1. Guard
  2. Security
  3. CVEs
HOL Guard

Public security guidance for teams protecting AI harnesses, MCP servers, skills, prompts, and local tool execution.

Install Guard

AI Security

  • Prompt injection
  • MCP security
  • Supply chain

Resources

  • Trust packet
  • Harness setup
  • Redacted warnings
  • Safe labs

Product

  • Install Guard
  • Pricing
  • Open dashboard
  1. Guard
  2. Security
  3. CVEs
HOL Guard

Public security guidance for teams protecting AI harnesses, MCP servers, skills, prompts, and local tool execution.

Install Guard

AI Security

  • Prompt injection
  • MCP security
  • Supply chain

Resources

  • Trust packet
  • Harness setup
  • Redacted warnings
  • Safe labs

Product

  • Install Guard
  • Pricing
  • Open dashboard
HOL LogoHOL
Overview
InstallPricingEnterpriseAffiliatesDocsOpen App
Docs
  • API Reference
  • Run in Postman
  • OpenAPI Spec
  • Standards
  • Submit ERC-8004 Contract
  • Feature Your Agent
Best Agents
  • Best ERC-8004 Agents
  • Best Virtuals Agents
  • Best MCP Servers
  • Best A2A Agents
  • Best x402 Payable
  • All Categories
Community
  • Telegram
  • X
More
  • Blog
  • GitHub
  • Privacy Policy
  • Terms of Service
Settings

Copyright © 2026 HOL DAO LLC. All rights reserved.

HOL LogoHOL
Overview
InstallPricingEnterpriseAffiliatesDocsOpen App
Docs
  • API Reference
  • Run in Postman
  • OpenAPI Spec
  • Standards
  • Submit ERC-8004 Contract
  • Feature Your Agent
Best Agents
  • Best ERC-8004 Agents
  • Best Virtuals Agents
  • Best MCP Servers
  • Best A2A Agents
  • Best x402 Payable
  • All Categories
Community
  • Telegram
  • X
More
  • Blog
  • GitHub
  • Privacy Policy
  • Terms of Service
Settings

Copyright © 2026 HOL DAO LLC. All rights reserved.

Active CVEs

Search active, non-withdrawn CVEs in the HOL Guard feed, then open the matching HOL analysis.

Feed liveLast checked Aug 12, 2026, 4:43 PM 18,007 active 1,448 known exploited

Catalog summary

18,007

Active CVEs

Active CVEs

Search active, non-withdrawn CVEs in the HOL Guard feed, then open the matching HOL analysis.

Feed liveLast checked Aug 12, 2026, 4:43 PM 18,007 active 1,448 known exploited

Catalog summary

18,007

Active CVEs

9,162

Critical + high

1,448

Known exploited

12

Ecosystems

Search and filter active CVEs

Filters & sort
Severity
Clear

Showing 11,151–11,200 of 18,007 active CVEs

Sorted by Published (newest)

Active CVE results

Select a result for the HOL analysis
IdentityRiskAffected softwarePublished
  1. CVE-2025-40273Unknown severity
    NFSD: free copynotify stateid in nfs4_free_ol_stateid()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedDec 6, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  2. CVE-2025-40272Unknown severity
    mm/secretmem: fix use-after-free race in fault handler
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedDec 6, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  3. CVE-2025-40271Unknown severity
    fs/proc: fix uaf in proc_readdir_de()
    Not scoredSource severity not reported
    Linux/Linux, Siemens/RUGGEDCOM RST2428Pgeneric
    PublishedDec 6, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  4. CVE-2025-40270Unknown severity
    mm, swap: fix potential UAF issue for VMA readahead
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedDec 6, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  5. CVE-2025-40269Unknown severity
    ALSA: usb-audio: Fix potential overflow of PCM transfer buffer
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedDec 6, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  6. CVE-2025-34291High
    Langflow <= 1.6.9 CORS Misconfiguration to Token Hijack & RCE
    Not scored Known exploited
    Langflow/Langflowgeneric
    PublishedDec 5, 2025First seen at HOL May 24, 2026Updated Jul 14, 2026View HOL analysis
  7. CVE-2025-14104Medium
    Util-linux: util-linux: heap buffer overread in setpwnam() when processing 256-byte usernames
    CVSS 6.1
    util-linux/util-linuxgeneric
    PublishedDec 5, 2025First seen at HOL Jun 25, 2026Updated Jun 30, 2026 Fix availableView HOL analysis
  8. CVE-2025-64052Medium
    CISA ADP Vulnrichment
    CVSS 5.1
    n/a/n/ageneric
    PublishedDec 5, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  9. CVE-2025-64053High
    CISA ADP Vulnrichment
    CVSS 7.5
    n/a/n/ageneric
    PublishedDec 5, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  10. CVE-2025-64054Critical
    CISA ADP Vulnrichment
    CVSS 9.6
    n/a/n/ageneric
    PublishedDec 5, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  11. CVE-2025-64056Medium
    CISA ADP Vulnrichment
    CVSS 4.3
    n/a/n/ageneric
    PublishedDec 5, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  12. CVE-2025-64057High
    CISA ADP Vulnrichment
    CVSS 8.3
    n/a/n/ageneric
    PublishedDec 5, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  13. CVE-2025-66644High
    CISA ADP Vulnrichment
    Not scored Known exploited
    Array Networks/ArrayOS AGgeneric
    PublishedDec 5, 2025First seen at HOL May 24, 2026Updated Feb 26, 2026 Fix availableView HOL analysis
  14. CVE-2025-1547High
    WatchGuard Firebox Authenticated Stack Overflow in Certificate Request Command
    CVSS 7.2
    WatchGuard/Fireware OSgeneric
    PublishedDec 4, 2025First seen at HOL Aug 10, 2026Updated Aug 10, 2026 Fix availableView HOL analysis
  15. CVE-2025-1910Medium
    WatchGuard Mobile VPN with SSL Local Privilege Escalation via Update Package
    CVSS 6.3
    WatchGuard/Mobile VPN with SSL Clientgeneric
    PublishedDec 4, 2025First seen at HOL Aug 8, 2026Updated Aug 8, 2026 Fix availableView HOL analysis
  16. CVE-2025-6946Medium
    WatchGuard Firebox Stored Cross-Site-Scripting (XSS) Vulnerability in IPS Configuration
    CVSS 4.8
    WatchGuard/Fireware OSgeneric
    PublishedDec 4, 2025First seen at HOL Aug 8, 2026Updated Aug 8, 2026 Fix availableView HOL analysis
  17. CVE-2025-1545High
    WatchGuard Firebox XPath Injection Vulnerability in Web CGI
    CVSS 7.5
    WatchGuard/Fireware OSgeneric
    PublishedDec 4, 2025First seen at HOL Aug 10, 2026Updated Aug 10, 2026 Fix availableView HOL analysis
  18. CVE-2025-11838High
    WatchGuard Firebox iked Memory Corruption Vulnerability
    CVSS 7.5
    WatchGuard/Fireware OSgeneric
    PublishedDec 4, 2025First seen at HOL Aug 10, 2026Updated Aug 10, 2026View HOL analysis
  19. CVE-2025-13940Medium
    WatchGuard Firebox Boot Time System Integrity Check Bypass
    CVSS 5.5
    WatchGuard/Fireware OSgeneric
    PublishedDec 4, 2025First seen at HOL Aug 10, 2026Updated Aug 10, 2026 Fix availableView HOL analysis
  20. CVE-2025-13939Medium
    WatchGuard Firebox Stored Cross-Site-Scripting (XSS) Vulnerability in Gateway Wireless Controller
    CVSS 6.1
    WatchGuard/Fireware OSgeneric
    PublishedDec 4, 2025First seen at HOL Aug 10, 2026Updated Aug 10, 2026 Fix availableView HOL analysis
  21. CVE-2025-13938Medium
    WatchGuard Firebox Stored Cross-Site-Scripting (XSS) Vulnerability in Autotask Technology Integration Configuration
    CVSS 6.1
    WatchGuard/Fireware OSgeneric
    PublishedDec 4, 2025First seen at HOL Aug 10, 2026Updated Aug 10, 2026 Fix availableView HOL analysis
  22. CVE-2025-13937Medium
    WatchGuard Firebox Stored Cross-Site-Scripting (XSS) Vulnerability in ConnectWise Technology Integration Configuration
    CVSS 6.1
    WatchGuard/Fireware OSgeneric
    PublishedDec 4, 2025First seen at HOL Aug 10, 2026Updated Aug 10, 2026 Fix availableView HOL analysis
  23. CVE-2025-13936Medium
    WatchGuard Firebox Stored Cross-Site-Scripting (XSS) Vulnerability in Tigerpaw Technology Integration Configuration
    CVSS 6.1
    WatchGuard/Fireware OSgeneric
    PublishedDec 4, 2025First seen at HOL Aug 10, 2026Updated Aug 10, 2026 Fix availableView HOL analysis
  24. CVE-2025-12196High
    WatchGuard Firebox Authenticated Out of Bounds Write in Management CLI Ping Command
    CVSS 7.2
    WatchGuard/Fireware OSgeneric
    PublishedDec 4, 2025First seen at HOL Aug 10, 2026Updated Aug 10, 2026 Fix availableView HOL analysis
  25. CVE-2025-12195High
    WatchGuard Firebox Authenticated Out of Bounds Write in Management CLI IPSec Configuration
    CVSS 7.2
    WatchGuard/Fireware OSgeneric
    PublishedDec 4, 2025First seen at HOL Aug 10, 2026Updated Aug 10, 2026 Fix availableView HOL analysis
  26. CVE-2025-12026High
    WatchGuard Firebox Authenticated Out of Bounds Write in certd
    CVSS 7.2
    WatchGuard/Fireware OSgeneric
    PublishedDec 4, 2025First seen at HOL Aug 10, 2026Updated Aug 10, 2026 Fix availableView HOL analysis
  27. CVE-2025-66287High
    Webkitgtk: processing maliciously crafted web content may lead to an unexpected process crash
    CVSS 8.8
    The WebKitGTK Team/WebKitGTKgeneric
    PublishedDec 4, 2025First seen at HOL Jun 25, 2026Updated Jun 29, 2026 Fix availableView HOL analysis
  28. CVE-2025-40266Unknown severity
    KVM: arm64: Check the untrusted offset in FF-A memory share
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedDec 4, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  29. CVE-2025-40262Unknown severity
    Input: imx_sc_key - fix memory corruption on unload
    Not scoredSource severity not reported
    Linux/Linux, Siemens/RUGGEDCOM RST2428Pgeneric
    PublishedDec 4, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  30. CVE-2025-40261Unknown severity
    nvme: nvme-fc: Ensure ->ioerr_work is cancelled in nvme_fc_delete_ctrl()
    Not scoredSource severity not reported
    Linux/Linux, Siemens/RUGGEDCOM RST2428P +3generic
    PublishedDec 4, 2025First seen at HOL Jul 14, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  31. CVE-2025-40258Unknown severity
    mptcp: fix race condition in mptcp_schedule_work()
    Not scoredSource severity not reported
    Linux/Linux, Siemens/RUGGEDCOM RST2428Pgeneric
    PublishedDec 4, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  32. CVE-2025-40257Unknown severity
    mptcp: fix a race in mptcp_pm_del_add_timer()
    Not scoredSource severity not reported
    Linux/Linux, Siemens/RUGGEDCOM RST2428Pgeneric
    PublishedDec 4, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  33. CVE-2025-40253Unknown severity
    s390/ctcm: Fix double-kfree
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedDec 4, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  34. CVE-2025-40252Unknown severity
    net: qlogic/qede: fix potential out-of-bounds read in qede_tpa_cont() and qede_tpa_end()
    Not scoredSource severity not reported
    Linux/Linux, Siemens/RUGGEDCOM RST2428Pgeneric
    PublishedDec 4, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  35. CVE-2025-40251Unknown severity
    devlink: rate: Unset parent pointer in devl_rate_nodes_destroy
    Not scoredSource severity not reported
    Linux/Linux, Siemens/RUGGEDCOM RST2428Pgeneric
    PublishedDec 4, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  36. CVE-2025-40250Unknown severity
    net/mlx5: Clean up only new IRQ glue on request_irq() failure
    Not scoredSource severity not reported
    Linux/Linux, Siemens/RUGGEDCOM RST2428Pgeneric
    PublishedDec 4, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  37. CVE-2025-40249Unknown severity
    gpio: cdev: make sure the cdev fd is still active before emitting events
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedDec 4, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  38. CVE-2025-40248Unknown severity
    vsock: Ignore signal/timeout on connect() if already established
    Not scoredSource severity not reported
    Linux/Linux, Siemens/RUGGEDCOM RST2428Pgeneric
    PublishedDec 4, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  39. CVE-2025-40245Unknown severity
    nios2: ensure that memblock.current_limit is set when setting pfn limits
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedDec 4, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  40. CVE-2025-40244Unknown severity
    hfsplus: fix KMSAN uninit-value issue in __hfsplus_ext_cache_extent()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedDec 4, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  41. CVE-2025-40243Unknown severity
    hfs: fix KMSAN uninit-value issue in hfs_find_set_zero_bits()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedDec 4, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  42. CVE-2025-40242Unknown severity
    gfs2: Fix unlikely race in gdlm_put_lock
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedDec 4, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  43. CVE-2025-40241Unknown severity
    erofs: fix crafted invalid cases for encoded extents
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedDec 4, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  44. CVE-2025-40240Unknown severity
    sctp: avoid NULL dereference when chunk data buffer is missing
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedDec 4, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  45. CVE-2025-40233Unknown severity
    ocfs2: clear extent cache after moving/defragmenting extents
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedDec 4, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  46. CVE-2025-40219Unknown severity
    PCI/IOV: Fix race between SR-IOV enable/disable and hotplug
    Not scoredSource severity not reported
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedDec 4, 2025First seen at HOL Jul 14, 2026Updated Jul 14, 2026 Fix availableView HOL analysis
  47. CVE-2025-40216Unknown severity
    io_uring/rsrc: don't rely on user vaddr alignment
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedDec 4, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  48. CVE-2025-40215Unknown severity
    xfrm: delete x->tunnel as we delete x
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedDec 4, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  49. CVE-2025-40214Unknown severity
    af_unix: Initialise scc_index in unix_add_edge().
    Not scoredSource severity not reported
    Linux/Linux, Siemens/RUGGEDCOM RST2428Pgeneric
    PublishedDec 4, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  50. CVE-2025-29268Critical
    CISA ADP Vulnrichment
    CVSS 9.8
    n/a/n/ageneric
    PublishedDec 4, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
Page 224 of 361
Previous222223224225226Next
How this catalog works

Active means a non-withdrawn CVE List record with a validated alias, English description, publication date, and source reference. Published is the CVE Program date; First seen at HOL is when this feed first indexed the record; Modified and Source checked describe later feed activity. Severity uses the reported source value when present, otherwise a valid CVSS score supplies the displayed band. Unmapped records do not imply package coverage.

Put Guard beside your supply-chain workflow.

Explore HOL Guard

9,162

Critical + high

1,448

Known exploited

12

Ecosystems

Search and filter active CVEs

Filters & sort
Severity
Clear

Showing 11,151–11,200 of 18,007 active CVEs

Sorted by Published (newest)

Active CVE results

Select a result for the HOL analysis
IdentityRiskAffected softwarePublished
  1. CVE-2025-40273Unknown severity
    NFSD: free copynotify stateid in nfs4_free_ol_stateid()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedDec 6, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  2. CVE-2025-40272Unknown severity
    mm/secretmem: fix use-after-free race in fault handler
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedDec 6, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  3. CVE-2025-40271Unknown severity
    fs/proc: fix uaf in proc_readdir_de()
    Not scoredSource severity not reported
    Linux/Linux, Siemens/RUGGEDCOM RST2428Pgeneric
    PublishedDec 6, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  4. CVE-2025-40270Unknown severity
    mm, swap: fix potential UAF issue for VMA readahead
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedDec 6, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  5. CVE-2025-40269Unknown severity
    ALSA: usb-audio: Fix potential overflow of PCM transfer buffer
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedDec 6, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  6. CVE-2025-34291High
    Langflow <= 1.6.9 CORS Misconfiguration to Token Hijack & RCE
    Not scored Known exploited
    Langflow/Langflowgeneric
    PublishedDec 5, 2025First seen at HOL May 24, 2026Updated Jul 14, 2026View HOL analysis
  7. CVE-2025-14104Medium
    Util-linux: util-linux: heap buffer overread in setpwnam() when processing 256-byte usernames
    CVSS 6.1
    util-linux/util-linuxgeneric
    PublishedDec 5, 2025First seen at HOL Jun 25, 2026Updated Jun 30, 2026 Fix availableView HOL analysis
  8. CVE-2025-64052Medium
    CISA ADP Vulnrichment
    CVSS 5.1
    n/a/n/ageneric
    PublishedDec 5, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  9. CVE-2025-64053High
    CISA ADP Vulnrichment
    CVSS 7.5
    n/a/n/ageneric
    PublishedDec 5, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  10. CVE-2025-64054Critical
    CISA ADP Vulnrichment
    CVSS 9.6
    n/a/n/ageneric
    PublishedDec 5, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  11. CVE-2025-64056Medium
    CISA ADP Vulnrichment
    CVSS 4.3
    n/a/n/ageneric
    PublishedDec 5, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  12. CVE-2025-64057High
    CISA ADP Vulnrichment
    CVSS 8.3
    n/a/n/ageneric
    PublishedDec 5, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  13. CVE-2025-66644High
    CISA ADP Vulnrichment
    Not scored Known exploited
    Array Networks/ArrayOS AGgeneric
    PublishedDec 5, 2025First seen at HOL May 24, 2026Updated Feb 26, 2026 Fix availableView HOL analysis
  14. CVE-2025-1547High
    WatchGuard Firebox Authenticated Stack Overflow in Certificate Request Command
    CVSS 7.2
    WatchGuard/Fireware OSgeneric
    PublishedDec 4, 2025First seen at HOL Aug 10, 2026Updated Aug 10, 2026 Fix availableView HOL analysis
  15. CVE-2025-1910Medium
    WatchGuard Mobile VPN with SSL Local Privilege Escalation via Update Package
    CVSS 6.3
    WatchGuard/Mobile VPN with SSL Clientgeneric
    PublishedDec 4, 2025First seen at HOL Aug 8, 2026Updated Aug 8, 2026 Fix availableView HOL analysis
  16. CVE-2025-6946Medium
    WatchGuard Firebox Stored Cross-Site-Scripting (XSS) Vulnerability in IPS Configuration
    CVSS 4.8
    WatchGuard/Fireware OSgeneric
    PublishedDec 4, 2025First seen at HOL Aug 8, 2026Updated Aug 8, 2026 Fix availableView HOL analysis
  17. CVE-2025-1545High
    WatchGuard Firebox XPath Injection Vulnerability in Web CGI
    CVSS 7.5
    WatchGuard/Fireware OSgeneric
    PublishedDec 4, 2025First seen at HOL Aug 10, 2026Updated Aug 10, 2026 Fix availableView HOL analysis
  18. CVE-2025-11838High
    WatchGuard Firebox iked Memory Corruption Vulnerability
    CVSS 7.5
    WatchGuard/Fireware OSgeneric
    PublishedDec 4, 2025First seen at HOL Aug 10, 2026Updated Aug 10, 2026View HOL analysis
  19. CVE-2025-13940Medium
    WatchGuard Firebox Boot Time System Integrity Check Bypass
    CVSS 5.5
    WatchGuard/Fireware OSgeneric
    PublishedDec 4, 2025First seen at HOL Aug 10, 2026Updated Aug 10, 2026 Fix availableView HOL analysis
  20. CVE-2025-13939Medium
    WatchGuard Firebox Stored Cross-Site-Scripting (XSS) Vulnerability in Gateway Wireless Controller
    CVSS 6.1
    WatchGuard/Fireware OSgeneric
    PublishedDec 4, 2025First seen at HOL Aug 10, 2026Updated Aug 10, 2026 Fix availableView HOL analysis
  21. CVE-2025-13938Medium
    WatchGuard Firebox Stored Cross-Site-Scripting (XSS) Vulnerability in Autotask Technology Integration Configuration
    CVSS 6.1
    WatchGuard/Fireware OSgeneric
    PublishedDec 4, 2025First seen at HOL Aug 10, 2026Updated Aug 10, 2026 Fix availableView HOL analysis
  22. CVE-2025-13937Medium
    WatchGuard Firebox Stored Cross-Site-Scripting (XSS) Vulnerability in ConnectWise Technology Integration Configuration
    CVSS 6.1
    WatchGuard/Fireware OSgeneric
    PublishedDec 4, 2025First seen at HOL Aug 10, 2026Updated Aug 10, 2026 Fix availableView HOL analysis
  23. CVE-2025-13936Medium
    WatchGuard Firebox Stored Cross-Site-Scripting (XSS) Vulnerability in Tigerpaw Technology Integration Configuration
    CVSS 6.1
    WatchGuard/Fireware OSgeneric
    PublishedDec 4, 2025First seen at HOL Aug 10, 2026Updated Aug 10, 2026 Fix availableView HOL analysis
  24. CVE-2025-12196High
    WatchGuard Firebox Authenticated Out of Bounds Write in Management CLI Ping Command
    CVSS 7.2
    WatchGuard/Fireware OSgeneric
    PublishedDec 4, 2025First seen at HOL Aug 10, 2026Updated Aug 10, 2026 Fix availableView HOL analysis
  25. CVE-2025-12195High
    WatchGuard Firebox Authenticated Out of Bounds Write in Management CLI IPSec Configuration
    CVSS 7.2
    WatchGuard/Fireware OSgeneric
    PublishedDec 4, 2025First seen at HOL Aug 10, 2026Updated Aug 10, 2026 Fix availableView HOL analysis
  26. CVE-2025-12026High
    WatchGuard Firebox Authenticated Out of Bounds Write in certd
    CVSS 7.2
    WatchGuard/Fireware OSgeneric
    PublishedDec 4, 2025First seen at HOL Aug 10, 2026Updated Aug 10, 2026 Fix availableView HOL analysis
  27. CVE-2025-66287High
    Webkitgtk: processing maliciously crafted web content may lead to an unexpected process crash
    CVSS 8.8
    The WebKitGTK Team/WebKitGTKgeneric
    PublishedDec 4, 2025First seen at HOL Jun 25, 2026Updated Jun 29, 2026 Fix availableView HOL analysis
  28. CVE-2025-40266Unknown severity
    KVM: arm64: Check the untrusted offset in FF-A memory share
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedDec 4, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  29. CVE-2025-40262Unknown severity
    Input: imx_sc_key - fix memory corruption on unload
    Not scoredSource severity not reported
    Linux/Linux, Siemens/RUGGEDCOM RST2428Pgeneric
    PublishedDec 4, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  30. CVE-2025-40261Unknown severity
    nvme: nvme-fc: Ensure ->ioerr_work is cancelled in nvme_fc_delete_ctrl()
    Not scoredSource severity not reported
    Linux/Linux, Siemens/RUGGEDCOM RST2428P +3generic
    PublishedDec 4, 2025First seen at HOL Jul 14, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  31. CVE-2025-40258Unknown severity
    mptcp: fix race condition in mptcp_schedule_work()
    Not scoredSource severity not reported
    Linux/Linux, Siemens/RUGGEDCOM RST2428Pgeneric
    PublishedDec 4, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  32. CVE-2025-40257Unknown severity
    mptcp: fix a race in mptcp_pm_del_add_timer()
    Not scoredSource severity not reported
    Linux/Linux, Siemens/RUGGEDCOM RST2428Pgeneric
    PublishedDec 4, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  33. CVE-2025-40253Unknown severity
    s390/ctcm: Fix double-kfree
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedDec 4, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  34. CVE-2025-40252Unknown severity
    net: qlogic/qede: fix potential out-of-bounds read in qede_tpa_cont() and qede_tpa_end()
    Not scoredSource severity not reported
    Linux/Linux, Siemens/RUGGEDCOM RST2428Pgeneric
    PublishedDec 4, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  35. CVE-2025-40251Unknown severity
    devlink: rate: Unset parent pointer in devl_rate_nodes_destroy
    Not scoredSource severity not reported
    Linux/Linux, Siemens/RUGGEDCOM RST2428Pgeneric
    PublishedDec 4, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  36. CVE-2025-40250Unknown severity
    net/mlx5: Clean up only new IRQ glue on request_irq() failure
    Not scoredSource severity not reported
    Linux/Linux, Siemens/RUGGEDCOM RST2428Pgeneric
    PublishedDec 4, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  37. CVE-2025-40249Unknown severity
    gpio: cdev: make sure the cdev fd is still active before emitting events
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedDec 4, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  38. CVE-2025-40248Unknown severity
    vsock: Ignore signal/timeout on connect() if already established
    Not scoredSource severity not reported
    Linux/Linux, Siemens/RUGGEDCOM RST2428Pgeneric
    PublishedDec 4, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  39. CVE-2025-40245Unknown severity
    nios2: ensure that memblock.current_limit is set when setting pfn limits
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedDec 4, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  40. CVE-2025-40244Unknown severity
    hfsplus: fix KMSAN uninit-value issue in __hfsplus_ext_cache_extent()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedDec 4, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  41. CVE-2025-40243Unknown severity
    hfs: fix KMSAN uninit-value issue in hfs_find_set_zero_bits()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedDec 4, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  42. CVE-2025-40242Unknown severity
    gfs2: Fix unlikely race in gdlm_put_lock
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedDec 4, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  43. CVE-2025-40241Unknown severity
    erofs: fix crafted invalid cases for encoded extents
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedDec 4, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  44. CVE-2025-40240Unknown severity
    sctp: avoid NULL dereference when chunk data buffer is missing
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedDec 4, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  45. CVE-2025-40233Unknown severity
    ocfs2: clear extent cache after moving/defragmenting extents
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedDec 4, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  46. CVE-2025-40219Unknown severity
    PCI/IOV: Fix race between SR-IOV enable/disable and hotplug
    Not scoredSource severity not reported
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedDec 4, 2025First seen at HOL Jul 14, 2026Updated Jul 14, 2026 Fix availableView HOL analysis
  47. CVE-2025-40216Unknown severity
    io_uring/rsrc: don't rely on user vaddr alignment
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedDec 4, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  48. CVE-2025-40215Unknown severity
    xfrm: delete x->tunnel as we delete x
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedDec 4, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  49. CVE-2025-40214Unknown severity
    af_unix: Initialise scc_index in unix_add_edge().
    Not scoredSource severity not reported
    Linux/Linux, Siemens/RUGGEDCOM RST2428Pgeneric
    PublishedDec 4, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  50. CVE-2025-29268Critical
    CISA ADP Vulnrichment
    CVSS 9.8
    n/a/n/ageneric
    PublishedDec 4, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
Page 224 of 361
Previous222223224225226Next
How this catalog works

Active means a non-withdrawn CVE List record with a validated alias, English description, publication date, and source reference. Published is the CVE Program date; First seen at HOL is when this feed first indexed the record; Modified and Source checked describe later feed activity. Severity uses the reported source value when present, otherwise a valid CVSS score supplies the displayed band. Unmapped records do not imply package coverage.

Put Guard beside your supply-chain workflow.

Explore HOL Guard