1. Guard
  2. Security
  3. CVEs
HOL Guard

Public security guidance for teams protecting AI harnesses, MCP servers, skills, prompts, and local tool execution.

Install Guard

AI Security

  • Prompt injection
  • MCP security
  • Supply chain

Resources

  • Trust packet
  • Harness setup
  • Redacted warnings
  • Safe labs

Product

  • Install Guard
  • Pricing
  • Open dashboard
  1. Guard
  2. Security
  3. CVEs
HOL Guard

Public security guidance for teams protecting AI harnesses, MCP servers, skills, prompts, and local tool execution.

Install Guard

AI Security

  • Prompt injection
  • MCP security
  • Supply chain

Resources

  • Trust packet
  • Harness setup
  • Redacted warnings
  • Safe labs

Product

  • Install Guard
  • Pricing
  • Open dashboard
HOL LogoHOL
Overview
InstallPricingEnterpriseAffiliatesDocsOpen App
Docs
  • API Reference
  • Run in Postman
  • OpenAPI Spec
  • Standards
  • Submit ERC-8004 Contract
  • Feature Your Agent
Best Agents
  • Best ERC-8004 Agents
  • Best Virtuals Agents
  • Best MCP Servers
  • Best A2A Agents
  • Best x402 Payable
  • All Categories
Community
  • Telegram
  • X
More
  • Blog
  • GitHub
  • Privacy Policy
  • Terms of Service
Settings

Copyright © 2026 HOL DAO LLC. All rights reserved.

HOL LogoHOL
Overview
InstallPricingEnterpriseAffiliatesDocsOpen App
Docs
  • API Reference
  • Run in Postman
  • OpenAPI Spec
  • Standards
  • Submit ERC-8004 Contract
  • Feature Your Agent
Best Agents
  • Best ERC-8004 Agents
  • Best Virtuals Agents
  • Best MCP Servers
  • Best A2A Agents
  • Best x402 Payable
  • All Categories
Community
  • Telegram
  • X
More
  • Blog
  • GitHub
  • Privacy Policy
  • Terms of Service
Settings

Copyright © 2026 HOL DAO LLC. All rights reserved.

Active CVEs

Search active, non-withdrawn CVEs in the HOL Guard feed, then open the matching HOL analysis.

Feed liveLast checked Aug 11, 2026, 5:15 PM 17,484 active 1,443 known exploited

Catalog summary

17,484

Active CVEs

Active CVEs

Search active, non-withdrawn CVEs in the HOL Guard feed, then open the matching HOL analysis.

Feed liveLast checked Aug 11, 2026, 5:15 PM 17,484 active 1,443 known exploited

Catalog summary

17,484

Active CVEs

8,727

Critical + high

1,443

Known exploited

12

Ecosystems

Search and filter active CVEs

Filters & sort
Severity
Clear

Showing 8,451–8,500 of 17,484 active CVEs

Sorted by Published (newest)

Active CVE results

Select a result for the HOL analysis
IdentityRiskAffected softwarePublished
  1. CVE-2026-46139Medium
    smb: client: use kzalloc to zero-initialize security descriptor buffer
    CVSS 5.5
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Jun 24, 2026 Fix availableView HOL analysis
  2. CVE-2026-46138High
    Bluetooth: hci_event: Fix OOB read and infinite loop in hci_le_create_big_complete_evt
    CVSS 8.1
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  3. CVE-2026-46137Critical
    mptcp: pm: ADD_ADDR rtx: fix potential data-race
    CVSS 9.8
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 19, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  4. CVE-2026-46136High
    wifi: mt76: mt7921: fix a potential clc buffer length underflow
    CVSS 7.8
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Jun 24, 2026 Fix availableView HOL analysis
  5. CVE-2026-46135Critical
    nvmet-tcp: fix race between ICReq handling and queue teardown
    CVSS 9.8
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  6. CVE-2026-46134Medium
    platform/chrome: cros_ec_typec: Init mutex in Thunderbolt registration
    CVSS 5.5
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Jun 24, 2026 Fix availableView HOL analysis
  7. CVE-2026-46133High
    RDMA/rxe: Reject unknown opcodes before ICRC processing
    CVSS 7.5
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  8. CVE-2026-46132Medium
    net: rtnetlink: zero ifla_vf_broadcast to avoid stack infoleak in rtnl_fill_vfinfo
    CVSS 5.5
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Jun 24, 2026 Fix availableView HOL analysis
  9. CVE-2026-46131Medium
    KVM: x86: check for nEPT/nNPT in slow flush hypercalls
    CVSS 5.5
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Jun 24, 2026 Fix availableView HOL analysis
  10. CVE-2026-46130High
    dm-verity-fec: fix reading parity bytes split across blocks (take 3)
    CVSS 7.1
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Aug 3, 2026 Fix availableView HOL analysis
  11. CVE-2026-46129High
    btrfs: fix double free in create_space_info() error path
    CVSS 7.8
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  12. CVE-2026-46128Medium
    ipmi: Check event message buffer response for bad data
    CVSS 5.5
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Jun 24, 2026 Fix availableView HOL analysis
  13. CVE-2026-46127Medium
    RDMA/ocrdma: Don't NULL deref uctx on errors in ocrdma_copy_pd_uresp()
    CVSS 5.5
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Jun 24, 2026 Fix availableView HOL analysis
  14. CVE-2026-46126Medium
    RDMA/mana: Fix mana_destroy_wq_obj() cleanup in mana_ib_create_qp_rss()
    CVSS 5.5
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Jun 24, 2026 Fix availableView HOL analysis
  15. CVE-2026-46125High
    wifi: mac80211: remove station if connection prep fails
    CVSS 8.8
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 19, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  16. CVE-2026-46124High
    isofs: validate block number from NFS file handle in isofs_export_iget
    CVSS 7.5
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  17. CVE-2026-46123High
    Bluetooth: virtio_bt: clamp rx length before skb_put
    CVSS 7.7
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  18. CVE-2026-46122High
    wifi: b43: enforce bounds check on firmware key index in b43_rx()
    CVSS 7.8
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Jun 24, 2026 Fix availableView HOL analysis
  19. CVE-2026-46121High
    mm/damon/sysfs-schemes: protect memcg_path kfree() with damon_sysfs_lock
    CVSS 7.8
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Jun 24, 2026 Fix availableView HOL analysis
  20. CVE-2026-46120High
    ip6_gre: Use cached t->net in ip6erspan_changelink().
    CVSS 7.8
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  21. CVE-2026-46119Critical
    libceph: Fix slab-out-of-bounds access in auth message processing
    CVSS 9.1
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  22. CVE-2026-46118Medium
    pseries/papr-hvpipe: Fix null ptr deref in papr_hvpipe_dev_create_handle()
    CVSS 5.5
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Jun 24, 2026 Fix availableView HOL analysis
  23. CVE-2026-46117High
    RDMA/mana: Remove user triggerable WARN_ON() in mana_ib_create_qp_rss()
    CVSS 7.8
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  24. CVE-2026-46116High
    xfrm: defensively unhash xfrm_state lists in __xfrm_state_delete
    CVSS 7.8
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 19, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  25. CVE-2026-46115Critical
    block: add pgmap check to biovec_phys_mergeable
    CVSS 9.8
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  26. CVE-2026-46114High
    RDMA/rxe: Reject non-8-byte ATOMIC_WRITE payloads
    CVSS 7.5
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  27. CVE-2026-46113High
    KVM: x86: Fix shadow paging use-after-free due to unexpected GFN
    CVSS 8.8
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  28. CVE-2026-46112High
    RDMA/hns: Fix unlocked call to hns_roce_qp_remove()
    CVSS 7.8
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  29. CVE-2026-46111High
    Bluetooth: hci_conn: fix potential UAF in create_big_sync
    CVSS 7.8
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  30. CVE-2026-46110High
    net: stmmac: Prevent NULL deref when RX memory exhausted
    CVSS 7.5
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 19, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  31. CVE-2026-46109Medium
    usb: ulpi: fix memory leak on ulpi_register() error paths
    CVSS 5.5
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Jun 24, 2026 Fix availableView HOL analysis
  32. CVE-2026-46108Medium
    ipmi:si: Return state to normal if message allocation fails
    CVSS 5.5
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 25, 2026Updated Jun 25, 2026 Fix availableView HOL analysis
  33. CVE-2026-46107High
    dm-thin: fix metadata refcount underflow
    CVSS 7.8
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 19, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  34. CVE-2026-46106Medium
    eventfs: Hold eventfs_mutex and SRCU when remount walks events
    CVSS 5.5
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 25, 2026Updated Jun 25, 2026 Fix availableView HOL analysis
  35. CVE-2026-46105High
    scsi: mpt3sas: Limit NVMe request size to 2 MiB
    CVSS 7.8
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 25, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  36. CVE-2026-46104Medium
    selinux: use sk blob accessor in socket permission helpers
    CVSS 5.5
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 25, 2026Updated Jun 25, 2026 Fix availableView HOL analysis
  37. CVE-2026-9804High
    Kubevirt: kubevirt: vmexport directory symlink escape enables exporter pod file read
    CVSS 7.7
    kubevirt.io/kubevirtgo
    PublishedMay 28, 2026First seen at HOL Jun 22, 2026Updated Aug 10, 2026View HOL analysis
  38. CVE-2026-4408Critical
    Samba: remote code execution in samr
    CVSS 9.0
    Affected software not mappedEcosystem not listed
    PublishedMay 28, 2026First seen at HOL Jun 23, 2026Updated Jul 15, 2026View HOL analysis
  39. CVE-2026-44604High
    Rpm: command injection in rpmuncompress dountar() via unescaped archive top-level directory name in popen() shell command
    CVSS 7.0
    Affected software not mappedEcosystem not listed
    PublishedMay 28, 2026First seen at HOL Jun 23, 2026Updated Jul 2, 2026View HOL analysis
  40. CVE-2026-9673Medium
    CISA ADP Vulnrichment
    CVSS 6.8
    json-2-csv, n/a/json-2-csv +1generic · npm
    PublishedMay 28, 2026First seen at HOL Jul 1, 2026Updated Aug 8, 2026 Fix availableView HOL analysis
  41. CVE-2026-9798Medium
    Keycloak: keycloak: brute-force protection bypass in ciba flow
    CVSS 4.3
    org.keycloak:keycloak-servicesmaven
    PublishedMay 28, 2026First seen at HOL Jul 1, 2026Updated Aug 5, 2026View HOL analysis
  42. CVE-2026-9796Medium
    Keycloak: keycloak: privilege escalation via time-of-check to time-of-use (toctou) vulnerability
    Not scored
    org.keycloak:keycloak-servermaven
    PublishedMay 28, 2026First seen at HOL Jul 1, 2026Updated Aug 11, 2026 Fix availableView HOL analysis
  43. CVE-2026-9793Medium
    Keycloak: keycloak: security policy bypass in jwe-encrypted request object processing
    CVSS 5.9
    org.keycloak:keycloak-servicesmaven
    PublishedMay 28, 2026First seen at HOL Jul 1, 2026Updated Aug 5, 2026View HOL analysis
  44. CVE-2026-48027High
    Compromised Nx Console version 18.95.0
    Not scored Known exploited
    nrwl/nx-consolegeneric
    PublishedMay 27, 2026First seen at HOL May 27, 2026Updated Aug 4, 2026View HOL analysis
  45. CVE-2026-42790High
    nameConstraints DNS bypass via subject CommonName fallback in public_key hostname verification
    CVSS 8.1
    Erlang/OTPgeneric
    PublishedMay 27, 2026First seen at HOL Jul 15, 2026Updated Jul 24, 2026 Fix availableView HOL analysis
  46. CVE-2026-46103Medium
    can: ucan: fix devres lifetime
    CVSS 5.5
    Linux/Linuxgeneric
    PublishedMay 27, 2026First seen at HOL Jun 19, 2026Updated Jun 25, 2026 Fix availableView HOL analysis
  47. CVE-2026-46102High
    net: strparser: fix skb_head leak in strp_abort_strp()
    CVSS 7.5
    Linux/Linuxgeneric
    PublishedMay 27, 2026First seen at HOL Jun 25, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  48. CVE-2026-46101Medium
    netfilter: reject zero shift in nft_bitwise
    CVSS 5.5
    Linux/Linuxgeneric
    PublishedMay 27, 2026First seen at HOL Jun 25, 2026Updated Jun 25, 2026 Fix availableView HOL analysis
  49. CVE-2026-46100High
    fs: afs: revert mmap_prepare() change
    CVSS 7.8
    Linux/Linuxgeneric
    PublishedMay 27, 2026First seen at HOL Jun 25, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  50. CVE-2026-46099High
    net: ipv6: fix NOREF dst use in seg6 and rpl lwtunnels
    CVSS 8.1
    Linux/Linuxgeneric
    PublishedMay 27, 2026First seen at HOL Jun 25, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
Page 170 of 350
Previous168169170171172Next
How this catalog works

Active means a non-withdrawn CVE List record with a validated alias, English description, publication date, and source reference. Published is the CVE Program date; First seen at HOL is when this feed first indexed the record; Modified and Source checked describe later feed activity. Severity uses the reported source value when present, otherwise a valid CVSS score supplies the displayed band. Unmapped records do not imply package coverage.

Put Guard beside your supply-chain workflow.

Explore HOL Guard

8,727

Critical + high

1,443

Known exploited

12

Ecosystems

Search and filter active CVEs

Filters & sort
Severity
Clear

Showing 8,451–8,500 of 17,484 active CVEs

Sorted by Published (newest)

Active CVE results

Select a result for the HOL analysis
IdentityRiskAffected softwarePublished
  1. CVE-2026-46139Medium
    smb: client: use kzalloc to zero-initialize security descriptor buffer
    CVSS 5.5
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Jun 24, 2026 Fix availableView HOL analysis
  2. CVE-2026-46138High
    Bluetooth: hci_event: Fix OOB read and infinite loop in hci_le_create_big_complete_evt
    CVSS 8.1
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  3. CVE-2026-46137Critical
    mptcp: pm: ADD_ADDR rtx: fix potential data-race
    CVSS 9.8
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 19, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  4. CVE-2026-46136High
    wifi: mt76: mt7921: fix a potential clc buffer length underflow
    CVSS 7.8
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Jun 24, 2026 Fix availableView HOL analysis
  5. CVE-2026-46135Critical
    nvmet-tcp: fix race between ICReq handling and queue teardown
    CVSS 9.8
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  6. CVE-2026-46134Medium
    platform/chrome: cros_ec_typec: Init mutex in Thunderbolt registration
    CVSS 5.5
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Jun 24, 2026 Fix availableView HOL analysis
  7. CVE-2026-46133High
    RDMA/rxe: Reject unknown opcodes before ICRC processing
    CVSS 7.5
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  8. CVE-2026-46132Medium
    net: rtnetlink: zero ifla_vf_broadcast to avoid stack infoleak in rtnl_fill_vfinfo
    CVSS 5.5
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Jun 24, 2026 Fix availableView HOL analysis
  9. CVE-2026-46131Medium
    KVM: x86: check for nEPT/nNPT in slow flush hypercalls
    CVSS 5.5
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Jun 24, 2026 Fix availableView HOL analysis
  10. CVE-2026-46130High
    dm-verity-fec: fix reading parity bytes split across blocks (take 3)
    CVSS 7.1
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Aug 3, 2026 Fix availableView HOL analysis
  11. CVE-2026-46129High
    btrfs: fix double free in create_space_info() error path
    CVSS 7.8
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  12. CVE-2026-46128Medium
    ipmi: Check event message buffer response for bad data
    CVSS 5.5
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Jun 24, 2026 Fix availableView HOL analysis
  13. CVE-2026-46127Medium
    RDMA/ocrdma: Don't NULL deref uctx on errors in ocrdma_copy_pd_uresp()
    CVSS 5.5
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Jun 24, 2026 Fix availableView HOL analysis
  14. CVE-2026-46126Medium
    RDMA/mana: Fix mana_destroy_wq_obj() cleanup in mana_ib_create_qp_rss()
    CVSS 5.5
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Jun 24, 2026 Fix availableView HOL analysis
  15. CVE-2026-46125High
    wifi: mac80211: remove station if connection prep fails
    CVSS 8.8
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 19, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  16. CVE-2026-46124High
    isofs: validate block number from NFS file handle in isofs_export_iget
    CVSS 7.5
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  17. CVE-2026-46123High
    Bluetooth: virtio_bt: clamp rx length before skb_put
    CVSS 7.7
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  18. CVE-2026-46122High
    wifi: b43: enforce bounds check on firmware key index in b43_rx()
    CVSS 7.8
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Jun 24, 2026 Fix availableView HOL analysis
  19. CVE-2026-46121High
    mm/damon/sysfs-schemes: protect memcg_path kfree() with damon_sysfs_lock
    CVSS 7.8
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Jun 24, 2026 Fix availableView HOL analysis
  20. CVE-2026-46120High
    ip6_gre: Use cached t->net in ip6erspan_changelink().
    CVSS 7.8
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  21. CVE-2026-46119Critical
    libceph: Fix slab-out-of-bounds access in auth message processing
    CVSS 9.1
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  22. CVE-2026-46118Medium
    pseries/papr-hvpipe: Fix null ptr deref in papr_hvpipe_dev_create_handle()
    CVSS 5.5
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Jun 24, 2026 Fix availableView HOL analysis
  23. CVE-2026-46117High
    RDMA/mana: Remove user triggerable WARN_ON() in mana_ib_create_qp_rss()
    CVSS 7.8
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  24. CVE-2026-46116High
    xfrm: defensively unhash xfrm_state lists in __xfrm_state_delete
    CVSS 7.8
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 19, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  25. CVE-2026-46115Critical
    block: add pgmap check to biovec_phys_mergeable
    CVSS 9.8
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  26. CVE-2026-46114High
    RDMA/rxe: Reject non-8-byte ATOMIC_WRITE payloads
    CVSS 7.5
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  27. CVE-2026-46113High
    KVM: x86: Fix shadow paging use-after-free due to unexpected GFN
    CVSS 8.8
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  28. CVE-2026-46112High
    RDMA/hns: Fix unlocked call to hns_roce_qp_remove()
    CVSS 7.8
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  29. CVE-2026-46111High
    Bluetooth: hci_conn: fix potential UAF in create_big_sync
    CVSS 7.8
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  30. CVE-2026-46110High
    net: stmmac: Prevent NULL deref when RX memory exhausted
    CVSS 7.5
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 19, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  31. CVE-2026-46109Medium
    usb: ulpi: fix memory leak on ulpi_register() error paths
    CVSS 5.5
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 24, 2026Updated Jun 24, 2026 Fix availableView HOL analysis
  32. CVE-2026-46108Medium
    ipmi:si: Return state to normal if message allocation fails
    CVSS 5.5
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 25, 2026Updated Jun 25, 2026 Fix availableView HOL analysis
  33. CVE-2026-46107High
    dm-thin: fix metadata refcount underflow
    CVSS 7.8
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 19, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  34. CVE-2026-46106Medium
    eventfs: Hold eventfs_mutex and SRCU when remount walks events
    CVSS 5.5
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 25, 2026Updated Jun 25, 2026 Fix availableView HOL analysis
  35. CVE-2026-46105High
    scsi: mpt3sas: Limit NVMe request size to 2 MiB
    CVSS 7.8
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 25, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  36. CVE-2026-46104Medium
    selinux: use sk blob accessor in socket permission helpers
    CVSS 5.5
    Linux/Linuxgeneric
    PublishedMay 28, 2026First seen at HOL Jun 25, 2026Updated Jun 25, 2026 Fix availableView HOL analysis
  37. CVE-2026-9804High
    Kubevirt: kubevirt: vmexport directory symlink escape enables exporter pod file read
    CVSS 7.7
    kubevirt.io/kubevirtgo
    PublishedMay 28, 2026First seen at HOL Jun 22, 2026Updated Aug 10, 2026View HOL analysis
  38. CVE-2026-4408Critical
    Samba: remote code execution in samr
    CVSS 9.0
    Affected software not mappedEcosystem not listed
    PublishedMay 28, 2026First seen at HOL Jun 23, 2026Updated Jul 15, 2026View HOL analysis
  39. CVE-2026-44604High
    Rpm: command injection in rpmuncompress dountar() via unescaped archive top-level directory name in popen() shell command
    CVSS 7.0
    Affected software not mappedEcosystem not listed
    PublishedMay 28, 2026First seen at HOL Jun 23, 2026Updated Jul 2, 2026View HOL analysis
  40. CVE-2026-9673Medium
    CISA ADP Vulnrichment
    CVSS 6.8
    json-2-csv, n/a/json-2-csv +1generic · npm
    PublishedMay 28, 2026First seen at HOL Jul 1, 2026Updated Aug 8, 2026 Fix availableView HOL analysis
  41. CVE-2026-9798Medium
    Keycloak: keycloak: brute-force protection bypass in ciba flow
    CVSS 4.3
    org.keycloak:keycloak-servicesmaven
    PublishedMay 28, 2026First seen at HOL Jul 1, 2026Updated Aug 5, 2026View HOL analysis
  42. CVE-2026-9796Medium
    Keycloak: keycloak: privilege escalation via time-of-check to time-of-use (toctou) vulnerability
    Not scored
    org.keycloak:keycloak-servermaven
    PublishedMay 28, 2026First seen at HOL Jul 1, 2026Updated Aug 11, 2026 Fix availableView HOL analysis
  43. CVE-2026-9793Medium
    Keycloak: keycloak: security policy bypass in jwe-encrypted request object processing
    CVSS 5.9
    org.keycloak:keycloak-servicesmaven
    PublishedMay 28, 2026First seen at HOL Jul 1, 2026Updated Aug 5, 2026View HOL analysis
  44. CVE-2026-48027High
    Compromised Nx Console version 18.95.0
    Not scored Known exploited
    nrwl/nx-consolegeneric
    PublishedMay 27, 2026First seen at HOL May 27, 2026Updated Aug 4, 2026View HOL analysis
  45. CVE-2026-42790High
    nameConstraints DNS bypass via subject CommonName fallback in public_key hostname verification
    CVSS 8.1
    Erlang/OTPgeneric
    PublishedMay 27, 2026First seen at HOL Jul 15, 2026Updated Jul 24, 2026 Fix availableView HOL analysis
  46. CVE-2026-46103Medium
    can: ucan: fix devres lifetime
    CVSS 5.5
    Linux/Linuxgeneric
    PublishedMay 27, 2026First seen at HOL Jun 19, 2026Updated Jun 25, 2026 Fix availableView HOL analysis
  47. CVE-2026-46102High
    net: strparser: fix skb_head leak in strp_abort_strp()
    CVSS 7.5
    Linux/Linuxgeneric
    PublishedMay 27, 2026First seen at HOL Jun 25, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  48. CVE-2026-46101Medium
    netfilter: reject zero shift in nft_bitwise
    CVSS 5.5
    Linux/Linuxgeneric
    PublishedMay 27, 2026First seen at HOL Jun 25, 2026Updated Jun 25, 2026 Fix availableView HOL analysis
  49. CVE-2026-46100High
    fs: afs: revert mmap_prepare() change
    CVSS 7.8
    Linux/Linuxgeneric
    PublishedMay 27, 2026First seen at HOL Jun 25, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  50. CVE-2026-46099High
    net: ipv6: fix NOREF dst use in seg6 and rpl lwtunnels
    CVSS 8.1
    Linux/Linuxgeneric
    PublishedMay 27, 2026First seen at HOL Jun 25, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
Page 170 of 350
Previous168169170171172Next
How this catalog works

Active means a non-withdrawn CVE List record with a validated alias, English description, publication date, and source reference. Published is the CVE Program date; First seen at HOL is when this feed first indexed the record; Modified and Source checked describe later feed activity. Severity uses the reported source value when present, otherwise a valid CVSS score supplies the displayed band. Unmapped records do not imply package coverage.

Put Guard beside your supply-chain workflow.

Explore HOL Guard