Vulnerability index

Browse CVEs

744 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use of Uninitialized ResourceCWE-908 × clear
Linux Kernel HIGH 7.1
CVE-2026-31626

In the Linux kernel, the following vulnerability has been resolved: staging: rtl8723bs: initialize le_tmp64 in rtw_BIP_verify() Initialize le_tmp64…

Fix: 6.6.136 / 6.12.83+
Fix from $1,950 2026-04-24
Linux Kernel MEDIUM 5.5
CVE-2026-31492

In the Linux kernel, the following vulnerability has been resolved: RDMA/irdma: Initialize free_qp completion before using it In irdma_create_qp, i…

Fix: 6.1.168 / 6.6.131+
Fix from $1,600 2026-04-22
Firefox HIGH 7.5
CVE-2026-6749

Information disclosure due to uninitialized memory in the Graphics: Canvas2D component. This vulnerability was fixed in Firefox 150, Firefox ESR 115.…

Fix: 115.35.0 / 140.10.0+
Fix from $1,950 2026-04-21
Linux Kernel MEDIUM 5.5
CVE-2026-31427

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_conntrack_sip: fix use of uninitialized rtp_addr in process_sdp p…

Fix: 5.10.253 / 5.15.203+
Fix from $1,600 2026-04-13
Linux Kernel MEDIUM 5.5
CVE-2026-31428

In the Linux kernel, the following vulnerability has been resolved: netfilter: nfnetlink_log: fix uninitialized padding leak in NFULA_PAYLOAD __bui…

Fix: 5.10.253 / 5.15.203+
Fix from $1,600 2026-04-13
Openexr HIGH 7.5
CVE-2026-34543

OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. From…

Fix: 3.2.7 / 3.3.9+
Fix from $1,950 2026-04-01
N8n MEDIUM 6.5
CVE-2026-27496

n8n is an open source workflow automation platform. Prior to versions 1.123.22, 2.9.3, and 2.10.1, an authenticated user with permission to create or…

Fix: 1.123.22 / 2.9.3+
Fix from $1,600 2026-03-25
Linux Kernel MEDIUM 5.5
CVE-2026-23358

In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Fix error handling in slot reset If the device has not recovered af…

Fix: 6.18.17 / 6.19.7+
Fix from $1,600 2026-03-25
Linux Kernel HIGH 7.8
CVE-2026-23317

In the Linux kernel, the following vulnerability has been resolved: drm/vmwgfx: Return the correct value in vmw_translate_ptr functions Before the …

Fix: 6.1.167 / 6.6.130+
Fix from $1,950 2026-03-25
Linux Kernel MEDIUM 5.5
CVE-2026-23282

In the Linux kernel, the following vulnerability has been resolved: smb: client: fix oops due to uninitialised var in smb2_unlink() If SMB2_open_in…

Fix: 6.18.17 / 6.19.7+
Fix from $1,600 2026-03-25
Firefox CRITICAL 9.1
CVE-2026-4715

Uninitialized memory in the Graphics: Canvas2D component. This vulnerability was fixed in Firefox 149, Firefox ESR 140.9, Thunderbird 149, and Thunde…

Fix: 140.9.0 / 149.0+
Fix from $2,300 2026-03-24
Firefox CRITICAL 9.1
CVE-2026-4716

Incorrect boundary conditions, uninitialized memory in the JavaScript Engine component. This vulnerability was fixed in Firefox 149, Firefox ESR 140.…

Fix: 140.9.0 / 149.0+
Fix from $2,300 2026-03-24
Openharmony MEDIUM 6.5
CVE-2025-12736

in OpenHarmony v5.0.3 and prior versions allow a local attacker case sensitive information leak through use of uninitialized resource.

Mitigation only
Fix from $1,600 2026-03-16
Ubuntu Linux HIGH 7.5
CVE-2026-3497

Vulnerability in the OpenSSH GSSAPI delta included in various Linux distributions. This vulnerability affects the GSSAPI patches added by various Lin…

Mitigation only
Fix from $1,950 2026-03-12
Firefox CRITICAL 9.1
CVE-2026-2806

Uninitialized memory in the Graphics: Text component. This vulnerability was fixed in Firefox 148 and Thunderbird 148.

Fix: 148.0+
Fix from $2,300 2026-02-24
Firefox HIGH 7.5
CVE-2026-2794

Information disclosure due to uninitialized memory in Firefox and Firefox Focus for Android. This vulnerability was fixed in Firefox 148.

Fix: 148.0+
Fix from $1,950 2026-02-24
Gimp HIGH 8.8
CVE-2026-2044

GIMP PGM File Parsing Uninitialized Memory Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code …

Patch available
Fix from $1,950 2026-02-20
Linux Kernel MEDIUM 5.5
CVE-2026-23123

In the Linux kernel, the following vulnerability has been resolved: interconnect: debugfs: initialize src_node and dst_node to empty strings The de…

Fix: 6.6.122 / 6.12.68+
Fix from $1,600 2026-02-14
Unclassified CRITICAL 10.0
CVE-2026-24826

Out-of-bounds Write, Divide By Zero, NULL Pointer Dereference, Use of Uninitialized Resource, Out-of-bounds Read, Reachable Assertion vulnerability i…

Patch available
Fix from $2,300 2026-01-27
Linux Kernel MEDIUM 5.5
CVE-2026-23003

In the Linux kernel, the following vulnerability has been resolved: ip6_tunnel: use skb_vlan_inet_prepare() in __ip6_tnl_rcv() Blamed commit did no…

Fix: 5.10.249 / 5.15.199+
Fix from $1,600 2026-01-25
Linux Kernel MEDIUM 5.5
CVE-2026-23007

In the Linux kernel, the following vulnerability has been resolved: block: zero non-PI portion of auto integrity buffer The auto-generated integrit…

Fix: 6.18.7+
Fix from $1,600 2026-01-25
Glibc HIGH 7.5
CVE-2025-15281

Calling wordexp with WRDE_REUSE in conjunction with WRDE_APPEND in the GNU C Library version 2.0 to version 2.42 may cause the interface to return un…

Fix: 2.43+
Fix from $1,950 2026-01-20
Glibc HIGH 7.5
CVE-2026-0915

Calling getnetbyaddr or getnetbyaddr_r with a configured nsswitch.conf that specifies the library's DNS backend for networks and queries for a zero-v…

Fix: after 2.42
Fix from $1,950 2026-01-15
Linux Kernel MEDIUM 5.5
CVE-2025-71115

In the Linux kernel, the following vulnerability has been resolved: um: init cpu_tasks[] earlier This is currently done in uml_finishsetup(), but e…

Fix: 6.18.3+
Fix from $1,600 2026-01-14
Linux Kernel MEDIUM 5.5
CVE-2025-71113

In the Linux kernel, the following vulnerability has been resolved: crypto: af_alg - zero initialize memory allocated via sock_kmalloc Several cryp…

Fix: 5.10.248 / 5.15.198+
Fix from $1,600 2026-01-14
Linux Kernel MEDIUM 5.5
CVE-2025-71096

In the Linux kernel, the following vulnerability has been resolved: RDMA/core: Check for the presence of LS_NLA_TYPE_DGID correctly The netlink res…

Fix: 5.10.248 / 5.15.198+
Fix from $1,600 2026-01-13
Panda3d MEDIUM 5.5
CVE-2026-22188

The deploy-stub component in Panda3D versions up to and including 1.10.16 contains a denial of service vulnerability due to unbounded stack allocatio…

Fix: after 1.10.16
Fix from $1,600 2026-01-07
Linux Kernel MEDIUM 5.5
CVE-2025-68365

In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Initialize allocated memory before use KMSAN reports: Multiple uninit…

Fix: 5.15.199 / 6.1.162+
Fix from $1,600 2025-12-24
Simcenter Femap HIGH 7.8
CVE-2025-40829

A vulnerability has been identified in Simcenter Femap (All versions < V2512). The affected applications contains an uninitialized memory vulnerabili…

Fix: 2512.0000+
Fix from $1,950 2025-12-12
Windows 10 1607 HIGH 7.8
CVE-2025-62472

Use of uninitialized resource in Windows Remote Access Connection Manager allows an authorized attacker to elevate privileges locally.

Fix: 10.0.14393.8688 / 10.0.17763.8146+
Fix from $1,950 2025-12-09