boxscore/security
Monday, August 10, 2026 · all times UTC← 2026-08-09 · archive · 2026-08-11 →

Edition of August 10, 2026, continued — page 2 of 2. Back to page 1

Results (continued, ranked) — ranks 401–670 of 670
CVECVSSEPSS %ileVendorProductCWETitle
CVE-2026-682067.87.3LinuxLinuxmedia: v4l2-ctrls: validate HEVC active reference counts
CVE-2026-682097.87.3LinuxLinuxmedia: sun4i-csi: Return queued buffers on start_streaming() failure
CVE-2026-682107.87.3LinuxLinuxmedia: stm32: dcmi: unregister notifier on probe failure
CVE-2026-682137.87.3LinuxLinuxmedia: rtl2832_sdr: Return queued buffers on start_streaming() failure
CVE-2026-682167.87.3LinuxLinuxmedia: pwc: Return queued buffers on start_streaming() failure
CVE-2026-682197.87.3LinuxLinuxmedia: nxp: imx8-isi: Fix potential out-of-bounds issues
CVE-2026-683387.87.3LinuxLinuxnet/packet: avoid fanout hook re-registration after unregister
CVE-2026-68126await7.3LinuxLinuxmac802154: hold an interface reference across the scan worker
CVE-2026-68133await7.3LinuxLinuxice: fix PTP Call Trace during PTP release
CVE-2026-68135await7.3LinuxLinuxnet: hip04: fix RX buffer leak on build_skb failure
CVE-2026-68139await7.3LinuxLinuxnet/mlx5e: Use sender devcom for MPV master-up
CVE-2026-68146await7.3LinuxLinuxftrace: Add global mutex to serialize trace_parser access
CVE-2026-68151await7.3LinuxLinuxbinfmt_elf_fdpic: only honour the first PT_INTERP
CVE-2026-68252await7.3LinuxLinuxdrm/amdgpu/sdma7.0: replace BUG_ON() with WARN_ON()
CVE-2026-68256await7.3LinuxLinuxdrm/amd/display: detect_link_and_local_sink: DP alt mode timeout path leaks p…
CVE-2026-68271await7.3LinuxLinuxdrm/nouveau: fix reversed error cleanup order in ucopy functions
CVE-2026-68272await7.3LinuxLinuxdrm/amdgpu: validate CP_GFX_SHADOW chunk size in CS pass1
CVE-2026-68279await7.3LinuxLinuxdrm/dp/mst: fix OOB reads in remote DPCD/I2C sideband reply parsers
CVE-2026-68280await7.3LinuxLinuxdrm/bridge: cdns-dsi: Replace deprecated UNIVERSAL_DEV_PM_OPS()
CVE-2026-68281await7.3LinuxLinuxdrm/imagination: Count paired job fence as dependency in prepare_job()
CVE-2026-68325await7.3LinuxLinuxiommu/amd: Bound the early ACPI HID map
CVE-2026-68333await7.3LinuxLinuxdpaa2-switch: put MAC endpoint device on disconnect
CVE-2026-68336await7.3LinuxLinuxbonding: fix devconf_all NULL dereference when IPv6 is disabled
CVE-2026-68350await7.3LinuxLinuxwifi: carl9170: fix OOB read from off-by-two in TX status handler
CVE-2026-68355await7.3LinuxLinuxwifi: ath11k: fix potential buffer underflow in ath11k_hal_rx_msdu_list_get()
CVE-2026-68363await7.3LinuxLinuxwifi: ath9k: hif_usb: don't dereference hif_dev after re-arming firmware request
CVE-2026-68365await7.3LinuxLinuxUSB: serial: io_edgeport: cap received transmit credits
CVE-2026-68366await7.3LinuxLinuxusb: gadget: uvc: clamp SEND_RESPONSE length to the response buffer
CVE-2026-68367await7.3LinuxLinuxusb: gadget: f_tcm: synchronize delayed set_alt with teardown
CVE-2026-68406await7.3LinuxLinuxwifi: cfg80211: validate PMSR FTM preamble range
CVE-2025-302405.17.1TP-Link Systems Inc.HB810(US2) V1.0/1.6/2.0/2.6CWE-59Arbitrary File Read via Improper Symlink Handling in USB HTTPS Access Path in…
CVE-2026-683877.87.1LinuxLinuxcan: raw: add locking for raw flags bitfield
CVE-2026-137014.87.1UnknownAdvanced ExcerptCWE-79Advanced Excerpt < 4.5 - Admin+ Stored XSS via Ellipsis Setting
CVE-2026-68122await7.1LinuxLinuxovpn: fix peer refcount leak in TCP error paths
CVE-2026-68132await7.1LinuxLinuxsuper: fix emergency thaw deadlock on frozen block devices
CVE-2026-68150await7.1LinuxLinuxfs/super: fix emergency thaw double-unlock of s_umount
CVE-2026-68211await7.1LinuxLinuxmedia: stm32-dcmipp: Return queued buffers on start_streaming() failure
CVE-2026-68275await7.1LinuxLinuxdrm/amdgpu: check amdgpu_vm_bo_find() result in GET_MAPPING_INFO
CVE-2026-68282await7.1LinuxLinuxdrm/rockchip: analogix_dp: Add missing error check for platform_get_resource()
CVE-2026-68332await7.1LinuxLinuxnet: airoha: Fix potential use-after-free in airoha_ppe_deinit()
CVE-2026-68334await7.1LinuxLinuxrxrpc: fix io_thread race in rxrpc_wake_up_io_thread()
CVE-2026-68084await7.0LinuxLinuxstaging: vme_user: fix location monitor leak in tsi148 bridge
CVE-2026-727435.16.8dataeaseSQLBotCWE-79SQLBot 1.10.0 SQText Dashboard Component Stored XSS via v-html
CVE-2026-170234.86.8UnknownSalon Booking SystemCWE-284Salon Booking System – Free Version <= 10.30.33 - Unauthenticated Google Cale…
CVE-2026-682007.86.8LinuxLinuxALSA: timer: don't re-enter an instance callback that is still running
CVE-2026-682017.86.8LinuxLinuxALSA: timer: drain a slave's callback before its master detaches it
CVE-2026-682307.36.7LinuxLinuxmedia: amlogic-c3: Add validations for ae and awb config
CVE-2026-63736.56.7Zyxel NetworksWAH7601CWE-497Sensitive Data Exposure in Zyxel WAH7601 Router
CVE-2026-149415.46.5UnknownCustomer Reviews for WooCommerceCWE-862Customer Reviews for WooCommerce < 5.116.0 - Subscriber+ Missing Authorizatio…
CVE-2026-152385.46.5UnknownMotoPress Hotel BookingCWE-639Hotel Booking Lite < 6.2.3 - Subscriber+ Customer Data Modification via IDOR
CVE-2026-68092await6.5LinuxLinuxtime/jiffies: Register jiffies clocksource before usage
CVE-2026-68099await6.5LinuxLinuxksmbd: restore DACL size on check_add_overflow() to avoid malformed ACL
CVE-2026-68102await6.5LinuxLinuxdrm/amdgpu: fix aperture mapping leak
CVE-2026-68110await6.5LinuxLinuxdrm/amdgpu/sdma4.4.2: replace BUG_ON() with WARN_ON()
CVE-2026-68111await6.5LinuxLinuxdrm/amdgpu/gfx9: replace BUG_ON() with WARN_ON()
CVE-2026-68112await6.5LinuxLinuxdrm/amdgpu/gfx9.4.3: replace BUG_ON() with WARN_ON()
CVE-2026-68113await6.5LinuxLinuxdrm/amdgpu/gfx12: replace BUG_ON() with WARN_ON()
CVE-2026-68115await6.5LinuxLinuxdrm/amdgpu/gfx10: replace BUG_ON() with WARN_ON()
CVE-2026-68234await6.5LinuxLinuxdrm/amdgpu: fix bo->pin leaking in amdgpu_bo_create_reserved
CVE-2026-68243await6.5LinuxLinuxdrm/i915/gem: Fix NULL deref in I915_CONTEXT_PARAM_SSEU
CVE-2026-68244await6.5LinuxLinuxdrm/i915/gem: Do not leak siblings[] on proto context error
CVE-2026-68246await6.5LinuxLinuxdrm/amdgpu/gfx11: replace BUG_ON() with WARN_ON()
CVE-2026-68247await6.5LinuxLinuxdrm/i915/bios: range check LFP Data Block panel_type2
CVE-2026-68248await6.5LinuxLinuxdrm/i915: Return NULL on error in active_instance
CVE-2026-68249await6.5LinuxLinuxdrm/amdgpu/sdma5.0: replace BUG_ON() with WARN_ON()
CVE-2026-68254await6.5LinuxLinuxdrm/i915/vrr: require valid min/max vfreq for VRR
CVE-2026-68259await6.5LinuxLinuxdrm/amdkfd: Check bounds in allocate_event_notification_slot
CVE-2026-68267await6.5LinuxLinuxdrm/xe/rtp: Add RING_FORCE_TO_NONPRIV_DENY to OA whitelists
CVE-2026-68301await6.5LinuxLinuxnet: hsr: fix memory leak on slave unregistration by removing synced VLANs
CVE-2026-68306await6.5LinuxLinuxwifi: mt76: mt7996: fix possible NULL-pointer deref in mt7996_mcu_sta_bfer_eht()
CVE-2026-68307await6.5LinuxLinuxwifi: mt76: mt7925: fix crash in reset link replay
CVE-2026-68308await6.5LinuxLinuxwifi: mt76: mt7996: check pointer returned by mt76_connac_get_he_phy_cap()
CVE-2026-68309await6.5LinuxLinuxwifi: mt76: connac: fix possible NULL-pointer deref in mt76_connac_mcu_uni_bs…
CVE-2026-68310await6.5LinuxLinuxwifi: mt76: mt7915: guard HE capability lookups
CVE-2026-68311await6.5LinuxLinuxwifi: mt76: mt7925: guard link STA in decap offload
CVE-2026-68317await6.5LinuxLinuxpds_core: fix auxiliary device add/del races
CVE-2026-68318await6.5LinuxLinuxpds_core: fix use-after-free on workqueue during remove
CVE-2026-68319await6.5LinuxLinuxpds_core: fix deadlock between reset thread and remove
CVE-2026-68324await6.5LinuxLinuxiommu/intel: Fix out-of-bounds memset in dmar_latency_disable()
CVE-2026-68327await6.5LinuxLinuxwan: wanxl: Only reset hardware after BAR mapping
CVE-2026-68328await6.5LinuxLinuxnfp: Check resource mutex allocation
CVE-2026-68331await6.5LinuxLinuxdpaa2-eth: put MAC endpoint device on disconnect
CVE-2026-68357await6.5LinuxLinuxwatchdog: pretimeout: Fix UAF in watchdog_unregister_governor()
CVE-2026-68362await6.5LinuxLinuxwifi: ath11k: fix NULL pointer dereference in ath11k_hal_srng_access_begin
CVE-2026-68372await6.5LinuxLinuxusb: core: port: Deattach Type-C connector on component unbind
CVE-2026-68403await6.5LinuxLinuxwifi: brcmfmac: initialize SDIO data work before cleanup
CVE-2026-68407await6.5LinuxLinuxwifi: nl80211: free RNR data on MBSSID mismatch
CVE-2026-68408await6.5LinuxLinuxwifi: cfg80211: convert pmsr_free_wk to wiphy_work to fix deadlock
CVE-2026-68411await6.5LinuxLinuxwifi: mac80211_hwsim: clamp virtio RX length before skb_put
CVE-2026-590917.36.4Red HatRed Hat Enterprise Linux 6CWE-787Gimp: gimp: multiple vulnerabilities in file format plugins via crafted image…
CVE-2026-189605.46.4UnknownBlock User AccountCWE-287Block User Account < 2.0.1 - Subscriber+ Account Block Bypass via Application…
CVE-2026-68087await6.3LinuxLinuxHID: wacom: use GFP_ATOMIC in wacom_wac_queue_flush()
CVE-2026-68089await6.3LinuxLinuxiio: core: fix uninitialized data in debugfs
CVE-2026-68095await6.3LinuxLinuxfuse-uring: fix race between registration and connection abortion
CVE-2026-68233await6.3LinuxLinuxdrm/vc4: Shut down BO cache timer before teardown
CVE-2026-68238await6.3LinuxLinuxdrm/amdgpu: Release VFCT ACPI table reference
CVE-2026-68239await6.3LinuxLinuxdrm/ttm: Account for NULL and handle pages in ttm_pool_backup
CVE-2026-68292await6.3LinuxLinuxice: prevent tstamp ring allocation for non-PF VSI types
CVE-2026-68356await6.3LinuxLinuxwatchdog: airoha: Prevent division by zero when clock frequency is zero
CVE-2026-681637.86.2LinuxLinuxmm/page_vma_mapped: fix device-private PMD handling
CVE-2026-725947.66.2lobehublobe-chatCWE-79lobehub lobe-chat - Stored Cross-Site Scripting via Unrestricted SVG Avatar U…
CVE-2026-725765.46.2BluditBluditCWE-79Bludit - Stored Cross-Site Scripting via Malicious SVG Logo Upload
CVE-2026-664102.36.2ECOVACS ROBOTICSAndroid App "ECOVACS PRO"CWE-295Android and iOS apps ECOVACS PRO App improperly validate server certificates.…
CVE-2026-681627.86.1LinuxLinuxsctp: avoid auth_enable sysctl UAF during netns teardown
CVE-2026-682948.86.0LinuxLinuxnet: qrtr: restrict socket creation to the initial network namespace
CVE-2026-681787.86.0LinuxLinuxmisc: nsm: pin the module while the device is open
CVE-2026-682287.86.0LinuxLinuxmedia: chips-media: wave5: Move src_buf Removal to finish_encode
CVE-2026-682457.86.0LinuxLinuxdrm/amdgpu: fix lifetime issue of amdgpu_vm_get_task_info_pasid()
CVE-2026-682607.86.0LinuxLinuxdrm/imagination: acquire vm_ctx->lock before mapping memory to GPU VM
CVE-2026-170196.15.9UnknownJetEngineCWE-79JetEngine < 3.8.13.1 - Unauthenticated Stored XSS via Form File Upload (SVG)
CVE-2026-170105.45.9UnknownSaitama Addon PackCWE-79Saitama Addon Pack <= 1.0.8 - Contributor+ Stored XSS via Post Meta
CVE-2026-190755.05.8UnknownAll-in-One Video GalleryCWE-918All-in-One Video Gallery < 4.9.2 - Subscriber+ Server-Side Request Forgery vi…
CVE-2026-170204.35.8UnknownSalon Booking SystemCWE-639Salon Booking System – Free Version <= 10.31.0 - Subscriber+ Arbitrary Bookin…
CVE-2026-68285await5.9LinuxLinuxLoongArch: BPF: Fix memory leak in bpf_jit_free()
CVE-2026-68288await5.9LinuxLinuxnet: drop_monitor: fix info leak in NET_DM_ATTR_PAYLOAD
CVE-2026-68289await5.9LinuxLinuxtipc: fix integer overflow in tipc_recvmsg() and tipc_recvstream()
CVE-2026-68347await5.9LinuxLinuxiommu/amd: Fix IRQ unsafe locking in gdom allocation
CVE-2026-68364await5.9LinuxLinuxdrm/amd/display: Fix ISM dc_lock deadlock during suspend
CVE-2026-68375await5.9LinuxLinuxbnxt_en: Handle partially initialized auxiliary devices
CVE-2026-682408.85.8LinuxLinuxdrm/gpusvm: publish dpagemap early to avoid device mapping leak on error
CVE-2026-683307.85.8LinuxLinuxnet: airoha: Fix DMA direction for NPU mailbox buffer
CVE-2026-590885.55.7Red HatRed Hat Enterprise Linux 6CWE-190Gimp: gimp: denial of service via signed integer overflow in fli file processing
CVE-2026-683298.85.5LinuxLinuxiommu/amd: Wait for completion instead of returning early in iommu_completion…
CVE-2026-681897.85.5LinuxLinuxBluetooth: hci_sync: Protect UUID list traversal
CVE-2026-682297.15.5LinuxLinuxmedia: cedrus: skip invalid H.264 reference list entries
CVE-2026-681727.15.4LinuxLinuxarm64: make huge_ptep_get handled unaligned addresses
CVE-2026-681737.15.4LinuxLinuxublk: wait on ublk_dev_ready() instead of ub->completion
CVE-2026-664844.65.4GNUcpioCWE-22Path Traversal in GNU cpio
CVE-2026-68416await5.3LinuxLinuxmtd: fix double free and WARN_ON in add_mtd_device() error paths
CVE-2026-68428await5.3LinuxLinuxKVM: x86/mmu: Fix use-after-free on vendor module reload
CVE-2026-210636.85.2Samsung MobileSamsung Mobile DevicesCWE-926Improper export of android application components in AppLock prior to SMR Aug…
CVE-2026-210735.25.2Samsung MobileSamsung Mobile DevicesImproper input validation in Galaxy Themes prior to SMR Aug-2026 Release 1 al…
CVE-2026-68094await5.2LinuxLinuxsched_ext: Preserve rq tracking across local DSQ dispatch
CVE-2026-68105await5.2LinuxLinuxdrm/amdgpu: Fix kernel panic during driver load failure
CVE-2026-68109await5.2LinuxLinuxdrm/amdgpu/sdma7.1: replace BUG_ON() with WARN_ON()
CVE-2026-68114await5.2LinuxLinuxdrm/amdgpu/gfx12.1: replace BUG_ON() with WARN_ON()
CVE-2026-68237await5.2LinuxLinuxdrm/amdgpu/userq: fix indefinite fence wait during GPU reset
CVE-2026-68291await5.2LinuxLinuxidpf: fix max_vport related crash on allocation error during init
CVE-2026-68337await5.2LinuxLinuxbpf: Reject redirect helpers without a bpf_net_context
CVE-2026-681777.85.1LinuxLinuxtracing: Delay module ref count for "enable_event" trigger
CVE-2026-682957.85.1LinuxLinuxLoongArch: BPF: Zero-extend signed ALU32 div/mod results
CVE-2026-684047.85.1LinuxLinuxwifi: cfg80211: use wiphy work for socket owner autodisconnect
CVE-2026-210606.75.1Samsung MobileSamsung Mobile DevicesCWE-20Improper input validation in Samsung Contacts prior to SMR Aug-2026 Release 1…
CVE-2025-156802.45.1TBEATBEA TLogger (TBEA Communication Box 3rd Generation)CWE-497Information Disclosure via UART
CVE-2026-68418await5.1LinuxLinuxRDMA/irdma: Prevent user-triggered null deref on QP create
CVE-2026-210836.85.0Samsung MobileSmart SwitchCWE-20Improper input validation in Smart Switch prior to version 3.7.72.6 allows ad…
CVE-2026-182004.34.9UnknownFoodBoxBookerCWE-639FoodBoxBooker < 1.0.8 - Subscriber+ Arbitrary User Profile Update
CVE-2026-142113.84.9UnknownBooking for Appointments and Events CalendarCWE-639Amelia Pro < 9.7 - Provider+ Arbitrary Customer Data Disclosure and Modificat…
CVE-2026-682747.84.8LinuxLinuxdrm/xe/guc: Fix buffer overflow in steered register list allocation
CVE-2025-327364.94.8Ping IdentityPingFederateCWE-352PingFederate Administrative Console CSRF weaknesses
CVE-2026-664062.34.8ECOVACS ROBOTICSDEEBOT PRO M1CWE-295DEEBOT PRO M1 and DEEBOT PRO K1VAC use wget command with server certificate v…
CVE-2026-683407.74.7LinuxLinuxhwmon: occ: validate poll response sensor blocks
CVE-2026-725835.44.7fastschemafastschemaCWE-79fastschema - Stored Cross-Site Scripting via MIME Type Bypass in File Upload
CVE-2026-68086await4.7LinuxLinuxmm/khugepaged: write all dirty file folios when collapsing
CVE-2026-691126.94.5huggingfaceaccelerateCWE-22Hugging Face Accelerate 1.14.0 Path Traversal and DoS via weight_map
CVE-2026-729137.34.4kovidgoyalkittyCWE-77Kitty: Command injection into the child shell via chained @kitty-echo + @kitt…
CVE-2026-210705.14.3Samsung MobileSamsung Mobile DevicesCWE-20Improper input validation in Samsung Message prior to SMR Aug-2026 Release 1 …
CVE-2026-68423await4.3LinuxLinuxmtd: virt_concat: fix use-after-free in mtd_virt_concat_destroy()
CVE-2026-68424await4.3LinuxLinuxmtd: virt_concat: fix use-after-free in mtd_virt_concat_destroy_joins()
CVE-2026-682537.84.0LinuxLinuxdrm/i915/hdcp: check streams[] bounds before overflow
CVE-2026-681288.83.7LinuxLinuxice: reject out-of-range ptype in ice_parser_profile_init
CVE-2026-681428.83.7LinuxLinuxgeneve: require CAP_NET_ADMIN in the device netns for changelink
CVE-2026-681217.83.7LinuxLinuxpppoe: reload header pointer after dev_hard_header()
CVE-2026-681437.83.7LinuxLinuxnet: slip: serialize receive against buffer reallocation
CVE-2026-681457.83.7LinuxLinuxiomap: fix out-of-bounds bitmap_set() with zero-length range
CVE-2026-682227.83.7LinuxLinuxmedia: msi2500: Return queued buffers on start_streaming() failure
CVE-2026-682577.83.7LinuxLinuxdrm/amdkfd: fix 32-bit overflow in CWSR total size calculation
CVE-2026-682647.83.7LinuxLinuxdrm/xe/pt: Reset current_op in xe_pt_update_ops_init()
CVE-2026-683707.83.7LinuxLinuxusb: gadget: dummy_hcd: prevent fifo_req reuse during giveback
CVE-2026-682937.13.7LinuxLinuxnet/mlx5: Fix MCIA register buffer overflow on 32 dword reads
CVE-2026-725705.43.7cube-rootdirectory-serveCWE-79cube-root directory-serve - Stored Cross-Site Scripting via Malicious Filename
CVE-2026-631055.13.7RazinsoftReady eCommerceCWE-79ReadyEcommerce < 4.5.2 Stored XSS via Chat and Support Ticket Systems
CVE-2026-210826.93.6Samsung MobileSamsung HealthCWE-23Relative path traversal in Samsung Health prior to version 7.0.0 allows local…
CVE-2026-664864.63.6GNUcpioCWE-116Improper Output Encoding in GNU cpio
CVE-2026-684017.83.5LinuxLinuxfirmware: arm_ffa: Fix out-of-bound writes in ffa_setup_and_transmit()
CVE-2026-681088.83.4LinuxLinuxdrm/amdgpu/vce: fix integer overflow in image size
CVE-2025-302388.63.4TP-Link Systems Inc.HB810(US2) V1.0/1.6/2.0/2.6CWE-863Privilege Escalation via Improper Authorization in User Management in multipl…
CVE-2025-302398.53.4TP-Link Systems Inc.HB810(US2) V1.0/1.6/2.0/2.6CWE-321Sensitive Data Exposure due to Hardcoded Cryptographic Keys in Multiple TP-Li…
CVE-2026-681498.43.4LinuxLinuxfs: preserve ACL_DONT_CACHE state in forget_cached_acl()
CVE-2026-719698.43.4OP-TEEoptee_osCWE-787OP-TEE OS 4.10.0 Buffer Underwrite via RSA NOPAD Encrypt/Decrypt Operations
CVE-2026-681477.83.4LinuxLinuxfscrypt: Avoid dynamic allocation in fscrypt_get_devices()
CVE-2026-681527.83.4LinuxLinuxamt: fix use-after-free in AMT delayed works
CVE-2026-682667.83.4LinuxLinuxdrm/xe: Hold a dma-buf reference for imported BOs
CVE-2026-682737.83.4LinuxLinuxdrm/amdgpu: Fix context pstate override handling
CVE-2026-682847.83.4LinuxLinuxbpf, sockmap: Fix cork use-after-free in tcp_bpf_sendmsg()
CVE-2026-683357.83.4LinuxLinuxrds: drop incoming messages that cross network namespace boundaries
CVE-2026-683847.83.4LinuxLinuxdrm/xe/vf: Fix VF CCS attach/detach race with in-flight BO moves
CVE-2026-684157.83.3LinuxLinuxxfrm: clear mode callbacks after failed mode setup
CVE-2026-727187.03.4aaif-goosegooseCWE-94goose: Arbitrary command execution in goose CLI via `goose review` via git co…
CVE-2026-683807.83.2LinuxLinuxaccel/amdxdna: Fix use-after-free of mm_struct in job scheduler
CVE-2026-566195.43.3HCLSoftwareHCL BigFix MobileCWE-79HCL BigFix Mobile is vulnerable to Reflected Cross-Site Scripting (Reflected …
CVE-2026-664854.63.2GNUcpioCWE-789Uncontrolled Memory Allocation in GNU cpio
CVE-2026-682627.13.1LinuxLinuxdrm/imagination: Fix user array stride in pvr_set_uobj_array()
CVE-2026-683487.13.1LinuxLinuxASoC: tas2781: bound firmware description string parsing
CVE-2026-183704.83.1eradmanentrCWE-122Heap-based buffer overflow in entr
CVE-2026-636227.83.0Red HatRed Hat Enterprise Linux 10CWE-59Libvirt: swtpm privilege escalation via symlink following
CVE-2026-681387.83.0LinuxLinuxnet/sched: serialize qdisc_rtab_list against concurrent get/put
CVE-2026-683057.83.0LinuxLinuxdrm/xe/vf: Add drm_dev guards when detaching CCS read/write buffers
CVE-2026-683827.83.0LinuxLinuxdrm/xe/guc: Hold device ref until queue teardown completes
CVE-2026-683837.83.0LinuxLinuxdrm/xe/guc: Keep scheduler timeline name alive
CVE-2026-683997.83.0LinuxLinuxbpf: Fix UAF in sock clone early bailouts
CVE-2026-681347.33.0LinuxLinuxptp: ptp_s390: Add missing facility check
CVE-2026-682657.33.0LinuxLinuxdrm/xe/vm: Fix BO prefetch with CONSULT_MEM_ADVISE_PREF_LOC
CVE-2026-682587.13.0LinuxLinuxdrm/amdkfd: Check bounds on CRIU restore queue type and mqd size
CVE-2026-681078.82.9LinuxLinuxdrm/amdgpu/vcn4: avoid rereading IB param length
CVE-2026-681047.82.9LinuxLinuxdrm/amdgpu: invoke pm_genpd_remove() before freeing genpd
CVE-2026-681067.82.9LinuxLinuxdrm/amdgpu: fix division by zero with invalid uvd dimensions
CVE-2026-682977.82.9LinuxLinuxtipc: fix u16 MTU truncation in media and bearer MTU validation
CVE-2026-683147.82.9LinuxLinuxnet: mctp i3c: clean up notifier and buses if driver register fails
CVE-2026-683747.82.9LinuxLinuxusb: core: sysfs: add lock to bos_descriptors_read()
CVE-2026-683917.82.9LinuxLinuxBluetooth: mgmt: hold reference for hci_conn in mgmt_pending_cmds
CVE-2026-683927.82.9LinuxLinuxBluetooth: mgmt: fix locking in unpair_device/disconnect_sync
CVE-2026-683987.82.9LinuxLinuxppp: defer channel free to an RCU grace period to fix pppol2tp RX UAF
CVE-2026-684197.82.9LinuxLinuxRDMA/irdma: Prevent rereg_mr for non-mem regions
CVE-2026-125705.52.8keras-teamkeras-team/kerasCWE-770Denial of Service via HDF5 Shape Bomb in keras.models.load_model() in keras-t…
CVE-2026-210688.42.7Samsung MobileSamsung Mobile DevicesCWE-121Stack-based buffer overflow in libril_sem.so prior to SMR Aug-2026 Release 1 …
CVE-2026-682987.82.8LinuxLinuxdrm/xe/vm: Fix SVM leak on resv obj alloc failure in xe_vm_create()
CVE-2026-683777.82.8LinuxLinuxnet/sched: act_tunnel_key: Defer dst_release to RCU callback
CVE-2026-684007.82.8LinuxLinuxfirmware: arm_ffa: Fix Endpoint Memory Access Descriptor offset calculation
CVE-2026-683207.32.8LinuxLinuxsctp: fix auth_chunk_list capacity check in sctp_auth_ep_add_chunkid
CVE-2026-681537.82.6LinuxLinuxlibceph: remove debugfs files before client teardown
CVE-2026-682367.82.6LinuxLinuxdrm/amd/display: set new_stream to NULL after release
CVE-2026-682637.82.6LinuxLinuxdrm/imagination: Fix double call to drm_sched_entity_fini()
CVE-2026-682907.82.6LinuxLinuxrds: tcp: unregister sysctl before tearing down listen socket
CVE-2026-683947.82.6LinuxLinuxBluetooth: MGMT: revalidate LOAD_CONN_PARAM queued update
CVE-2026-684277.82.6LinuxLinuxgpu: host1x: Fix use-after-free in host1x_bo_clear_cached_mappings
CVE-2026-715768.52.4Red HatMulticluster Global HubCWE-345Multicluster-global-hub: multicluster-global-hub: manager trusts self-asserte…
CVE-2026-87188.42.4zephyrprojectzephyrCWE-787Out-of-bounds write in DTLS peer Connection ID getsockopt (`TLS_DTLS_PEER_CID…
CVE-2026-681167.92.3LinuxLinuxvxlan: mdb: Fix source list corruption on a failed replace
CVE-2026-190745.32.3UnknownAdvanced Classifieds & Directory ProCWE-200Advanced Classifieds & Directory Pro < 3.4.3 - Unauthenticated Non-Public Lis…
CVE-2026-683167.82.2LinuxLinuxaccel: ethosu: Fix element size accounting for cmd stream validation
CVE-2026-683237.82.2LinuxLinuxtipc: serialize udp bearer replicast list updates
CVE-2026-684177.82.1LinuxLinuxRDMA/siw: publish QP after initialization
CVE-2026-210586.92.1Samsung MobileSamsung Mobile DevicesCWE-20Improper input validation in Samsung Contacts prior to SMR Aug-2026 Release 1…
CVE-2026-719675.72.1OP-TEEoptee_osCWE-476OP-TEE OS 4.10.0 NULL Pointer Dereference DoS via Widevine PTA open_session
CVE-2026-150595.52.1systemdsystemd-oomdCWE-22systemd-oomd: unprivileged users can terminate arbitrary processes
CVE-2026-210665.12.1Samsung MobileSamsung Mobile DevicesCWE-20Improper input validation in libcodec2_sec_flacdec.so prior to SMR Aug-2026 R…
CVE-2026-210675.12.1Samsung MobileSamsung Mobile DevicesImproper input validation in libsmsd.so prior to SMR Aug-2026 Release 1 allow…
CVE-2026-210725.12.1Samsung MobileSamsung Mobile DevicesCWE-20Improper input validation in VC1 codec in libsavsvc.so prior to SMR Aug-2026 …
CVE-2026-185032.42.1Python Software FoundationCPythonCWE-1176Super-linear CPU usage for unbounded input to csv.Sniffer.sniff()
CVE-2026-193821.82.0AlmicoSpeedfanCWE-401Almico Speedfan MSR Index speedfan.sys KiSystemCall64 memory leak
CVE-2026-193801.82.0Mullvadwireguard.sysCWE-664Mullvad wireguard.sys IOCTL AdapterState reference count
CVE-2026-131338.42.0LY CorporationLINE for WindowsCWE-427A vulnerability has been identified in LineInst.exe (LINE for Windows) prior …
CVE-2026-591124.42.0Estonian Information System Authority (RIA)libdigidocppCWE-347Signature validation vulnerability affecting DigiDoc applications
CVE-2026-684207.11.8LinuxLinuxxfrm: reject optional IPTFS templates in outbound policies
CVE-2026-210647.01.6Samsung MobileSamsung Mobile DevicesCWE-284Improper access control in Weaver prior to SMR Aug-2026 Release 1 allows loca…
CVE-2026-210596.91.6Samsung MobileSamsung Mobile DevicesCWE-926Improper export of android application components in Samsung Contacts prior t…
CVE-2026-193817.11.5KingstonFURY CTRL RGB Control SoftwareCWE-266Kingston FURY CTRL RGB Control Software Driver NTIOLib_KSFX.sys privileges ma…
CVE-2026-210695.11.5Samsung MobileSamsung Mobile DevicesCWE-681Incorrect conversion between numeric types in VC1 codec in libsavsvc.so prior…
CVE-2026-210715.11.5Samsung MobileSamsung Mobile DevicesCWE-20Improper input validation in MPEG4 codec in libsavsvc.so prior to SMR Aug-202…
CVE-2026-681037.11.5LinuxLinuxdrm/amdgpu: reject mapping a reserved doorbell to a new queue
CVE-2026-63682.11.3glibcglibcCWE-908wordexp with WRDE_APPEND can return or use invalid memory
CVE-2026-210654.81.3Samsung MobileSamsung Mobile DevicesCWE-20Out-of-bounds write in libcodec2secqcelpdec.so prior to SMR Aug-2026 Release …
CVE-2026-210766.91.2Samsung MobileSamsung HealthCWE-863Incorrect authorization in Samsung Health prior to version 7.0.0 allows local…
CVE-2026-210776.91.2Samsung MobileSamsung HealthCWE-863Incorrect authorization in Samsung Health prior to version 7.0.0 allows local…
CVE-2026-210806.91.2Samsung MobileSmart SwitchCWE-312Cleartext storage of sensitive information in Smart Switch prior to version 3…
CVE-2026-210747.21.1Samsung MobileBixbyCWE-276Incorrect default permissions in Bixby prior to version 4.0.86.0 allows local…
CVE-2026-210624.81.1Samsung MobileSamsung Mobile DevicesCWE-939Authorization bypass in SemClipboardService prior to SMR Aug-2026 Release 1 a…
CVE-2026-719688.41.0OP-TEEoptee_osCWE-416OP-TEE OS 4.10.0 Use-After-Free via Trusted Application Loader TA_FLAG_CONCUR…
CVE-2026-666425.40.9WP UmbrellaWP UmbrellaCWE-352WordPress WP Umbrella plugin 2.24.2-2.26.2 - Cross Site Request Forgery (CSRF…
CVE-2026-194113.90.9Red HatRed Hat Enterprise Linux 7CWE-476Shim/dp.c library: null-pointer dereference in is_removable_media_path() when…
CVE-2026-210784.70.9Samsung MobileSmart SwitchCWE-345Insufficient verification of data authenticity in Smart Switch trouble scanni…
CVE-2026-636235.50.8Red HatRed Hat Enterprise Linux 10CWE-732Libvirt: information disclosure via world-readable storage volume images duri…
CVE-2026-681487.80.6LinuxLinuxfscrypt: Add missing superblock check in find_or_insert_direct_key()
CVE-2026-210846.90.6Samsung MobileSmartThingsCWE-284Improper access control in SmartThings prior to version 1.8.47.24 allows loca…
CVE-2026-210815.10.6Samsung MobileSamsungPassAutofillCWE-926Improper export of android application components in SamsungPassAutofill prio…
CVE-2026-118122.50.2zephyrprojectzephyrCWE-362UpdateHub: race condition on shared context causes out-of-bounds write and DoS
CVE-2026-150604.70.2systemdsystemd-machinedCWE-284systemd-machined: unprivileged users can terminate arbitrary processes
CVE-2026-210797.00.0Samsung MobileSmart SwitchCWE-311Missing encryption of sensitive data in Smart Switch prior to version 3.7.72.…
CVE-2026-167426.70.0systemdsystemd-homedCWE-269systemd-homed: local privilege escalation via missing home-record signature v…