1. Guard
  2. Security
  3. CVEs
HOL Guard

Public security guidance for teams protecting AI harnesses, MCP servers, skills, prompts, and local tool execution.

Install Guard

AI Security

  • Prompt injection
  • MCP security
  • Supply chain

Resources

  • Trust packet
  • Harness setup
  • Redacted warnings
  • Safe labs

Product

  • Install Guard
  • Pricing
  • Open dashboard
  1. Guard
  2. Security
  3. CVEs
HOL Guard

Public security guidance for teams protecting AI harnesses, MCP servers, skills, prompts, and local tool execution.

Install Guard

AI Security

  • Prompt injection
  • MCP security
  • Supply chain

Resources

  • Trust packet
  • Harness setup
  • Redacted warnings
  • Safe labs

Product

  • Install Guard
  • Pricing
  • Open dashboard
HOL LogoHOL
Overview
InstallPricingEnterpriseAffiliatesDocsOpen App
Docs
  • API Reference
  • Run in Postman
  • OpenAPI Spec
  • Standards
  • Submit ERC-8004 Contract
  • Feature Your Agent
Best Agents
  • Best ERC-8004 Agents
  • Best Virtuals Agents
  • Best MCP Servers
  • Best A2A Agents
  • Best x402 Payable
  • All Categories
Community
  • Telegram
  • X
More
  • Blog
  • GitHub
  • Privacy Policy
  • Terms of Service
Settings

Copyright © 2026 HOL DAO LLC. All rights reserved.

HOL LogoHOL
Overview
InstallPricingEnterpriseAffiliatesDocsOpen App
Docs
  • API Reference
  • Run in Postman
  • OpenAPI Spec
  • Standards
  • Submit ERC-8004 Contract
  • Feature Your Agent
Best Agents
  • Best ERC-8004 Agents
  • Best Virtuals Agents
  • Best MCP Servers
  • Best A2A Agents
  • Best x402 Payable
  • All Categories
Community
  • Telegram
  • X
More
  • Blog
  • GitHub
  • Privacy Policy
  • Terms of Service
Settings

Copyright © 2026 HOL DAO LLC. All rights reserved.

Active CVEs

Search active, non-withdrawn CVEs in the HOL Guard feed, then open the matching HOL analysis.

Feed liveLast checked Aug 12, 2026, 2:00 PM 17,854 active 1,447 known exploited

Catalog summary

17,854

Active CVEs

Active CVEs

Search active, non-withdrawn CVEs in the HOL Guard feed, then open the matching HOL analysis.

Feed liveLast checked Aug 12, 2026, 2:00 PM 17,854 active 1,447 known exploited

Catalog summary

17,854

Active CVEs

9,132

Critical + high

1,447

Known exploited

12

Ecosystems

Search and filter active CVEs

Filters & sort
Severity
Clear

Showing 10,851–10,900 of 17,854 active CVEs

Sorted by Published (newest)

Active CVE results

Select a result for the HOL analysis
IdentityRiskAffected softwarePublished
  1. CVE-2023-53996Critical
    x86/sev: Make enc_dec_hypercall() accept a size instead of npages
    CVSS 9.3
    Linux/Linuxgeneric
    PublishedDec 24, 2025First seen at HOL Aug 4, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  2. CVE-2023-53990High
    SMB3: Add missing locks to protect deferred close file list
    CVSS 7.8
    Linux/Linuxgeneric
    PublishedDec 24, 2025First seen at HOL Aug 4, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  3. CVE-2023-53988High
    fs/ntfs3: Fix slab-out-of-bounds read in hdr_delete_de()
    CVSS 7.8
    Linux/Linuxgeneric
    PublishedDec 24, 2025First seen at HOL Aug 4, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  4. CVE-2023-53986High
    mips: bmips: BCM6358: disable RAC flush for TP1
    CVSS 8.6
    Linux/Linuxgeneric
    PublishedDec 24, 2025First seen at HOL Aug 4, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  5. CVE-2023-53867Critical
    ceph: fix potential use-after-free bug when trimming caps
    CVSS 9.8
    Linux/Linuxgeneric
    PublishedDec 24, 2025First seen at HOL Aug 4, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  6. CVE-2022-50701High
    wifi: mt76: mt7921s: fix slab-out-of-bounds access in sdio host
    CVSS 7.1
    Linux/Linuxgeneric
    PublishedDec 24, 2025First seen at HOL Aug 4, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  7. CVE-2022-50700High
    wifi: ath10k: Delay the unmapping of the buffer
    CVSS 7.5
    Linux/Linuxgeneric
    PublishedDec 24, 2025First seen at HOL Aug 4, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  8. CVE-2022-50697High
    mrp: introduce active flags to prevent UAF when applicant uninit
    CVSS 7.8
    Linux/Linuxgeneric
    PublishedDec 24, 2025First seen at HOL Aug 4, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  9. CVE-2025-68725Medium
    bpf: Do not let BPF test infra emit invalid GSO types to stack
    CVSS 5.5
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedDec 24, 2025First seen at HOL Jul 14, 2026Updated Jul 14, 2026 Fix availableView HOL analysis
  10. CVE-2025-68724Unknown severity
    crypto: asymmetric_keys - prevent overflow in asymmetric_key_generate_id
    Not scoredSource severity not reported
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedDec 24, 2025First seen at HOL Jul 14, 2026Updated Jul 30, 2026 Fix availableView HOL analysis
  11. CVE-2025-68371Unknown severity
    scsi: smartpqi: Fix device resources accessed after device removal
    Not scoredSource severity not reported
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedDec 24, 2025First seen at HOL Jul 14, 2026Updated Jul 14, 2026 Fix availableView HOL analysis
  12. CVE-2025-68363Unknown severity
    bpf: Check skb->transport_header is set in bpf_skb_check_mtu
    Not scoredSource severity not reported
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedDec 24, 2025First seen at HOL Jul 14, 2026Updated Jul 14, 2026 Fix availableView HOL analysis
  13. CVE-2025-68349Unknown severity
    NFSv4/pNFS: Clear NFS_INO_LAYOUTCOMMIT in pnfs_mark_layout_stateid_invalid
    Not scoredSource severity not reported
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedDec 24, 2025First seen at HOL Jul 14, 2026Updated Jul 30, 2026 Fix availableView HOL analysis
  14. CVE-2025-68340Medium
    team: Move team device type change at the end of team_port_add
    CVSS 5.5
    Linux/Linuxgeneric
    PublishedDec 23, 2025First seen at HOL Jun 19, 2026Updated Jul 30, 2026 Fix availableView HOL analysis
  15. CVE-2025-65865High
    CISA ADP Vulnrichment
    CVSS 7.5
    n/a/n/ageneric
    PublishedDec 23, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  16. CVE-2025-67108Critical
    CISA ADP Vulnrichment
    CVSS 10.0
    n/a/n/ageneric
    PublishedDec 23, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  17. CVE-2025-67109Critical
    CISA ADP Vulnrichment
    CVSS 10.0
    n/a/n/ageneric
    PublishedDec 23, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  18. CVE-2025-68337Unknown severity
    jbd2: avoid bug_on in jbd2_journal_get_create_access() when file system corrupted
    Not scoredSource severity not reported
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedDec 22, 2025First seen at HOL Jul 14, 2026Updated Jul 30, 2026 Fix availableView HOL analysis
  19. CVE-2025-65856Critical
    CISA ADP Vulnrichment
    CVSS 9.8
    n/a/n/ageneric
    PublishedDec 22, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  20. CVE-2025-65857High
    CISA ADP Vulnrichment
    CVSS 7.5
    n/a/n/ageneric
    PublishedDec 22, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  21. CVE-2025-67288Critical
    CISA ADP Vulnrichment
    CVSS 10.0
    n/a/n/ageneric
    PublishedDec 22, 2025First seen at HOL Jul 5, 2026Updated Jul 8, 2026View HOL analysis
  22. CVE-2025-67289Critical
    CISA ADP Vulnrichment
    CVSS 9.6
    n/a/n/ageneric
    PublishedDec 22, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  23. CVE-2025-67290Medium
    CISA ADP Vulnrichment
    CVSS 6.1
    n/a/n/ageneric
    PublishedDec 22, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  24. CVE-2025-67291Medium
    CISA ADP Vulnrichment
    CVSS 6.1
    n/a/n/ageneric
    PublishedDec 22, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  25. CVE-2025-67418Critical
    CISA ADP Vulnrichment
    CVSS 9.8
    n/a/n/ageneric
    PublishedDec 22, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  26. CVE-2025-68645High
    CISA ADP Vulnrichment
    Not scored Known exploited
    n/a/n/ageneric
    PublishedDec 22, 2025First seen at HOL May 24, 2026Updated Feb 26, 2026View HOL analysis
  27. CVE-2025-68613High
    n8n Vulnerable to Remote Code Execution via Expression Injection
    Not scored Known exploited
    n8n-io/n8ngeneric
    PublishedDec 19, 2025First seen at HOL May 24, 2026Updated Mar 25, 2026View HOL analysis
  28. CVE-2025-14847High
    Zlib compressed protocol header length confusion may allow memory read
    Not scored Known exploited
    MongoDB Inc./MongoDB Servergeneric
    PublishedDec 19, 2025First seen at HOL May 24, 2026Updated Feb 26, 2026 Fix availableView HOL analysis
  29. CVE-2025-14733High
    WatchGuard Firebox iked Out of Bounds Write Vulnerability
    CVSS 9.8 Known exploited
    WatchGuard/Fireware OSgeneric
    PublishedDec 19, 2025First seen at HOL May 24, 2026Updated Aug 11, 2026 Fix availableView HOL analysis
  30. CVE-2020-36890High
    Kentico Xperience <= 10 Administrator Access Control Bypass
    CVSS 7.2
    Kentico/Xperiencegeneric
    PublishedDec 18, 2025First seen at HOL Aug 10, 2026Updated Aug 10, 2026View HOL analysis
  31. CVE-2025-40898Unknown severity
    Path traversal in Import Arc data archive functionality in Guardian/CMC before 25.5.0
    Not scoredSource severity not reported
    Nozomi Networks/CMC, Nozomi Networks/Guardian +1generic
    PublishedDec 18, 2025First seen at HOL Aug 11, 2026Updated Aug 11, 2026 Fix availableView HOL analysis
  32. CVE-2025-40893Unknown severity
    HTML injection in Asset List in Guardian/CMC before 25.5.0
    Not scoredSource severity not reported
    Nozomi Networks/CMC, Nozomi Networks/Guardian +1generic
    PublishedDec 18, 2025First seen at HOL Aug 11, 2026Updated Aug 11, 2026 Fix availableView HOL analysis
  33. CVE-2025-40892Unknown severity
    Stored Cross-Site Scripting (XSS) in Reports in Guardian/CMC before 25.5.0
    Not scoredSource severity not reported
    Nozomi Networks/CMC, Nozomi Networks/Guardian +1generic
    PublishedDec 18, 2025First seen at HOL Aug 11, 2026Updated Aug 11, 2026 Fix availableView HOL analysis
  34. CVE-2025-40891Unknown severity
    HTML injection in in Time Machine functionality in Guardian/CMC before 25.5.0
    Not scoredSource severity not reported
    Nozomi Networks/CMC, Nozomi Networks/Guardian +1generic
    PublishedDec 18, 2025First seen at HOL Aug 11, 2026Updated Aug 11, 2026 Fix availableView HOL analysis
  35. CVE-2025-40602High
    CISA ADP Vulnrichment
    Not scored Known exploited
    SonicWall/SMA1000generic
    PublishedDec 18, 2025First seen at HOL May 24, 2026Updated Dec 24, 2025View HOL analysis
  36. CVE-2025-68461High
    CISA ADP Vulnrichment
    Not scored Known exploited
    Roundcube/Webmailgeneric
    PublishedDec 18, 2025First seen at HOL May 24, 2026Updated Mar 13, 2026 Fix availableView HOL analysis
  37. CVE-2025-56157Critical
    CISA ADP Vulnrichment
    CVSS 9.8
    n/a/n/ageneric
    PublishedDec 18, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  38. CVE-2025-65568High
    CISA ADP Vulnrichment
    CVSS 7.5
    n/a/n/ageneric
    PublishedDec 18, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  39. CVE-2025-43529High
    CISA ADP Vulnrichment
    Not scored Known exploited
    Apple/Safari, Apple/iOS and iPadOS +4generic
    PublishedDec 17, 2025First seen at HOL May 24, 2026Updated Apr 2, 2026 Fix availableView HOL analysis
  40. CVE-2025-20393High
    Cisco Secure Email Gateway and Cisco Secure Email and Web Manager Remote Command Execution Vulnerability
    Not scored Known exploited
    Cisco/Cisco Secure Email, Cisco/Cisco Secure Email and Web Managergeneric
    PublishedDec 17, 2025First seen at HOL May 24, 2026Updated Feb 26, 2026View HOL analysis
  41. CVE-2025-59374High
    CISA ADP Vulnrichment
    Not scored Known exploited
    ASUS/live updategeneric
    PublishedDec 17, 2025First seen at HOL May 24, 2026Updated Feb 26, 2026View HOL analysis
  42. CVE-2025-37164High
    CISA ADP Vulnrichment
    Not scored Known exploited
    Hewlett Packard Enterprise (HPE)/HPE OneViewgeneric
    PublishedDec 16, 2025First seen at HOL May 24, 2026Updated Feb 26, 2026 Fix availableView HOL analysis
  43. CVE-2025-68299Unknown severity
    afs: Fix delayed allocation of a cell's anonymous key
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedDec 16, 2025First seen at HOL Aug 3, 2026Updated Aug 3, 2026 Fix availableView HOL analysis
  44. CVE-2025-68296Unknown severity
    drm, fbcon, vga_switcheroo: Avoid race condition in fbcon setup
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedDec 16, 2025First seen at HOL Jun 19, 2026Updated Jun 19, 2026 Fix availableView HOL analysis
  45. CVE-2025-68291Unknown severity
    mptcp: Initialise rcv_mss before calling tcp_send_active_reset() in mptcp_do_fastclose().
    Not scoredSource severity not reported
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedDec 16, 2025First seen at HOL Jul 14, 2026Updated Jul 14, 2026 Fix availableView HOL analysis
  46. CVE-2025-68266Unknown severity
    bfs: Reconstruct file type when loading from disk
    Not scoredSource severity not reported
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedDec 16, 2025First seen at HOL Jul 14, 2026Updated Jul 14, 2026 Fix availableView HOL analysis
  47. CVE-2025-68265Unknown severity
    nvme: fix admin request_queue lifetime
    Not scoredSource severity not reported
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedDec 16, 2025First seen at HOL Jul 14, 2026Updated Jul 30, 2026 Fix availableView HOL analysis
  48. CVE-2025-68264Unknown severity
    ext4: refresh inline data size before write operations
    Not scoredSource severity not reported
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedDec 16, 2025First seen at HOL Jul 14, 2026Updated Jul 14, 2026 Fix availableView HOL analysis
  49. CVE-2025-68261Unknown severity
    ext4: add i_data_sem protection in ext4_destroy_inline_data_nolock()
    Not scoredSource severity not reported
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedDec 16, 2025First seen at HOL Jul 14, 2026Updated Jul 30, 2026 Fix availableView HOL analysis
  50. CVE-2025-68206Unknown severity
    netfilter: nft_ct: add seqadj extension for natted connections
    Not scoredSource severity not reported
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedDec 16, 2025First seen at HOL Jul 14, 2026Updated Jul 30, 2026 Fix availableView HOL analysis
Page 218 of 358
Previous216217218219220Next
How this catalog works

Active means a non-withdrawn CVE List record with a validated alias, English description, publication date, and source reference. Published is the CVE Program date; First seen at HOL is when this feed first indexed the record; Modified and Source checked describe later feed activity. Severity uses the reported source value when present, otherwise a valid CVSS score supplies the displayed band. Unmapped records do not imply package coverage.

Put Guard beside your supply-chain workflow.

Explore HOL Guard

9,132

Critical + high

1,447

Known exploited

12

Ecosystems

Search and filter active CVEs

Filters & sort
Severity
Clear

Showing 10,851–10,900 of 17,854 active CVEs

Sorted by Published (newest)

Active CVE results

Select a result for the HOL analysis
IdentityRiskAffected softwarePublished
  1. CVE-2023-53996Critical
    x86/sev: Make enc_dec_hypercall() accept a size instead of npages
    CVSS 9.3
    Linux/Linuxgeneric
    PublishedDec 24, 2025First seen at HOL Aug 4, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  2. CVE-2023-53990High
    SMB3: Add missing locks to protect deferred close file list
    CVSS 7.8
    Linux/Linuxgeneric
    PublishedDec 24, 2025First seen at HOL Aug 4, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  3. CVE-2023-53988High
    fs/ntfs3: Fix slab-out-of-bounds read in hdr_delete_de()
    CVSS 7.8
    Linux/Linuxgeneric
    PublishedDec 24, 2025First seen at HOL Aug 4, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  4. CVE-2023-53986High
    mips: bmips: BCM6358: disable RAC flush for TP1
    CVSS 8.6
    Linux/Linuxgeneric
    PublishedDec 24, 2025First seen at HOL Aug 4, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  5. CVE-2023-53867Critical
    ceph: fix potential use-after-free bug when trimming caps
    CVSS 9.8
    Linux/Linuxgeneric
    PublishedDec 24, 2025First seen at HOL Aug 4, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  6. CVE-2022-50701High
    wifi: mt76: mt7921s: fix slab-out-of-bounds access in sdio host
    CVSS 7.1
    Linux/Linuxgeneric
    PublishedDec 24, 2025First seen at HOL Aug 4, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  7. CVE-2022-50700High
    wifi: ath10k: Delay the unmapping of the buffer
    CVSS 7.5
    Linux/Linuxgeneric
    PublishedDec 24, 2025First seen at HOL Aug 4, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  8. CVE-2022-50697High
    mrp: introduce active flags to prevent UAF when applicant uninit
    CVSS 7.8
    Linux/Linuxgeneric
    PublishedDec 24, 2025First seen at HOL Aug 4, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  9. CVE-2025-68725Medium
    bpf: Do not let BPF test infra emit invalid GSO types to stack
    CVSS 5.5
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedDec 24, 2025First seen at HOL Jul 14, 2026Updated Jul 14, 2026 Fix availableView HOL analysis
  10. CVE-2025-68724Unknown severity
    crypto: asymmetric_keys - prevent overflow in asymmetric_key_generate_id
    Not scoredSource severity not reported
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedDec 24, 2025First seen at HOL Jul 14, 2026Updated Jul 30, 2026 Fix availableView HOL analysis
  11. CVE-2025-68371Unknown severity
    scsi: smartpqi: Fix device resources accessed after device removal
    Not scoredSource severity not reported
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedDec 24, 2025First seen at HOL Jul 14, 2026Updated Jul 14, 2026 Fix availableView HOL analysis
  12. CVE-2025-68363Unknown severity
    bpf: Check skb->transport_header is set in bpf_skb_check_mtu
    Not scoredSource severity not reported
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedDec 24, 2025First seen at HOL Jul 14, 2026Updated Jul 14, 2026 Fix availableView HOL analysis
  13. CVE-2025-68349Unknown severity
    NFSv4/pNFS: Clear NFS_INO_LAYOUTCOMMIT in pnfs_mark_layout_stateid_invalid
    Not scoredSource severity not reported
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedDec 24, 2025First seen at HOL Jul 14, 2026Updated Jul 30, 2026 Fix availableView HOL analysis
  14. CVE-2025-68340Medium
    team: Move team device type change at the end of team_port_add
    CVSS 5.5
    Linux/Linuxgeneric
    PublishedDec 23, 2025First seen at HOL Jun 19, 2026Updated Jul 30, 2026 Fix availableView HOL analysis
  15. CVE-2025-65865High
    CISA ADP Vulnrichment
    CVSS 7.5
    n/a/n/ageneric
    PublishedDec 23, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  16. CVE-2025-67108Critical
    CISA ADP Vulnrichment
    CVSS 10.0
    n/a/n/ageneric
    PublishedDec 23, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  17. CVE-2025-67109Critical
    CISA ADP Vulnrichment
    CVSS 10.0
    n/a/n/ageneric
    PublishedDec 23, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  18. CVE-2025-68337Unknown severity
    jbd2: avoid bug_on in jbd2_journal_get_create_access() when file system corrupted
    Not scoredSource severity not reported
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedDec 22, 2025First seen at HOL Jul 14, 2026Updated Jul 30, 2026 Fix availableView HOL analysis
  19. CVE-2025-65856Critical
    CISA ADP Vulnrichment
    CVSS 9.8
    n/a/n/ageneric
    PublishedDec 22, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  20. CVE-2025-65857High
    CISA ADP Vulnrichment
    CVSS 7.5
    n/a/n/ageneric
    PublishedDec 22, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  21. CVE-2025-67288Critical
    CISA ADP Vulnrichment
    CVSS 10.0
    n/a/n/ageneric
    PublishedDec 22, 2025First seen at HOL Jul 5, 2026Updated Jul 8, 2026View HOL analysis
  22. CVE-2025-67289Critical
    CISA ADP Vulnrichment
    CVSS 9.6
    n/a/n/ageneric
    PublishedDec 22, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  23. CVE-2025-67290Medium
    CISA ADP Vulnrichment
    CVSS 6.1
    n/a/n/ageneric
    PublishedDec 22, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  24. CVE-2025-67291Medium
    CISA ADP Vulnrichment
    CVSS 6.1
    n/a/n/ageneric
    PublishedDec 22, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  25. CVE-2025-67418Critical
    CISA ADP Vulnrichment
    CVSS 9.8
    n/a/n/ageneric
    PublishedDec 22, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  26. CVE-2025-68645High
    CISA ADP Vulnrichment
    Not scored Known exploited
    n/a/n/ageneric
    PublishedDec 22, 2025First seen at HOL May 24, 2026Updated Feb 26, 2026View HOL analysis
  27. CVE-2025-68613High
    n8n Vulnerable to Remote Code Execution via Expression Injection
    Not scored Known exploited
    n8n-io/n8ngeneric
    PublishedDec 19, 2025First seen at HOL May 24, 2026Updated Mar 25, 2026View HOL analysis
  28. CVE-2025-14847High
    Zlib compressed protocol header length confusion may allow memory read
    Not scored Known exploited
    MongoDB Inc./MongoDB Servergeneric
    PublishedDec 19, 2025First seen at HOL May 24, 2026Updated Feb 26, 2026 Fix availableView HOL analysis
  29. CVE-2025-14733High
    WatchGuard Firebox iked Out of Bounds Write Vulnerability
    CVSS 9.8 Known exploited
    WatchGuard/Fireware OSgeneric
    PublishedDec 19, 2025First seen at HOL May 24, 2026Updated Aug 11, 2026 Fix availableView HOL analysis
  30. CVE-2020-36890High
    Kentico Xperience <= 10 Administrator Access Control Bypass
    CVSS 7.2
    Kentico/Xperiencegeneric
    PublishedDec 18, 2025First seen at HOL Aug 10, 2026Updated Aug 10, 2026View HOL analysis
  31. CVE-2025-40898Unknown severity
    Path traversal in Import Arc data archive functionality in Guardian/CMC before 25.5.0
    Not scoredSource severity not reported
    Nozomi Networks/CMC, Nozomi Networks/Guardian +1generic
    PublishedDec 18, 2025First seen at HOL Aug 11, 2026Updated Aug 11, 2026 Fix availableView HOL analysis
  32. CVE-2025-40893Unknown severity
    HTML injection in Asset List in Guardian/CMC before 25.5.0
    Not scoredSource severity not reported
    Nozomi Networks/CMC, Nozomi Networks/Guardian +1generic
    PublishedDec 18, 2025First seen at HOL Aug 11, 2026Updated Aug 11, 2026 Fix availableView HOL analysis
  33. CVE-2025-40892Unknown severity
    Stored Cross-Site Scripting (XSS) in Reports in Guardian/CMC before 25.5.0
    Not scoredSource severity not reported
    Nozomi Networks/CMC, Nozomi Networks/Guardian +1generic
    PublishedDec 18, 2025First seen at HOL Aug 11, 2026Updated Aug 11, 2026 Fix availableView HOL analysis
  34. CVE-2025-40891Unknown severity
    HTML injection in in Time Machine functionality in Guardian/CMC before 25.5.0
    Not scoredSource severity not reported
    Nozomi Networks/CMC, Nozomi Networks/Guardian +1generic
    PublishedDec 18, 2025First seen at HOL Aug 11, 2026Updated Aug 11, 2026 Fix availableView HOL analysis
  35. CVE-2025-40602High
    CISA ADP Vulnrichment
    Not scored Known exploited
    SonicWall/SMA1000generic
    PublishedDec 18, 2025First seen at HOL May 24, 2026Updated Dec 24, 2025View HOL analysis
  36. CVE-2025-68461High
    CISA ADP Vulnrichment
    Not scored Known exploited
    Roundcube/Webmailgeneric
    PublishedDec 18, 2025First seen at HOL May 24, 2026Updated Mar 13, 2026 Fix availableView HOL analysis
  37. CVE-2025-56157Critical
    CISA ADP Vulnrichment
    CVSS 9.8
    n/a/n/ageneric
    PublishedDec 18, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  38. CVE-2025-65568High
    CISA ADP Vulnrichment
    CVSS 7.5
    n/a/n/ageneric
    PublishedDec 18, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  39. CVE-2025-43529High
    CISA ADP Vulnrichment
    Not scored Known exploited
    Apple/Safari, Apple/iOS and iPadOS +4generic
    PublishedDec 17, 2025First seen at HOL May 24, 2026Updated Apr 2, 2026 Fix availableView HOL analysis
  40. CVE-2025-20393High
    Cisco Secure Email Gateway and Cisco Secure Email and Web Manager Remote Command Execution Vulnerability
    Not scored Known exploited
    Cisco/Cisco Secure Email, Cisco/Cisco Secure Email and Web Managergeneric
    PublishedDec 17, 2025First seen at HOL May 24, 2026Updated Feb 26, 2026View HOL analysis
  41. CVE-2025-59374High
    CISA ADP Vulnrichment
    Not scored Known exploited
    ASUS/live updategeneric
    PublishedDec 17, 2025First seen at HOL May 24, 2026Updated Feb 26, 2026View HOL analysis
  42. CVE-2025-37164High
    CISA ADP Vulnrichment
    Not scored Known exploited
    Hewlett Packard Enterprise (HPE)/HPE OneViewgeneric
    PublishedDec 16, 2025First seen at HOL May 24, 2026Updated Feb 26, 2026 Fix availableView HOL analysis
  43. CVE-2025-68299Unknown severity
    afs: Fix delayed allocation of a cell's anonymous key
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedDec 16, 2025First seen at HOL Aug 3, 2026Updated Aug 3, 2026 Fix availableView HOL analysis
  44. CVE-2025-68296Unknown severity
    drm, fbcon, vga_switcheroo: Avoid race condition in fbcon setup
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedDec 16, 2025First seen at HOL Jun 19, 2026Updated Jun 19, 2026 Fix availableView HOL analysis
  45. CVE-2025-68291Unknown severity
    mptcp: Initialise rcv_mss before calling tcp_send_active_reset() in mptcp_do_fastclose().
    Not scoredSource severity not reported
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedDec 16, 2025First seen at HOL Jul 14, 2026Updated Jul 14, 2026 Fix availableView HOL analysis
  46. CVE-2025-68266Unknown severity
    bfs: Reconstruct file type when loading from disk
    Not scoredSource severity not reported
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedDec 16, 2025First seen at HOL Jul 14, 2026Updated Jul 14, 2026 Fix availableView HOL analysis
  47. CVE-2025-68265Unknown severity
    nvme: fix admin request_queue lifetime
    Not scoredSource severity not reported
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedDec 16, 2025First seen at HOL Jul 14, 2026Updated Jul 30, 2026 Fix availableView HOL analysis
  48. CVE-2025-68264Unknown severity
    ext4: refresh inline data size before write operations
    Not scoredSource severity not reported
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedDec 16, 2025First seen at HOL Jul 14, 2026Updated Jul 14, 2026 Fix availableView HOL analysis
  49. CVE-2025-68261Unknown severity
    ext4: add i_data_sem protection in ext4_destroy_inline_data_nolock()
    Not scoredSource severity not reported
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedDec 16, 2025First seen at HOL Jul 14, 2026Updated Jul 30, 2026 Fix availableView HOL analysis
  50. CVE-2025-68206Unknown severity
    netfilter: nft_ct: add seqadj extension for natted connections
    Not scoredSource severity not reported
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedDec 16, 2025First seen at HOL Jul 14, 2026Updated Jul 30, 2026 Fix availableView HOL analysis
Page 218 of 358
Previous216217218219220Next
How this catalog works

Active means a non-withdrawn CVE List record with a validated alias, English description, publication date, and source reference. Published is the CVE Program date; First seen at HOL is when this feed first indexed the record; Modified and Source checked describe later feed activity. Severity uses the reported source value when present, otherwise a valid CVSS score supplies the displayed band. Unmapped records do not imply package coverage.

Put Guard beside your supply-chain workflow.

Explore HOL Guard