← All tracked CVEs
Updated 07:01
241 fixed in the last 7 days
| CVE | Status | Severity | Summary | Distribution | Fixed |
|---|---|---|---|---|---|
| Fixed | Critical | ksmbd smb2_open use-after-free during durable reconnect due to early ksmbd_put_durable_fd call | secure-packages-25.11 | Sep 21, 2026 | |
| Fixed | Medium | ASoC nau8821 kernel crash on remove with pending jack detection work | secure-packages-25.11 | Sep 21, 2026 | |
| Fixed | Medium | secure-packages-25.11 | Sep 21, 2026 | ||
| Fixed | High | PYSEC-2026-2121: Black <26.3.1 arbitrary cache file writes via unsanitized --python-cell-magics input | secure-packages-26.05 | Sep 21, 2026 | |
| Fixed | Critical | PYSEC-2026-2120: Black GitHub Action use_pyproject allows malicious version URL, enabling RCE and secrets exposure | secure-packages-26.05 | Sep 21, 2026 | |
| Fixed | High | GHSA-3936-cmfr-pm3m: Black cache filename injection via --python-cell-magics enables arbitrary filesystem write | secure-packages-26.05 | Sep 21, 2026 | |
| Fixed | High | Black pre-26.3.1 unsanitized --python-cell-magics in cache filename enables arbitrary filesystem writes | secure-packages-26.05 | Sep 21, 2026 | |
| Fixed | Critical | Black GitHub Action vulnerability: pyproject URL version injection enables RCE and secret exfiltration | secure-packages-26.05 | Sep 21, 2026 | |
| Fixed | High | Valkey clusterbus ping extension OOB read crash vulnerability before 9.0.2/8.1.6/8.0.7/7.2.12 | secure-packages-26.05 | Sep 21, 2026 | |
| Fixed | High | Valkey Lua script null-byte mishandling enables client response injection and same-connection data tampering | secure-packages-26.05 | Sep 21, 2026 | |
| Fixed | Critical | Redis ≤8.2.1 Lua GC use-after-free enables authenticated RCE via EVAL/EVALSHA | secure-packages-26.05 | Sep 21, 2026 | |
| Fixed | High | libcurl with libpsl leaks public-suffix Domain cookies to sibling subdomains | secure-packages-rolling | Sep 19, 2026 | |
| Fixed | High | libcurl wolfSSL CA cache overrides CURLOPT_SSL_CTX_FUNCTION trust store, accepting rejected certificates | secure-packages-rolling | Sep 19, 2026 | |
| Fixed | High | curl drops Secure flag when Set-Cookie uses tab before Secure attribute, causing plaintext HTTP leak | secure-packages-rolling | Sep 19, 2026 | |
| Fixed | High | libcurl wrongly reuses HTTPS connection when CURLSSLOPT_NATIVE_CA differs for same hostname | secure-packages-rolling | Sep 19, 2026 | |
| Fixed | High | libcurl bypasses CURLOPT_PINNEDPUBLICKEY when SSL_VERIFYPEER/SSL_VERIFYHOST disabled, accepts connections without server certificate | secure-packages-rolling | Sep 19, 2026 | |
| Fixed | High | libcurl multi TLS pooling outlives easy handle; OpenSSL 3 context freed early causing UAF | secure-packages-rolling | Sep 19, 2026 | |
| Fixed | Critical | libcurl reuses Negotiate-auth HTTP connection after empty credentials, mixing users’ authenticated requests | secure-packages-rolling | Sep 19, 2026 | |
| Fixed | Critical | Use-after-free in libcurl cleanup with HTTP/2 Server Push and shared connections across handles | secure-packages-rolling | Sep 19, 2026 | |
| Fixed | High | libcurl LDAP SASL handshake flaw allows MITM to bypass verification via premature response injection | secure-packages-rolling | Sep 19, 2026 | |
| Fixed | High | rmmod breaks netfilter x_tables table re-instantiation during set/getsockopt due to premature unlinking | secure-packages-25.11 | Sep 19, 2026 | |
| Fixed | High | ksmbd caseless lookup retries on -EXDEV, bypassing LOOKUP_BENEATH and enabling share escape | secure-packages-25.11 | Sep 18, 2026 | |
| Fixed | High | ksmbd updates session key on failed NTLMv2 auth during SMB3 multichannel binding | secure-packages-25.11 | Sep 18, 2026 | |
| Fixed | High | SMB3 POSIX mounts ignore chown/chgrp unless CIFS ACL or MODE_FROM_SID flags set | secure-packages-25.11 | Sep 18, 2026 | |
| Fixed | Medium | Race in netfilter x_tables leaves table with NULL ops, causing NULL deref on exit | secure-packages-25.11 | Sep 18, 2026 | |
| Fixed | Medium | netfs_write_begin() request reference leak on netfs_wait_for_read() error | secure-packages-25.11 | Sep 18, 2026 | |
| Fixed | Medium | ath11k EMA/MBSSID beacon template memory leak on parameter setup error paths | secure-packages-25.11 | Sep 18, 2026 | |
| Fixed | Medium | Linux mt76 skb memory leak when mt76_connac_mcu_alloc_sta_req fails in wed_update/key_tlv | secure-packages-25.11 | Sep 18, 2026 | |
| Fixed | High | Offloaded BPF map/prog info query triggers UAF via get_net during netns teardown | secure-packages-25.11 | Sep 18, 2026 | |
| Fixed | Medium | secure-packages-25.11 | Sep 18, 2026 | ||
| Fixed | High | secure-packages-25.11 | Sep 18, 2026 | ||
| Fixed | Medium | secure-packages-25.11 | Sep 18, 2026 | ||
| Fixed | Medium | secure-packages-25.11 | Sep 18, 2026 | ||
| Fixed | High | secure-packages-25.11 | Sep 18, 2026 | ||
| Fixed | Medium | secure-packages-25.11 | Sep 18, 2026 | ||
| Fixed | Medium | secure-packages-25.11 | Sep 18, 2026 | ||
| Fixed | Medium | secure-packages-25.11 | Sep 18, 2026 | ||
| Fixed | High | Chrome Mac Extensions race condition pre-153.0.8010.47 enables sandbox escape via UI interaction | secure-packages-25.11 | Sep 18, 2026 | |
| Fixed | Low | Skia use-after-free in Chrome <153.0.8010.47 enables cross-origin data exfiltration via crafted HTML | secure-packages-25.11 | Sep 18, 2026 | |
| Fixed | Medium | Integer overflow in Chrome Compositing before 153.0.8010.47 enables cross-origin data exfiltration | secure-packages-25.11 | Sep 18, 2026 | |
| Fixed | High | V8 use-after-free in Chrome <153.0.8010.47 enables sandboxed RCE via crafted HTML | secure-packages-25.11 | Sep 18, 2026 | |
| Fixed | Medium | Chrome Mac PlatformIntegration race condition leaks sensitive data via crafted HTML (pre-153.0.8010.47) | secure-packages-25.11 | Sep 18, 2026 | |
| Fixed | High | Chrome pre-153 Core race bug enables post-renderer sandbox escape RCE via crafted HTML | secure-packages-25.11 | Sep 18, 2026 | |
| Fixed | High | Chrome CacheStorage type confusion enables sandboxed RCE via crafted HTML (prior to 153.0.8010.47) | secure-packages-25.11 | Sep 18, 2026 | |
| Fixed | Medium | Skia uninitialized resource in Chrome <153.0.8010.47 allows cross-origin data exposure via crafted HTML page | secure-packages-25.11 | Sep 18, 2026 | |
| Fixed | Medium | Chrome <153.0.8010.47 Transactions Platform missing auth allows renderer-compromised UI spoofing via crafted HTML | secure-packages-25.11 | Sep 18, 2026 | |
| Fixed | Critical | ANGLE input validation bug enables sandbox-escape RCE via HTML in Chrome <153.0.8010.47 | secure-packages-25.11 | Sep 18, 2026 | |
| Fixed | High | Use-after-free in Chrome PDF pre-153.0.8010.47 allows sandbox RCE via crafted HTML | secure-packages-25.11 | Sep 18, 2026 | |
| Fixed | High | Chrome DOM use-after-free enables remote sandboxed arbitrary code execution via crafted HTML pre-153.0.8010.47 | secure-packages-25.11 | Sep 18, 2026 | |
| Fixed | High | Chrome <153.0.8010.47 WebUI auth flaw enabled RCE outside sandbox from compromised renderer | secure-packages-25.11 | Sep 18, 2026 |