Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 6.5
CVE-2026-19587
Uncontrolled Resource Consumption vulnerability in Samsung Open Source rlottie allows Excessive Allocation.
Patch available
HIGH 8.1
CVE-2026-18961
The Social Login, Passkeys, Magic Link & Email OTP – Passwordless Login by VentraConnect plugin for WordPress is vulnerable to Authentication Bypass …
No fix yet
MEDIUM 6.3
CVE-2025-15685
A flaw has been found in Open5GS up to 2.7.1. Affected by this vulnerability is an unknown functionality of the component freeDiameter. This manipula…
No fix yet
MEDIUM 5.3
CVE-2025-15684
A vulnerability was detected in Open5GS up to 2.7.6. Affected is the function diam_log_func of the file lib/diameter/common/init.c of the component C…
Patch available
HIGH 7.7
CVE-2026-73122
A flaw was found in the multicloud-operators-channel component of Red Hat Advanced Cluster Management (RHACM). This vulnerability allows a compromise…
No fix yet
CRITICAL 9.9
CVE-2026-72526
A flaw was found in the multicloud-integrations component. The Application propagation controller processes the `ocm-managed-cluster` annotation from…
No fix yet
CRITICAL 9.6
CVE-2026-70398
A flaw was found in multicloud-integrations, a component of Red Hat Advanced Cluster Management (RHACM). This vulnerability allows an authenticated u…
No fix yet
HIGH 7.7
CVE-2026-66878
A flaw was found in multicloud-operators-subscription. A privileged user, specifically a namespace administrator capable of creating Channel and Subs…
No fix yet
MEDIUM 6.4
CVE-2026-64927
A flaw was found in the multicloud-operators-channel component. This vulnerability allows a user with specific permissions to manipulate how the syst…
No fix yet
HIGH 8.2
CVE-2026-6484
In an UEFI, Lack of verified boot to certain FV may cause arbitrary code execution.
No fix yet
HIGH 7.1
CVE-2026-68447
In the Linux kernel, the following vulnerability has been resolved:
drm/amdkfd: clamp v9 CRIU control stack checkpoint copy to BO size
CRIU checkpo…
No fix yet
MEDIUM 6.3
CVE-2024-14044
A vulnerability was identified in Open5GS up to 2.7.1. This issue affects the function pcrf_rx_aar_cb of the file src/pcrf/pcrf-rx-path.c of the comp…
Patch available
HIGH 7.8
CVE-2026-68446
In the Linux kernel, the following vulnerability has been resolved:
drm/vmwgfx: Validate vmw_surface_metadata::array_size
This field comes from use…
No fix yet
HIGH 7.8
CVE-2026-68445
In the Linux kernel, the following vulnerability has been resolved:
drm/vc4: Prevent shader BO mappings from becoming writable
vc4_gem_object_mmap(…
No fix yet
HIGH 7.8
CVE-2026-68442
In the Linux kernel, the following vulnerability has been resolved:
btrfs: don't propagate EXTENT_FLAG_LOGGING to split extent maps
When btrfs_drop…
No fix yet
HIGH 7.8
CVE-2026-68440
In the Linux kernel, the following vulnerability has been resolved:
net: txgbe: fix heap overflow when reading module EEPROM
txgbe_read_eeprom_host…
No fix yet
HIGH 8.6
CVE-2026-68433
In the Linux kernel, the following vulnerability has been resolved:
libceph: bound get_version reply decode to front len
handle_get_version_reply()…
No fix yet
HIGH 8.8
CVE-2026-68432
In the Linux kernel, the following vulnerability has been resolved:
vxlan: require CAP_NET_ADMIN in the device netns for changelink
A tunnel change…
No fix yet
CRITICAL 9.1
CVE-2026-68431
In the Linux kernel, the following vulnerability has been resolved:
ksmbd: validate minimum PDU size for transform requests
The receive path applie…
No fix yet
MEDIUM 6.3
CVE-2024-14043
A vulnerability was determined in Open5GS up to 2.7.1. This vulnerability affects the function mme_s6a_subscription_data_from_avp of the file src/mme…
Patch available
MEDIUM 5.4
CVE-2026-73250
Notepad++ is a free and open-source source code editor. Prior to 8.9.7, the Notepad++ Windows 11 x64 and ARM64 installer passes the attacker-influenc…
Patch available
HIGH 7.5
CVE-2026-73249
calibre is an e-book manager. Prior to 9.12.0, the calibre Content Server endpoint POST /book-update-annotations/{library_id}/{book_id}/{fmt} in src/…
Patch available
HIGH 8.5
CVE-2026-73248
calibre is an e-book manager. Prior to 9.12.0, calibre processes attacker-controlled composite_template metadata from a malicious EPUB, OPF, PDF, or …
Patch available
HIGH 8.6
CVE-2026-73247
Kestra is an open-source, event-driven orchestration platform. Prior to 2.0.0, Kestra's core/src/main/java/io/kestra/core/runners/pebble/functions/Ht…
No fix yet
HIGH 7.5
CVE-2026-73246
Kestra is an open-source, event-driven orchestration platform. Prior to 2.0.0-rc6, Kestra's worker/src/main/java/io/kestra/worker/endpoint/WorkerEndp…
No fix yet
MEDIUM 6.5
CVE-2026-73245
Kestra is an open-source, event-driven orchestration platform. Prior to 2.0.0-rc6, Kestra's cli/src/main/resources/application.yml serves Micronaut m…
No fix yet
CRITICAL 9.8
CVE-2026-68067
The login endpoint on the Mira cloud API accepts any format-valid string in the password field and returns a live active session token for the accoun…
No fix yet
CRITICAL 9.1
CVE-2026-67568
The distributed Mira Android APK v4.5.15.4 allows an attacker read/write access to reproductive health profiles from internet connected hosts, which …
No fix yet
HIGH 7.4
CVE-2026-67558
The Mira Android companion app v4.5.15.4 identifies the paired Mira hormone analyzer by performing a substring match against the BLE advertisement na…
No fix yet
HIGH 8.8
CVE-2026-66875
In the Mira hormone monitor device firmware v1.7.1.47 build 01070147, a remote unauthenticated attacker within BLE range (approximately 10–30 meters)…
No fix yet