flowise | Flowise | CWE-916 | Flowise - Insufficient Password Salt Rounds in Bcrypt Hashing |