Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
HIGH 7.8
CVE-2026-44808
Heap-based buffer overflow in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
Windows 11 26h1
10.0.28000.2269+
MEDIUM 5.5
CVE-2026-42968
Out-of-bounds read in Windows Telephony Service allows an authorized attacker to disclose information locally.
Windows 10 1607
10.0.14393.9234 / 10.0.17763.8880+
MEDIUM 5.3
CVE-2026-42914
Out-of-bounds read in Windows Kerberos allows an authorized attacker to deny service over a network.
Windows 10 1607
10.0.14393.9234 / 10.0.17763.8880+
HIGH 7.5
CVE-2026-42908
Out-of-bounds read in Windows RDP allows an unauthorized attacker to disclose information over a network.
Windows App
2.0.1193.0 / 10.0.14393.9234+
HIGH 7.8
CVE-2026-42837
Out-of-bounds read in Windows Projected File System Filter Driver allows an authorized attacker to elevate privileges locally.
Windows 10 1809
10.0.17763.8880 / 10.0.19044.7417+
MEDIUM 6.2
CVE-2026-42771
Issue summary: When the X509_VERIFY_PARAM_set1_email is called by an
application to validate a crafted e-mail address, such as during S/MIME
message …
OpenSSL
Patch available
HIGH 7.5
CVE-2026-34180
Issue summary: Parsing a crafted DER-encoded ASN.1 structure with a primitive
element whose content exceeds 2 gigabytes in length may cause a heap bu…
OpenSSL
1.0.2zq / 1.1.1zh+
MEDIUM 6.5
CVE-2026-11786
A flaw was found in 389 Directory Server. The LDIF parser reads past the end of a heap buffer when processing attribute types with trailing semicolon…
Directory Server
Mitigation only
HIGH 7.5
CVE-2026-11690
Out of bounds read and write in Media in Google Chrome on Mac prior to 149.0.7827.103 allowed a remote attacker who had compromised the renderer proc…
Chrome
149.0.7827.103+
HIGH 7.5
CVE-2026-11667
Out of bounds read in WebRTC in Google Chrome prior to 149.0.7827.103 allowed a remote attacker who had compromised the GPU process to potentially ex…
Chrome
149.0.7827.103+
HIGH 8.8
CVE-2026-11645 KEV
Out of bounds read and write in V8 in Google Chrome prior to 149.0.7827.103 allowed a remote attacker to execute arbitrary code inside a sandbox via …
Chrome
149.0.7827.103+
HIGH 7.4
CVE-2026-40215
A race condition in OpenVPN 2.6.0 through 2.6.19 and 2.7_alpha1 through 2.7.1 allows remote attackers to potentially cause a server crash or leak hea…
Openvpn
2.6.20 / 2.7.2+
HIGH 8.3
CVE-2026-46307
In the Linux kernel, the following vulnerability has been resolved:
wifi: ath5k: do not access array OOB
Vincent reports:
> The ath5k driver seems …
Linux Kernel
5.10.258 / 5.15.209+
HIGH 7.1
CVE-2026-46293
In the Linux kernel, the following vulnerability has been resolved:
clk: microchip: mpfs-ccc: fix out of bounds access during output registration
U…
Linux Kernel
6.1.175 / 6.6.140+
MEDIUM 6.5
CVE-2026-43951
Out-of-bounds Read vulnerability in Apache HTTP Server with mod_headers and mod_mime and multiple response languages.
This issue affects Apache HTTP…
HTTP Server
after 2.4.67
HIGH 7.3
CVE-2026-44185
Buffer Over-read vulnerability in Apache HTTP Server via outbound OCSP requests to an attacker controlled OCSP server
This issue affects Apache HTTP…
HTTP Server
2.4.68+
MEDIUM 6.5
CVE-2026-48112
7-Zip is a file archiver with a high compression ratio. Versions 9.18 through 26.00 contain a heap out-of-bounds read in 7-Zip Ar handler BSD SYMDEF …
7 Zip
26.01+
HIGH 7.1
CVE-2026-48103
7-Zip is a file archiver with a high compression ratio. Versions 9.34 through 26.00 contain an off-by-one heap out-of-bounds read in the WIM (Windows…
7 Zip
26.01+
HIGH 7.1
CVE-2026-48111
7-Zip is a file archiver with a high compression ratio. Versions 9.21 through 26.00 contain an off-by-one out-of-bounds read vulnerability in the Par…
7 Zip
26.01+
HIGH 8.1
CVE-2026-48092
7-Zip is a file archiver with a high compression ratio. Versions 9.34 through 26.00 contain a heap memory disclosure via SquashFS fragment offset int…
7 Zip
26.01+
MEDIUM 5.5
CVE-2026-50262
An out-of-bounds read flaw was found in the X.Org X server and Xwayland in __glXDisp_ChangeDrawableAttributes(). A wrong size validation check can re…
Enterprise Linux
21.1.23 / 24.1.12+
MEDIUM 5.5
CVE-2026-21038
Improper input validation in Samsung Android USB Driver for Windows prior to version 1.9.5.0 allows local attacker to access out-of-bounds memory.
Android Usb Driver
1.9.5.0+
MEDIUM 6.5
CVE-2026-11299
Integer overflow in Fonts in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to obtain potentially sensitive information from process …
Chrome
149.0.7827.53+
HIGH 8.8
CVE-2026-11301
Inappropriate implementation in LiveCaption in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to potentially perform out of bounds me…
Chrome
149.0.7827.53+
HIGH 8.8
CVE-2026-11279
Out of bounds read in DevTools in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via a cra…
Chrome
149.0.7827.53+
HIGH 8.3
CVE-2026-11256
Integer overflow in GPU in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially per…
Chrome
149.0.7827.53+
HIGH 8.8
CVE-2026-11191
Out of bounds memory access in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to potentially perform out of bounds memory ac…
Chrome
149.0.7827.53+
MEDIUM 6.5
CVE-2026-11183
Out of bounds read in GWP-ASan in Google Chrome prior to 149.0.7827.53 allowed a local attacker to obtain potentially sensitive information from proc…
Chrome
149.0.7827.53+
MEDIUM 6.5
CVE-2026-11160
Out of bounds read in Input in Google Chrome on Linux prior to 149.0.7827.53 allowed a remote attacker to obtain potentially sensitive information fr…
Chrome
149.0.7827.53+
HIGH 8.1
CVE-2026-11111
Out of bounds read in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to perform an out of bounds memory read via a crafted H…
Chrome
149.0.7827.53+