Vulnerability index

Browse CVEs

771 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Reachable AssertionCWE-617 × clear
Unclassified HIGH 7.5
CVE-2026-37223

FlexRIC v2.0.0 contains a reachable assertion in the iApp message dispatcher. The dispatcher validates incoming E2AP messages against a 9-entry white…

Mitigation only
Fix from $1,950 2026-06-01
Unclassified HIGH 7.5
CVE-2026-37224

FlexRIC v2.0.0 crashes when receiving a duplicate E2_SETUP_REQUEST from the same or spoofed E2 Node. The iApp registry enforces node ID uniqueness vi…

No fix yet
Fix from $1,950 2026-06-01
Unclassified HIGH 7.5
CVE-2026-37225

FlexRIC v2.0.0 crashes when the iApp receives an E42_RIC_SUBSCRIPTION_REQUEST with an empty ricEventTriggerDefinition field. The E42 layer decoder ac…

Mitigation only
Fix from $1,950 2026-06-01
Unclassified HIGH 7.5
CVE-2026-37227

FlexRIC v2.0.0 contains reachable assert(0) calls in stub message handlers for whitelisted but unimplemented E2AP message types in the near-RT RIC. A…

Mitigation only
Fix from $1,950 2026-06-01
Unclassified HIGH 7.5
CVE-2026-37220

FlexRIC v2.0.0 crashes when an SCTP association is closed before an E2_SETUP_REQUEST is sent. The near-RT RIC assumes a mapping between SCTP associat…

Mitigation only
Fix from $1,950 2026-06-01
Unclassified HIGH 7.5
CVE-2026-37221

FlexRIC v2.0.0 crashes when receiving a RIC_SUBSCRIPTION_RESPONSE with an unknown ric_id that has no corresponding pending event. The near-RT RIC use…

Mitigation only
Fix from $1,950 2026-06-01
Linux Kernel MEDIUM 5.5
CVE-2026-46220

In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu/sdma4: replace BUG_ON with WARN_ON in fence emission sdma_v4_0_ring_…

Fix: 5.10.258 / 5.15.209+
Fix from $1,600 2026-05-28
Linux Kernel HIGH 7.8
CVE-2026-46117

In the Linux kernel, the following vulnerability has been resolved: RDMA/mana: Remove user triggerable WARN_ON() in mana_ib_create_qp_rss() Sashiko…

Fix: 6.12.91 / 6.18.30+
Fix from $1,950 2026-05-28
Unclassified MEDIUM 5.3
CVE-2026-4392

A vulnerability was detected in TeamSpeak 3 Server up to 3.13.7. This issue affects some unknown processing of the component clientek Handshake Handl…

Mitigation only
Fix from $1,600 2026-05-27
Free5gc HIGH 7.5
CVE-2026-44319

free5GC is an open-source implementation of the 5G core network. Prior to 4.2.2, free5GC's NEF terminates the entire process when a stored PFD-subscr…

Fix: 4.2.2+
Fix from $1,950 2026-05-27
Free5gc HIGH 7.5
CVE-2026-44321

free5GC is an open-source implementation of the 5G core network. Prior to 4.2.2, free5GC's SMF mounts the UPI management route group without inbound …

Fix: 4.2.2+
Fix from $1,950 2026-05-27
Linux Kernel MEDIUM 5.5
CVE-2026-45847

In the Linux kernel, the following vulnerability has been resolved: net: remove WARN_ON_ONCE when accessing forward path array Although unlikely, r…

Fix: 5.15.202 / 6.1.165+
Fix from $1,600 2026-05-27
HTTP Server HIGH 7.5
CVE-2026-8852

IBM HTTP Server 8.5, and 9.0 is vulnerable to denial of service via the optional module mod_fastcgi module.

Fix: 8.5.5.30 / 9.0.5.29+
Fix from $1,950 2026-05-26
Bind HIGH 7.5
CVE-2026-5946

Multiple flaws have been identified in `named` related to the handling of DNS messages whose CLASS is not Internet (`IN`) — for example, `CHAOS` or `…

Fix: 9.18.49 / 9.20.23+
Fix from $1,950 2026-05-20
Xen MEDIUM 6.5
CVE-2026-23557

Any guest can cause xenstored to crash by issuing a XS_RESET_WATCHES command within a transaction due to an assert() triggering. In case xenstored w…

Patch available
Fix from $1,600 2026-05-19
Unclassified MEDIUM 6.5
CVE-2026-8843

Creating a "2dsphere_bucket" index on a non-timeseries bucket collection will succeed, but any subsequent attempt to insert a document which triggers…

Mitigation only
Fix from $1,600 2026-05-18
Binaryen MEDIUM 5.5
CVE-2026-8257

A vulnerability was detected in WebAssembly Binaryen up to 117. This issue affects the function IRBuilder::makeBrOn of the file src/wasm/wasm-ir-buil…

Fix: after 117
Fix from $1,600 2026-05-11
Zebra Chain HIGH 7.5
CVE-2026-41584

ZEBRA is a Zcash node written entirely in Rust. Prior to zebrad version 4.3.1 and prior to zebra-chain version 6.0.2, Orchard transactions contain a …

Fix: 4.3.1 / 6.0.2+
Fix from $1,950 2026-05-08
Zebra Rpc MEDIUM 6.5
CVE-2026-41585

ZEBRA is a Zcash node written entirely in Rust. From zebrad versions 2.2.0 to before 4.3.1 and from zebra-rpc versions 1.0.0-beta.45 to before 6.0.2,…

Fix: 4.3.1 / 6.0.2+
Fix from $1,600 2026-05-08
Linux Kernel MEDIUM 5.5
CVE-2026-43344

In the Linux kernel, the following vulnerability has been resolved: perf/x86/intel/uncore: Fix die ID init and look up bugs In snbep_pci2phy_map_in…

Fix: 6.19.14+
Fix from $1,600 2026-05-08
Linux Kernel MEDIUM 5.5
CVE-2026-43346

In the Linux kernel, the following vulnerability has been resolved: ice: ptp: don't WARN when controlling PF is unavailable In VFIO passthrough set…

Fix: 6.13 / 6.18.24+
Fix from $1,600 2026-05-08
Linux Kernel MEDIUM 5.5
CVE-2026-43228

In the Linux kernel, the following vulnerability has been resolved: hfs: Replace BUG_ON with error handling for CNID count checks In a06ec283e125 n…

Fix: 6.19.6+
Fix from $1,600 2026-05-06
Mt2735 Firmware MEDIUM 6.5
CVE-2026-20450

In Modem, there is a possible system crash due to incorrect error handling. This could lead to remote denial of service, if a UE has connected to a r…

Mitigation only
Fix from $1,600 2026-05-04
Linux Kernel MEDIUM 5.5
CVE-2026-43046

In the Linux kernel, the following vulnerability has been resolved: btrfs: reject root items with drop_progress and zero drop_level [BUG] When reco…

Fix: 5.15.203 / 6.1.168+
Fix from $1,600 2026-05-01
Linux Kernel HIGH 8.8
CVE-2026-31739

In the Linux kernel, the following vulnerability has been resolved: crypto: tegra - Add missing CRYPTO_ALG_ASYNC The tegra crypto driver failed to …

Fix: 6.12.81 / 6.18.22+
Fix from $1,950 2026-05-01
Unclassified HIGH 7.5
CVE-2025-56568

Assertion failure vulnerability in the PCO (Protocol Configuration Options) parser in the SMF (Session Management Function) component of Open5GS befo…

Patch available
Fix from $1,950 2026-04-30
Linux Kernel MEDIUM 5.5
CVE-2026-31567

In the Linux kernel, the following vulnerability has been resolved: PM: sleep: Drop spurious WARN_ON() from pm_restore_gfp_mask() Commit 35e4a69b20…

Fix: 6.18 / 6.18.21+
Fix from $1,600 2026-04-24
Kyverno HIGH 7.7
CVE-2026-41485

Kyverno is a policy engine designed for cloud native platform engineering teams. Prior to versions 1.17.2 and 1.16.4, an unchecked type assertion in …

Fix: 1.16.4 / 1.17.2+
Fix from $1,950 2026-04-24
Nimiq Proof Of Stake MEDIUM 6.5
CVE-2026-34067

nimiq-transaction provides the transaction primitive to be used in Nimiq's Rust implementation. Prior to version 1.3.0, `HistoryTreeProof::verify` pa…

Fix: 1.3.0+
Fix from $1,600 2026-04-22
Nimiq Proof Of Stake MEDIUM 5.3
CVE-2026-34066

nimiq-blockchain provides persistent block storage for Nimiq's Rust implementation. Prior to version 1.3.0, `HistoryStore::put_historic_txns` uses an…

Fix: 1.3.0+
Fix from $1,600 2026-04-22