CVE Database

54652+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2021-47024
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: vsock/virtio: free queued packets when closing socket As reported by syzbot [1], there is a …

Feb 28, 2024
CVE-2021-47022
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: mt76: mt7615: fix memleak when mt7615_unregister_device() mt7615_tx_token_put() should get call before mt76_free_pending_txwi().

Feb 28, 2024
CVE-2021-47021
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: mt76: mt7915: fix memleak when mt7915_unregister_device() mt7915_tx_token_put() should get call before mt76_free_pending_txwi().

Feb 28, 2024
CVE-2021-47019
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: mt76: mt7921: fix possible invalid register access Disable the interrupt and synchronze for the pending …

Feb 28, 2024
CVE-2021-47018
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: powerpc/64: Fix the definition of the fixmap area At the time being, the fixmap area …

Feb 28, 2024
CVE-2021-47015
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: bnxt_en: Fix RX consumer index logic in the error path. In bnxt_rx_pkt(), the RX buffers …

Feb 28, 2024
CVE-2021-47011
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: mm: memcontrol: slab: fix obtain a reference to a freeing memcg Patch series "Use obj_cgroup …

Feb 28, 2024
CVE-2021-47009
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: KEYS: trusted: Fix memory leak on object td Two error return paths are neglecting to …

Feb 28, 2024
CVE-2021-47008
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: KVM: SVM: Make sure GHCB is mapped before updating Access to the GHCB is mainly …

Feb 28, 2024
CVE-2021-47007
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: f2fs: fix panic during f2fs_resize_fs() f2fs_resize_fs() hangs in below callstack with testcase: - mkfs 16GB …

Feb 28, 2024
CVE-2021-47006
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: ARM: 9064/1: hw_breakpoint: Do not directly check the event's overflow_handler hook The commit 1879445dfa7b ("perf/core: …

Feb 28, 2024
CVE-2021-47005
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: PCI: endpoint: Fix NULL pointer dereference for ->get_features() get_features ops of pci_epc_ops may return NULL, …

Feb 28, 2024
CVE-2021-47003
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: dmaengine: idxd: Fix potential null dereference on pointer status There are calls to idxd_cmd_exec that …

Feb 28, 2024
CVE-2021-47002
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: SUNRPC: Fix null pointer dereference in svc_rqst_free() When alloc_pages_node() returns null in svc_rqst_alloc(), the null …

Feb 28, 2024
CVE-2021-47001
4.7 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: xprtrdma: Fix cwnd update ordering After a reconnect, the reply handler is opening the cwnd …

Feb 28, 2024
CVE-2021-46997
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: arm64: entry: always set GIC_PRIO_PSR_I_SET during entry Zenghui reports that booting a kernel with "irqchip.gicv3_pseudo_nmi=1" …

Feb 28, 2024
CVE-2021-46996
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: netfilter: nftables: Fix a memleak from userdata error path in new objects Release object name …

Feb 28, 2024
CVE-2021-46995
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: can: mcp251xfd: mcp251xfd_probe(): fix an error pointer dereference in probe When we converted this code …

Feb 28, 2024
CVE-2021-46994
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: can: mcp251x: fix resume from sleep before interface was brought up Since 8ce8c0abcba3 the driver …

Feb 28, 2024
CVE-2021-46990
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: powerpc/64s: Fix crashes when toggling entry flush barrier The entry flush mitigation can be enabled/disabled …

Feb 28, 2024
CVE-2021-46989
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: hfsplus: prevent corruption in shrinking truncate I believe there are some issues introduced by commit …

Feb 28, 2024
CVE-2021-46988
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: userfaultfd: release page in error path to avoid BUG_ON Consider the following sequence of events: …

Feb 28, 2024
CVE-2021-46987
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: btrfs: fix deadlock when cloning inline extents and using qgroups There are a few exceptional …

Feb 28, 2024
CVE-2021-46986
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: usb: dwc3: gadget: Free gadget structure only after freeing endpoints As part of commit e81a7018d93a …

Feb 28, 2024
CVE-2021-46985
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: ACPI: scan: Fix a memory leak in an error handling path If 'acpi_device_set_name()' fails, we …

Feb 28, 2024
CVE-2021-46983
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: nvmet-rdma: Fix NULL deref when SEND is completed with error When running some traffic and …

Feb 28, 2024
CVE-2021-46982
4.7 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: f2fs: compress: fix race condition of overwrite vs truncate pos_fsstress testcase complains a panic as …

Feb 28, 2024
CVE-2021-46981
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: nbd: Fix NULL pointer in flush_workqueue Open /dev/nbdX first, the config_refs will be 1 and …

Feb 28, 2024
CVE-2021-46979
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: iio: core: fix ioctl handlers removal Currently ioctl handlers are removed twice. For the first …

Feb 28, 2024
CVE-2021-46977
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: KVM: VMX: Disable preemption when probing user return MSRs Disable preemption when probing a user …

Feb 28, 2024
CVE-2021-46976
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: drm/i915: Fix crash in auto_retire The retire logic uses the 2 lower bits of the …

Feb 28, 2024
CVE-2020-36787
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: media: aspeed: fix clock handling logic Video engine uses eclk and vclk for its clock …

Feb 28, 2024
CVE-2020-36786
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: media: [next] staging: media: atomisp: fix memory leak of object flash In the case where …

Feb 28, 2024
CVE-2020-36784
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: i2c: cadence: fix reference leak when pm_runtime_get_sync fails The PM reference count is not expected …

Feb 28, 2024
CVE-2020-36783
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: i2c: img-scb: fix reference leak when pm_runtime_get_sync fails The PM reference count is not expected …

Feb 28, 2024
CVE-2020-36782
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: i2c: imx-lpi2c: fix reference leak when pm_runtime_get_sync fails The PM reference count is not expected …

Feb 28, 2024
CVE-2020-36781
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: i2c: imx: fix reference leak when pm_runtime_get_sync fails In i2c_imx_xfer() and i2c_imx_remove(), the pm reference …

Feb 28, 2024
CVE-2020-36780
4.7 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: i2c: sprd: fix reference leak when pm_runtime_get_sync fails The PM reference count is not expected …

Feb 28, 2024
CVE-2020-36779
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: i2c: stm32f7: fix reference leak when pm_runtime_get_sync fails The PM reference count is not expected …

Feb 28, 2024
CVE-2020-36778
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: i2c: xiic: fix reference leak when pm_runtime_get_sync fails The PM reference count is not expected …

Feb 28, 2024
CVE-2024-27913
6.5 MEDIUM

ospf_te_parse_te in ospfd/ospf_te.c in FRRouting (FRR) through 9.1 allows remote attackers to cause a denial of service (ospfd daemon crash) via a malformed OSPF LSA …

Feb 28, 2024
CVE-2024-1943
4.3 MEDIUM

The Yuki theme for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including 1.3.14. This is due to missing or …

Feb 28, 2024
CVE-2024-1568
6.4 MEDIUM

The Seraphinite Accelerator plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 2.20.52 via the OnAdminApi_HtmlCheck function. This …

Feb 28, 2024
CVE-2024-1388
4.3 MEDIUM

The Yuki theme for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the reset_customizer_options() function in all versions …

Feb 28, 2024
CVE-2024-22723
4.9 MEDIUM

Webtrees 2.1.18 is vulnerable to Directory Traversal. By manipulating the "media_folder" parameter in the URL, an attacker (in this case, an administrator) can navigate beyond …

Feb 28, 2024
CVE-2024-0550
6.5 MEDIUM

A user who is privileged already `manager` or `admin` can set their profile picture via the frontend API using a relative filepath to then user …

Feb 28, 2024
CVE-2023-50303
6.1 MEDIUM

IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering …

Feb 28, 2024
CVE-2024-1932
4.8 MEDIUM

Unrestricted Upload of File with Dangerous Type in freescout-helpdesk/freescout

Feb 28, 2024
CVE-2024-1892
6.5 MEDIUM

A Regular Expression Denial of Service (ReDoS) vulnerability exists in the XMLFeedSpider class of the scrapy/scrapy project, specifically in the parsing of XML content. By …

Feb 28, 2024
CVE-2024-26302
4.8 MEDIUM

A vulnerability in the web-based management interface of ClearPass Policy Manager could allow a remote attacker authenticated with low privileges to access sensitive information. A …

Feb 27, 2024

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.