1. Guard
  2. Security
  3. CVEs
HOL Guard

Public security guidance for teams protecting AI harnesses, MCP servers, skills, prompts, and local tool execution.

Install Guard

AI Security

  • Prompt injection
  • MCP security
  • Supply chain

Resources

  • Trust packet
  • Harness setup
  • Redacted warnings
  • Safe labs

Product

  • Install Guard
  • Pricing
  • Open dashboard
  1. Guard
  2. Security
  3. CVEs
HOL Guard

Public security guidance for teams protecting AI harnesses, MCP servers, skills, prompts, and local tool execution.

Install Guard

AI Security

  • Prompt injection
  • MCP security
  • Supply chain

Resources

  • Trust packet
  • Harness setup
  • Redacted warnings
  • Safe labs

Product

  • Install Guard
  • Pricing
  • Open dashboard
HOL LogoHOL
Overview
InstallPricingEnterpriseAffiliatesDocsOpen App
Docs
  • API Reference
  • Run in Postman
  • OpenAPI Spec
  • Standards
  • Submit ERC-8004 Contract
  • Feature Your Agent
Best Agents
  • Best ERC-8004 Agents
  • Best Virtuals Agents
  • Best MCP Servers
  • Best A2A Agents
  • Best x402 Payable
  • All Categories
Community
  • Telegram
  • X
More
  • Blog
  • GitHub
  • Privacy Policy
  • Terms of Service
Settings

Copyright © 2026 HOL DAO LLC. All rights reserved.

HOL LogoHOL
Overview
InstallPricingEnterpriseAffiliatesDocsOpen App
Docs
  • API Reference
  • Run in Postman
  • OpenAPI Spec
  • Standards
  • Submit ERC-8004 Contract
  • Feature Your Agent
Best Agents
  • Best ERC-8004 Agents
  • Best Virtuals Agents
  • Best MCP Servers
  • Best A2A Agents
  • Best x402 Payable
  • All Categories
Community
  • Telegram
  • X
More
  • Blog
  • GitHub
  • Privacy Policy
  • Terms of Service
Settings

Copyright © 2026 HOL DAO LLC. All rights reserved.

Active CVEs

Search active, non-withdrawn CVEs in the HOL Guard feed, then open the matching HOL analysis.

Feed liveLast checked Aug 16, 2026, 2:35 AM 20,254 active 1,448 known exploited

Catalog summary

20,254

Active CVEs

Active CVEs

Search active, non-withdrawn CVEs in the HOL Guard feed, then open the matching HOL analysis.

Feed liveLast checked Aug 16, 2026, 2:35 AM 20,254 active 1,448 known exploited

Catalog summary

20,254

Active CVEs

10,136

Critical + high

1,448

Known exploited

14

Ecosystems

Search and filter active CVEs

Filters & sort
Severity
Clear

Showing 13,151–13,200 of 20,254 active CVEs

Sorted by Published (newest)

Active CVE results

Select a result for the HOL analysis
IdentityRiskAffected softwarePublished
  1. CVE-2025-67290Medium
    CISA ADP Vulnrichment
    CVSS 6.1
    n/a/n/ageneric
    PublishedDec 22, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  2. CVE-2025-67291Medium
    CISA ADP Vulnrichment
    CVSS 6.1
    n/a/n/ageneric
    PublishedDec 22, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  3. CVE-2025-67418Critical
    CISA ADP Vulnrichment
    CVSS 9.8
    n/a/n/ageneric
    PublishedDec 22, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  4. CVE-2025-68645High
    CISA ADP Vulnrichment
    Not scored Known exploited
    n/a/n/ageneric
    PublishedDec 22, 2025First seen at HOL May 24, 2026Updated Feb 26, 2026View HOL analysis
  5. CVE-2025-14300High
    Unauthenticated Access to connectAP API Endpoint on Tapo C100, C200 & C425
    CVSS 8.1
    TP Link Systems Inc./Tapo C100 v5, TP Link Systems Inc./Tapo C425 v1.2 +1generic
    PublishedDec 20, 2025First seen at HOL Aug 14, 2026Updated Aug 14, 2026 Fix availableView HOL analysis
  6. CVE-2025-68613High
    n8n Vulnerable to Remote Code Execution via Expression Injection
    Not scored Known exploited
    n8n-io/n8ngeneric
    PublishedDec 19, 2025First seen at HOL May 24, 2026Updated Mar 25, 2026View HOL analysis
  7. CVE-2023-53958Unknown severity
    LDAP Tool Box Self Service Password 1.5.2 Account Takeover via HTTP Host Header
    Not scoredSource severity not reported
    ltb-project/LDAP Tool Box Self Service Passwordgeneric
    PublishedDec 19, 2025First seen at HOL Aug 14, 2026Updated Aug 14, 2026View HOL analysis
  8. CVE-2025-14847High
    Zlib compressed protocol header length confusion may allow memory read
    Not scored Known exploited
    MongoDB Inc./MongoDB Servergeneric
    PublishedDec 19, 2025First seen at HOL May 24, 2026Updated Feb 26, 2026 Fix availableView HOL analysis
  9. CVE-2025-14733High
    WatchGuard Firebox iked Out of Bounds Write Vulnerability
    CVSS 9.8 Known exploited
    WatchGuard/Fireware OSgeneric
    PublishedDec 19, 2025First seen at HOL May 24, 2026Updated Aug 11, 2026 Fix availableView HOL analysis
  10. CVE-2020-36890High
    Kentico Xperience <= 10 Administrator Access Control Bypass
    CVSS 7.2
    Kentico/Xperiencegeneric
    PublishedDec 18, 2025First seen at HOL Aug 10, 2026Updated Aug 10, 2026View HOL analysis
  11. CVE-2025-40898Unknown severity
    Path traversal in Import Arc data archive functionality in Guardian/CMC before 25.5.0
    Not scoredSource severity not reported
    Nozomi Networks/CMC, Nozomi Networks/Guardian +1generic
    PublishedDec 18, 2025First seen at HOL Aug 11, 2026Updated Aug 11, 2026 Fix availableView HOL analysis
  12. CVE-2025-40893Unknown severity
    HTML injection in Asset List in Guardian/CMC before 25.5.0
    Not scoredSource severity not reported
    Nozomi Networks/CMC, Nozomi Networks/Guardian +1generic
    PublishedDec 18, 2025First seen at HOL Aug 11, 2026Updated Aug 11, 2026 Fix availableView HOL analysis
  13. CVE-2025-40892Unknown severity
    Stored Cross-Site Scripting (XSS) in Reports in Guardian/CMC before 25.5.0
    Not scoredSource severity not reported
    Nozomi Networks/CMC, Nozomi Networks/Guardian +1generic
    PublishedDec 18, 2025First seen at HOL Aug 11, 2026Updated Aug 11, 2026 Fix availableView HOL analysis
  14. CVE-2025-40891Unknown severity
    HTML injection in in Time Machine functionality in Guardian/CMC before 25.5.0
    Not scoredSource severity not reported
    Nozomi Networks/CMC, Nozomi Networks/Guardian +1generic
    PublishedDec 18, 2025First seen at HOL Aug 11, 2026Updated Aug 11, 2026 Fix availableView HOL analysis
  15. CVE-2025-40602High
    CISA ADP Vulnrichment
    Not scored Known exploited
    SonicWall/SMA1000generic
    PublishedDec 18, 2025First seen at HOL May 24, 2026Updated Dec 24, 2025View HOL analysis
  16. CVE-2025-68461High
    CISA ADP Vulnrichment
    Not scored Known exploited
    Roundcube/Webmailgeneric
    PublishedDec 18, 2025First seen at HOL May 24, 2026Updated Mar 13, 2026 Fix availableView HOL analysis
  17. CVE-2025-56157Critical
    CISA ADP Vulnrichment
    CVSS 9.8
    n/a/n/ageneric
    PublishedDec 18, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  18. CVE-2025-65568High
    CISA ADP Vulnrichment
    CVSS 7.5
    n/a/n/ageneric
    PublishedDec 18, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  19. CVE-2025-43529High
    CISA ADP Vulnrichment
    Not scored Known exploited
    Apple/Safari, Apple/iOS and iPadOS +4generic
    PublishedDec 17, 2025First seen at HOL May 24, 2026Updated Apr 2, 2026 Fix availableView HOL analysis
  20. CVE-2025-20393High
    Cisco Secure Email Gateway and Cisco Secure Email and Web Manager Remote Command Execution Vulnerability
    Not scored Known exploited
    Cisco/Cisco Secure Email, Cisco/Cisco Secure Email and Web Managergeneric
    PublishedDec 17, 2025First seen at HOL May 24, 2026Updated Feb 26, 2026View HOL analysis
  21. CVE-2025-59374High
    CISA ADP Vulnrichment
    Not scored Known exploited
    ASUS/live updategeneric
    PublishedDec 17, 2025First seen at HOL May 24, 2026Updated Feb 26, 2026View HOL analysis
  22. CVE-2025-37164High
    CISA ADP Vulnrichment
    Not scored Known exploited
    Hewlett Packard Enterprise (HPE)/HPE OneViewgeneric
    PublishedDec 16, 2025First seen at HOL May 24, 2026Updated Feb 26, 2026 Fix availableView HOL analysis
  23. CVE-2025-68299Unknown severity
    afs: Fix delayed allocation of a cell's anonymous key
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedDec 16, 2025First seen at HOL Aug 3, 2026Updated Aug 3, 2026 Fix availableView HOL analysis
  24. CVE-2025-68296Unknown severity
    drm, fbcon, vga_switcheroo: Avoid race condition in fbcon setup
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedDec 16, 2025First seen at HOL Jun 19, 2026Updated Jun 19, 2026 Fix availableView HOL analysis
  25. CVE-2025-68291Unknown severity
    mptcp: Initialise rcv_mss before calling tcp_send_active_reset() in mptcp_do_fastclose().
    Not scoredSource severity not reported
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedDec 16, 2025First seen at HOL Jul 14, 2026Updated Jul 14, 2026 Fix availableView HOL analysis
  26. CVE-2025-68266Unknown severity
    bfs: Reconstruct file type when loading from disk
    Not scoredSource severity not reported
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedDec 16, 2025First seen at HOL Jul 14, 2026Updated Jul 14, 2026 Fix availableView HOL analysis
  27. CVE-2025-68265Unknown severity
    nvme: fix admin request_queue lifetime
    Not scoredSource severity not reported
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedDec 16, 2025First seen at HOL Jul 14, 2026Updated Jul 30, 2026 Fix availableView HOL analysis
  28. CVE-2025-68264Unknown severity
    ext4: refresh inline data size before write operations
    Not scoredSource severity not reported
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedDec 16, 2025First seen at HOL Jul 14, 2026Updated Jul 14, 2026 Fix availableView HOL analysis
  29. CVE-2025-68261Unknown severity
    ext4: add i_data_sem protection in ext4_destroy_inline_data_nolock()
    Not scoredSource severity not reported
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedDec 16, 2025First seen at HOL Jul 14, 2026Updated Jul 30, 2026 Fix availableView HOL analysis
  30. CVE-2025-68206Unknown severity
    netfilter: nft_ct: add seqadj extension for natted connections
    Not scoredSource severity not reported
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedDec 16, 2025First seen at HOL Jul 14, 2026Updated Jul 30, 2026 Fix availableView HOL analysis
  31. CVE-2025-65318Critical
    CISA ADP Vulnrichment
    CVSS 9.1
    n/a/n/ageneric
    PublishedDec 16, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  32. CVE-2025-65319Critical
    CISA ADP Vulnrichment
    CVSS 9.1
    n/a/n/ageneric
    PublishedDec 16, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  33. CVE-2025-65427Medium
    CISA ADP Vulnrichment
    CVSS 6.5
    n/a/n/ageneric
    PublishedDec 16, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  34. CVE-2025-11393High
    Insights-runtimes-tech-preview/runtimes-inventory-rhel8-operator: improper proxy configuration allows unauthorized administrative commands
    CVSS 8.7
    Affected software not mappedEcosystem not listed
    PublishedDec 15, 2025First seen at HOL Jun 26, 2026Updated Aug 8, 2026View HOL analysis
  35. CVE-2025-67906Medium
    CISA ADP Vulnrichment
    CVSS 5.4
    MISP/MISPgeneric
    PublishedDec 15, 2025First seen at HOL Jun 22, 2026Updated Jun 22, 2026 Fix availableView HOL analysis
  36. CVE-2024-44598High
    CISA ADP Vulnrichment
    CVSS 8.8
    n/a/n/ageneric
    PublishedDec 15, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  37. CVE-2024-44599High
    CISA ADP Vulnrichment
    CVSS 8.3
    n/a/n/ageneric
    PublishedDec 15, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  38. CVE-2025-66963Medium
    CISA ADP Vulnrichment
    CVSS 5.5
    n/a/n/ageneric
    PublishedDec 15, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  39. CVE-2025-14611High
    Gladinet CentreStack and TrioFox Hard Coded AES Keys
    Not scored Known exploited
    Gladinet/CentreStack and TrioFoxgeneric
    PublishedDec 12, 2025First seen at HOL May 24, 2026Updated Feb 26, 2026 Fix availableView HOL analysis
  40. CVE-2025-43510High
    CISA ADP Vulnrichment
    Not scored Known exploited
    Apple/iOS and iPadOS, Apple/macOS +3generic
    PublishedDec 12, 2025First seen at HOL May 24, 2026Updated Apr 3, 2026 Fix availableView HOL analysis
  41. CVE-2025-43511Medium
    CISA ADP Vulnrichment
    CVSS 6.5
    Apple/Safari, Apple/iOS and iPadOS +3generic
    PublishedDec 12, 2025First seen at HOL Jul 15, 2026Updated Jul 15, 2026 Fix availableView HOL analysis
  42. CVE-2025-43520High
    CISA ADP Vulnrichment
    Not scored Known exploited
    Apple/iOS and iPadOS, Apple/macOS +3generic
    PublishedDec 12, 2025First seen at HOL May 24, 2026Updated Apr 3, 2026 Fix availableView HOL analysis
  43. CVE-2025-14174High
    CISA ADP Vulnrichment
    Not scored Known exploited
    Google/Chromegeneric
    PublishedDec 12, 2025First seen at HOL May 24, 2026Updated Feb 26, 2026 Fix availableView HOL analysis
  44. CVE-2025-65530High
    CISA ADP Vulnrichment
    CVSS 8.8
    n/a/n/ageneric
    PublishedDec 12, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  45. CVE-2025-65854Critical
    CISA ADP Vulnrichment
    CVSS 9.8
    n/a/n/ageneric
    PublishedDec 12, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  46. CVE-2025-67780Medium
    CISA ADP Vulnrichment
    CVSS 4.2
    SpaceX/Starlink Dishgeneric
    PublishedDec 11, 2025First seen at HOL Jul 9, 2026Updated Jul 9, 2026 Fix availableView HOL analysis
  47. CVE-2025-14523High
    Libsoup: libsoup: duplicate host header handling causes host-parsing discrepancy (first- vs last-value wins)
    CVSS 8.2
    Affected software not mappedEcosystem not listed
    PublishedDec 11, 2025First seen at HOL Jun 25, 2026Updated Jun 29, 2026View HOL analysis
  48. CVE-2025-14512Medium
    Glib: integer overflow in glib gio attribute escaping causes heap buffer overflow
    CVSS 6.5
    GNOME/glibgeneric
    PublishedDec 11, 2025First seen at HOL Jun 24, 2026Updated Jul 13, 2026 Fix availableView HOL analysis
  49. CVE-2025-8110High
    File overwrite in file update API in Gogs
    Not scored Known exploited
    Gogs/Gogsgeneric
    PublishedDec 10, 2025First seen at HOL May 24, 2026Updated Feb 26, 2026View HOL analysis
  50. CVE-2025-14087Medium
    Glib: glib: buffer underflow in gvariant parser leads to heap corruption
    CVSS 5.6
    GNOME/glibgeneric
    PublishedDec 10, 2025First seen at HOL Jun 24, 2026Updated Aug 3, 2026 Fix availableView HOL analysis
Page 264 of 406
Previous262263264265266Next
How this catalog works

Active means a non-withdrawn CVE List record with a validated alias, English description, publication date, and source reference. Published is the CVE Program date; First seen at HOL is when this feed first indexed the record; Modified and Source checked describe later feed activity. Severity uses the reported source value when present, otherwise a valid CVSS score supplies the displayed band. Unmapped records do not imply package coverage.

Put Guard beside your supply-chain workflow.

Explore HOL Guard

10,136

Critical + high

1,448

Known exploited

14

Ecosystems

Search and filter active CVEs

Filters & sort
Severity
Clear

Showing 13,151–13,200 of 20,254 active CVEs

Sorted by Published (newest)

Active CVE results

Select a result for the HOL analysis
IdentityRiskAffected softwarePublished
  1. CVE-2025-67290Medium
    CISA ADP Vulnrichment
    CVSS 6.1
    n/a/n/ageneric
    PublishedDec 22, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  2. CVE-2025-67291Medium
    CISA ADP Vulnrichment
    CVSS 6.1
    n/a/n/ageneric
    PublishedDec 22, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  3. CVE-2025-67418Critical
    CISA ADP Vulnrichment
    CVSS 9.8
    n/a/n/ageneric
    PublishedDec 22, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  4. CVE-2025-68645High
    CISA ADP Vulnrichment
    Not scored Known exploited
    n/a/n/ageneric
    PublishedDec 22, 2025First seen at HOL May 24, 2026Updated Feb 26, 2026View HOL analysis
  5. CVE-2025-14300High
    Unauthenticated Access to connectAP API Endpoint on Tapo C100, C200 & C425
    CVSS 8.1
    TP Link Systems Inc./Tapo C100 v5, TP Link Systems Inc./Tapo C425 v1.2 +1generic
    PublishedDec 20, 2025First seen at HOL Aug 14, 2026Updated Aug 14, 2026 Fix availableView HOL analysis
  6. CVE-2025-68613High
    n8n Vulnerable to Remote Code Execution via Expression Injection
    Not scored Known exploited
    n8n-io/n8ngeneric
    PublishedDec 19, 2025First seen at HOL May 24, 2026Updated Mar 25, 2026View HOL analysis
  7. CVE-2023-53958Unknown severity
    LDAP Tool Box Self Service Password 1.5.2 Account Takeover via HTTP Host Header
    Not scoredSource severity not reported
    ltb-project/LDAP Tool Box Self Service Passwordgeneric
    PublishedDec 19, 2025First seen at HOL Aug 14, 2026Updated Aug 14, 2026View HOL analysis
  8. CVE-2025-14847High
    Zlib compressed protocol header length confusion may allow memory read
    Not scored Known exploited
    MongoDB Inc./MongoDB Servergeneric
    PublishedDec 19, 2025First seen at HOL May 24, 2026Updated Feb 26, 2026 Fix availableView HOL analysis
  9. CVE-2025-14733High
    WatchGuard Firebox iked Out of Bounds Write Vulnerability
    CVSS 9.8 Known exploited
    WatchGuard/Fireware OSgeneric
    PublishedDec 19, 2025First seen at HOL May 24, 2026Updated Aug 11, 2026 Fix availableView HOL analysis
  10. CVE-2020-36890High
    Kentico Xperience <= 10 Administrator Access Control Bypass
    CVSS 7.2
    Kentico/Xperiencegeneric
    PublishedDec 18, 2025First seen at HOL Aug 10, 2026Updated Aug 10, 2026View HOL analysis
  11. CVE-2025-40898Unknown severity
    Path traversal in Import Arc data archive functionality in Guardian/CMC before 25.5.0
    Not scoredSource severity not reported
    Nozomi Networks/CMC, Nozomi Networks/Guardian +1generic
    PublishedDec 18, 2025First seen at HOL Aug 11, 2026Updated Aug 11, 2026 Fix availableView HOL analysis
  12. CVE-2025-40893Unknown severity
    HTML injection in Asset List in Guardian/CMC before 25.5.0
    Not scoredSource severity not reported
    Nozomi Networks/CMC, Nozomi Networks/Guardian +1generic
    PublishedDec 18, 2025First seen at HOL Aug 11, 2026Updated Aug 11, 2026 Fix availableView HOL analysis
  13. CVE-2025-40892Unknown severity
    Stored Cross-Site Scripting (XSS) in Reports in Guardian/CMC before 25.5.0
    Not scoredSource severity not reported
    Nozomi Networks/CMC, Nozomi Networks/Guardian +1generic
    PublishedDec 18, 2025First seen at HOL Aug 11, 2026Updated Aug 11, 2026 Fix availableView HOL analysis
  14. CVE-2025-40891Unknown severity
    HTML injection in in Time Machine functionality in Guardian/CMC before 25.5.0
    Not scoredSource severity not reported
    Nozomi Networks/CMC, Nozomi Networks/Guardian +1generic
    PublishedDec 18, 2025First seen at HOL Aug 11, 2026Updated Aug 11, 2026 Fix availableView HOL analysis
  15. CVE-2025-40602High
    CISA ADP Vulnrichment
    Not scored Known exploited
    SonicWall/SMA1000generic
    PublishedDec 18, 2025First seen at HOL May 24, 2026Updated Dec 24, 2025View HOL analysis
  16. CVE-2025-68461High
    CISA ADP Vulnrichment
    Not scored Known exploited
    Roundcube/Webmailgeneric
    PublishedDec 18, 2025First seen at HOL May 24, 2026Updated Mar 13, 2026 Fix availableView HOL analysis
  17. CVE-2025-56157Critical
    CISA ADP Vulnrichment
    CVSS 9.8
    n/a/n/ageneric
    PublishedDec 18, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  18. CVE-2025-65568High
    CISA ADP Vulnrichment
    CVSS 7.5
    n/a/n/ageneric
    PublishedDec 18, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  19. CVE-2025-43529High
    CISA ADP Vulnrichment
    Not scored Known exploited
    Apple/Safari, Apple/iOS and iPadOS +4generic
    PublishedDec 17, 2025First seen at HOL May 24, 2026Updated Apr 2, 2026 Fix availableView HOL analysis
  20. CVE-2025-20393High
    Cisco Secure Email Gateway and Cisco Secure Email and Web Manager Remote Command Execution Vulnerability
    Not scored Known exploited
    Cisco/Cisco Secure Email, Cisco/Cisco Secure Email and Web Managergeneric
    PublishedDec 17, 2025First seen at HOL May 24, 2026Updated Feb 26, 2026View HOL analysis
  21. CVE-2025-59374High
    CISA ADP Vulnrichment
    Not scored Known exploited
    ASUS/live updategeneric
    PublishedDec 17, 2025First seen at HOL May 24, 2026Updated Feb 26, 2026View HOL analysis
  22. CVE-2025-37164High
    CISA ADP Vulnrichment
    Not scored Known exploited
    Hewlett Packard Enterprise (HPE)/HPE OneViewgeneric
    PublishedDec 16, 2025First seen at HOL May 24, 2026Updated Feb 26, 2026 Fix availableView HOL analysis
  23. CVE-2025-68299Unknown severity
    afs: Fix delayed allocation of a cell's anonymous key
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedDec 16, 2025First seen at HOL Aug 3, 2026Updated Aug 3, 2026 Fix availableView HOL analysis
  24. CVE-2025-68296Unknown severity
    drm, fbcon, vga_switcheroo: Avoid race condition in fbcon setup
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedDec 16, 2025First seen at HOL Jun 19, 2026Updated Jun 19, 2026 Fix availableView HOL analysis
  25. CVE-2025-68291Unknown severity
    mptcp: Initialise rcv_mss before calling tcp_send_active_reset() in mptcp_do_fastclose().
    Not scoredSource severity not reported
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedDec 16, 2025First seen at HOL Jul 14, 2026Updated Jul 14, 2026 Fix availableView HOL analysis
  26. CVE-2025-68266Unknown severity
    bfs: Reconstruct file type when loading from disk
    Not scoredSource severity not reported
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedDec 16, 2025First seen at HOL Jul 14, 2026Updated Jul 14, 2026 Fix availableView HOL analysis
  27. CVE-2025-68265Unknown severity
    nvme: fix admin request_queue lifetime
    Not scoredSource severity not reported
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedDec 16, 2025First seen at HOL Jul 14, 2026Updated Jul 30, 2026 Fix availableView HOL analysis
  28. CVE-2025-68264Unknown severity
    ext4: refresh inline data size before write operations
    Not scoredSource severity not reported
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedDec 16, 2025First seen at HOL Jul 14, 2026Updated Jul 14, 2026 Fix availableView HOL analysis
  29. CVE-2025-68261Unknown severity
    ext4: add i_data_sem protection in ext4_destroy_inline_data_nolock()
    Not scoredSource severity not reported
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedDec 16, 2025First seen at HOL Jul 14, 2026Updated Jul 30, 2026 Fix availableView HOL analysis
  30. CVE-2025-68206Unknown severity
    netfilter: nft_ct: add seqadj extension for natted connections
    Not scoredSource severity not reported
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedDec 16, 2025First seen at HOL Jul 14, 2026Updated Jul 30, 2026 Fix availableView HOL analysis
  31. CVE-2025-65318Critical
    CISA ADP Vulnrichment
    CVSS 9.1
    n/a/n/ageneric
    PublishedDec 16, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  32. CVE-2025-65319Critical
    CISA ADP Vulnrichment
    CVSS 9.1
    n/a/n/ageneric
    PublishedDec 16, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  33. CVE-2025-65427Medium
    CISA ADP Vulnrichment
    CVSS 6.5
    n/a/n/ageneric
    PublishedDec 16, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  34. CVE-2025-11393High
    Insights-runtimes-tech-preview/runtimes-inventory-rhel8-operator: improper proxy configuration allows unauthorized administrative commands
    CVSS 8.7
    Affected software not mappedEcosystem not listed
    PublishedDec 15, 2025First seen at HOL Jun 26, 2026Updated Aug 8, 2026View HOL analysis
  35. CVE-2025-67906Medium
    CISA ADP Vulnrichment
    CVSS 5.4
    MISP/MISPgeneric
    PublishedDec 15, 2025First seen at HOL Jun 22, 2026Updated Jun 22, 2026 Fix availableView HOL analysis
  36. CVE-2024-44598High
    CISA ADP Vulnrichment
    CVSS 8.8
    n/a/n/ageneric
    PublishedDec 15, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  37. CVE-2024-44599High
    CISA ADP Vulnrichment
    CVSS 8.3
    n/a/n/ageneric
    PublishedDec 15, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  38. CVE-2025-66963Medium
    CISA ADP Vulnrichment
    CVSS 5.5
    n/a/n/ageneric
    PublishedDec 15, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  39. CVE-2025-14611High
    Gladinet CentreStack and TrioFox Hard Coded AES Keys
    Not scored Known exploited
    Gladinet/CentreStack and TrioFoxgeneric
    PublishedDec 12, 2025First seen at HOL May 24, 2026Updated Feb 26, 2026 Fix availableView HOL analysis
  40. CVE-2025-43510High
    CISA ADP Vulnrichment
    Not scored Known exploited
    Apple/iOS and iPadOS, Apple/macOS +3generic
    PublishedDec 12, 2025First seen at HOL May 24, 2026Updated Apr 3, 2026 Fix availableView HOL analysis
  41. CVE-2025-43511Medium
    CISA ADP Vulnrichment
    CVSS 6.5
    Apple/Safari, Apple/iOS and iPadOS +3generic
    PublishedDec 12, 2025First seen at HOL Jul 15, 2026Updated Jul 15, 2026 Fix availableView HOL analysis
  42. CVE-2025-43520High
    CISA ADP Vulnrichment
    Not scored Known exploited
    Apple/iOS and iPadOS, Apple/macOS +3generic
    PublishedDec 12, 2025First seen at HOL May 24, 2026Updated Apr 3, 2026 Fix availableView HOL analysis
  43. CVE-2025-14174High
    CISA ADP Vulnrichment
    Not scored Known exploited
    Google/Chromegeneric
    PublishedDec 12, 2025First seen at HOL May 24, 2026Updated Feb 26, 2026 Fix availableView HOL analysis
  44. CVE-2025-65530High
    CISA ADP Vulnrichment
    CVSS 8.8
    n/a/n/ageneric
    PublishedDec 12, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  45. CVE-2025-65854Critical
    CISA ADP Vulnrichment
    CVSS 9.8
    n/a/n/ageneric
    PublishedDec 12, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  46. CVE-2025-67780Medium
    CISA ADP Vulnrichment
    CVSS 4.2
    SpaceX/Starlink Dishgeneric
    PublishedDec 11, 2025First seen at HOL Jul 9, 2026Updated Jul 9, 2026 Fix availableView HOL analysis
  47. CVE-2025-14523High
    Libsoup: libsoup: duplicate host header handling causes host-parsing discrepancy (first- vs last-value wins)
    CVSS 8.2
    Affected software not mappedEcosystem not listed
    PublishedDec 11, 2025First seen at HOL Jun 25, 2026Updated Jun 29, 2026View HOL analysis
  48. CVE-2025-14512Medium
    Glib: integer overflow in glib gio attribute escaping causes heap buffer overflow
    CVSS 6.5
    GNOME/glibgeneric
    PublishedDec 11, 2025First seen at HOL Jun 24, 2026Updated Jul 13, 2026 Fix availableView HOL analysis
  49. CVE-2025-8110High
    File overwrite in file update API in Gogs
    Not scored Known exploited
    Gogs/Gogsgeneric
    PublishedDec 10, 2025First seen at HOL May 24, 2026Updated Feb 26, 2026View HOL analysis
  50. CVE-2025-14087Medium
    Glib: glib: buffer underflow in gvariant parser leads to heap corruption
    CVSS 5.6
    GNOME/glibgeneric
    PublishedDec 10, 2025First seen at HOL Jun 24, 2026Updated Aug 3, 2026 Fix availableView HOL analysis
Page 264 of 406
Previous262263264265266Next
How this catalog works

Active means a non-withdrawn CVE List record with a validated alias, English description, publication date, and source reference. Published is the CVE Program date; First seen at HOL is when this feed first indexed the record; Modified and Source checked describe later feed activity. Severity uses the reported source value when present, otherwise a valid CVSS score supplies the displayed band. Unmapped records do not imply package coverage.

Put Guard beside your supply-chain workflow.

Explore HOL Guard