Complete feed
Security advisories & CVEs
3323 advisories across 32 monitored vendors.
Android app · Google Play
Take your CVE monitoring with you.
Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.
High [CVE-2026-51302] Arbitrary code execution via malicious SQL statement
Arbitrary code execution via malicious SQL statement. Red Hat rates this a security issue. Weakness: CWE-825. Red Hat lists fixing advisory RHSA-2026:45779 with package sqlite-main-3.53.4-0.1.hum1.
High [CVE-2026-51296] Use-after-free vulnerability leads to denial of service and information disclosure
Use-after-free vulnerability leads to denial of service and information disclosure. Red Hat rates this a security issue. Weakness: CWE-825.
High [CVE-2026-51297] Arbitrary code execution via use-after-free in JSON parsing
Arbitrary code execution via use-after-free in JSON parsing. Red Hat rates this a security issue. Weakness: CWE-825. Red Hat lists fixing advisory RHSA-2026:45779 with package sqlite-main-3.53.4-0.1.hum1.
High [CVE-2026-51303] Arbitrary code execution via specially crafted SQL queries
Arbitrary code execution via specially crafted SQL queries. Red Hat rates this a security issue. Weakness: CWE-825.
High [CVE-2026-64534] check INIT_FAILED before nvmet_req_uninit in digest error path
check INIT_FAILED before nvmet_req_uninit in digest error path. Red Hat rates this important (CVSS 7). Weakness: CWE-911.
High [CVE-2026-64531] reject oversized nested action attrs
reject oversized nested action attrs. Red Hat rates this important (CVSS 7.8). Weakness: CWE-130. Red Hat lists fixing advisory RHSA-2026:53330 with package kernel-0:6.12.0-211.46.1.el10_2, kernel-rt-0:5.14.0-284.186.1.rt14.471.el9_2, kernel-0:5.14.0-427.143.1.el9_4, kernel-0:5.14.0-284.186.1.el9_2. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9.
High [CVE-2026-51235] Buffer Overflow vulnerability in image processing
Buffer Overflow vulnerability in image processing. Red Hat rates this important (CVSS 7.3). Weakness: CWE-120. Red Hat lists fixing advisory RHSA-2026:51105 with package LibRaw-0:0.21.1-2.el9_8.1. Affected product named by the advisory: Red Hat Enterprise Linux 9.
High [CVE-2026-64552] fix len check in receive_big
fix len check in receive_big(). Red Hat rates this important (CVSS 7). Weakness: CWE-787.
High [CVE-2026-64551] validate STALE_COOKIE cause length before reading staleness
validate STALE_COOKIE cause length before reading staleness. Red Hat rates this moderate (CVSS 7).
High [CVE-2026-64554] fix stale prevhdr pointer in br_ip6_fragment
fix stale prevhdr pointer in br_ip6_fragment(). Red Hat rates this moderate (CVSS 7).
High [CVE-2026-64543] fix use-after-free of the discoverer in tipc_disc_rcv
fix use-after-free of the discoverer in tipc_disc_rcv(). Red Hat rates this moderate (CVSS 7). Weakness: CWE-825.
High [CVE-2026-64539] Fix stack OOB write when prepending the Flags AD
Fix stack OOB write when prepending the Flags AD. Red Hat rates this moderate (CVSS 7).
High [CVE-2026-64548] bpf, sockmap: reject overflowing copy + len in bpf_msg_push_data
bpf, sockmap: reject overflowing copy + len in bpf_msg_push_data(). Red Hat rates this moderate (CVSS 7). Weakness: CWE-787.
High [CVE-2026-64530] Handle TC_ACT_CONSUMED in tcf_qevent_handle
A flaw was found in the Linux kernel's traffic control (TC) classifier application programming interface (API). The `tcf_qevent_handle` function does not properly handle a consumed socket buffer (`skb`) when it is processed by the defragmentation engine. This can lead to a Use-After-Free (UAF) vulnerability, where the system attempts to use memory that has already been freed. An attacker could potentially exploit this to cause system instability or execute arbitrary code. This Important flaw in the Linux kernel's networking scheduler can lead to a use-after-free vulnerability. Exploitation requires a local attacker to configure specific `tc qdisc` and `tc filter` rules involving RED qdisc with early drop events and connection tracking on fragmented network traffic. This non-default configuration limits the attack surface, but successful exploitation could lead to privilege escalation or a denial of service. Red Hat severity: Important — CVSS 7.8 (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H). Weakness: CWE-431. Affected products named by the advisory: Red Hat Enterprise Linux 10.0 Extended Update Support; Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support; Red Hat Enterprise Linux 8.6 Extended Update Support Long-Life Add-On; Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions.
High [CVE-2024-14040] Increase weight to u16
Increase weight to u16. Red Hat rates this moderate (CVSS 7.1). Weakness: CWE-190.
High [CVE-2026-66373] Remote Code Execution via specially crafted RESTORE payload
Remote Code Execution via specially crafted RESTORE payload. Red Hat rates this important (CVSS 7.5). Weakness: CWE-1341. Red Hat lists fixing advisory RHSA-2026:43236 with package valkey-main-9.0.5-0.1.hum1.
High [CVE-2026-64456] clamp device-reported used.len at copy_data
clamp device-reported used.len at copy_data(). Red Hat rates this moderate (CVSS 7). Weakness: CWE-125.
High [CVE-2026-64342] fix use-after-free on disconnect
fix use-after-free on disconnect. Red Hat rates this moderate (CVSS 7). Weakness: CWE-825.
High [CVE-2026-64377] Fix possible double free
Fix possible double free. Red Hat rates this moderate (CVSS 7). Weakness: CWE-763.
High [CVE-2026-64490] Validate control metadata from the device
Validate control metadata from the device. Red Hat rates this important (CVSS 7). Weakness: CWE-787.