Vulnerability index

Browse CVEs

5,193 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness NULL Pointer DereferenceCWE-476 × clear
Capstone MEDIUM 5.9
CVE-2026-47143

Capstone is a disassembly framework. Versions prior to 6.0.0-Alpha8 and 5.0.8 have a NULL pointer dereference in `modRMRequired()` and `decode()` whe…

Fix: 5.0.8+
Fix from $1,600 2026-07-21
Firefox CRITICAL 9.8
CVE-2026-16353

Invalid pointer in the DOM: Bindings (WebIDL) component. This vulnerability was fixed in Firefox 153, Firefox ESR 115.38, Firefox ESR 140.13, Thunder…

Fix: 115.38.0 / 140.13.0+
Fix from $2,300 2026-07-21
Linux Kernel MEDIUM 5.5
CVE-2026-64190

In the Linux kernel, the following vulnerability has been resolved: net: team: fix NULL pointer dereference in team_xmit during mode change __team_…

Fix: 6.18.35 / 7.1+
Fix from $1,600 2026-07-20
Linux Kernel MEDIUM 5.5
CVE-2026-64192

In the Linux kernel, the following vulnerability has been resolved: bpf: Reject BPF_MAP_TYPE_INODE_STORAGE creation if BPF LSM is uninitialized Whe…

Fix: 6.6.148 / 6.12.97+
Fix from $1,600 2026-07-20
Linux Kernel MEDIUM 5.5
CVE-2026-64207

In the Linux kernel, the following vulnerability has been resolved: net/sched: dualpi2: fix GSO backlog accounting When DualPI2 splits a GSO skb in…

Fix: 6.18.39 / 7.1.4+
Fix from $1,600 2026-07-20
Linux Kernel MEDIUM 5.5
CVE-2026-64187

In the Linux kernel, the following vulnerability has been resolved: xfs: fail recovery on a committed log item with no regions If the first op of a…

Fix: 5.15.212 / 6.1.178+
Fix from $1,600 2026-07-20
Unclassified MEDIUM 6.5
CVE-2026-47276

In nanomq versions 0.24.11 and earlier, a NULL pointer dereference in `properties_parse()` allows an authenticated attacker to crash the NanoMQ broke…

No fix yet
Fix from $1,600 2026-07-20
Surrealdb MEDIUM 6.5
CVE-2026-63762

SurrealDB before v2.6.1 (and before v3.0.0-beta.3) contains a denial of service vulnerability in its embedded JavaScript scripting engine, which is e…

Fix: 2.6.1+
Fix from $1,600 2026-07-20
Linux Kernel MEDIUM 5.5
CVE-2026-64183

In the Linux kernel, the following vulnerability has been resolved: efi: Allocate runtime workqueue before ACPI init Since commit 5894cf571e14 (…

Fix: 6.6.142 / 6.12.92+
Fix from $1,600 2026-07-19
Linux Kernel MEDIUM 5.5
CVE-2026-64169

In the Linux kernel, the following vulnerability has been resolved: spi: ep93xx: fix error pointer deref after DMA setup failure The driver falls b…

Fix: 6.12.92 / 6.18.34+
Fix from $1,600 2026-07-19
Linux Kernel MEDIUM 5.5
CVE-2026-64170

In the Linux kernel, the following vulnerability has been resolved: spi: qup: fix error pointer deref after DMA setup failure The driver falls back…

Fix: 5.10.259 / 5.15.210+
Fix from $1,600 2026-07-19
Linux Kernel MEDIUM 5.5
CVE-2026-64164

In the Linux kernel, the following vulnerability has been resolved: btrfs: tracepoints: fix sleep while in atomic context in btrfs_sync_file() The …

Fix: 6.6.142 / 6.12.92+
Fix from $1,600 2026-07-19
Linux Kernel MEDIUM 5.5
CVE-2026-64165

In the Linux kernel, the following vulnerability has been resolved: ARM: integrator: Fix early initialization Starting with commit bdb249fce9ad4 ("…

Fix: 5.10.258 / 5.15.209+
Fix from $1,600 2026-07-19
Linux Kernel MEDIUM 5.5
CVE-2026-64166

In the Linux kernel, the following vulnerability has been resolved: firmware: arm_ffa: Check for NULL FF-A ID table while driver registration The b…

Fix: 5.15.209 / 6.1.175+
Fix from $1,600 2026-07-19
Linux Kernel MEDIUM 5.5
CVE-2026-64167

In the Linux kernel, the following vulnerability has been resolved: kho: skip KHO for crash kernel kho_fill_kimage() unconditionally populates the …

Fix: 7.0.11+
Fix from $1,600 2026-07-19
Linux Kernel MEDIUM 5.5
CVE-2026-64168

In the Linux kernel, the following vulnerability has been resolved: spi: sprd: fix error pointer deref after DMA setup failure The driver falls bac…

Fix: 5.10.258 / 5.15.209+
Fix from $1,600 2026-07-19
Linux Kernel HIGH 7.8
CVE-2026-64134

In the Linux kernel, the following vulnerability has been resolved: ALSA: pcm: Don't setup bogus iov_iter for silencing At transition to the iov_it…

Fix: 6.6.142 / 6.12.92+
Fix from $1,950 2026-07-19
Linux Kernel HIGH 7.5
CVE-2026-64140

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix null pointer dereference in proc_show_files() When a SMB2 client ope…

No fix yet
Fix from $1,950 2026-07-19
Linux Kernel HIGH 7.5
CVE-2026-64141

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix null pointer dereference in compare_guid_key() session_fd_check() wa…

No fix yet
Fix from $1,950 2026-07-19
Linux Kernel MEDIUM 5.5
CVE-2026-64128

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: ISO: drop ISO_END frames received without prior ISO_START ISO data P…

Fix: 6.1.175 / 6.6.142+
Fix from $1,600 2026-07-19
Linux Kernel HIGH 7.5
CVE-2026-64116

In the Linux kernel, the following vulnerability has been resolved: ipv6: ioam: add NULL check for idev in ipv6_hop_ioam() Reported by Sashiko: Th…

Fix: 5.15.210 / 6.1.176+
Fix from $1,950 2026-07-19
Linux Kernel MEDIUM 5.5
CVE-2026-64120

In the Linux kernel, the following vulnerability has been resolved: net: ethtool: fix NULL pointer dereference in phy_reply_size In phy_prepare_dat…

Fix: 6.18.34 / 7.0.11+
Fix from $1,600 2026-07-19
Linux Kernel MEDIUM 5.5
CVE-2026-64107

In the Linux kernel, the following vulnerability has been resolved: ASoC: codecs: pcm512x: fix null-ptr dereference in pcm512x_overclock_xxx_put() …

Fix: 7.0.11+
Fix from $1,600 2026-07-19
Linux Kernel MEDIUM 5.5
CVE-2026-64094

In the Linux kernel, the following vulnerability has been resolved: batman-adv: bla: avoid NULL-ptr deref for claim via dropped interface Without r…

Fix: 5.10.259 / 5.15.210+
Fix from $1,600 2026-07-19
Linux Kernel CRITICAL 9.8
CVE-2026-53399

In the Linux kernel, the following vulnerability has been resolved: nfsd: release layout stid on setlease failure nfs4_alloc_stid() publishes the n…

Fix: 5.10.261 / 5.15.212+
Fix from $2,300 2026-07-19
Linux Kernel MEDIUM 5.5
CVE-2026-53403

In the Linux kernel, the following vulnerability has been resolved: fbdev: Fix fb_new_modelist to prevent null-ptr-deref in fb_videomode_to_var inf…

Fix: 5.10.260 / 5.15.211+
Fix from $1,600 2026-07-19
Linux Kernel HIGH 7.5
CVE-2026-53391

In the Linux kernel, the following vulnerability has been resolved: NFSv4/pNFS: reject zero-length r_addr in nfs4_decode_mp_ds_addr nfs4_decode_mp_…

Fix: 5.15.211 / 6.1.177+
Fix from $1,950 2026-07-19
Linux Kernel HIGH 7.5
CVE-2026-53392

In the Linux kernel, the following vulnerability has been resolved: NFSv4/flexfiles: reject zero filehandle version count ff_layout_alloc_lseg() de…

Fix: 5.10.261 / 5.15.212+
Fix from $1,950 2026-07-19
Linux Kernel HIGH 7.5
CVE-2026-53383

In the Linux kernel, the following vulnerability has been resolved: ksmbd: reject non-VALID session in compound request branch smb2_check_user_sess…

Fix: 5.15.211 / 6.1.177+
Fix from $1,950 2026-07-19
Linux Kernel MEDIUM 5.5
CVE-2026-53385

In the Linux kernel, the following vulnerability has been resolved: vc_screen: fix null-ptr-deref in vcs_notifier() during concurrent vcs_write A K…

Fix: 4.15 / 4.20+
Fix from $1,600 2026-07-19