1. Guard
  2. Security
  3. CVEs
HOL Guard

Public security guidance for teams protecting AI harnesses, MCP servers, skills, prompts, and local tool execution.

Install Guard

AI Security

  • Prompt injection
  • MCP security
  • Supply chain

Resources

  • Trust packet
  • Harness setup
  • Redacted warnings
  • Safe labs

Product

  • Install Guard
  • Pricing
  • Open dashboard
  1. Guard
  2. Security
  3. CVEs
HOL Guard

Public security guidance for teams protecting AI harnesses, MCP servers, skills, prompts, and local tool execution.

Install Guard

AI Security

  • Prompt injection
  • MCP security
  • Supply chain

Resources

  • Trust packet
  • Harness setup
  • Redacted warnings
  • Safe labs

Product

  • Install Guard
  • Pricing
  • Open dashboard
HOL LogoHOL
Overview
InstallPricingEnterpriseAffiliatesDocsOpen App
Docs
  • API Reference
  • Run in Postman
  • OpenAPI Spec
  • Standards
  • Submit ERC-8004 Contract
  • Feature Your Agent
Best Plugins
  • Browse Plugins
  • Best Claude Plugins
  • Best Codex Plugins
  • Best Grok Plugins
  • Best Kimi Plugins
  • Best DeepSeek Plugins
  • Best Antigravity Plugins
  • Best MCP Plugins
  • Best Cursor Plugins
  • Best OpenCode Plugins
Best Agents
  • Best ERC-8004 Agents
  • Best Virtuals Agents
  • Best MCP Servers
  • Best A2A Agents
  • Best x402 Payable
  • All Categories
Community
  • Telegram
  • X
More
  • Blog
  • GitHub
  • Privacy Policy
  • Terms of Service
Settings

Copyright © 2026 HOL DAO LLC. All rights reserved.

HOL LogoHOL
Overview
InstallPricingEnterpriseAffiliatesDocsOpen App
Docs
  • API Reference
  • Run in Postman
  • OpenAPI Spec
  • Standards
  • Submit ERC-8004 Contract
  • Feature Your Agent
Best Plugins
  • Browse Plugins
  • Best Claude Plugins
  • Best Codex Plugins
  • Best Grok Plugins
  • Best Kimi Plugins
  • Best DeepSeek Plugins
  • Best Antigravity Plugins
  • Best MCP Plugins
  • Best Cursor Plugins
  • Best OpenCode Plugins
Best Agents
  • Best ERC-8004 Agents
  • Best Virtuals Agents
  • Best MCP Servers
  • Best A2A Agents
  • Best x402 Payable
  • All Categories
Community
  • Telegram
  • X
More
  • Blog
  • GitHub
  • Privacy Policy
  • Terms of Service
Settings

Copyright © 2026 HOL DAO LLC. All rights reserved.

Active CVEs

Search active, non-withdrawn CVEs in the HOL Guard feed, then open the matching HOL analysis.

Feed liveLast checked Aug 17, 2026, 5:25 PM 20,729 active 1,449 known exploited

Catalog summary

20,729

Active CVEs

Active CVEs

Search active, non-withdrawn CVEs in the HOL Guard feed, then open the matching HOL analysis.

Feed liveLast checked Aug 17, 2026, 5:25 PM 20,729 active 1,449 known exploited

Catalog summary

20,729

Active CVEs

10,227

Critical + high

1,449

Known exploited

14

Ecosystems

Search and filter active CVEs

Filters & sort
Severity
Clear

Showing 17,001–17,050 of 20,729 active CVEs

Sorted by Published (newest)

Active CVE results

Select a result for the HOL analysis
IdentityRiskAffected softwarePublished
  1. CVE-2024-44994Unknown severity
    iommu: Restore lost return in iommu_report_device_fault()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 4, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  2. CVE-2024-44992Unknown severity
    smb/client: avoid possible NULL dereference in cifs_free_subrequest()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 4, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  3. CVE-2024-44988Unknown severity
    net: dsa: mv88e6xxx: Fix out-of-bound access
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 4, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  4. CVE-2024-44987Unknown severity
    ipv6: prevent UAF in ip6_send_skb()
    Not scoredSource severity not reported
    Linux/Linux, Siemens/RUGGEDCOM RST2428P +3generic
    PublishedSep 4, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  5. CVE-2024-44986Unknown severity
    ipv6: fix possible UAF in ip6_finish_output2()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 4, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  6. CVE-2024-44985Unknown severity
    ipv6: prevent possible UAF in ip6_xmit()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 4, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  7. CVE-2024-44984Unknown severity
    bnxt_en: Fix double DMA unmapping for XDP_REDIRECT
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 4, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  8. CVE-2024-44978Unknown severity
    drm/xe: Free job before xe_exec_queue_put
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 4, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  9. CVE-2024-44974Unknown severity
    mptcp: pm: avoid possible UaF when selecting endp
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 4, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  10. CVE-2024-44973Unknown severity
    mm, slub: do not call do_slab_free for kfence object
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 4, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  11. CVE-2024-44970Unknown severity
    net/mlx5e: SHAMPO, Fix invalid WQ linked list unlink
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 4, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  12. CVE-2024-44967Unknown severity
    drm/mgag200: Bind I2C lifetime to DRM device
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 4, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  13. CVE-2024-44966Unknown severity
    binfmt_flat: Fix corruption when not offsetting data start
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 4, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  14. CVE-2024-44959Unknown severity
    tracefs: Use generic inode RCU for synchronizing freeing
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 4, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  15. CVE-2024-44954Unknown severity
    ALSA: line6: Fix racy access to midibuf
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 4, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  16. CVE-2024-44951Unknown severity
    serial: sc16is7xx: fix TX fifo corruption
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 4, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  17. CVE-2024-44950Unknown severity
    serial: sc16is7xx: fix invalid FIFO access with special register set
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 4, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  18. CVE-2024-44949Unknown severity
    parisc: fix a possible DMA corruption
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 4, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  19. CVE-2024-20439High
    CISA ADP Vulnrichment
    Not scored Known exploited
    Cisco/Cisco Smart License Utility, cisco/cisco_smart_license_utilitygeneric
    PublishedSep 4, 2024First seen at HOL May 24, 2026Updated Oct 21, 2025View HOL analysis
  20. CVE-2024-8418High
    Containers/aardvark-dns: tcp query handling flaw in aardvark-dns leading to denial of service
    CVSS 7.5
    Affected software not mappedEcosystem not listed
    PublishedSep 4, 2024First seen at HOL Jun 25, 2026Updated Jun 30, 2026View HOL analysis
  21. CVE-2024-45195High
    Apache OFBiz: Confused controller-view authorization logic (forced browsing)
    Not scored Known exploited
    Apache Software Foundation/Apache OFBiz, apache/ofbizgeneric
    PublishedSep 4, 2024First seen at HOL May 24, 2026Updated Oct 21, 2025 Fix availableView HOL analysis
  22. CVE-2024-42642Medium
    CISA ADP Vulnrichment
    CVSS 6.7
    n/a/n/ageneric
    PublishedSep 4, 2024First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  23. CVE-2024-45620Low
    Libopensc: incorrect handling of the length of buffers or files in pkcs15init
    CVSS 3.9
    Affected software not mappedEcosystem not listed
    PublishedSep 3, 2024First seen at HOL Jun 25, 2026Updated Jun 30, 2026View HOL analysis
  24. CVE-2024-45619Medium
    Libopensc: incorrect handling length of buffers or files in libopensc
    CVSS 4.3
    Affected software not mappedEcosystem not listed
    PublishedSep 3, 2024First seen at HOL Jun 25, 2026Updated Jun 30, 2026View HOL analysis
  25. CVE-2024-45618Low
    Libopensc: uninitialized values after incorrect or missing checking return values of functions in pkcs15init
    CVSS 3.9
    Affected software not mappedEcosystem not listed
    PublishedSep 3, 2024First seen at HOL Jun 25, 2026Updated Jun 30, 2026View HOL analysis
  26. CVE-2024-45617Low
    Libopensc: uninitialized values after incorrect or missing checking return values of functions in libopensc
    CVSS 3.9
    Affected software not mappedEcosystem not listed
    PublishedSep 3, 2024First seen at HOL Jun 25, 2026Updated Jun 30, 2026View HOL analysis
  27. CVE-2024-45616Low
    Libopensc: uninitialized values after incorrect check or usage of apdu response values in libopensc
    CVSS 3.9
    Affected software not mappedEcosystem not listed
    PublishedSep 3, 2024First seen at HOL Jun 25, 2026Updated Jun 30, 2026View HOL analysis
  28. CVE-2024-45615Low
    Libopensc: pkcs15init: usage of uninitialized values in libopensc and pkcs15init
    CVSS 3.9
    Affected software not mappedEcosystem not listed
    PublishedSep 3, 2024First seen at HOL Jun 25, 2026Updated Jun 30, 2026View HOL analysis
  29. CVE-2024-6119Unknown severity
    Possible denial of service in X.509 name checks
    Not scoredSource severity not reported
    OpenSSL/OpenSSL, Siemens/RUGGEDCOM RST2428P +5generic
    PublishedSep 3, 2024First seen at HOL Aug 6, 2026Updated Jul 14, 2026 Fix availableView HOL analysis
  30. CVE-2024-45509Medium
    CISA ADP Vulnrichment
    CVSS 6.5
    misp/misp, n/a/n/ageneric
    PublishedSep 1, 2024First seen at HOL Jun 22, 2026Updated Jun 22, 2026View HOL analysis
  31. CVE-2024-44946Unknown severity
    kcm: Serialise kcm_sendmsg() for the same socket.
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedAug 31, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  32. CVE-2024-44945Unknown severity
    netfilter: nfnetlink: Initialise extack before use in ACKs
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedAug 31, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  33. CVE-2024-44916High
    CISA ADP Vulnrichment
    CVSS 7.2
    n/a/n/a, seacms/seacmsgeneric
    PublishedAug 30, 2024First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  34. CVE-2024-45490Unknown severity
    CISA ADP Vulnrichment
    Not scoredSource severity not reported
    Siemens/RUGGEDCOM RST2428P, Siemens/SCALANCE XCM-/XRM-/XCH-/XRH-300 family +5generic
    PublishedAug 30, 2024First seen at HOL Aug 6, 2026Updated Jul 14, 2026 Fix availableView HOL analysis
  35. CVE-2024-45491Unknown severity
    CISA ADP Vulnrichment
    Not scoredSource severity not reported
    Siemens/RUGGEDCOM RST2428P, Siemens/SCALANCE XCM-/XRM-/XCH-/XRH-300 family +5generic
    PublishedAug 30, 2024First seen at HOL Aug 6, 2026Updated Jul 14, 2026 Fix availableView HOL analysis
  36. CVE-2024-45492Unknown severity
    CISA ADP Vulnrichment
    Not scoredSource severity not reported
    Siemens/RUGGEDCOM RST2428P, Siemens/SCALANCE XCM-/XRM-/XCH-/XRH-300 family +5generic
    PublishedAug 30, 2024First seen at HOL Aug 6, 2026Updated Jul 14, 2026 Fix availableView HOL analysis
  37. CVE-2024-6670High
    WhatsUp Gold HasErrors SQL Injection Authentication Bypass Vulnerability
    Not scored Known exploited
    Progress Software Corporation/WhatsUp Gold, progress/whatsupgoldgeneric
    PublishedAug 29, 2024First seen at HOL May 24, 2026Updated Oct 21, 2025 Fix availableView HOL analysis
  38. CVE-2024-44776Medium
    CISA ADP Vulnrichment
    CVSS 6.1
    n/a/n/ageneric
    PublishedAug 29, 2024First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  39. CVE-2024-44777Critical
    CISA ADP Vulnrichment
    CVSS 9.6
    n/a/n/a, vtiger/vtiger_crmgeneric
    PublishedAug 29, 2024First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  40. CVE-2024-44778Critical
    CISA ADP Vulnrichment
    CVSS 9.6
    n/a/n/a, vtiger/vtiger_crmgeneric
    PublishedAug 29, 2024First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  41. CVE-2024-44779Critical
    CISA ADP Vulnrichment
    CVSS 9.6
    n/a/n/a, vtiger/vtiger_crmgeneric
    PublishedAug 29, 2024First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  42. CVE-2024-8105Medium
    Insecure Platform Key (PK) used in UEFI system firmware signature
    CVSS 6.4
    Acer/altos r680 f4, Acer/altos r680s f4 +741generic
    PublishedAug 26, 2024First seen at HOL Jun 28, 2026Updated Jun 28, 2026 Fix availableView HOL analysis
  43. CVE-2024-44942Unknown severity
    f2fs: fix to do sanity check on F2FS_INLINE_DATA flag in inode during GC
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedAug 26, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  44. CVE-2024-44941Unknown severity
    f2fs: fix to cover read extent cache access with lock
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedAug 26, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  45. CVE-2024-44940Unknown severity
    fou: remove warn in gue_gro_receive on unsupported protocol
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedAug 26, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  46. CVE-2024-44939Unknown severity
    jfs: fix null ptr deref in dtInsertEntry
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedAug 26, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  47. CVE-2024-44934Unknown severity
    net: bridge: mcast: wait for previous gc cycles when removing port
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedAug 26, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  48. CVE-2024-44933Unknown severity
    bnxt_en : Fix memory out-of-bounds in bnxt_fill_hw_rss_tbl()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedAug 26, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  49. CVE-2024-43913Unknown severity
    nvme: apple: fix device reference counting
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedAug 26, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  50. CVE-2024-43910Unknown severity
    bpf: add missing check_func_arg_reg_off() to prevent out-of-bounds memory accesses
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedAug 26, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
Page 341 of 415
Previous339340341342343Next
How this catalog works

Active means a non-withdrawn CVE List record with a validated alias, English description, publication date, and source reference. Published is the CVE Program date; First seen at HOL is when this feed first indexed the record; Modified and Source checked describe later feed activity. Severity uses the reported source value when present, otherwise a valid CVSS score supplies the displayed band. Unmapped records do not imply package coverage.

Put Guard beside your supply-chain workflow.

Explore HOL Guard

10,227

Critical + high

1,449

Known exploited

14

Ecosystems

Search and filter active CVEs

Filters & sort
Severity
Clear

Showing 17,001–17,050 of 20,729 active CVEs

Sorted by Published (newest)

Active CVE results

Select a result for the HOL analysis
IdentityRiskAffected softwarePublished
  1. CVE-2024-44994Unknown severity
    iommu: Restore lost return in iommu_report_device_fault()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 4, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  2. CVE-2024-44992Unknown severity
    smb/client: avoid possible NULL dereference in cifs_free_subrequest()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 4, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  3. CVE-2024-44988Unknown severity
    net: dsa: mv88e6xxx: Fix out-of-bound access
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 4, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  4. CVE-2024-44987Unknown severity
    ipv6: prevent UAF in ip6_send_skb()
    Not scoredSource severity not reported
    Linux/Linux, Siemens/RUGGEDCOM RST2428P +3generic
    PublishedSep 4, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  5. CVE-2024-44986Unknown severity
    ipv6: fix possible UAF in ip6_finish_output2()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 4, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  6. CVE-2024-44985Unknown severity
    ipv6: prevent possible UAF in ip6_xmit()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 4, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  7. CVE-2024-44984Unknown severity
    bnxt_en: Fix double DMA unmapping for XDP_REDIRECT
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 4, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  8. CVE-2024-44978Unknown severity
    drm/xe: Free job before xe_exec_queue_put
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 4, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  9. CVE-2024-44974Unknown severity
    mptcp: pm: avoid possible UaF when selecting endp
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 4, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  10. CVE-2024-44973Unknown severity
    mm, slub: do not call do_slab_free for kfence object
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 4, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  11. CVE-2024-44970Unknown severity
    net/mlx5e: SHAMPO, Fix invalid WQ linked list unlink
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 4, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  12. CVE-2024-44967Unknown severity
    drm/mgag200: Bind I2C lifetime to DRM device
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 4, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  13. CVE-2024-44966Unknown severity
    binfmt_flat: Fix corruption when not offsetting data start
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 4, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  14. CVE-2024-44959Unknown severity
    tracefs: Use generic inode RCU for synchronizing freeing
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 4, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  15. CVE-2024-44954Unknown severity
    ALSA: line6: Fix racy access to midibuf
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 4, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  16. CVE-2024-44951Unknown severity
    serial: sc16is7xx: fix TX fifo corruption
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 4, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  17. CVE-2024-44950Unknown severity
    serial: sc16is7xx: fix invalid FIFO access with special register set
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 4, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  18. CVE-2024-44949Unknown severity
    parisc: fix a possible DMA corruption
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedSep 4, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  19. CVE-2024-20439High
    CISA ADP Vulnrichment
    Not scored Known exploited
    Cisco/Cisco Smart License Utility, cisco/cisco_smart_license_utilitygeneric
    PublishedSep 4, 2024First seen at HOL May 24, 2026Updated Oct 21, 2025View HOL analysis
  20. CVE-2024-8418High
    Containers/aardvark-dns: tcp query handling flaw in aardvark-dns leading to denial of service
    CVSS 7.5
    Affected software not mappedEcosystem not listed
    PublishedSep 4, 2024First seen at HOL Jun 25, 2026Updated Jun 30, 2026View HOL analysis
  21. CVE-2024-45195High
    Apache OFBiz: Confused controller-view authorization logic (forced browsing)
    Not scored Known exploited
    Apache Software Foundation/Apache OFBiz, apache/ofbizgeneric
    PublishedSep 4, 2024First seen at HOL May 24, 2026Updated Oct 21, 2025 Fix availableView HOL analysis
  22. CVE-2024-42642Medium
    CISA ADP Vulnrichment
    CVSS 6.7
    n/a/n/ageneric
    PublishedSep 4, 2024First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  23. CVE-2024-45620Low
    Libopensc: incorrect handling of the length of buffers or files in pkcs15init
    CVSS 3.9
    Affected software not mappedEcosystem not listed
    PublishedSep 3, 2024First seen at HOL Jun 25, 2026Updated Jun 30, 2026View HOL analysis
  24. CVE-2024-45619Medium
    Libopensc: incorrect handling length of buffers or files in libopensc
    CVSS 4.3
    Affected software not mappedEcosystem not listed
    PublishedSep 3, 2024First seen at HOL Jun 25, 2026Updated Jun 30, 2026View HOL analysis
  25. CVE-2024-45618Low
    Libopensc: uninitialized values after incorrect or missing checking return values of functions in pkcs15init
    CVSS 3.9
    Affected software not mappedEcosystem not listed
    PublishedSep 3, 2024First seen at HOL Jun 25, 2026Updated Jun 30, 2026View HOL analysis
  26. CVE-2024-45617Low
    Libopensc: uninitialized values after incorrect or missing checking return values of functions in libopensc
    CVSS 3.9
    Affected software not mappedEcosystem not listed
    PublishedSep 3, 2024First seen at HOL Jun 25, 2026Updated Jun 30, 2026View HOL analysis
  27. CVE-2024-45616Low
    Libopensc: uninitialized values after incorrect check or usage of apdu response values in libopensc
    CVSS 3.9
    Affected software not mappedEcosystem not listed
    PublishedSep 3, 2024First seen at HOL Jun 25, 2026Updated Jun 30, 2026View HOL analysis
  28. CVE-2024-45615Low
    Libopensc: pkcs15init: usage of uninitialized values in libopensc and pkcs15init
    CVSS 3.9
    Affected software not mappedEcosystem not listed
    PublishedSep 3, 2024First seen at HOL Jun 25, 2026Updated Jun 30, 2026View HOL analysis
  29. CVE-2024-6119Unknown severity
    Possible denial of service in X.509 name checks
    Not scoredSource severity not reported
    OpenSSL/OpenSSL, Siemens/RUGGEDCOM RST2428P +5generic
    PublishedSep 3, 2024First seen at HOL Aug 6, 2026Updated Jul 14, 2026 Fix availableView HOL analysis
  30. CVE-2024-45509Medium
    CISA ADP Vulnrichment
    CVSS 6.5
    misp/misp, n/a/n/ageneric
    PublishedSep 1, 2024First seen at HOL Jun 22, 2026Updated Jun 22, 2026View HOL analysis
  31. CVE-2024-44946Unknown severity
    kcm: Serialise kcm_sendmsg() for the same socket.
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedAug 31, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  32. CVE-2024-44945Unknown severity
    netfilter: nfnetlink: Initialise extack before use in ACKs
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedAug 31, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  33. CVE-2024-44916High
    CISA ADP Vulnrichment
    CVSS 7.2
    n/a/n/a, seacms/seacmsgeneric
    PublishedAug 30, 2024First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  34. CVE-2024-45490Unknown severity
    CISA ADP Vulnrichment
    Not scoredSource severity not reported
    Siemens/RUGGEDCOM RST2428P, Siemens/SCALANCE XCM-/XRM-/XCH-/XRH-300 family +5generic
    PublishedAug 30, 2024First seen at HOL Aug 6, 2026Updated Jul 14, 2026 Fix availableView HOL analysis
  35. CVE-2024-45491Unknown severity
    CISA ADP Vulnrichment
    Not scoredSource severity not reported
    Siemens/RUGGEDCOM RST2428P, Siemens/SCALANCE XCM-/XRM-/XCH-/XRH-300 family +5generic
    PublishedAug 30, 2024First seen at HOL Aug 6, 2026Updated Jul 14, 2026 Fix availableView HOL analysis
  36. CVE-2024-45492Unknown severity
    CISA ADP Vulnrichment
    Not scoredSource severity not reported
    Siemens/RUGGEDCOM RST2428P, Siemens/SCALANCE XCM-/XRM-/XCH-/XRH-300 family +5generic
    PublishedAug 30, 2024First seen at HOL Aug 6, 2026Updated Jul 14, 2026 Fix availableView HOL analysis
  37. CVE-2024-6670High
    WhatsUp Gold HasErrors SQL Injection Authentication Bypass Vulnerability
    Not scored Known exploited
    Progress Software Corporation/WhatsUp Gold, progress/whatsupgoldgeneric
    PublishedAug 29, 2024First seen at HOL May 24, 2026Updated Oct 21, 2025 Fix availableView HOL analysis
  38. CVE-2024-44776Medium
    CISA ADP Vulnrichment
    CVSS 6.1
    n/a/n/ageneric
    PublishedAug 29, 2024First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  39. CVE-2024-44777Critical
    CISA ADP Vulnrichment
    CVSS 9.6
    n/a/n/a, vtiger/vtiger_crmgeneric
    PublishedAug 29, 2024First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  40. CVE-2024-44778Critical
    CISA ADP Vulnrichment
    CVSS 9.6
    n/a/n/a, vtiger/vtiger_crmgeneric
    PublishedAug 29, 2024First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  41. CVE-2024-44779Critical
    CISA ADP Vulnrichment
    CVSS 9.6
    n/a/n/a, vtiger/vtiger_crmgeneric
    PublishedAug 29, 2024First seen at HOL Jul 5, 2026Updated Jul 5, 2026View HOL analysis
  42. CVE-2024-8105Medium
    Insecure Platform Key (PK) used in UEFI system firmware signature
    CVSS 6.4
    Acer/altos r680 f4, Acer/altos r680s f4 +741generic
    PublishedAug 26, 2024First seen at HOL Jun 28, 2026Updated Jun 28, 2026 Fix availableView HOL analysis
  43. CVE-2024-44942Unknown severity
    f2fs: fix to do sanity check on F2FS_INLINE_DATA flag in inode during GC
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedAug 26, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  44. CVE-2024-44941Unknown severity
    f2fs: fix to cover read extent cache access with lock
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedAug 26, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  45. CVE-2024-44940Unknown severity
    fou: remove warn in gue_gro_receive on unsupported protocol
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedAug 26, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  46. CVE-2024-44939Unknown severity
    jfs: fix null ptr deref in dtInsertEntry
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedAug 26, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  47. CVE-2024-44934Unknown severity
    net: bridge: mcast: wait for previous gc cycles when removing port
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedAug 26, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  48. CVE-2024-44933Unknown severity
    bnxt_en : Fix memory out-of-bounds in bnxt_fill_hw_rss_tbl()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedAug 26, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  49. CVE-2024-43913Unknown severity
    nvme: apple: fix device reference counting
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedAug 26, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  50. CVE-2024-43910Unknown severity
    bpf: add missing check_func_arg_reg_off() to prevent out-of-bounds memory accesses
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedAug 26, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
Page 341 of 415
Previous339340341342343Next
How this catalog works

Active means a non-withdrawn CVE List record with a validated alias, English description, publication date, and source reference. Published is the CVE Program date; First seen at HOL is when this feed first indexed the record; Modified and Source checked describe later feed activity. Severity uses the reported source value when present, otherwise a valid CVSS score supplies the displayed band. Unmapped records do not imply package coverage.

Put Guard beside your supply-chain workflow.

Explore HOL Guard