HOL LogoGuard

Explore HOL

  • HOL home
  • AI agent registry
  • AI plugins
  • Open standards
  • HOL members

Guard product

  • Guard overviewLocal security and control for AI agents and the tools they use.
  • FeaturesRuntime protection, policy routing, review, and evidence.

Explore Guard

  • Product previewWalk through Guard surfaces in read-only demo mode.
  • ComparisonCompare Guard with native controls and AI security vendors.

AI tools

  • All AI toolsEvery supported AI tool and how Guard applies policy to it.
  • Codex
  • Claude Code
  • Cursor
  • Gemini CLI
  • OpenCode
  • Hermes
  • OpenClaw
  • GitHub Copilot CLI
  • Antigravity
  • Kimi
  • Grok
  • Pi / Oh My Pi
  • Zcode

Extensions

  • All extensionsBrowse command and MCP coverage with owners and stated limits.
  • Command coverageShell command protection across clouds, databases, backups, and packages.
  • MCP server coverageSee how Guard maps risk state across MCP tools and servers.
  • Core safetyThe safety floor listings that ship with Guard.
  • Data and resilienceBackup and storage command protection.
  • Cloud and infrastructureAWS, Azure, GCP, Kubernetes, and more.

Security

  • AI security hubSecurity research, advisories, and agent safety coverage.
  • AI tool securitySecurity profiles for each supported coding agent.
  • Safe labsHands-on attack simulations with safe boundaries.
  • Redacted warningsReal blocked actions with sensitive details removed.
  • AdvisoriesCoordinated disclosure reports for AI tooling.
  • Active CVEsSearch active CVEs affecting AI tooling.

Learn

  • Security guidesPractical guides for securing AI agent workflows.
  • DocsInstall, configure, and operate Guard with confidence.
  • ResearchPublished security research, benchmarks, and methodology.

Community

  • ReleasesVersion history, shipped changes and upgrade notes.
  • ContributorsThe people and contributions behind HOL Guard.
  • AffiliatesShare Guard with your audience and earn from referrals.
  • SponsorKeep agent security open: sponsor a project, place a banner, or fund a security initiative.
PricingEnterpriseOpen AppInstall Guard
  1. Guard
  2. Security
  3. CVEs
HOL Guard

Public security guidance for teams protecting AI harnesses, MCP servers, skills, prompts, and local tool execution.

Install Guard

AI Security

  • Prompt injection
  • MCP security
  • OWASP MCP mapping
  • Supply chain

Resources

  • Trust packet
  • Harness setup
  • Redacted warnings
  • Safe labs

Product

  • Install Guard
  • Pricing
  • Open dashboard
Guard
  • Guard Overview
  • Releases
  • Contributors
  • Install Guard
  • Pricing
Docs
  • Documentation Index
  • Developer Hub
  • API Reference
  • Root OpenAPI
  • Registry OpenAPI
  • Run in Postman
  • Standards
  • Submit ERC-8004 Contract
  • Feature Your Agent
Best Plugins
  • Browse Plugins
  • Plugin Launches
  • Best Claude Plugins
  • Best Codex Plugins
  • Best Grok Plugins
  • Best Kimi Plugins
  • Best DeepSeek Plugins
  • Best Antigravity Plugins
  • Best MCP Plugins
  • Best Cursor Plugins
  • Best OpenCode Plugins
Best Agents
  • Best ERC-8004 Agents
  • Best Virtuals Agents
  • Best MCP Servers
  • Best A2A Agents
  • Best x402 Payable
  • All Categories
Community
  • Telegram
  • X
More
  • About HOL
  • Contact
  • Blog
  • GitHub
  • Privacy
  • Terms of Service
Settings

Copyright © 2026 HOL DAO LLC. All rights reserved.

Active CVEs

Search active, non-withdrawn CVEs in the HOL Guard feed, then open the matching HOL analysis.

Feed liveLast checked Sep 29, 2026, 8:04 AM 40,853 active 1,504 known exploited

Catalog summary

40,853

Active CVEs

21,030

Critical + high

1,504

Known exploited

19

Ecosystems

Search and filter active CVEs

Filters & sort
Severity
Clear

Showing 5,401–5,450 of 40,853 active CVEs

Sorted by Published (newest)

Active CVE results

Select a result for the HOL analysis
IdentityRiskAffected softwarePublished
  1. CVE-2026-89980High
    ALSA: harmony: initialize locks before requesting IRQ
    CVSS 8.4
    Linux/Linuxgeneric
    PublishedSep 16, 2026First seen at HOL Sep 16, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  2. CVE-2026-89979High
    ALSA: pcm: Fix race between non-atomic ops and trigger-start
    CVSS 7.8
    Linux/Linuxgeneric
    PublishedSep 16, 2026First seen at HOL Sep 16, 2026Updated Sep 17, 2026 Fix availableView HOL analysis
  3. CVE-2026-89978Unknown severity
    accel/amdxdna: return early from a zero-length flush
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 16, 2026First seen at HOL Sep 16, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  4. CVE-2026-89977Unknown severity
    accel/ethosu: check MMIO mapping errors in probe
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 16, 2026First seen at HOL Sep 16, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  5. CVE-2026-89976Unknown severity
    accel/ethosu: fix job completion fence cleanup
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 16, 2026First seen at HOL Sep 16, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  6. CVE-2026-89975Unknown severity
    nvme-fabrics: fix DHCHAP secret leak on parse failure
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 16, 2026First seen at HOL Sep 16, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  7. CVE-2026-89974High
    nvme-fc: fix double free of fabrics options when nvme_add_ctrl() fails
    CVSS 7.5
    Linux/Linuxgeneric
    PublishedSep 16, 2026First seen at HOL Sep 16, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  8. CVE-2026-89973High
    nvme-tcp: check the data direction of a C2HData PDU
    CVSS 8.2
    Linux/Linuxgeneric
    PublishedSep 16, 2026First seen at HOL Sep 16, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  9. CVE-2026-89972Critical
    nvme: add missing SRCU grace period in error path
    CVSS 9.8
    Linux/Linuxgeneric
    PublishedSep 16, 2026First seen at HOL Sep 16, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  10. CVE-2026-89971High
    nvme: skip the zoned limits update if the zone info query failed
    CVSS 7.5
    Linux/Linuxgeneric
    PublishedSep 16, 2026First seen at HOL Sep 16, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  11. CVE-2026-89970Critical
    nvmet-auth: Synchronize timeout work during SQ teardown
    CVSS 9.8
    Linux/Linuxgeneric
    PublishedSep 16, 2026First seen at HOL Sep 16, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  12. CVE-2026-89969Critical
    nvmet-tcp: fix out-of-bounds write when receiving an over-long PDU
    CVSS 9.8
    Linux/Linuxgeneric
    PublishedSep 16, 2026First seen at HOL Sep 16, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  13. CVE-2026-89968High
    nvmet-tcp: reject unsolicited H2CData PDUs
    CVSS 7.5
    Linux/Linuxgeneric
    PublishedSep 16, 2026First seen at HOL Sep 16, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  14. CVE-2026-89967High
    mm/migrate_device: avoid out-of-bounds writes for compound folios
    CVSS 7.8
    Linux/Linuxgeneric
    PublishedSep 16, 2026First seen at HOL Sep 16, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  15. CVE-2026-89966Unknown severity
    mm/hugetlb_cma: fix null nodemask dereference in hugetlb_cma_alloc_frozen_folio
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 16, 2026First seen at HOL Sep 16, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  16. CVE-2026-89965High
    nvdimm/btt: reject an arena whose nfree is below the lane count
    CVSS 7.8
    Linux/Linuxgeneric
    PublishedSep 16, 2026First seen at HOL Sep 16, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  17. CVE-2026-89964Unknown severity
    parisc: eisa: Fix infinite loop when parsing invalid IRQ value
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 16, 2026First seen at HOL Sep 16, 2026Updated Sep 17, 2026 Fix availableView HOL analysis
  18. CVE-2026-89963Unknown severity
    powerpc/kexec_file: Fix null-ptr-def in extra size calculation
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 16, 2026First seen at HOL Sep 16, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  19. CVE-2026-89962Unknown severity
    powerpc/kexec_file: Prevent kexec range truncation
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 16, 2026First seen at HOL Sep 16, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  20. CVE-2026-89961High
    powerpc/mm: fix wrong addr_pfn tracking in compound vmemmap population
    CVSS 7.8
    Linux/Linuxgeneric
    PublishedSep 16, 2026First seen at HOL Sep 16, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  21. CVE-2026-89960High
    s390/vfio-ap: fix stale pqap_hook pointer on error in vfio_ap_mdev_set_kvm()
    CVSS 8.8
    Linux/Linuxgeneric
    PublishedSep 16, 2026First seen at HOL Sep 16, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  22. CVE-2026-89959High
    s390/vfio-ap: Fix control domain removal in vfio_ap_mdev_cfg_remove
    CVSS 8.8
    Linux/Linuxgeneric
    PublishedSep 16, 2026First seen at HOL Sep 16, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  23. CVE-2026-89958Unknown severity
    s390/vfio-ap: Fix dereference matrix_mdev->kvm without checking for NULL
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 16, 2026First seen at HOL Sep 16, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  24. CVE-2026-89957High
    s390/vfio-ap: Fix hot-unplug skipped when last AP adapter or domain removed
    CVSS 8.8
    Linux/Linuxgeneric
    PublishedSep 16, 2026First seen at HOL Sep 16, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  25. CVE-2026-89956Unknown severity
    s390/vfio-ap: Fix missing lock required to access list of ap_matrix_mdev objects
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 16, 2026First seen at HOL Sep 16, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  26. CVE-2026-89955Unknown severity
    s390/vfio-ap: Fix NULL deref in status_show() during queue probe
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 16, 2026First seen at HOL Sep 16, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  27. CVE-2026-89954High
    mtd: afs: validate v2 image info bounds
    CVSS 8.0
    Linux/Linuxgeneric
    PublishedSep 16, 2026First seen at HOL Sep 16, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  28. CVE-2026-89953Unknown severity
    mtd: mtdoops: free page bitmap when the backing MTD is removed
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 16, 2026First seen at HOL Sep 16, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  29. CVE-2026-89952Unknown severity
    mtd: rawnand: validate ONFI extended parameter page sections
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 16, 2026First seen at HOL Sep 16, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  30. CVE-2026-89951High
    batman-adv: fix stale receive device on merged fragments
    CVSS 8.8
    Linux/Linuxgeneric
    PublishedSep 16, 2026First seen at HOL Sep 16, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  31. CVE-2026-89950Unknown severity
    batman-adv: mcast: linearize skbuff for packet generation
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 16, 2026First seen at HOL Sep 16, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  32. CVE-2026-89949Unknown severity
    batman-adv: dat: avoid unaligned fault in IP extraction
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 16, 2026First seen at HOL Sep 16, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  33. CVE-2026-89948Unknown severity
    batman-adv: bla: fix freeing of claims on meshif deletion
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 16, 2026First seen at HOL Sep 16, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  34. CVE-2026-89947High
    clk: meson: align gxbb_32k_clk_sel number of parents with actual count
    CVSS 8.0
    Linux/Linuxgeneric
    PublishedSep 16, 2026First seen at HOL Sep 16, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  35. CVE-2026-89946Unknown severity
    ASoC: cs35l33: drain threaded IRQ before runtime suspend
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 16, 2026First seen at HOL Sep 16, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  36. CVE-2026-89945Unknown severity
    ASoC: cs35l34: drain threaded IRQ before runtime suspend
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 16, 2026First seen at HOL Sep 16, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  37. CVE-2026-89944Unknown severity
    ASoC: hdac_hda: Fix hlink refcount leak on component registration failure
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 16, 2026First seen at HOL Sep 16, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  38. CVE-2026-89943High
    ASoC: loongson: Fix error handling in ACPI property parsing
    CVSS 8.4
    Linux/Linuxgeneric
    PublishedSep 16, 2026First seen at HOL Sep 16, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  39. CVE-2026-89942High
    iio: buffer: Fix potential use-after-free in anonymous buffer release
    CVSS 7.8
    Linux/Linuxgeneric
    PublishedSep 16, 2026First seen at HOL Sep 16, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  40. CVE-2026-89941High
    iio: buffer: Make IIO DMA fence release RCU-safe
    CVSS 7.8
    Linux/Linuxgeneric
    PublishedSep 16, 2026First seen at HOL Sep 16, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  41. CVE-2026-89940High
    iio: buffer: Tie IIO dma fence lock lifetime to the fence
    CVSS 7.8
    Linux/Linuxgeneric
    PublishedSep 16, 2026First seen at HOL Sep 16, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  42. CVE-2026-89939Unknown severity
    iio: chemical: atlas-sensor: fix PM reference leak in buffer postenable
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 16, 2026First seen at HOL Sep 16, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  43. CVE-2026-89938High
    iio: chemical: atlas-sensor: use iio_trigger_poll_nested() to fix remove UAF
    CVSS 7.8
    Linux/Linuxgeneric
    PublishedSep 16, 2026First seen at HOL Sep 16, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  44. CVE-2026-89937Unknown severity
    iio: chemical: sgp30: Handle IAQ thread creation failure
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 16, 2026First seen at HOL Sep 16, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  45. CVE-2026-89936Unknown severity
    iio: dac: m62332: Fix regulator reference count imbalance
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 16, 2026First seen at HOL Sep 16, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  46. CVE-2026-89935Unknown severity
    iio: light: apds9306: fix PM reference leak in apds9306_read_data()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 16, 2026First seen at HOL Sep 16, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  47. CVE-2026-89934Unknown severity
    iio: light: ltrf216a: fix runtime PM reference leak in error path
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 16, 2026First seen at HOL Sep 16, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  48. CVE-2026-89933Unknown severity
    iio: pressure: dps310: fix NULL pointer dereference on ACPI probe
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 16, 2026First seen at HOL Sep 16, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  49. CVE-2026-89932High
    KVM: nVMX: Always flush vpid02 on first use
    CVSS 8.8
    Linux/Linuxgeneric
    PublishedSep 16, 2026First seen at HOL Sep 16, 2026Updated Sep 17, 2026 Fix availableView HOL analysis
  50. CVE-2026-89931Unknown severity
    KVM: nVMX: Ensure KVM_REQ_GET_NESTED_STATE_PAGES is cleared on VM-Exit
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 16, 2026First seen at HOL Sep 16, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
Page 109 of 818
Previous107108109110111Next
How this catalog works

Active means a non-withdrawn CVE List record with a validated alias, English description, publication date, and source reference. Published is the CVE Program date; First seen at HOL is when this feed first indexed the record; Modified and Source checked describe later feed activity. Severity uses the reported source value when present, otherwise a valid CVSS score supplies the displayed band. Unmapped records do not imply package coverage.

Put Guard beside your supply-chain workflow.

Explore HOL Guard