Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
HIGH 7.1
CVE-2026-53203
In the Linux kernel, the following vulnerability has been resolved:
accel/ivpu: Add buffer overflow check in MS get_info_ioctl
Add validation that …
Linux Kernel
6.12.94 / 6.18.36+
HIGH 7.1
CVE-2026-53187
In the Linux kernel, the following vulnerability has been resolved:
RDMA/core: Validate cpu_id against nr_cpu_ids in DMAH alloc
The cpu_id attribut…
Linux Kernel
6.18.36 / 7.0.13+
HIGH 7.8
CVE-2026-53194
In the Linux kernel, the following vulnerability has been resolved:
USB: serial: kl5kusb105: fix bulk-out buffer overflow
klsi_105_prepare_write_bu…
Linux Kernel
5.10.259 / 5.15.210+
HIGH 7.8
CVE-2026-53195
In the Linux kernel, the following vulnerability has been resolved:
USB: serial: io_ti: fix heap overflow in build_i2c_fw_hdr()
build_i2c_fw_hdr() …
Linux Kernel
5.10.259 / 5.15.210+
HIGH 7.8
CVE-2026-53173
In the Linux kernel, the following vulnerability has been resolved:
accel/ethosu: fix OOB write in ethosu_gem_cmdstream_copy_and_validate()
The com…
Linux Kernel
7.0.13+
HIGH 7.8
CVE-2026-53148
In the Linux kernel, the following vulnerability has been resolved:
thunderbolt: Clamp XDomain response data copy to allocation size
tb_xdp_propert…
Linux Kernel
5.10.259 / 5.15.210+
HIGH 7.8
CVE-2026-53137
In the Linux kernel, the following vulnerability has been resolved:
drm/amd/display: Clamp HDMI HDCP2 rx_id_list read to buffer size
[Why & How]
Du…
Linux Kernel
5.10.259 / 5.15.210+
HIGH 7.8
CVE-2026-53143
In the Linux kernel, the following vulnerability has been resolved:
drm/amdkfd: Fix buffer overflow in SDMA queue checkpoint/restore on GFX11
The v…
Linux Kernel
6.6.143 / 6.12.94+
HIGH 7.8
CVE-2026-53136
In the Linux kernel, the following vulnerability has been resolved:
drm/amd/display: Clamp VBIOS HDMI retimer register count to array size
[Why & H…
Linux Kernel
5.15.210 / 6.1.176+
HIGH 8.8
CVE-2026-13033
Out of bounds read and write in Blink>InterestGroups in Google Chrome prior to 149.0.7827.197 allowed a remote attacker to execute arbitrary code via…
Chrome
149.0.7827.197+
HIGH 7.8
CVE-2026-53059
In the Linux kernel, the following vulnerability has been resolved:
dm log: fix out-of-bounds write due to region_count overflow
The local variable…
Linux Kernel
5.10.258 / 5.15.209+
CRITICAL 9.1
CVE-2026-53043
In the Linux kernel, the following vulnerability has been resolved:
ocfs2/dlm: validate qr_numregions in dlm_match_regions()
Patch series "ocfs2/dl…
Linux Kernel
5.10.258 / 5.15.209+
HIGH 7.1
CVE-2026-53041
In the Linux kernel, the following vulnerability has been resolved:
ocfs2: fix listxattr handling when the buffer is full
[BUG]
If an OCFS2 inode h…
Linux Kernel
5.10.258 / 5.15.209+
HIGH 7.8
CVE-2026-53016
In the Linux kernel, the following vulnerability has been resolved:
crypto: ccp - copy IV using skcipher ivsize
AF_ALG rfc3686-ctr-aes-ccp requests…
Linux Kernel
5.10.258 / 5.15.209+
CRITICAL 9.8
CVE-2026-53002
In the Linux kernel, the following vulnerability has been resolved:
netfilter: conntrack: remove sprintf usage
Replace it with scnprintf, the buffe…
Linux Kernel
5.10.258 / 5.15.209+
HIGH 7.8
CVE-2026-53004
In the Linux kernel, the following vulnerability has been resolved:
sctp: fix OOB write to userspace in sctp_getsockopt_peer_auth_chunks
sctp_getso…
Linux Kernel
5.10.258 / 5.15.209+
HIGH 7.8
CVE-2026-52992
In the Linux kernel, the following vulnerability has been resolved:
fs/adfs: validate nzones in adfs_validate_bblk()
Reject ADFS disc records with …
Linux Kernel
5.10.258 / 5.15.209+
HIGH 7.8
CVE-2026-52962
In the Linux kernel, the following vulnerability has been resolved:
ceph: fix a buffer leak in __ceph_setxattr()
The old_blob in __ceph_setxattr() …
Linux Kernel
4.5 / 4.10+
HIGH 7.8
CVE-2026-52935
In the Linux kernel, the following vulnerability has been resolved:
xfrm: espintcp: do not reuse an in-progress partial send
espintcp keeps a singl…
Linux Kernel
5.10.259 / 5.15.210+
CRITICAL 9.8
CVE-2026-52914
In the Linux kernel, the following vulnerability has been resolved:
batman-adv: fix fragment reassembly length accounting
batman-adv keeps a runnin…
Linux Kernel
5.10.258 / 5.15.209+
HIGH 7.8
CVE-2020-9695
Acrobat Reader versions 2020.009.20074, 2020.001.30002, 2017.011.30171, 2015.006.30523 and earlier are affected by an out-of-bounds write vulnerabili…
Acrobat Dc
after 20.009.20074
MEDIUM 6.5
CVE-2026-56114
dhcpcd through 10.3.2, fixed in commit 2f00c7b, contains a one-byte stack out-of-bounds write vulnerability in dhcp6_makemessage() in src/dhcp6.c tha…
Dhcpcd
after 10.3.2
HIGH 7.1
CVE-2026-10658
bt_iso_recv() in subsys/bluetooth/host/iso.c pulled the ISO SDU header (4 bytes) or, when the timestamp flag is set, the timestamped SDU header (8 by…
Zephyr
after 4.4.1
HIGH 7.5
CVE-2026-56340
vLLM versions >= 0.10.2 and < 0.13.0 are missing sparse tensor validation in multimodal embeddings processing. Because PyTorch disables sparse tensor…
Vllm
0.13.0+
HIGH 7.1
CVE-2026-49295
libde265 is an open source implementation of the h.265 video codec. Prior to version 1.0.20, a crafted H.265 bitstream can cause an out-of-bounds arr…
Libde265
1.0.20+
CRITICAL 9.8
CVE-2026-48773
ProxySQL is a proxy for MySQL and its forks, as well as PostgreSQL. Versions 2.0.18 through 3.0.8 have a pre-authentication heap memory corruption vu…
Proxysql
3.0.9+
HIGH 7.1
CVE-2026-56209
An arbitrary address write vulnerability was found in libaom, the reference AV1 codec implementation. A missing bounds check in the SVC (Scalable Vid…
Mitigation only
HIGH 7.1
CVE-2026-56211
A remote code execution vulnerability was found in libaom, the reference AV1 codec implementation. Insufficient bounds validation in the AV1 encoder'…
Mitigation only
HIGH 7.1
CVE-2026-44663
OpenEXR is the reference implementation and specification for the EXR image format, widely used in the motion picture industry. In versions 3.4.0 thr…
Openexr
3.4.12+
HIGH 8.8
CVE-2026-8461
An out-of-bounds write vulnerability in FFmpeg's libavcodec library, specifically in the MagicYUV decoder, allows denial-of-service and, in some case…
Mitigation only