CVE Database

133011+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2026-58059

In Bouncy Castle for Java before 1.85, Quadratic-time escaping when stringifying X.500 distinguished names. This issue also affects Bouncy Castle for Java LTS before 2.73.12, …

Aug 3, 2026
CVE-2026-20498
6.0 MEDIUM

In geniezone, there is a possible escalation of privilege due to a missing permission check. This could lead to local escalation of privilege if a …

Aug 3, 2026
CVE-2026-20497
6.0 MEDIUM

In geniezone, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if …

Aug 3, 2026
CVE-2026-20496
4.4 MEDIUM

In geniezone, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure if a …

Aug 3, 2026
CVE-2026-20495
7.8 HIGH

In Bluetooth driver, there is a possible permission bypass due to a missing permission check. This could lead to local escalation of privilege with User …

Aug 3, 2026
CVE-2026-20494
5.5 MEDIUM

In wifi, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure if a …

Aug 3, 2026
CVE-2026-20493
4.4 MEDIUM

In wifi, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service if …

Aug 3, 2026
CVE-2026-20492
5.5 MEDIUM

In Audio HAL, there is a possible system becoming unresponsive due to a race condition. This could lead to local denial of service with User …

Aug 3, 2026
CVE-2026-20491
5.5 MEDIUM

In med, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local denial of service with …

Aug 3, 2026
CVE-2026-20490
4.4 MEDIUM

In ccci, there is a possible out of bounds read due to a missing bounds check. This could lead to local denial of service if …

Aug 3, 2026
CVE-2026-20489
4.4 MEDIUM

In display, there is a possible information disclosure due to an integer overflow. This could lead to local information disclosure if a malicious actor has …

Aug 3, 2026
CVE-2026-20488
4.4 MEDIUM

In display, there is a possible information disclosure due to a missing bounds check. This could lead to local information disclosure if a malicious actor …

Aug 3, 2026
CVE-2026-20486
6.7 MEDIUM

In imgsensor, there is a possible application crash due to incorrect error handling. This could lead to local escalation of privilege if a malicious actor …

Aug 3, 2026
CVE-2026-20485
6.0 MEDIUM

In HFRP, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if …

Aug 3, 2026
CVE-2026-20484
4.4 MEDIUM

In TFA, there is a possible information disclosure due to a missing permission check. This could lead to local information disclosure if a malicious actor …

Aug 3, 2026
CVE-2026-20483
7.7 HIGH

In Telephony, there is a possible escalation of privilege due to a missing permission check. This could lead to local escalation of privilege with no …

Aug 3, 2026
CVE-2026-20482
6.5 MEDIUM

In wlan STA FW, there is a possible system becoming unresponsive due to logging. This could lead to remote (proximal/adjacent) denial of service with no …

Aug 3, 2026
CVE-2026-20481
6.0 MEDIUM

In geniezone, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if …

Aug 3, 2026
CVE-2026-20480
5.5 MEDIUM

In Audio HAL, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local denial of service …

Aug 3, 2026
CVE-2026-20479
7.5 HIGH

In Modem, there is a possible out of bounds read due to a missing bounds check. This could lead to remote denial of service, if …

Aug 3, 2026
CVE-2026-20478
5.5 MEDIUM

In Audio HAL, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local denial of service …

Aug 3, 2026
CVE-2026-20477
6.0 MEDIUM

In display, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if …

Aug 3, 2026
CVE-2026-20476
5.5 MEDIUM

In ccci, there is a possible out of bounds read due to a missing bounds check. This could lead to local denial of service with …

Aug 3, 2026
CVE-2026-20475
6.0 MEDIUM

In display, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if …

Aug 3, 2026
CVE-2026-20474
6.0 MEDIUM

In display, there is a possible escalation of privilege due to a race condition. This could lead to local escalation of privilege if a malicious …

Aug 3, 2026
CVE-2026-20473
6.0 MEDIUM

In display, there is a possible memory corruption due to use after free. This could lead to local escalation of privilege if a malicious actor …

Aug 3, 2026
CVE-2026-20472
4.4 MEDIUM

In TFA, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service if …

Aug 3, 2026
CVE-2026-20471
4.6 MEDIUM

In DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service, if …

Aug 3, 2026
CVE-2026-20470
6.2 MEDIUM

In Telephony, there is a possible information disclosure due to a missing permission check. This could lead to local information disclosure with no additional execution …

Aug 3, 2026
CVE-2026-20469
6.0 MEDIUM

In trusted_mem, there is a possible escalation of privilege due to improper input validation. This could lead to local escalation of privilege if a malicious …

Aug 3, 2026
CVE-2026-20468
6.0 MEDIUM

In apusys, there is a possible escalation of privilege due to a confused deputy. This could lead to local escalation of privilege if a malicious …

Aug 3, 2026
CVE-2026-20467
6.0 MEDIUM

In apusys, there is a possible escalation of privilege due to a missing bounds check. This could lead to local escalation of privilege if a …

Aug 3, 2026
CVE-2026-20466
6.1 MEDIUM

In sec boot, there is a possible escalation of privilege due to a heap buffer overflow. This could lead to local escalation of privilege, if …

Aug 3, 2026
CVE-2026-20465
8.1 HIGH

In wlan AP driver, there is a possible out of bounds write due to a missing bounds check. This could lead to remote (proximal/adjacent) escalation …

Aug 3, 2026
CVE-2026-20464
6.5 MEDIUM

In hevc decoder, there is a possible out of bounds write due to an integer overflow. This could lead to remote escalation of privilege if …

Aug 3, 2026
CVE-2026-18582
5.3 MEDIUM

A security flaw has been discovered in mz-automation libiec61850 up to 1.6.1. This vulnerability affects the function Reporting_RCBWriteAccessHandler of the file src/iec61850/server/mms_mapping/reporting.c of the component …

Aug 3, 2026
CVE-2026-8763

In Bouncy Castle for Java before 1.85, Name Constraints bypass via trailing dot in rfc822Name and URI. This issue also affects Bouncy Castle for Java …

Aug 3, 2026
CVE-2026-65875
7.1 HIGH

BaserCMS provided by baserCMS Users Community contains a CSV file injection vulnerability. If a user downloads and opens a CSV file containing malicious code injected …

Aug 3, 2026
CVE-2026-59652

In Bouncy Castle for Java before 1.85, LDAP filter injection in legacy jdk1.4 LDAPStoreHelper.

Aug 3, 2026
CVE-2026-59651

In Bouncy Castle for Java before 1.85, BKS keystore accepts legacy version with 16-bit integrity MAC key. This issue also affects Bouncy Castle for Java …

Aug 3, 2026
CVE-2026-59650

In Bouncy Castle for Java before 1.85, MTI/A0 DH agreement exponentiates unvalidated peer value. This issue also affects Bouncy Castle for Java LTS before 2.73.12.

Aug 3, 2026
CVE-2026-59649

In Bouncy Castle for Java before 1.85, OpenPGP user-attribute subpacket length bounded only by JVM max memory. This issue also affects Bouncy Castle for Java …

Aug 3, 2026
CVE-2026-59648

In Bouncy Castle for Java before 1.85, OpenPGP Argon2 S2K honours attacker-chosen memory and passes. This issue also affects Bouncy Castle for Java LTS before …

Aug 3, 2026
CVE-2026-59647

In Bouncy Castle for Java before 1.85, CRMF/CMP password-MAC honours unbounded iteration count. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and …

Aug 3, 2026
CVE-2026-59646

In Bouncy Castle for Java before 1.85, DTLS handshake reassembler allocates buffer from unchecked 24-bit length. This issue also affects Bouncy Castle for Java LTS …

Aug 3, 2026
CVE-2026-59645

In Bouncy Castle for Java before 1.85, OER parser recurses without depth limit on self-referential IEEE 1609.2 schema. This issue also affects Bouncy Castle for …

Aug 3, 2026
CVE-2026-59644

In Bouncy Castle for Java before 1.85, MLS hash-ratchet honours arbitrary 32-bit generation counter from sender.

Aug 3, 2026
CVE-2026-59643

In Bouncy Castle for Java before 1.85, OpenPGP inline-signature policy failures silently ignored. This issue also affects Bouncy Castle for Java FIPS (BC-FJA) before bcpg-fips …

Aug 3, 2026
CVE-2026-59642

In Bouncy Castle for Java before 1.85, CMS AuthenticatedData content not bound to MAC when authAttrs present. This issue also affects Bouncy Castle for Java …

Aug 3, 2026
CVE-2026-59641

In Bouncy Castle for Java before 1.85, S/MIME validator trusts signer-asserted signingTime for path validation. This issue also affects Bouncy Castle for Java LTS before …

Aug 3, 2026

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.