6.4

CVSS3.1

CVE-2026-35507 -

Shynet before 0.14.0 allows Host header injection in the password reset flow.

πŸ“… Published: April 3, 2026, 1 a.m. πŸ”„ Last Modified: April 10, 2026, 9:45 a.m.

5.5

CVSS3.1

CVE-2026-23435 - perf/x86: Move event pointer setup earlier in x86_pmu_enable()

In the Linux kernel, the following vulnerability has been resolved: perf/x86: Move event pointer setup earlier in x86_pmu_enable() A production AMD EPYC system crashed with a NULL pointer dereference in the PMU NMI handler: BUG: kernel NULL pointer dereference, address: 0000000000000198 RIP:…

πŸ“… Published: April 3, 2026, midnight πŸ”„ Last Modified: April 23, 2026, 8:59 p.m.

0.0

CVE-2026-23474 - mtd: Avoid boot crash in RedBoot partition table parser

In the Linux kernel, the following vulnerability has been resolved: mtd: Avoid boot crash in RedBoot partition table parser Given CONFIG_FORTIFY_SOURCE=y and a recent compiler, commit 439a1bcac648 ("fortify: Use __builtin_dynamic_object_size() when available") produces the warning below and an oo…

πŸ“… Published: April 3, 2026, midnight πŸ”„ Last Modified: April 18, 2026, 9:16 a.m.

5.5

CVSS3.1

CVE-2026-23421 - drm/xe/configfs: Free ctx_restore_mid_bb in release

In the Linux kernel, the following vulnerability has been resolved: drm/xe/configfs: Free ctx_restore_mid_bb in release ctx_restore_mid_bb memory is allocated in wa_bb_store(), but xe_config_device_release() only frees ctx_restore_post_bb. Free ctx_restore_mid_bb[0].cs as well to avoid leaking t…

πŸ“… Published: April 3, 2026, midnight πŸ”„ Last Modified: April 24, 2026, 3:21 p.m.

5.5

CVSS3.1

CVE-2026-23418 - drm/xe/reg_sr: Fix leak on xa_store failure

In the Linux kernel, the following vulnerability has been resolved: drm/xe/reg_sr: Fix leak on xa_store failure Free the newly allocated entry when xa_store() fails to avoid a memory leak on the error path. v2: use goto fail_free. (Bala) (cherry picked from commit 6bc6fec71ac45f52db609af4e62bdb…

πŸ“… Published: April 3, 2026, midnight πŸ”„ Last Modified: April 24, 2026, 3:21 p.m.

7.8

CVSS3.1

CVE-2026-23444 - wifi: mac80211: always free skb on ieee80211_tx_prepare_skb() failure

In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: always free skb on ieee80211_tx_prepare_skb() failure ieee80211_tx_prepare_skb() has three error paths, but only two of them free the skb. The first error path (ieee80211_tx_prepare() returning TX_DROP) does not f…

πŸ“… Published: April 3, 2026, midnight πŸ”„ Last Modified: April 27, 2026, 2:02 p.m.

8.3

CVSS3.1

CVE-2025-59711 -

An issue was discovered in Biztalk360 before 11.5. Because of mishandling of user-provided input in an upload mechanism, an authenticated attacker is able to write files outside of the destination directory and/or coerce an authentication from the service, aka Directory Traversal.

πŸ“… Published: April 3, 2026, midnight πŸ”„ Last Modified: April 9, 2026, 8:29 a.m.

9.8

CVSS3.1

CVE-2026-31402 - nfsd: fix heap overflow in NFSv4.0 LOCK replay cache

In the Linux kernel, the following vulnerability has been resolved: nfsd: fix heap overflow in NFSv4.0 LOCK replay cache The NFSv4.0 replay cache uses a fixed 112-byte inline buffer (rp_ibuf[NFSD4_REPLAY_ISIZE]) to store encoded operation responses. This size was calculated based on OPEN response…

πŸ“… Published: April 3, 2026, midnight πŸ”„ Last Modified: April 27, 2026, 2:02 p.m.

8.8

CVSS3.1

CVE-2026-23462 - Bluetooth: HIDP: Fix possible UAF

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: HIDP: Fix possible UAF This fixes the following trace caused by not dropping l2cap_conn reference when user->remove callback is called: [ 97.809249] l2cap_conn_free: freeing conn ffff88810a171c00 [ 97.809907] CPU:…

πŸ“… Published: April 3, 2026, midnight πŸ”„ Last Modified: April 27, 2026, 2:02 p.m.

9.8

CVSS3.1

CVE-2026-23428 - ksmbd: fix use-after-free of share_conf in compound request

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix use-after-free of share_conf in compound request smb2_get_ksmbd_tcon() reuses work->tcon in compound requests without validating tcon->t_state. ksmbd_tree_conn_lookup() checks t_state == TREE_CONNECTED on the initial l…

πŸ“… Published: April 3, 2026, midnight πŸ”„ Last Modified: April 27, 2026, 2:02 p.m.
Total resulsts: 349182
Page 709 of 34,919
Β« previous page Β» next page
Filters