1. Guard
  2. Security
  3. CVEs
HOL Guard

Public security guidance for teams protecting AI harnesses, MCP servers, skills, prompts, and local tool execution.

Install Guard

AI Security

  • Prompt injection
  • MCP security
  • Supply chain

Resources

  • Trust packet
  • Harness setup
  • Redacted warnings
  • Safe labs

Product

  • Install Guard
  • Pricing
  • Open dashboard
  1. Guard
  2. Security
  3. CVEs
HOL Guard

Public security guidance for teams protecting AI harnesses, MCP servers, skills, prompts, and local tool execution.

Install Guard

AI Security

  • Prompt injection
  • MCP security
  • Supply chain

Resources

  • Trust packet
  • Harness setup
  • Redacted warnings
  • Safe labs

Product

  • Install Guard
  • Pricing
  • Open dashboard
HOL LogoHOL
Overview
InstallPricingEnterpriseAffiliatesDocsOpen App
Docs
  • API Reference
  • Run in Postman
  • OpenAPI Spec
  • Standards
  • Submit ERC-8004 Contract
  • Feature Your Agent
Best Plugins
  • Browse Plugins
  • Best Claude Plugins
  • Best Codex Plugins
  • Best Grok Plugins
  • Best Kimi Plugins
  • Best DeepSeek Plugins
  • Best Antigravity Plugins
  • Best MCP Plugins
  • Best Cursor Plugins
  • Best OpenCode Plugins
Best Agents
  • Best ERC-8004 Agents
  • Best Virtuals Agents
  • Best MCP Servers
  • Best A2A Agents
  • Best x402 Payable
  • All Categories
Community
  • Telegram
  • X
More
  • Blog
  • GitHub
  • Privacy Policy
  • Terms of Service
Settings

Copyright © 2026 HOL DAO LLC. All rights reserved.

HOL LogoHOL
Overview
InstallPricingEnterpriseAffiliatesDocsOpen App
Docs
  • API Reference
  • Run in Postman
  • OpenAPI Spec
  • Standards
  • Submit ERC-8004 Contract
  • Feature Your Agent
Best Plugins
  • Browse Plugins
  • Best Claude Plugins
  • Best Codex Plugins
  • Best Grok Plugins
  • Best Kimi Plugins
  • Best DeepSeek Plugins
  • Best Antigravity Plugins
  • Best MCP Plugins
  • Best Cursor Plugins
  • Best OpenCode Plugins
Best Agents
  • Best ERC-8004 Agents
  • Best Virtuals Agents
  • Best MCP Servers
  • Best A2A Agents
  • Best x402 Payable
  • All Categories
Community
  • Telegram
  • X
More
  • Blog
  • GitHub
  • Privacy Policy
  • Terms of Service
Settings

Copyright © 2026 HOL DAO LLC. All rights reserved.

Active CVEs

Search active, non-withdrawn CVEs in the HOL Guard feed, then open the matching HOL analysis.

Feed liveLast checked Aug 17, 2026, 1:05 AM 20,362 active 1,448 known exploited

Catalog summary

20,362

Active CVEs

Active CVEs

Search active, non-withdrawn CVEs in the HOL Guard feed, then open the matching HOL analysis.

Feed liveLast checked Aug 17, 2026, 1:05 AM 20,362 active 1,448 known exploited

Catalog summary

20,362

Active CVEs

10,181

Critical + high

1,448

Known exploited

14

Ecosystems

Search and filter active CVEs

Filters & sort
Severity
Clear

Showing 15,401–15,450 of 20,362 active CVEs

Sorted by Published (newest)

Active CVE results

Select a result for the HOL analysis
IdentityRiskAffected softwarePublished
  1. CVE-2024-8176High
    Libexpat: expat: improper restriction of xml entity expansion depth in libexpat
    CVSS 7.5
    Affected software not mappedEcosystem not listed
    PublishedMar 14, 2025First seen at HOL Jun 25, 2026Updated Jun 30, 2026View HOL analysis
  2. CVE-2024-57062Medium
    CISA ADP Vulnrichment
    CVSS 6.7
    n/a/n/ageneric
    PublishedMar 13, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  3. CVE-2025-2240High
    Smallrye-fault-tolerance: smallrye fault tolerance
    CVSS 7.5
    Affected software not mappedEcosystem not listed
    PublishedMar 12, 2025First seen at HOL Aug 4, 2026Updated Aug 13, 2026View HOL analysis
  4. CVE-2025-21590High
    Junos OS: An local attacker with shell access can execute arbitrary code
    Not scored Known exploited
    Juniper Networks/Junos OSgeneric
    PublishedMar 12, 2025First seen at HOL May 24, 2026Updated Feb 26, 2026 Fix availableView HOL analysis
  5. CVE-2025-21865Unknown severity
    gtp: Suppress list corruption splat in gtp_net_exit_batch_rtnl().
    Not scoredSource severity not reported
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +3generic
    PublishedMar 12, 2025First seen at HOL Aug 6, 2026Updated Jul 14, 2026 Fix availableView HOL analysis
  6. CVE-2025-21864Medium
    tcp: drop secpath at the same time as we currently drop dst
    CVSS 5.5
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedMar 12, 2025First seen at HOL Jul 14, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  7. CVE-2025-21863High
    io_uring: prevent opcode speculation
    CVSS 7.8
    Linux/Linuxgeneric
    PublishedMar 12, 2025First seen at HOL Jun 19, 2026Updated Jun 19, 2026 Fix availableView HOL analysis
  8. CVE-2025-21862Unknown severity
    drop_monitor: fix incorrect initialization order
    Not scoredSource severity not reported
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +3generic
    PublishedMar 12, 2025First seen at HOL Aug 6, 2026Updated Jul 14, 2026 Fix availableView HOL analysis
  9. CVE-2025-21861Medium
    mm/migrate_device: don't add folio to be freed to LRU in migrate_device_finalize()
    CVSS 5.5
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedMar 12, 2025First seen at HOL Jul 14, 2026Updated Jul 14, 2026 Fix availableView HOL analysis
  10. CVE-2025-21858Unknown severity
    geneve: Fix use-after-free in geneve_find_dev().
    Not scoredSource severity not reported
    Linux/Linux, Siemens/SIMATIC S7-1500 TM MFP - GNU/Linux subsystemgeneric
    PublishedMar 12, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  11. CVE-2025-21855Unknown severity
    ibmvnic: Don't reference skb after sending to VIOS
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedMar 12, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  12. CVE-2025-21853Medium
    bpf: avoid holding freeze_mutex during mmap operation
    CVSS 5.5
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedMar 12, 2025First seen at HOL Jul 14, 2026Updated Jul 14, 2026 Fix availableView HOL analysis
  13. CVE-2025-21851Unknown severity
    bpf: Fix softlockup in arena_map_free on 64k page kernel
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedMar 12, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  14. CVE-2025-21850Unknown severity
    nvmet: Fix crash when a namespace is disabled
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedMar 12, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  15. CVE-2025-21848Unknown severity
    nfp: bpf: Add check for nfp_app_ctrl_msg_alloc()
    Not scoredSource severity not reported
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedMar 12, 2025First seen at HOL Aug 6, 2026Updated Jul 14, 2026 Fix availableView HOL analysis
  16. CVE-2025-21846Medium
    acct: perform last write from workqueue
    CVSS 5.5
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +3generic
    PublishedMar 12, 2025First seen at HOL Jul 14, 2026Updated Jul 14, 2026 Fix availableView HOL analysis
  17. CVE-2025-21844Unknown severity
    smb: client: Add check for next_buffer in receive_encrypted_standard()
    Not scoredSource severity not reported
    Linux/Linux, Siemens/SIMATIC S7-1500 TM MFP - GNU/Linux subsystemgeneric
    PublishedMar 12, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  18. CVE-2024-58089Unknown severity
    btrfs: fix double accounting race when btrfs_run_delalloc_range() failed
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedMar 12, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  19. CVE-2024-58087Unknown severity
    ksmbd: fix racy issue from session lookup and expire
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedMar 12, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  20. CVE-2025-27915High
    CISA ADP Vulnrichment
    Not scored Known exploited
    n/a/n/ageneric
    PublishedMar 12, 2025First seen at HOL May 24, 2026Updated Feb 26, 2026View HOL analysis
  21. CVE-2025-24201High
    CISA ADP Vulnrichment
    Not scored Known exploited
    Apple/Safari, Apple/iOS and iPadOS +4generic
    PublishedMar 11, 2025First seen at HOL May 24, 2026Updated Apr 2, 2026 Fix availableView HOL analysis
  22. CVE-2024-54085High
    Redfish Authentication Bypass
    Not scored Known exploited
    AMI/MegaRAC-SPxgeneric
    PublishedMar 11, 2025First seen at HOL May 24, 2026Updated Feb 26, 2026 Fix availableView HOL analysis
  23. CVE-2025-27363High
    CISA ADP Vulnrichment
    Not scored Known exploited
    FreeType/FreeTypegeneric
    PublishedMar 11, 2025First seen at HOL May 24, 2026Updated Apr 19, 2026View HOL analysis
  24. CVE-2025-25925Medium
    CISA ADP Vulnrichment
    CVSS 4.8
    n/a/n/ageneric
    PublishedMar 11, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  25. CVE-2025-24813High
    Apache Tomcat: Potential RCE and/or information disclosure and/or information corruption with partial PUT
    CVSS 9.8 Known exploited
    Apache Software Foundation/Apache Tomcat, org.apache.tomcat.embed:tomcat-embed-core +1generic · maven
    PublishedMar 10, 2025First seen at HOL May 24, 2026Updated Feb 4, 2026 Fix availableView HOL analysis
  26. CVE-2025-21842Unknown severity
    amdkfd: properly free gang_ctx_bo when failed to init user queue
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedMar 7, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  27. CVE-2025-21839Unknown severity
    KVM: x86: Load DR6 with guest value only before entering .vcpu_run() loop
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedMar 7, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  28. CVE-2025-21836Unknown severity
    io_uring/kbuf: reallocate buf lists on upgrade
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedMar 7, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  29. CVE-2024-58086Medium
    drm/v3d: Stop active perfmon if it is being destroyed
    CVSS 5.5
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedMar 6, 2025First seen at HOL Jul 14, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  30. CVE-2025-21832Unknown severity
    block: don't revert iter for -EIOCBQUEUED
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedMar 6, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  31. CVE-2024-58083Unknown severity
    KVM: Explicitly verify target vCPU is online in kvm_get_vcpu()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedMar 6, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  32. CVE-2024-58079Unknown severity
    media: uvcvideo: Fix crash during unbind if gpio unit is in use
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedMar 6, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  33. CVE-2025-21830Unknown severity
    landlock: Handle weird files
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedMar 6, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  34. CVE-2025-21829Unknown severity
    RDMA/rxe: Fix the warning "__rxe_cleanup+0x12c/0x170 [rdma_rxe]"
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedMar 6, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  35. CVE-2025-21828Unknown severity
    wifi: mac80211: don't flush non-uploaded STAs
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedMar 6, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  36. CVE-2025-21827Unknown severity
    Bluetooth: btusb: mediatek: Add locks for usb_driver_claim_interface()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedMar 6, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  37. CVE-2025-21826Unknown severity
    netfilter: nf_tables: reject mismatching sum of field_len with set key length
    Not scoredSource severity not reported
    Linux/Linux, Siemens/SIMATIC S7-1500 TM MFP - BIOS +1generic
    PublishedMar 6, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  38. CVE-2025-21825Unknown severity
    bpf: Cancel the running bpf_timer through kworker for PREEMPT_RT
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedMar 6, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  39. CVE-2024-58075Unknown severity
    crypto: tegra - do not transfer req when tegra init fails
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedMar 6, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  40. CVE-2024-58070Unknown severity
    bpf: bpf_local_storage: Always use bpf_mem_alloc in PREEMPT_RT
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedMar 6, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  41. CVE-2024-58069Unknown severity
    rtc: pcf85063: fix potential OOB write in PCF85063 NVMEM read
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedMar 6, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  42. CVE-2024-58061Medium
    wifi: mac80211: prohibit deactivating all links
    CVSS 5.5
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedMar 6, 2025First seen at HOL Jul 14, 2026Updated Jul 14, 2026 Fix availableView HOL analysis
  43. CVE-2024-58060Unknown severity
    bpf: Reject struct_ops registration that uses module ptr and the module btf_id is missing
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedMar 6, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  44. CVE-2024-58058Medium
    ubifs: skip dumping tnc tree when zroot is null
    CVSS 5.5
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +3generic
    PublishedMar 6, 2025First seen at HOL Jul 14, 2026Updated Jul 14, 2026 Fix availableView HOL analysis
  45. CVE-2024-58056Medium
    remoteproc: core: Fix ida_free call while not allocated
    CVSS 5.5
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedMar 6, 2025First seen at HOL Jul 14, 2026Updated Jul 14, 2026 Fix availableView HOL analysis
  46. CVE-2024-58053Unknown severity
    rxrpc: Fix handling of received connection abort
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedMar 6, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  47. CVE-2025-1316High
    Edimax IC-7100 IP Camera OS Command Injection
    Not scored Known exploited
    Edimax/IC-7100 IP Camerageneric
    PublishedMar 4, 2025First seen at HOL May 24, 2026Updated Oct 21, 2025View HOL analysis
  48. CVE-2025-23368High
    Org.wildfly.core:wildfly-elytron-integration: wildfly elytron brute force attack via cli
    CVSS 8.1
    org.wildfly.core:wildfly-elytron-integrationmaven
    PublishedMar 4, 2025First seen at HOL Aug 4, 2026Updated Aug 4, 2026 Fix availableView HOL analysis
  49. CVE-2025-22226High
    CISA ADP Vulnrichment
    Not scored Known exploited
    n/a/ESXi, n/a/VMware Cloud Foundation +4generic
    PublishedMar 4, 2025First seen at HOL May 24, 2026Updated Feb 26, 2026 Fix availableView HOL analysis
  50. CVE-2025-22225High
    CISA ADP Vulnrichment
    CVSS 8.2 Known exploited
    n/a/VMware Cloud Foundation, n/a/VMware ESXi +2generic
    PublishedMar 4, 2025First seen at HOL May 24, 2026Updated Aug 4, 2026 Fix availableView HOL analysis
Page 309 of 408
Previous307308309310311Next
How this catalog works

Active means a non-withdrawn CVE List record with a validated alias, English description, publication date, and source reference. Published is the CVE Program date; First seen at HOL is when this feed first indexed the record; Modified and Source checked describe later feed activity. Severity uses the reported source value when present, otherwise a valid CVSS score supplies the displayed band. Unmapped records do not imply package coverage.

Put Guard beside your supply-chain workflow.

Explore HOL Guard

10,181

Critical + high

1,448

Known exploited

14

Ecosystems

Search and filter active CVEs

Filters & sort
Severity
Clear

Showing 15,401–15,450 of 20,362 active CVEs

Sorted by Published (newest)

Active CVE results

Select a result for the HOL analysis
IdentityRiskAffected softwarePublished
  1. CVE-2024-8176High
    Libexpat: expat: improper restriction of xml entity expansion depth in libexpat
    CVSS 7.5
    Affected software not mappedEcosystem not listed
    PublishedMar 14, 2025First seen at HOL Jun 25, 2026Updated Jun 30, 2026View HOL analysis
  2. CVE-2024-57062Medium
    CISA ADP Vulnrichment
    CVSS 6.7
    n/a/n/ageneric
    PublishedMar 13, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  3. CVE-2025-2240High
    Smallrye-fault-tolerance: smallrye fault tolerance
    CVSS 7.5
    Affected software not mappedEcosystem not listed
    PublishedMar 12, 2025First seen at HOL Aug 4, 2026Updated Aug 13, 2026View HOL analysis
  4. CVE-2025-21590High
    Junos OS: An local attacker with shell access can execute arbitrary code
    Not scored Known exploited
    Juniper Networks/Junos OSgeneric
    PublishedMar 12, 2025First seen at HOL May 24, 2026Updated Feb 26, 2026 Fix availableView HOL analysis
  5. CVE-2025-21865Unknown severity
    gtp: Suppress list corruption splat in gtp_net_exit_batch_rtnl().
    Not scoredSource severity not reported
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +3generic
    PublishedMar 12, 2025First seen at HOL Aug 6, 2026Updated Jul 14, 2026 Fix availableView HOL analysis
  6. CVE-2025-21864Medium
    tcp: drop secpath at the same time as we currently drop dst
    CVSS 5.5
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedMar 12, 2025First seen at HOL Jul 14, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  7. CVE-2025-21863High
    io_uring: prevent opcode speculation
    CVSS 7.8
    Linux/Linuxgeneric
    PublishedMar 12, 2025First seen at HOL Jun 19, 2026Updated Jun 19, 2026 Fix availableView HOL analysis
  8. CVE-2025-21862Unknown severity
    drop_monitor: fix incorrect initialization order
    Not scoredSource severity not reported
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +3generic
    PublishedMar 12, 2025First seen at HOL Aug 6, 2026Updated Jul 14, 2026 Fix availableView HOL analysis
  9. CVE-2025-21861Medium
    mm/migrate_device: don't add folio to be freed to LRU in migrate_device_finalize()
    CVSS 5.5
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedMar 12, 2025First seen at HOL Jul 14, 2026Updated Jul 14, 2026 Fix availableView HOL analysis
  10. CVE-2025-21858Unknown severity
    geneve: Fix use-after-free in geneve_find_dev().
    Not scoredSource severity not reported
    Linux/Linux, Siemens/SIMATIC S7-1500 TM MFP - GNU/Linux subsystemgeneric
    PublishedMar 12, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  11. CVE-2025-21855Unknown severity
    ibmvnic: Don't reference skb after sending to VIOS
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedMar 12, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  12. CVE-2025-21853Medium
    bpf: avoid holding freeze_mutex during mmap operation
    CVSS 5.5
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedMar 12, 2025First seen at HOL Jul 14, 2026Updated Jul 14, 2026 Fix availableView HOL analysis
  13. CVE-2025-21851Unknown severity
    bpf: Fix softlockup in arena_map_free on 64k page kernel
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedMar 12, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  14. CVE-2025-21850Unknown severity
    nvmet: Fix crash when a namespace is disabled
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedMar 12, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  15. CVE-2025-21848Unknown severity
    nfp: bpf: Add check for nfp_app_ctrl_msg_alloc()
    Not scoredSource severity not reported
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedMar 12, 2025First seen at HOL Aug 6, 2026Updated Jul 14, 2026 Fix availableView HOL analysis
  16. CVE-2025-21846Medium
    acct: perform last write from workqueue
    CVSS 5.5
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +3generic
    PublishedMar 12, 2025First seen at HOL Jul 14, 2026Updated Jul 14, 2026 Fix availableView HOL analysis
  17. CVE-2025-21844Unknown severity
    smb: client: Add check for next_buffer in receive_encrypted_standard()
    Not scoredSource severity not reported
    Linux/Linux, Siemens/SIMATIC S7-1500 TM MFP - GNU/Linux subsystemgeneric
    PublishedMar 12, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  18. CVE-2024-58089Unknown severity
    btrfs: fix double accounting race when btrfs_run_delalloc_range() failed
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedMar 12, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  19. CVE-2024-58087Unknown severity
    ksmbd: fix racy issue from session lookup and expire
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedMar 12, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  20. CVE-2025-27915High
    CISA ADP Vulnrichment
    Not scored Known exploited
    n/a/n/ageneric
    PublishedMar 12, 2025First seen at HOL May 24, 2026Updated Feb 26, 2026View HOL analysis
  21. CVE-2025-24201High
    CISA ADP Vulnrichment
    Not scored Known exploited
    Apple/Safari, Apple/iOS and iPadOS +4generic
    PublishedMar 11, 2025First seen at HOL May 24, 2026Updated Apr 2, 2026 Fix availableView HOL analysis
  22. CVE-2024-54085High
    Redfish Authentication Bypass
    Not scored Known exploited
    AMI/MegaRAC-SPxgeneric
    PublishedMar 11, 2025First seen at HOL May 24, 2026Updated Feb 26, 2026 Fix availableView HOL analysis
  23. CVE-2025-27363High
    CISA ADP Vulnrichment
    Not scored Known exploited
    FreeType/FreeTypegeneric
    PublishedMar 11, 2025First seen at HOL May 24, 2026Updated Apr 19, 2026View HOL analysis
  24. CVE-2025-25925Medium
    CISA ADP Vulnrichment
    CVSS 4.8
    n/a/n/ageneric
    PublishedMar 11, 2025First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  25. CVE-2025-24813High
    Apache Tomcat: Potential RCE and/or information disclosure and/or information corruption with partial PUT
    CVSS 9.8 Known exploited
    Apache Software Foundation/Apache Tomcat, org.apache.tomcat.embed:tomcat-embed-core +1generic · maven
    PublishedMar 10, 2025First seen at HOL May 24, 2026Updated Feb 4, 2026 Fix availableView HOL analysis
  26. CVE-2025-21842Unknown severity
    amdkfd: properly free gang_ctx_bo when failed to init user queue
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedMar 7, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  27. CVE-2025-21839Unknown severity
    KVM: x86: Load DR6 with guest value only before entering .vcpu_run() loop
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedMar 7, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  28. CVE-2025-21836Unknown severity
    io_uring/kbuf: reallocate buf lists on upgrade
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedMar 7, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  29. CVE-2024-58086Medium
    drm/v3d: Stop active perfmon if it is being destroyed
    CVSS 5.5
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedMar 6, 2025First seen at HOL Jul 14, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  30. CVE-2025-21832Unknown severity
    block: don't revert iter for -EIOCBQUEUED
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedMar 6, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  31. CVE-2024-58083Unknown severity
    KVM: Explicitly verify target vCPU is online in kvm_get_vcpu()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedMar 6, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  32. CVE-2024-58079Unknown severity
    media: uvcvideo: Fix crash during unbind if gpio unit is in use
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedMar 6, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  33. CVE-2025-21830Unknown severity
    landlock: Handle weird files
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedMar 6, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  34. CVE-2025-21829Unknown severity
    RDMA/rxe: Fix the warning "__rxe_cleanup+0x12c/0x170 [rdma_rxe]"
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedMar 6, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  35. CVE-2025-21828Unknown severity
    wifi: mac80211: don't flush non-uploaded STAs
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedMar 6, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  36. CVE-2025-21827Unknown severity
    Bluetooth: btusb: mediatek: Add locks for usb_driver_claim_interface()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedMar 6, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  37. CVE-2025-21826Unknown severity
    netfilter: nf_tables: reject mismatching sum of field_len with set key length
    Not scoredSource severity not reported
    Linux/Linux, Siemens/SIMATIC S7-1500 TM MFP - BIOS +1generic
    PublishedMar 6, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  38. CVE-2025-21825Unknown severity
    bpf: Cancel the running bpf_timer through kworker for PREEMPT_RT
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedMar 6, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  39. CVE-2024-58075Unknown severity
    crypto: tegra - do not transfer req when tegra init fails
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedMar 6, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  40. CVE-2024-58070Unknown severity
    bpf: bpf_local_storage: Always use bpf_mem_alloc in PREEMPT_RT
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedMar 6, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  41. CVE-2024-58069Unknown severity
    rtc: pcf85063: fix potential OOB write in PCF85063 NVMEM read
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedMar 6, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  42. CVE-2024-58061Medium
    wifi: mac80211: prohibit deactivating all links
    CVSS 5.5
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedMar 6, 2025First seen at HOL Jul 14, 2026Updated Jul 14, 2026 Fix availableView HOL analysis
  43. CVE-2024-58060Unknown severity
    bpf: Reject struct_ops registration that uses module ptr and the module btf_id is missing
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedMar 6, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  44. CVE-2024-58058Medium
    ubifs: skip dumping tnc tree when zroot is null
    CVSS 5.5
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +3generic
    PublishedMar 6, 2025First seen at HOL Jul 14, 2026Updated Jul 14, 2026 Fix availableView HOL analysis
  45. CVE-2024-58056Medium
    remoteproc: core: Fix ida_free call while not allocated
    CVSS 5.5
    Linux/Linux, Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP +2generic
    PublishedMar 6, 2025First seen at HOL Jul 14, 2026Updated Jul 14, 2026 Fix availableView HOL analysis
  46. CVE-2024-58053Unknown severity
    rxrpc: Fix handling of received connection abort
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedMar 6, 2025First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  47. CVE-2025-1316High
    Edimax IC-7100 IP Camera OS Command Injection
    Not scored Known exploited
    Edimax/IC-7100 IP Camerageneric
    PublishedMar 4, 2025First seen at HOL May 24, 2026Updated Oct 21, 2025View HOL analysis
  48. CVE-2025-23368High
    Org.wildfly.core:wildfly-elytron-integration: wildfly elytron brute force attack via cli
    CVSS 8.1
    org.wildfly.core:wildfly-elytron-integrationmaven
    PublishedMar 4, 2025First seen at HOL Aug 4, 2026Updated Aug 4, 2026 Fix availableView HOL analysis
  49. CVE-2025-22226High
    CISA ADP Vulnrichment
    Not scored Known exploited
    n/a/ESXi, n/a/VMware Cloud Foundation +4generic
    PublishedMar 4, 2025First seen at HOL May 24, 2026Updated Feb 26, 2026 Fix availableView HOL analysis
  50. CVE-2025-22225High
    CISA ADP Vulnrichment
    CVSS 8.2 Known exploited
    n/a/VMware Cloud Foundation, n/a/VMware ESXi +2generic
    PublishedMar 4, 2025First seen at HOL May 24, 2026Updated Aug 4, 2026 Fix availableView HOL analysis
Page 309 of 408
Previous307308309310311Next
How this catalog works

Active means a non-withdrawn CVE List record with a validated alias, English description, publication date, and source reference. Published is the CVE Program date; First seen at HOL is when this feed first indexed the record; Modified and Source checked describe later feed activity. Severity uses the reported source value when present, otherwise a valid CVSS score supplies the displayed band. Unmapped records do not imply package coverage.

Put Guard beside your supply-chain workflow.

Explore HOL Guard