1. Guard
  2. Security
  3. CVEs
HOL Guard

Public security guidance for teams protecting AI harnesses, MCP servers, skills, prompts, and local tool execution.

Install Guard

AI Security

  • Prompt injection
  • MCP security
  • Supply chain

Resources

  • Trust packet
  • Harness setup
  • Redacted warnings
  • Safe labs

Product

  • Install Guard
  • Pricing
  • Open dashboard
  1. Guard
  2. Security
  3. CVEs
HOL Guard

Public security guidance for teams protecting AI harnesses, MCP servers, skills, prompts, and local tool execution.

Install Guard

AI Security

  • Prompt injection
  • MCP security
  • Supply chain

Resources

  • Trust packet
  • Harness setup
  • Redacted warnings
  • Safe labs

Product

  • Install Guard
  • Pricing
  • Open dashboard
HOL LogoHOL
Overview
InstallPricingEnterpriseAffiliatesDocsOpen App
Docs
  • API Reference
  • Run in Postman
  • OpenAPI Spec
  • Standards
  • Submit ERC-8004 Contract
  • Feature Your Agent
Best Plugins
  • Browse Plugins
  • Best Claude Plugins
  • Best Codex Plugins
  • Best Grok Plugins
  • Best Kimi Plugins
  • Best DeepSeek Plugins
  • Best Antigravity Plugins
  • Best MCP Plugins
  • Best Cursor Plugins
  • Best OpenCode Plugins
Best Agents
  • Best ERC-8004 Agents
  • Best Virtuals Agents
  • Best MCP Servers
  • Best A2A Agents
  • Best x402 Payable
  • All Categories
Community
  • Telegram
  • X
More
  • Blog
  • GitHub
  • Privacy Policy
  • Terms of Service
Settings

Copyright © 2026 HOL DAO LLC. All rights reserved.

HOL LogoHOL
Overview
InstallPricingEnterpriseAffiliatesDocsOpen App
Docs
  • API Reference
  • Run in Postman
  • OpenAPI Spec
  • Standards
  • Submit ERC-8004 Contract
  • Feature Your Agent
Best Plugins
  • Browse Plugins
  • Best Claude Plugins
  • Best Codex Plugins
  • Best Grok Plugins
  • Best Kimi Plugins
  • Best DeepSeek Plugins
  • Best Antigravity Plugins
  • Best MCP Plugins
  • Best Cursor Plugins
  • Best OpenCode Plugins
Best Agents
  • Best ERC-8004 Agents
  • Best Virtuals Agents
  • Best MCP Servers
  • Best A2A Agents
  • Best x402 Payable
  • All Categories
Community
  • Telegram
  • X
More
  • Blog
  • GitHub
  • Privacy Policy
  • Terms of Service
Settings

Copyright © 2026 HOL DAO LLC. All rights reserved.

Active CVEs

Search active, non-withdrawn CVEs in the HOL Guard feed, then open the matching HOL analysis.

Feed liveLast checked Aug 16, 2026, 11:45 PM 20,357 active 1,448 known exploited

Catalog summary

20,357

Active CVEs

Active CVEs

Search active, non-withdrawn CVEs in the HOL Guard feed, then open the matching HOL analysis.

Feed liveLast checked Aug 16, 2026, 11:45 PM 20,357 active 1,448 known exploited

Catalog summary

20,357

Active CVEs

10,181

Critical + high

1,448

Known exploited

14

Ecosystems

Search and filter active CVEs

Filters & sort
Severity
Clear

Showing 15,251–15,300 of 20,357 active CVEs

Sorted by Published (newest)

Active CVE results

Select a result for the HOL analysis
IdentityRiskAffected softwarePublished
  1. CVE-2025-31098High
    WordPress DeBounce Email Validator plugin <= 5.7 - Local File Inclusion Vulnerability
    CVSS 7.5
    debounce/DeBounce Email Validatorgeneric
    PublishedApr 3, 2025First seen at HOL Aug 13, 2026Updated Aug 13, 2026View HOL analysis
  2. CVE-2025-22005Medium
    ipv6: Fix memleak of nhc_pcpu_rth_output in fib_check_nh_v6_gw().
    CVSS 5.5
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedApr 3, 2025First seen at HOL Jul 14, 2026Updated Jul 14, 2026 Fix availableView HOL analysis
  3. CVE-2025-22004Unknown severity
    net: atm: fix use after free in lec_send()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 3, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  4. CVE-2025-22001Unknown severity
    accel/qaic: Fix integer overflow in qaic_validate_req()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 3, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  5. CVE-2025-21999High
    proc: fix UAF in proc_get_inode()
    CVSS 7.8
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedApr 3, 2025First seen at HOL Jul 14, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  6. CVE-2025-2784High
    Libsoup: heap buffer over-read in `skip_insignificant_space` when sniffing content
    CVSS 7.0
    Affected software not mappedEcosystem not listed
    PublishedApr 3, 2025First seen at HOL Jun 25, 2026Updated Jun 30, 2026View HOL analysis
  7. CVE-2025-30406High
    CISA ADP Vulnrichment
    Not scored Known exploited
    Gladinet/CentreStackgeneric
    PublishedApr 3, 2025First seen at HOL May 24, 2026Updated Oct 21, 2025 Fix availableView HOL analysis
  8. CVE-2025-31161High
    CVE Program Container
    Not scored Known exploited
    CrushFTP/CrushFTPgeneric
    PublishedApr 3, 2025First seen at HOL May 24, 2026Updated Oct 21, 2025 Fix availableView HOL analysis
  9. CVE-2025-21994Unknown severity
    ksmbd: fix incorrect validation for num_aces field of smb_acl
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 2, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  10. CVE-2025-21988Unknown severity
    fs/netfs/read_collect: add to next->prev_donated
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 2, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  11. CVE-2025-2842Medium
    Tempo-operator: tempo operator token exposition lead to read sensitive data
    CVSS 4.3
    Affected software not mappedEcosystem not listed
    PublishedApr 2, 2025First seen at HOL Aug 3, 2026Updated Aug 16, 2026View HOL analysis
  12. CVE-2025-2786Medium
    Tempo-operator: serviceaccount token exposure leading to token and subject access reviews in openshift tempo operator
    CVSS 4.3
    Affected software not mappedEcosystem not listed
    PublishedApr 2, 2025First seen at HOL Aug 3, 2026Updated Aug 16, 2026View HOL analysis
  13. CVE-2025-21985Unknown severity
    drm/amd/display: Fix out-of-bound accesses
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  14. CVE-2025-21984Unknown severity
    mm: fix kernel BUG when userfaultfd_move encounters swapcache
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  15. CVE-2025-21979Unknown severity
    wifi: cfg80211: cancel wiphy_work before freeing wiphy
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  16. CVE-2025-21976Unknown severity
    fbdev: hyperv_fb: Allow graceful removal of framebuffer
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  17. CVE-2025-21972Unknown severity
    net: mctp: unshare packets when reassembling
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  18. CVE-2025-21971Unknown severity
    net_sched: Prevent creation of classes with TC_H_ROOT
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  19. CVE-2025-21970Unknown severity
    net/mlx5: Bridge, fix the crash caused by LAG state check
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  20. CVE-2025-21969Unknown severity
    Bluetooth: L2CAP: Fix slab-use-after-free Read in l2cap_send_cmd
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  21. CVE-2025-21967Unknown severity
    ksmbd: fix use-after-free in ksmbd_free_work_struct
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  22. CVE-2025-21966Unknown severity
    dm-flakey: Fix memory corruption in optional corrupt_bio_byte feature
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  23. CVE-2025-21965Unknown severity
    sched_ext: Validate prev_cpu in scx_bpf_select_cpu_dfl()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  24. CVE-2025-21961Unknown severity
    eth: bnxt: fix truesize for mb-xdp-pass case
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  25. CVE-2025-21960Unknown severity
    eth: bnxt: do not update checksum in bnxt_xdp_build_skb()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  26. CVE-2025-21959Medium
    netfilter: nf_conncount: Fully initialize struct nf_conncount_tuple in insert_tree()
    CVSS 5.5
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedApr 1, 2025First seen at HOL Jul 14, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  27. CVE-2025-21958Unknown severity
    Revert "openvswitch: switch to per-action label counting in conntrack"
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  28. CVE-2025-21955Unknown severity
    ksmbd: prevent connection release during oplock break notification
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  29. CVE-2025-21954Unknown severity
    netmem: prevent TX of unreadable skbs
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  30. CVE-2025-21949Unknown severity
    LoongArch: Set hugetlb mmap base address aligned with pmd size
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  31. CVE-2025-21947Unknown severity
    ksmbd: fix type confusion via race condition when using ipc_msg_send_request
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  32. CVE-2025-21946Unknown severity
    ksmbd: fix out-of-bounds in parse_sec_desc()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  33. CVE-2025-21945Unknown severity
    ksmbd: fix use-after-free in smb2_lock
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  34. CVE-2025-21939Unknown severity
    drm/xe/hmm: Don't dereference struct page pointers without notifier lock
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  35. CVE-2025-21938Medium
    mptcp: fix 'scheduling while atomic' in mptcp_pm_nl_append_new_local_addr
    CVSS 4.7
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedApr 1, 2025First seen at HOL Jul 14, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  36. CVE-2025-21934Unknown severity
    rapidio: fix an API misues when rio_add_net() fails
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  37. CVE-2025-21932Unknown severity
    mm: abort vma_modify() on merge out of memory failure
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  38. CVE-2025-21927Unknown severity
    nvme-tcp: fix potential memory corruption in nvme_tcp_recv_pdu()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  39. CVE-2025-21926Medium
    net: gso: fix ownership in __udp_gso_segment
    CVSS 5.5
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedApr 1, 2025First seen at HOL Jul 14, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  40. CVE-2025-21925Medium
    llc: do not use skb_get() before dev_queue_xmit()
    CVSS 5.5
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedApr 1, 2025First seen at HOL Jul 14, 2026Updated Jul 14, 2026 Fix availableView HOL analysis
  41. CVE-2025-21924Unknown severity
    net: hns3: make sure ptp clock is unregister and freed if hclge_ptp_get_cycle returns an error
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  42. CVE-2025-21923Unknown severity
    HID: hid-steam: Fix use-after-free when detaching device
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  43. CVE-2025-21919High
    sched/fair: Fix potential memory corruption in child_cfs_rq_on_list
    CVSS 7.8
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedApr 1, 2025First seen at HOL Jul 14, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  44. CVE-2025-21915Unknown severity
    cdx: Fix possible UAF error in driver_override_show()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  45. CVE-2025-21914Unknown severity
    slimbus: messaging: Free transaction ID in delayed interrupt scenario
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  46. CVE-2025-21913Medium
    x86/amd_nb: Use rdmsr_safe() in amd_get_mmconfig_range()
    CVSS 5.5
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedApr 1, 2025First seen at HOL Jul 14, 2026Updated Jul 14, 2026 Fix availableView HOL analysis
  47. CVE-2025-21906Unknown severity
    wifi: iwlwifi: mvm: clean up ROC on failure
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  48. CVE-2025-21901Unknown severity
    RDMA/bnxt_re: Add sanity checks on rdev validity
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  49. CVE-2025-21900Unknown severity
    NFSv4: Fix a deadlock when recovering state on a sillyrenamed file
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  50. CVE-2025-21899Unknown severity
    tracing: Fix bad hist from corrupting named_triggers list
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
Page 306 of 408
Previous304305306307308Next
How this catalog works

Active means a non-withdrawn CVE List record with a validated alias, English description, publication date, and source reference. Published is the CVE Program date; First seen at HOL is when this feed first indexed the record; Modified and Source checked describe later feed activity. Severity uses the reported source value when present, otherwise a valid CVSS score supplies the displayed band. Unmapped records do not imply package coverage.

Put Guard beside your supply-chain workflow.

Explore HOL Guard

10,181

Critical + high

1,448

Known exploited

14

Ecosystems

Search and filter active CVEs

Filters & sort
Severity
Clear

Showing 15,251–15,300 of 20,357 active CVEs

Sorted by Published (newest)

Active CVE results

Select a result for the HOL analysis
IdentityRiskAffected softwarePublished
  1. CVE-2025-31098High
    WordPress DeBounce Email Validator plugin <= 5.7 - Local File Inclusion Vulnerability
    CVSS 7.5
    debounce/DeBounce Email Validatorgeneric
    PublishedApr 3, 2025First seen at HOL Aug 13, 2026Updated Aug 13, 2026View HOL analysis
  2. CVE-2025-22005Medium
    ipv6: Fix memleak of nhc_pcpu_rth_output in fib_check_nh_v6_gw().
    CVSS 5.5
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedApr 3, 2025First seen at HOL Jul 14, 2026Updated Jul 14, 2026 Fix availableView HOL analysis
  3. CVE-2025-22004Unknown severity
    net: atm: fix use after free in lec_send()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 3, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  4. CVE-2025-22001Unknown severity
    accel/qaic: Fix integer overflow in qaic_validate_req()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 3, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  5. CVE-2025-21999High
    proc: fix UAF in proc_get_inode()
    CVSS 7.8
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedApr 3, 2025First seen at HOL Jul 14, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  6. CVE-2025-2784High
    Libsoup: heap buffer over-read in `skip_insignificant_space` when sniffing content
    CVSS 7.0
    Affected software not mappedEcosystem not listed
    PublishedApr 3, 2025First seen at HOL Jun 25, 2026Updated Jun 30, 2026View HOL analysis
  7. CVE-2025-30406High
    CISA ADP Vulnrichment
    Not scored Known exploited
    Gladinet/CentreStackgeneric
    PublishedApr 3, 2025First seen at HOL May 24, 2026Updated Oct 21, 2025 Fix availableView HOL analysis
  8. CVE-2025-31161High
    CVE Program Container
    Not scored Known exploited
    CrushFTP/CrushFTPgeneric
    PublishedApr 3, 2025First seen at HOL May 24, 2026Updated Oct 21, 2025 Fix availableView HOL analysis
  9. CVE-2025-21994Unknown severity
    ksmbd: fix incorrect validation for num_aces field of smb_acl
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 2, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  10. CVE-2025-21988Unknown severity
    fs/netfs/read_collect: add to next->prev_donated
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 2, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  11. CVE-2025-2842Medium
    Tempo-operator: tempo operator token exposition lead to read sensitive data
    CVSS 4.3
    Affected software not mappedEcosystem not listed
    PublishedApr 2, 2025First seen at HOL Aug 3, 2026Updated Aug 16, 2026View HOL analysis
  12. CVE-2025-2786Medium
    Tempo-operator: serviceaccount token exposure leading to token and subject access reviews in openshift tempo operator
    CVSS 4.3
    Affected software not mappedEcosystem not listed
    PublishedApr 2, 2025First seen at HOL Aug 3, 2026Updated Aug 16, 2026View HOL analysis
  13. CVE-2025-21985Unknown severity
    drm/amd/display: Fix out-of-bound accesses
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  14. CVE-2025-21984Unknown severity
    mm: fix kernel BUG when userfaultfd_move encounters swapcache
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  15. CVE-2025-21979Unknown severity
    wifi: cfg80211: cancel wiphy_work before freeing wiphy
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  16. CVE-2025-21976Unknown severity
    fbdev: hyperv_fb: Allow graceful removal of framebuffer
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  17. CVE-2025-21972Unknown severity
    net: mctp: unshare packets when reassembling
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  18. CVE-2025-21971Unknown severity
    net_sched: Prevent creation of classes with TC_H_ROOT
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  19. CVE-2025-21970Unknown severity
    net/mlx5: Bridge, fix the crash caused by LAG state check
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  20. CVE-2025-21969Unknown severity
    Bluetooth: L2CAP: Fix slab-use-after-free Read in l2cap_send_cmd
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  21. CVE-2025-21967Unknown severity
    ksmbd: fix use-after-free in ksmbd_free_work_struct
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  22. CVE-2025-21966Unknown severity
    dm-flakey: Fix memory corruption in optional corrupt_bio_byte feature
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  23. CVE-2025-21965Unknown severity
    sched_ext: Validate prev_cpu in scx_bpf_select_cpu_dfl()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  24. CVE-2025-21961Unknown severity
    eth: bnxt: fix truesize for mb-xdp-pass case
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  25. CVE-2025-21960Unknown severity
    eth: bnxt: do not update checksum in bnxt_xdp_build_skb()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  26. CVE-2025-21959Medium
    netfilter: nf_conncount: Fully initialize struct nf_conncount_tuple in insert_tree()
    CVSS 5.5
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedApr 1, 2025First seen at HOL Jul 14, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  27. CVE-2025-21958Unknown severity
    Revert "openvswitch: switch to per-action label counting in conntrack"
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  28. CVE-2025-21955Unknown severity
    ksmbd: prevent connection release during oplock break notification
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  29. CVE-2025-21954Unknown severity
    netmem: prevent TX of unreadable skbs
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  30. CVE-2025-21949Unknown severity
    LoongArch: Set hugetlb mmap base address aligned with pmd size
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  31. CVE-2025-21947Unknown severity
    ksmbd: fix type confusion via race condition when using ipc_msg_send_request
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  32. CVE-2025-21946Unknown severity
    ksmbd: fix out-of-bounds in parse_sec_desc()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  33. CVE-2025-21945Unknown severity
    ksmbd: fix use-after-free in smb2_lock
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  34. CVE-2025-21939Unknown severity
    drm/xe/hmm: Don't dereference struct page pointers without notifier lock
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  35. CVE-2025-21938Medium
    mptcp: fix 'scheduling while atomic' in mptcp_pm_nl_append_new_local_addr
    CVSS 4.7
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedApr 1, 2025First seen at HOL Jul 14, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  36. CVE-2025-21934Unknown severity
    rapidio: fix an API misues when rio_add_net() fails
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  37. CVE-2025-21932Unknown severity
    mm: abort vma_modify() on merge out of memory failure
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  38. CVE-2025-21927Unknown severity
    nvme-tcp: fix potential memory corruption in nvme_tcp_recv_pdu()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  39. CVE-2025-21926Medium
    net: gso: fix ownership in __udp_gso_segment
    CVSS 5.5
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedApr 1, 2025First seen at HOL Jul 14, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  40. CVE-2025-21925Medium
    llc: do not use skb_get() before dev_queue_xmit()
    CVSS 5.5
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedApr 1, 2025First seen at HOL Jul 14, 2026Updated Jul 14, 2026 Fix availableView HOL analysis
  41. CVE-2025-21924Unknown severity
    net: hns3: make sure ptp clock is unregister and freed if hclge_ptp_get_cycle returns an error
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  42. CVE-2025-21923Unknown severity
    HID: hid-steam: Fix use-after-free when detaching device
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  43. CVE-2025-21919High
    sched/fair: Fix potential memory corruption in child_cfs_rq_on_list
    CVSS 7.8
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedApr 1, 2025First seen at HOL Jul 14, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  44. CVE-2025-21915Unknown severity
    cdx: Fix possible UAF error in driver_override_show()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  45. CVE-2025-21914Unknown severity
    slimbus: messaging: Free transaction ID in delayed interrupt scenario
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  46. CVE-2025-21913Medium
    x86/amd_nb: Use rdmsr_safe() in amd_get_mmconfig_range()
    CVSS 5.5
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedApr 1, 2025First seen at HOL Jul 14, 2026Updated Jul 14, 2026 Fix availableView HOL analysis
  47. CVE-2025-21906Unknown severity
    wifi: iwlwifi: mvm: clean up ROC on failure
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  48. CVE-2025-21901Unknown severity
    RDMA/bnxt_re: Add sanity checks on rdev validity
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  49. CVE-2025-21900Unknown severity
    NFSv4: Fix a deadlock when recovering state on a sillyrenamed file
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  50. CVE-2025-21899Unknown severity
    tracing: Fix bad hist from corrupting named_triggers list
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedApr 1, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
Page 306 of 408
Previous304305306307308Next
How this catalog works

Active means a non-withdrawn CVE List record with a validated alias, English description, publication date, and source reference. Published is the CVE Program date; First seen at HOL is when this feed first indexed the record; Modified and Source checked describe later feed activity. Severity uses the reported source value when present, otherwise a valid CVSS score supplies the displayed band. Unmapped records do not imply package coverage.

Put Guard beside your supply-chain workflow.

Explore HOL Guard