Threat Intelligence Feed

Aggregating 8031 articles from trusted cybersecurity sources

LATEST CVEs
CVE-2026-97544 In the Linux kernel, the following vulnerability has been resolved: xfs: don't leak dqacct if rhashtable insertion fail CVE-2026-97543 In the Linux kernel, the following vulnerability has been resolved: xfs: destroy seen inode bitmap when we fail to add CVE-2026-97542 In the Linux kernel, the following vulnerability has been resolved: xfs: bail out on bitmap errors in xrep_agfl_fill L CVE-2026-97541 In the Linux kernel, the following vulnerability has been resolved: wifi: ath9k_htc: don't store usb_device_id usb_dev CVE-2026-97540 In the Linux kernel, the following vulnerability has been resolved: net: usb: pegasus: don't rely on id table pointer a CVE-2026-97539 In the Linux kernel, the following vulnerability has been resolved: usb: xusbatm: don't rely on id table pointer arithm CVE-2026-97538 In the Linux kernel, the following vulnerability has been resolved: hwmon: (asus_rog_ryujin) Validate HID report length CVE-2026-97537 In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Fix queue teardown NULL dma_free and HIGH · CVE-2026-97536 In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Fix use-after-free of qpair work on CVE-2026-97535 In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Bound VP index against VP_CTRL IOCB CVE-2026-97534 In the Linux kernel, the following vulnerability has been resolved: f2fs: accurately adjust free_sections during free_s CVE-2026-97533 In the Linux kernel, the following vulnerability has been resolved: x86/mm/pat: Acquire init_mm read lock on attribute CVE-2026-97532 In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Null out freed pointers in qla2x00_m HIGH · CVE-2026-97531 In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Skip vport under deletion in report CVE-2026-97530 In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Fix soft lockup polling continuation CVE-2026-97529 In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Validate BSG request_len before read HIGH · CVE-2026-97528 In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Unlink NVMe unsol ctx before freeing HIGH · CVE-2026-97527 In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Serialize NVMe unsol ctx list with a CVE-2026-97526 In the Linux kernel, the following vulnerability has been resolved: s390/pai: Support CPU hotplug for PMU PAI The comm HIGH · CVE-2026-97525 In the Linux kernel, the following vulnerability has been resolved: x86/mm/pat: Allocate split page tables as kernel pa HIGH · CVE-2026-97524 In the Linux kernel, the following vulnerability has been resolved: mptcp: avoid unneeded actions on subflow reset Onc HIGH · CVE-2026-97523 In the Linux kernel, the following vulnerability has been resolved: mptcp: close race between scheduler and state chang CVE-2026-97522 In the Linux kernel, the following vulnerability has been resolved: mptcp: fix bad accounting in __mptcp_subflow_push_p CVE-2026-97228 Rapid7 Bulk Export MCP versions 0.2.5 through 0.6.1 suffer from a GraphQL query injection issue in the export-status com CVE-2026-27867 An attacker with access via network to the Regesta Smart HD-PLC of the provider Teldat (in this case, registration actio CVE-2026-97898 Insecure Direct Object Reference / missing object-level authorization in the Akia keyless entry cloud service. The unloc CVE-2026-92106 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in dashbitco lazy_htm CVE-2026-97863 The cisco_firesight_manager_ACL_rule_export module in misp-modules generates a shell script (.sh) that authenticates to MED · CVE-2026-92573 Improper handling of compressed data in the shared GZIP decompressor used for AMQP 0-8/0-9/0-9-1 and AMQP 0-10 message d CVE-2026-92564 A pre-authentication attacker could leverage type nesting to cause a StackOverflowError potentially leading to denial of HIGH · CVE-2026-92560 A pre-authentication attacker could leverage type size/count handling to cause excessive allocation leading to potential HIGH · CVE-2026-92550 A pre-authentication attacker could leverage type size/count handling to cause excessive allocation leading to potential MED · CVE-2026-88848 The MasterStudy LMS WordPress plugin from 1.9 before 3.7.50 does not verify that a course a member asks to enrol in is c MED · CVE-2026-86837 The Bookly WordPress plugin before 28.3 does not properly verify a customer's identity before updating their stored deta MED · CVE-2026-80514 The wpForo Forum WordPress plugin from 3.0.0 before 3.1.6 does not verify the source of client-supplied IP address heade CVE-2026-6088 Stored Cross-Site Scripting (XSS) vulnerability in StockAgile API and management panel. The vulnerability is present on CVE-2026-6087 Stored Cross-Site Scripting (XSS) vulnerability in StockAgile API and management panel. The vulnerability is present on CVE-2026-6086 Stored Cross-Site Scripting (XSS) vulnerability in StockAgile API and management panel. The vulnerability is present on CVE-2026-6085 Stored Cross-Site Scripting (XSS) vulnerability in StockAgile API and management panel. The vulnerability is present on CVE-2026-6084 Stored Cross-Site Scripting (XSS) vulnerability in StockAgile API and management panel. The vulnerability is present on
5454 general 1015 advisories 729 research 551 vendor 282 enterprise

Trending Vendors

Latest News

Data Breaches

No articles found.