Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
HIGH 8.7
CVE-2026-45084
OpenSIPS is a Session Initiation Protocol (SIP) server implementation. Versions 3.4.0 through 3.6.5 contain a denial of service vulnerability in the …
No fix yet
HIGH 7.5
CVE-2026-67304
FreeRDP before 3.29.0 contains a null pointer dereference vulnerability in smartcard device control request cleanup when reader-state decoding fails.…
No fix yet
HIGH 7.5
CVE-2026-67288
FreeRDP before 3.29.0 contains a null pointer dereference vulnerability in smartcard cache request decoders that accept NULL NDR pointers for LookupN…
No fix yet
HIGH 7.5
CVE-2026-18064
An incomplete fix for CVE-2026-15352 in the NASA core Flight System
(cFS) Health and Safety (HS) application leaves a separate NULL pointer
derefer…
No fix yet
HIGH 7.5
CVE-2026-58161
Apache Traffic Server can crash from null dereferences and dangling references in TLS and SNI handling.
This issue affects Apache Traffic Server: fr…
Traffic Server
9.2.15 / 10.1.4+
HIGH 7.5
CVE-2026-67184
TinyWeb through 0.0.8 contains a null pointer dereference vulnerability that allows unauthenticated remote attackers to crash worker processes by sen…
No fix yet
MEDIUM 6.5
CVE-2026-66749
Let's Chat 0.4.0 through 0.4.8 contains a null dereference vulnerability that allows authenticated attackers to crash the server by supplying a valid…
No fix yet
HIGH 7.5
CVE-2026-47427
GitHub MCP Server is GitHub's official MCP Server. Prior to 1.1.0, the CompletionsHandler function in pkg/github/server.go accesses params.Ref withou…
Mcp Server
1.1.0+
MEDIUM 5.5
CVE-2026-17574
HDF5 contains a NULL pointer dereference vulnerability. Processing a crafted HDF5 file containing an attribute with an invalid variable-length dataty…
Hdf5
No fix yet
MEDIUM 5.3
CVE-2026-17500
A vulnerability was detected in ggml-org llama.cpp d006858/e15efe0. This affects the function _visit_pattern of the file common/json-schema-to-gramma…
No fix yet
MEDIUM 5.5
CVE-2026-64295
In the Linux kernel, the following vulnerability has been resolved:
mm: page_ext: add count limit to page_ext_iter_next to prevent invalid PFN acces…
Linux Kernel
6.18.39 / 7.1.4+
MEDIUM 5.5
CVE-2026-64297
In the Linux kernel, the following vulnerability has been resolved:
module: decompress: check return value of module_extend_max_pages()
module_exte…
Linux Kernel
6.1.178 / 6.6.145+
MEDIUM 5.5
CVE-2026-64288
In the Linux kernel, the following vulnerability has been resolved:
KVM: arm64: nv: Avoid dereferencing NULL VNCR pseudo-TLB
VNCR TLB invalidation …
Linux Kernel
6.18.39 / 7.1.4+
MEDIUM 5.5
CVE-2026-64258
In the Linux kernel, the following vulnerability has been resolved:
fuse-uring: remove request-less entries from ent_w_req_queue to fix NULL deref
…
Linux Kernel
6.18.39 / 7.1.4+
MEDIUM 5.5
CVE-2026-64253
In the Linux kernel, the following vulnerability has been resolved:
kernel/fork: clear PF_BLOCK_TS in copy_process()
PF_BLOCK_TS is only set in blk…
Linux Kernel
6.12.95 / 6.18.38+
MEDIUM 5.5
CVE-2026-64229
In the Linux kernel, the following vulnerability has been resolved:
x86/mm: Disable broadcast TLB flush when PCID is disabled
Booting with "nopcid"…
Linux Kernel
6.18.35 / 7.0.11+
MEDIUM 5.5
CVE-2026-64230
In the Linux kernel, the following vulnerability has been resolved:
regulator: tps65219: fix irq_data.rdev not being assigned
Commit 64a6b577490c (…
Linux Kernel
6.18.34 / 7.0.11+
MEDIUM 5.5
CVE-2026-64234
In the Linux kernel, the following vulnerability has been resolved:
tty: serial: pch_uart: add check for dma_alloc_coherent()
Add a check for dma_a…
Linux Kernel
5.10.259 / 5.15.210+
MEDIUM 5.5
CVE-2026-64227
In the Linux kernel, the following vulnerability has been resolved:
ACPI: driver: Check ACPI_COMPANION() against NULL during probe
Since every plat…
Linux Kernel
6.12.97 / 6.18.40+
MEDIUM 5.5
CVE-2026-64228
In the Linux kernel, the following vulnerability has been resolved:
net: ethtool: phy: avoid NULL deref when PHY driver is unbound
phydev->drv can …
Linux Kernel
6.18.34 / 7.0.11+
MEDIUM 5.5
CVE-2026-64214
In the Linux kernel, the following vulnerability has been resolved:
powerpc/time: Remove redundant preempt_disable|enable() calls from arch_irq_work…
Linux Kernel
6.1.175 / 6.6.142+
MEDIUM 5.5
CVE-2026-64215
In the Linux kernel, the following vulnerability has been resolved:
drm/msm/a6xx: Check kzalloc return in a8xx_hfi_send_perf_table
Check the return…
Linux Kernel
7.0.11+
MEDIUM 5.5
CVE-2026-64212
In the Linux kernel, the following vulnerability has been resolved:
wifi: iwlwifi: mld: don't dereference a pointer before NULL checking it
In iwl_…
Linux Kernel
6.18.34 / 7.0.11+
HIGH 7.5
CVE-2026-45816
NULL Pointer Dereference vulnerability in Apache NimBLE in LE Long Term Key Request event.
This requires disabled asserts (otherwise assert would tr…
Nimble
1.10.0+
HIGH 7.5
CVE-2026-50032
A NULL pointer dereference in the MMS Write Named Variable List handler, which may allow a network adjacent attacker to crash the server by sending a…
No fix yet
MEDIUM 5.3
CVE-2026-13070
A MongoDB server initiating an outbound TLS connection may terminate abnormally when processing a malformed OCSP response from a remote peer during t…
MongoDB
7.0.39 / 8.0.28+
MEDIUM 6.5
CVE-2026-13065
A user with read-only privileges is able to craft an aggregation pipeline using the $linearFill window function operator with a specific sortBy expre…
MongoDB
7.0.39 / 8.0.28+
MEDIUM 5.9
CVE-2026-55717
In NLnet Labs Unbound 1.10.0 up to and including 1.25.1, when 'serve-expired: yes' is set together with a 'response-ip: <net> redirect' /'response-ip…
Unbound
1.25.2+
MEDIUM 5.5
CVE-2026-47709
libheif is a HEIF and AVIF file format decoder and encoder. Versions prior to 1.22.0 crashes in the public C API `heif_image_handle_get_image_tiling(…
Libheif
1.22.0+
HIGH 8.1
CVE-2026-10678
The MCTP-over-I2C+GPIO target binding in Zephyr (subsys/pmci/mctp/mctp_i2c_gpio_target.c) processes pseudo-register writes from an I2C bus master byt…
Zephyr
after 4.4.1