CVE Database

138188+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2026-31461
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix drm_edid leak in amdgpu_dm [WHAT] When a sink is connected, aconnector->drm_edid was overwritten …

Apr 22, 2026
CVE-2026-31460
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: check if ext_caps is valid in BL setup LVDS connectors don't have extended backlight …

Apr 22, 2026
CVE-2026-31459
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: mm/damon/sysfs: fix param_ctx leak on damon_sysfs_new_test_ctx() failure Patch series "mm/damon/sysfs: fix memory leak and NULL …

Apr 22, 2026
CVE-2026-31458
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: mm/damon/sysfs: check contexts->nr before accessing contexts_arr[0] Multiple sysfs command paths dereference contexts_arr[0] without first verifying …

Apr 22, 2026
CVE-2026-31457
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: mm/damon/sysfs: check contexts->nr in repeat_call_fn damon_sysfs_repeat_call_fn() calls damon_sysfs_upd_tuned_intervals(), damon_sysfs_upd_schemes_stats(), and damon_sysfs_upd_schemes_effective_quotas() without checking contexts->nr. If …

Apr 22, 2026
CVE-2026-31456
4.7 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: mm/pagewalk: fix race between concurrent split and refault The splitting of a PUD entry in …

Apr 22, 2026
CVE-2026-31455
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: xfs: stop reclaim before pushing AIL during unmount The unmount sequence in xfs_unmount_flush_inodes() pushed the …

Apr 22, 2026
CVE-2026-31454
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: xfs: save ailp before dropping the AIL lock in push callbacks In xfs_inode_item_push() and xfs_qm_dquot_logitem_push(), …

Apr 22, 2026
CVE-2026-31453
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: xfs: avoid dereferencing log items after push callbacks After xfsaild_push_item() calls iop_push(), the log item …

Apr 22, 2026
CVE-2026-31452
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: ext4: convert inline data to extents when truncate exceeds inline size Add a check in …

Apr 22, 2026
CVE-2026-31451
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: ext4: replace BUG_ON with proper error handling in ext4_read_inline_folio Replace BUG_ON() with proper error handling …

Apr 22, 2026
CVE-2026-31450
8.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: ext4: publish jinode after initialization ext4_inode_attach_jinode() publishes ei->jinode to concurrent users. It used to set …

Apr 22, 2026
CVE-2026-31449
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: ext4: validate p_idx bounds in ext4_ext_correct_indexes ext4_ext_correct_indexes() walks up the extent tree correcting index entries …

Apr 22, 2026
CVE-2026-31448
9.4 CRITICAL

In the Linux kernel, the following vulnerability has been resolved: ext4: avoid infinite loops caused by residual data On the mkdir/mknod path, when mapping logical …

Apr 22, 2026
CVE-2026-31447
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: ext4: reject mount if bigalloc with s_first_data_block != 0 bigalloc with s_first_data_block != 0 is …

Apr 22, 2026
CVE-2026-31446
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: ext4: fix use-after-free in update_super_work when racing with umount Commit b98535d09179 ("ext4: fix bug_on in …

Apr 22, 2026
CVE-2026-31445
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: mm/damon/core: avoid use of half-online-committed context One major usage of damon_call() is online DAMON parameters …

Apr 22, 2026
CVE-2026-31444
9.8 CRITICAL

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix use-after-free and NULL deref in smb_grant_oplock() smb_grant_oplock() has two issues in the oplock …

Apr 22, 2026
CVE-2026-31443
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: dmaengine: idxd: Fix crash when the event log is disabled If reporting errors to the …

Apr 22, 2026
CVE-2026-31442
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: dmaengine: idxd: Fix possible invalid memory access after FLR In the case that the first …

Apr 22, 2026
CVE-2026-31441
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: dmaengine: idxd: Fix memory leak when a wq is reset idxd_wq_disable_cleanup() which is called from …

Apr 22, 2026
CVE-2026-31440
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: dmaengine: idxd: Fix leaking event log memory During the device remove process, the device is …

Apr 22, 2026
CVE-2026-31439

In the Linux kernel, the following vulnerability has been resolved: dmaengine: xilinx: xdma: Fix regmap init error handling devm_regmap_init_mmio returns an ERR_PTR() upon error, not …

Apr 22, 2026
CVE-2026-31438

In the Linux kernel, the following vulnerability has been resolved: netfs: Fix kernel BUG in netfs_limit_iter() for ITER_KVEC iterators When a process crashes and the …

Apr 22, 2026
CVE-2026-31437

In the Linux kernel, the following vulnerability has been resolved: netfs: Fix NULL pointer dereference in netfs_unbuffered_write() on retry When a write subrequest is marked …

Apr 22, 2026
CVE-2026-31436
9.8 CRITICAL

In the Linux kernel, the following vulnerability has been resolved: dmaengine: idxd: fix possible wrong descriptor completion in llist_abort_desc() At the end of this function, …

Apr 22, 2026
CVE-2026-31435
8.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: netfs: Fix read abandonment during retry Under certain circumstances, all the remaining subrequests from a …

Apr 22, 2026
CVE-2026-31434

In the Linux kernel, the following vulnerability has been resolved: btrfs: fix leak of kobject name for sub-group space_info When create_space_info_sub_group() allocates elements of space_info->sub_group[], …

Apr 22, 2026
CVE-2026-31192
6.5 MEDIUM

Insufficient validation of Chrome extension identifiers in Raindrop.io Bookmark Manager Web App 5.6.76.0 allows attackers to obtain sensitive user data via a crafted request.

Apr 22, 2026
CVE-2026-0539

Incorrect Default Permissions in pcvisit service binary on Windows allows a low-privileged local attacker to escalate their privileges by overwriting the service binary with arbitrary …

Apr 22, 2026
CVE-2014-125120

Rejected reason: This CVE has the been REJECTED and will not be published by the CNA.

Apr 22, 2026
CVE-2013-10056

Rejected reason: This CVE has the been REJECTED and will not be published by the CNA.

Apr 22, 2026
CVE-2013-10045

Rejected reason: This CVE has the been REJECTED and will not be published by the CNA.

Apr 22, 2026
CVE-2013-10041

Rejected reason: This CVE has the been REJECTED and will not be published by the CNA.

Apr 22, 2026
CVE-2011-10031

Rejected reason: This CVE has the been REJECTED and will not be published by the CNA.

Apr 22, 2026
CVE-2010-20124

Rejected reason: This CVE has the been REJECTED and will not be published by the CNA.

Apr 22, 2026
CVE-2010-20118

Rejected reason: This CVE has the been REJECTED and will not be published by the CNA.

Apr 22, 2026
CVE-2010-20117

Rejected reason: This CVE has the been REJECTED and will not be published by the CNA.

Apr 22, 2026
CVE-2010-20116

Rejected reason: This CVE has the been REJECTED and will not be published by the CNA.

Apr 22, 2026
CVE-2010-20110

Rejected reason: This CVE has the been REJECTED and will not be published by the CNA.

Apr 22, 2026
CVE-2009-20012

Rejected reason: This CVE has the been REJECTED and will not be published by the CNA.

Apr 22, 2026
CVE-2008-20003

Rejected reason: This CVE has the been REJECTED and will not be published by the CNA.

Apr 22, 2026
CVE-2008-20002

Rejected reason: This CVE has the been REJECTED and will not be published by the CNA.

Apr 22, 2026
CVE-2005-20001

Rejected reason: This CVE has the been REJECTED and will not be published by the CNA.

Apr 22, 2026
CVE-2000-5001

Rejected reason: This CVE has the been REJECTED and will not be published by the CNA.

Apr 22, 2026
CVE-2026-6857
7.5 HIGH

A flaw was found in camel-infinispan. This vulnerability involves unsafe deserialization in the ProtoStream remote aggregation repository. A remote attacker with low privileges could exploit …

Apr 22, 2026
CVE-2026-6855
7.1 HIGH

A flaw was found in InstructLab. A local attacker could exploit a path traversal vulnerability in the chat session handler by manipulating the `logs_dir` parameter. …

Apr 22, 2026
CVE-2026-6848
5.4 MEDIUM

A flaw was found in Red Hat Quay. When Red Hat Quay requests password re-verification for sensitive operations, such as token generation or robot account …

Apr 22, 2026
CVE-2026-33601
4.4 MEDIUM

If you use the zoneToCache function with a malicious authoritative server, an attacker can send a zone that result in a null pointer dereference, caused …

Apr 22, 2026
CVE-2026-33600
4.4 MEDIUM

An RPZ sent by a malicious authoritative server can result in a null pointer dereference, caused by a missing consistency check and leading to a …

Apr 22, 2026

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.