Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.1 CVE-2026-18855 The Link Library plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the ll_delete_link_fields … No fix yet Fix from $5,7502026-08-15 MEDIUM 5.3 CVE-2026-19903 A vulnerability has been found in SourceCodester Online Clothing Store 1.0. This affects an unknown part of the file /db/shopping.sql of the componen… No fix yet Fix from $4,0002026-08-15 HIGH 8.1 CVE-2026-19901 A security flaw has been discovered in LB-LINK X-PRO 1.0.22-20231206. This affects an unknown function of the file /etc/config/easycwmp. The manipula… No fix yet Fix from $4,9002026-08-15 CRITICAL 9.8 CVE-2026-19598 The Pods – Custom Content Types and Fields plugin for WordPress is vulnerable to Privilege Escalation via Authorization Bypass in all versions up to,… No fix yet Fix from $5,7502026-08-15 HIGH 8.1 CVE-2026-19900 A vulnerability was identified in LB-LINK X-PRO 1.0.22-20231206. The impacted element is an unknown function of the file /etc/shadow. The manipulatio… No fix yet Fix from $4,9002026-08-15 HIGH 7.3 CVE-2026-19899 A vulnerability was determined in SourceCodester Class and Exam Timetabling System 1.0. The affected element is an unknown function of the file /edit… No fix yet Fix from $4,9002026-08-15 HIGH 7.5 CVE-2026-19474 @fastify/multipart is a multipart form-data parser for Fastify. In versions from 3.0.0 up to but not including 10.1.1, request.saveRequestFiles() can… No fix yet Fix from $4,9002026-08-15 HIGH 7.5 CVE-2026-18549 @fastify/multipart is a multipart form-data parser for Fastify. In versions from 5.3.0 up to but not including 10.1.1, when the busboy fileSize limit… No fix yet Fix from $4,9002026-08-15 HIGH 8.1 CVE-2026-18500 @fastify/jwt is a JSON Web Token plugin for Fastify. In versions before 10.2.2, a per-request verification key passed to request.jwtVerify({ key }) i… No fix yet Fix from $4,9002026-08-15 CRITICAL 9.8 CVE-2026-15689 Dancer2::Plugin::Auth::Extensible versions through 0.713 for Perl allow password reset link poisoning via the request Host header in _default_email_p… No fix yet Fix from $5,7502026-08-15 HIGH 7.5 CVE-2026-74576 In the Linux kernel, the following vulnerability has been resolved: mm/slab: prevent unbounded recursion in free path with new kmalloc type Commit … No fix yet Fix from $4,9002026-08-15 HIGH 8.8 CVE-2026-74575 In the Linux kernel, the following vulnerability has been resolved: thunderbolt: Prevent XDomain delayed work use-after-free on disconnect tb_xdp_h… No fix yet Fix from $4,9002026-08-15 HIGH 7.8 CVE-2026-74574 In the Linux kernel, the following vulnerability has been resolved: dmaengine: idxd: fix fdev setup failure cleanup in idxd_cdev_open() The failed_… No fix yet Fix from $4,9002026-08-15 CRITICAL 9.3 CVE-2026-74573 In the Linux kernel, the following vulnerability has been resolved: iommu/arm-smmu-v3-iommufd: Require exactly one Stream ID for a vDEVICE arm_vsmm… No fix yet Fix from $5,7502026-08-15 HIGH 7.5 CVE-2026-74572 In the Linux kernel, the following vulnerability has been resolved: btrfs: zoned: fix deadlock between metadata writeback and transaction commit Wh… No fix yet Fix from $4,9002026-08-15 CRITICAL 9.8 CVE-2026-74570 In the Linux kernel, the following vulnerability has been resolved: ntfs: harden runlist realloc size calculations Add a shared helper to safely co… No fix yet Fix from $5,7502026-08-15 CRITICAL 9.8 CVE-2026-74569 In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_conntrack_sip: widen NAT rewrite delta to s32 in sip_help_tcp() s… No fix yet Fix from $5,7502026-08-15 CRITICAL 9.3 CVE-2026-74568 In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: vgic: Fix race between LPI release and re-registration Fix a potent… No fix yet Fix from $5,7502026-08-15 HIGH 7.1 CVE-2026-74567 In the Linux kernel, the following vulnerability has been resolved: keys: fix out-of-bounds read in keyring_get_key_chunk() For description-level c… No fix yet Fix from $4,9002026-08-15 HIGH 7.8 CVE-2026-74565 In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: make nft_object rhltable per table The nft_object rhltabl… No fix yet Fix from $4,9002026-08-15 HIGH 7.1 CVE-2026-74564 In the Linux kernel, the following vulnerability has been resolved: netfilter: xt_hashlimit: validate hashtable supports XT_HASHLIMIT_RATE_MATCH Th… No fix yet Fix from $4,9002026-08-15 HIGH 7.8 CVE-2026-74563 In the Linux kernel, the following vulnerability has been resolved: rds: tcp: hold the RCU lock across ipv6_chk_addr() in rds_tcp_laddr_check() rds… No fix yet Fix from $4,9002026-08-15 HIGH 8.8 CVE-2026-74562 In the Linux kernel, the following vulnerability has been resolved: nexthop: take nh->lock for f6i_list walks in replace check and notify fib6_chec… No fix yet Fix from $4,9002026-08-15 HIGH 8.8 CVE-2026-74561 In the Linux kernel, the following vulnerability has been resolved: nexthop: avoid unlocked f6i_list walk in nh_rt_cache_flush nh_rt_cache_flush() … No fix yet Fix from $4,9002026-08-15 HIGH 7.5 CVE-2026-74557 In the Linux kernel, the following vulnerability has been resolved: scsi: libiscsi: Fix stale-data leak into the SCSI sense buffer iscsi_scsi_cmd_r… No fix yet Fix from $4,9002026-08-15 CRITICAL 9.8 CVE-2026-74556 In the Linux kernel, the following vulnerability has been resolved: scsi: libiscsi_tcp: Bound SCSI Response data segment to the connection buffer i… No fix yet Fix from $5,7502026-08-15 HIGH 8.8 CVE-2026-74554 In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: fix out-of-bounds clear_bit in ath12k_mac_dp_peer_cleanup() ath12… No fix yet Fix from $4,9002026-08-15 HIGH 7.8 CVE-2026-74551 In the Linux kernel, the following vulnerability has been resolved: hwmon: (nzxt-smart2) DMA-align output buffer Sashiko reports: When send_output… No fix yet Fix from $4,9002026-08-15 HIGH 7.5 CVE-2026-74550 In the Linux kernel, the following vulnerability has been resolved: net: do not send ICMP/NDISC Redirects when peer allocation fails When inet_getp… No fix yet Fix from $4,9002026-08-15 HIGH 7.8 CVE-2026-74549 In the Linux kernel, the following vulnerability has been resolved: hwmon: (nct6775-core) Prevent access to unsupported weight registers Sashiko re… No fix yet Fix from $4,9002026-08-15