Skip to content
All tracked CVEs

Updated 07:01

241 fixed in the last 7 days

Severity
CVEStatusSeveritySummaryDistributionFixed
FixedCriticalksmbd smb2_open use-after-free during durable reconnect due to early ksmbd_put_durable_fd callsecure-packages-25.11Sep 21, 2026
FixedMediumASoC nau8821 kernel crash on remove with pending jack detection worksecure-packages-25.11Sep 21, 2026
FixedMediumsecure-packages-25.11Sep 21, 2026
FixedHighPYSEC-2026-2121: Black <26.3.1 arbitrary cache file writes via unsanitized --python-cell-magics inputsecure-packages-26.05Sep 21, 2026
FixedCriticalPYSEC-2026-2120: Black GitHub Action use_pyproject allows malicious version URL, enabling RCE and secrets exposuresecure-packages-26.05Sep 21, 2026
FixedHighGHSA-3936-cmfr-pm3m: Black cache filename injection via --python-cell-magics enables arbitrary filesystem writesecure-packages-26.05Sep 21, 2026
FixedHighBlack pre-26.3.1 unsanitized --python-cell-magics in cache filename enables arbitrary filesystem writessecure-packages-26.05Sep 21, 2026
FixedCriticalBlack GitHub Action vulnerability: pyproject URL version injection enables RCE and secret exfiltrationsecure-packages-26.05Sep 21, 2026
FixedHighValkey clusterbus ping extension OOB read crash vulnerability before 9.0.2/8.1.6/8.0.7/7.2.12secure-packages-26.05Sep 21, 2026
FixedHighValkey Lua script null-byte mishandling enables client response injection and same-connection data tamperingsecure-packages-26.05Sep 21, 2026
FixedCriticalRedis ≤8.2.1 Lua GC use-after-free enables authenticated RCE via EVAL/EVALSHAsecure-packages-26.05Sep 21, 2026
FixedHighlibcurl with libpsl leaks public-suffix Domain cookies to sibling subdomainssecure-packages-rollingSep 19, 2026
FixedHighlibcurl wolfSSL CA cache overrides CURLOPT_SSL_CTX_FUNCTION trust store, accepting rejected certificatessecure-packages-rollingSep 19, 2026
FixedHighcurl drops Secure flag when Set-Cookie uses tab before Secure attribute, causing plaintext HTTP leaksecure-packages-rollingSep 19, 2026
FixedHighlibcurl wrongly reuses HTTPS connection when CURLSSLOPT_NATIVE_CA differs for same hostnamesecure-packages-rollingSep 19, 2026
FixedHighlibcurl bypasses CURLOPT_PINNEDPUBLICKEY when SSL_VERIFYPEER/SSL_VERIFYHOST disabled, accepts connections without server certificatesecure-packages-rollingSep 19, 2026
FixedHighlibcurl multi TLS pooling outlives easy handle; OpenSSL 3 context freed early causing UAFsecure-packages-rollingSep 19, 2026
FixedCriticallibcurl reuses Negotiate-auth HTTP connection after empty credentials, mixing users’ authenticated requestssecure-packages-rollingSep 19, 2026
FixedCriticalUse-after-free in libcurl cleanup with HTTP/2 Server Push and shared connections across handlessecure-packages-rollingSep 19, 2026
FixedHighlibcurl LDAP SASL handshake flaw allows MITM to bypass verification via premature response injectionsecure-packages-rollingSep 19, 2026
FixedHighrmmod breaks netfilter x_tables table re-instantiation during set/getsockopt due to premature unlinkingsecure-packages-25.11Sep 19, 2026
FixedHighksmbd caseless lookup retries on -EXDEV, bypassing LOOKUP_BENEATH and enabling share escapesecure-packages-25.11Sep 18, 2026
FixedHighksmbd updates session key on failed NTLMv2 auth during SMB3 multichannel bindingsecure-packages-25.11Sep 18, 2026
FixedHighSMB3 POSIX mounts ignore chown/chgrp unless CIFS ACL or MODE_FROM_SID flags setsecure-packages-25.11Sep 18, 2026
FixedMediumRace in netfilter x_tables leaves table with NULL ops, causing NULL deref on exitsecure-packages-25.11Sep 18, 2026
FixedMediumnetfs_write_begin() request reference leak on netfs_wait_for_read() errorsecure-packages-25.11Sep 18, 2026
FixedMediumath11k EMA/MBSSID beacon template memory leak on parameter setup error pathssecure-packages-25.11Sep 18, 2026
FixedMediumLinux mt76 skb memory leak when mt76_connac_mcu_alloc_sta_req fails in wed_update/key_tlvsecure-packages-25.11Sep 18, 2026
FixedHighOffloaded BPF map/prog info query triggers UAF via get_net during netns teardownsecure-packages-25.11Sep 18, 2026
FixedMediumsecure-packages-25.11Sep 18, 2026
FixedHighsecure-packages-25.11Sep 18, 2026
FixedMediumsecure-packages-25.11Sep 18, 2026
FixedMediumsecure-packages-25.11Sep 18, 2026
FixedHighsecure-packages-25.11Sep 18, 2026
FixedMediumsecure-packages-25.11Sep 18, 2026
FixedMediumsecure-packages-25.11Sep 18, 2026
FixedMediumsecure-packages-25.11Sep 18, 2026
FixedHighChrome Mac Extensions race condition pre-153.0.8010.47 enables sandbox escape via UI interactionsecure-packages-25.11Sep 18, 2026
FixedLowSkia use-after-free in Chrome <153.0.8010.47 enables cross-origin data exfiltration via crafted HTMLsecure-packages-25.11Sep 18, 2026
FixedMediumInteger overflow in Chrome Compositing before 153.0.8010.47 enables cross-origin data exfiltrationsecure-packages-25.11Sep 18, 2026
FixedHighV8 use-after-free in Chrome <153.0.8010.47 enables sandboxed RCE via crafted HTMLsecure-packages-25.11Sep 18, 2026
FixedMediumChrome Mac PlatformIntegration race condition leaks sensitive data via crafted HTML (pre-153.0.8010.47)secure-packages-25.11Sep 18, 2026
FixedHighChrome pre-153 Core race bug enables post-renderer sandbox escape RCE via crafted HTMLsecure-packages-25.11Sep 18, 2026
FixedHighChrome CacheStorage type confusion enables sandboxed RCE via crafted HTML (prior to 153.0.8010.47)secure-packages-25.11Sep 18, 2026
FixedMediumSkia uninitialized resource in Chrome <153.0.8010.47 allows cross-origin data exposure via crafted HTML pagesecure-packages-25.11Sep 18, 2026
FixedMediumChrome <153.0.8010.47 Transactions Platform missing auth allows renderer-compromised UI spoofing via crafted HTMLsecure-packages-25.11Sep 18, 2026
FixedCriticalANGLE input validation bug enables sandbox-escape RCE via HTML in Chrome <153.0.8010.47secure-packages-25.11Sep 18, 2026
FixedHighUse-after-free in Chrome PDF pre-153.0.8010.47 allows sandbox RCE via crafted HTMLsecure-packages-25.11Sep 18, 2026
FixedHighChrome DOM use-after-free enables remote sandboxed arbitrary code execution via crafted HTML pre-153.0.8010.47secure-packages-25.11Sep 18, 2026
FixedHighChrome <153.0.8010.47 WebUI auth flaw enabled RCE outside sandbox from compromised renderersecure-packages-25.11Sep 18, 2026

Contact sales

Provide us with some basic details and we'll follow up with you about , usually within one business day.

We'll only use this to get back to you. See our privacy policy (opens in a new tab). This site is protected by reCAPTCHA and the Google Privacy Policy (opens in a new tab) and Terms of Service (opens in a new tab) apply.