1. Guard
  2. Security
  3. CVEs
HOL Guard

Public security guidance for teams protecting AI harnesses, MCP servers, skills, prompts, and local tool execution.

Install Guard

AI Security

  • Prompt injection
  • MCP security
  • Supply chain

Resources

  • Trust packet
  • Harness setup
  • Redacted warnings
  • Safe labs

Product

  • Install Guard
  • Pricing
  • Open dashboard
  1. Guard
  2. Security
  3. CVEs
HOL Guard

Public security guidance for teams protecting AI harnesses, MCP servers, skills, prompts, and local tool execution.

Install Guard

AI Security

  • Prompt injection
  • MCP security
  • Supply chain

Resources

  • Trust packet
  • Harness setup
  • Redacted warnings
  • Safe labs

Product

  • Install Guard
  • Pricing
  • Open dashboard
HOL LogoHOL
Overview
InstallPricingEnterpriseAffiliatesDocsOpen App
Docs
  • API Reference
  • Run in Postman
  • OpenAPI Spec
  • Standards
  • Submit ERC-8004 Contract
  • Feature Your Agent
Best Plugins
  • Browse Plugins
  • Best Claude Plugins
  • Best Codex Plugins
  • Best Grok Plugins
  • Best Kimi Plugins
  • Best DeepSeek Plugins
  • Best Antigravity Plugins
  • Best MCP Plugins
  • Best Cursor Plugins
  • Best OpenCode Plugins
Best Agents
  • Best ERC-8004 Agents
  • Best Virtuals Agents
  • Best MCP Servers
  • Best A2A Agents
  • Best x402 Payable
  • All Categories
Community
  • Telegram
  • X
More
  • Blog
  • GitHub
  • Privacy Policy
  • Terms of Service
Settings

Copyright © 2026 HOL DAO LLC. All rights reserved.

HOL LogoHOL
Overview
InstallPricingEnterpriseAffiliatesDocsOpen App
Docs
  • API Reference
  • Run in Postman
  • OpenAPI Spec
  • Standards
  • Submit ERC-8004 Contract
  • Feature Your Agent
Best Plugins
  • Browse Plugins
  • Best Claude Plugins
  • Best Codex Plugins
  • Best Grok Plugins
  • Best Kimi Plugins
  • Best DeepSeek Plugins
  • Best Antigravity Plugins
  • Best MCP Plugins
  • Best Cursor Plugins
  • Best OpenCode Plugins
Best Agents
  • Best ERC-8004 Agents
  • Best Virtuals Agents
  • Best MCP Servers
  • Best A2A Agents
  • Best x402 Payable
  • All Categories
Community
  • Telegram
  • X
More
  • Blog
  • GitHub
  • Privacy Policy
  • Terms of Service
Settings

Copyright © 2026 HOL DAO LLC. All rights reserved.

Active CVEs

Search active, non-withdrawn CVEs in the HOL Guard feed, then open the matching HOL analysis.

Feed liveLast checked Aug 17, 2026, 10:20 PM 20,929 active 1,449 known exploited

Catalog summary

20,929

Active CVEs

Active CVEs

Search active, non-withdrawn CVEs in the HOL Guard feed, then open the matching HOL analysis.

Feed liveLast checked Aug 17, 2026, 10:20 PM 20,929 active 1,449 known exploited

Catalog summary

20,929

Active CVEs

10,245

Critical + high

1,449

Known exploited

14

Ecosystems

Search and filter active CVEs

Filters & sort
Severity
Clear

Showing 17,651–17,700 of 20,929 active CVEs

Sorted by Published (newest)

Active CVE results

Select a result for the HOL analysis
IdentityRiskAffected softwarePublished
  1. CVE-2024-38605Unknown severity
    ALSA: core: Fix NULL module pointer assignment at card init
    Not scoredSource severity not reported
    Linux/Linux, linux/linux_kernelgeneric
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  2. CVE-2024-38599Unknown severity
    jffs2: prevent xattr node from overflowing the eraseblock
    Not scoredSource severity not reported
    Linux/Linux, Siemens/SIMATIC S7-1500 TM MFP - GNU/Linux subsystemgeneric
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  3. CVE-2024-38592Unknown severity
    drm/mediatek: Init `ddp_comp` with devm_kcalloc()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  4. CVE-2024-38590Unknown severity
    RDMA/hns: Modify the print level of CQE error
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  5. CVE-2024-38588Unknown severity
    ftrace: Fix possible use-after-free issue in ftrace_location()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  6. CVE-2024-38587Unknown severity
    speakup: Fix sizeof() vs ARRAY_SIZE() bug
    Not scoredSource severity not reported
    Linux/Linux, Siemens/RUGGEDCOM RST2428P +2generic
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  7. CVE-2024-38583Unknown severity
    nilfs2: fix use-after-free of timer for log writer thread
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  8. CVE-2024-38581Unknown severity
    drm/amdgpu/mes: fix use-after-free issue
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  9. CVE-2024-38580Unknown severity
    epoll: be better about file lifetimes
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  10. CVE-2024-38578Unknown severity
    ecryptfs: Fix buffer size for tag 66 packet
    Not scoredSource severity not reported
    Linux/Linux, Siemens/RUGGEDCOM RST2428P +2generic
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  11. CVE-2024-38577Unknown severity
    rcu-tasks: Fix show_rcu_tasks_trace_gp_kthread buffer overflow
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  12. CVE-2024-38576Unknown severity
    rcu: Fix buffer overflow in print_cpu_stall_info()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  13. CVE-2024-38572Unknown severity
    wifi: ath12k: fix out-of-bound access of qmi_invoke_handler()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  14. CVE-2024-38570Unknown severity
    gfs2: Fix potential glock use-after-free on unmount
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  15. CVE-2024-38569Unknown severity
    drivers/perf: hisi_pcie: Fix out-of-bound access when valid event group
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  16. CVE-2024-38568Unknown severity
    drivers/perf: hisi: hns3: Fix out-of-bound access when valid event group
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  17. CVE-2024-38564Unknown severity
    bpf: Add BPF_PROG_TYPE_CGROUP_SKB attach type enforcement in BPF_LINK_CREATE
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  18. CVE-2024-38558Unknown severity
    net: openvswitch: fix overwriting ct original tuple for ICMPv6
    Not scoredSource severity not reported
    Linux/Linux, Siemens/RUGGEDCOM RST2428P +2generic
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  19. CVE-2024-38556Unknown severity
    net/mlx5: Add a timeout to acquire the command queue semaphore
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  20. CVE-2024-38555Unknown severity
    net/mlx5: Discard command completions in internal error
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  21. CVE-2024-38552Unknown severity
    drm/amd/display: Fix potential index out of bounds in color transformation function
    Not scoredSource severity not reported
    Linux/Linux, Siemens/SIMATIC S7-1500 TM MFP - GNU/Linux subsystemgeneric
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  22. CVE-2024-38545Unknown severity
    RDMA/hns: Fix UAF for cq async event
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  23. CVE-2024-38544Unknown severity
    RDMA/rxe: Fix seg fault in rxe_comp_queue_pkt
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  24. CVE-2024-38542Unknown severity
    RDMA/mana_ib: boundary check before installing cq callbacks
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  25. CVE-2024-38541Unknown severity
    of: module: add buffer overflow check in of_modalias()
    Not scoredSource severity not reported
    Linux/Linux, linux/linux_kernelgeneric
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  26. CVE-2024-38539Unknown severity
    RDMA/cma: Fix kmemleak in rdma_core observed during blktests nvme/rdma use siw
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  27. CVE-2024-38538Unknown severity
    net: bridge: xmit: make sure we have at least eth header len bytes
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  28. CVE-2024-36979Unknown severity
    net: bridge: mst: fix vlan use-after-free
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  29. CVE-2024-36978Unknown severity
    net: sched: sch_multiq: fix possible OOB write in multiq_tune()
    Not scoredSource severity not reported
    Linux/Linux, Siemens/RUGGEDCOM RST2428P +2generic
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  30. CVE-2024-36977Unknown severity
    usb: dwc3: Wait unconditionally after issuing EndXfer command
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJun 18, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  31. CVE-2024-36974Unknown severity
    net/sched: taprio: always validate TCA_TAPRIO_ATTR_PRIOMAP
    Not scoredSource severity not reported
    Linux/Linux, Siemens/RUGGEDCOM RST2428P +2generic
    PublishedJun 18, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  32. CVE-2024-37079High
    CISA ADP Vulnrichment
    Not scored Known exploited
    n/a/VMware Cloud Foundation, n/a/VMware vCenter Servergeneric
    PublishedJun 18, 2024First seen at HOL May 24, 2026Updated Feb 13, 2026 Fix availableView HOL analysis
  33. CVE-2024-37821High
    CISA ADP Vulnrichment
    CVSS 8.8
    dolibarr/dolibarr_erp\/crm, n/a/n/ageneric
    PublishedJun 18, 2024First seen at HOL Jul 5, 2026Updated Jul 9, 2026View HOL analysis
  34. CVE-2024-36973Unknown severity
    misc: microchip: pci1xxxx: fix double free in the error handling of gp_aux_bus_probe()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJun 17, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  35. CVE-2024-6047High
    GeoVision EOL device - OS Command Injection
    Not scored Known exploited
    GeoVision/GV VS04A, GeoVision/GV VS04H +36generic
    PublishedJun 17, 2024First seen at HOL May 24, 2026Updated Oct 21, 2025 Fix availableView HOL analysis
  36. CVE-2023-37057Critical
    CISA ADP Vulnrichment
    CVSS 9.8
    jlink/ax1800, n/a/n/ageneric
    PublishedJun 17, 2024First seen at HOL Jul 5, 2026Updated Jul 9, 2026View HOL analysis
  37. CVE-2023-37058Critical
    CISA ADP Vulnrichment
    CVSS 9.8
    n/a/n/ageneric
    PublishedJun 17, 2024First seen at HOL Jul 5, 2026Updated Jul 9, 2026View HOL analysis
  38. CVE-2024-36543Critical
    CISA ADP Vulnrichment
    CVSS 9.8
    n/a/n/a, strimza_project/kafka_connect_rest_apigeneric
    PublishedJun 17, 2024First seen at HOL Jul 5, 2026Updated Jul 9, 2026 Fix availableView HOL analysis
  39. CVE-2024-32896High
    CISA ADP Vulnrichment
    Not scored Known exploited
    Google/Android, google/androidgeneric
    PublishedJun 13, 2024First seen at HOL May 24, 2026Updated Oct 21, 2025 Fix availableView HOL analysis
  40. CVE-2024-34102High
    XXE can expose crypt key and other secrets granting full admin access
    Not scored Known exploited
    Adobe/Adobe Commerce, adobe/commercegeneric
    PublishedJun 13, 2024First seen at HOL May 24, 2026Updated Oct 21, 2025View HOL analysis
  41. CVE-2024-36265Critical
    Apache Submarine Server Core: authorization bypass
    CVSS 9.8
    Apache Software Foundation/Apache Submarine Server Coregeneric
    PublishedJun 12, 2024First seen at HOL Jul 14, 2026Updated Jul 14, 2026View HOL analysis
  42. CVE-2023-4727High
    Ca: token authentication bypass vulnerability
    CVSS 7.5
    Affected software not mappedEcosystem not listed
    PublishedJun 11, 2024First seen at HOL Jun 26, 2026Updated Jun 26, 2026View HOL analysis
  43. CVE-2024-36702High
    CISA ADP Vulnrichment
    CVSS 7.4
    mz-automation/libiec61850, n/a/n/ageneric
    PublishedJun 11, 2024First seen at HOL Jul 5, 2026Updated Jul 9, 2026 Fix availableView HOL analysis
  44. CVE-2024-36972Unknown severity
    af_unix: Update unix_sk(sk)->oob_skb under sk_receive_queue lock.
    Not scoredSource severity not reported
    Linux/Linux, linux/linux_kernelgeneric
    PublishedJun 10, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  45. CVE-2024-36971High
    net: fix __dst_negative_advice() race
    Not scored Known exploited
    Linux/Linux, linux/linux_kernelgeneric
    PublishedJun 10, 2024First seen at HOL May 24, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  46. CVE-2024-4577High
    Argument Injection in PHP-CGI
    Not scored Known exploited
    PHP Group/PHP, php_group/phpgeneric
    PublishedJun 9, 2024First seen at HOL May 24, 2026Updated Oct 21, 2025 Fix availableView HOL analysis
  47. CVE-2024-36968Unknown severity
    Bluetooth: L2CAP: Fix div-by-zero in l2cap_le_flowctl_init()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJun 8, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  48. CVE-2024-36965Unknown severity
    remoteproc: mediatek: Make sure IPI buffer fits in L2TCM
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJun 8, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  49. CVE-2024-4610High
    Mali GPU Kernel Driver allows improper GPU memory processing operations
    Not scored Known exploited
    Arm Ltd/Bifrost GPU Kernel Driver, Arm Ltd/Valhall GPU Kernel Driver +2generic
    PublishedJun 7, 2024First seen at HOL May 24, 2026Updated Oct 21, 2025View HOL analysis
  50. CVE-2024-37383High
    CISA ADP Vulnrichment
    Not scored Known exploited
    n/a/n/a, roundcube/webmailgeneric
    PublishedJun 7, 2024First seen at HOL May 24, 2026Updated Oct 21, 2025 Fix availableView HOL analysis
Page 354 of 419
Previous352353354355356Next
How this catalog works

Active means a non-withdrawn CVE List record with a validated alias, English description, publication date, and source reference. Published is the CVE Program date; First seen at HOL is when this feed first indexed the record; Modified and Source checked describe later feed activity. Severity uses the reported source value when present, otherwise a valid CVSS score supplies the displayed band. Unmapped records do not imply package coverage.

Put Guard beside your supply-chain workflow.

Explore HOL Guard

10,245

Critical + high

1,449

Known exploited

14

Ecosystems

Search and filter active CVEs

Filters & sort
Severity
Clear

Showing 17,651–17,700 of 20,929 active CVEs

Sorted by Published (newest)

Active CVE results

Select a result for the HOL analysis
IdentityRiskAffected softwarePublished
  1. CVE-2024-38605Unknown severity
    ALSA: core: Fix NULL module pointer assignment at card init
    Not scoredSource severity not reported
    Linux/Linux, linux/linux_kernelgeneric
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  2. CVE-2024-38599Unknown severity
    jffs2: prevent xattr node from overflowing the eraseblock
    Not scoredSource severity not reported
    Linux/Linux, Siemens/SIMATIC S7-1500 TM MFP - GNU/Linux subsystemgeneric
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  3. CVE-2024-38592Unknown severity
    drm/mediatek: Init `ddp_comp` with devm_kcalloc()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  4. CVE-2024-38590Unknown severity
    RDMA/hns: Modify the print level of CQE error
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  5. CVE-2024-38588Unknown severity
    ftrace: Fix possible use-after-free issue in ftrace_location()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  6. CVE-2024-38587Unknown severity
    speakup: Fix sizeof() vs ARRAY_SIZE() bug
    Not scoredSource severity not reported
    Linux/Linux, Siemens/RUGGEDCOM RST2428P +2generic
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  7. CVE-2024-38583Unknown severity
    nilfs2: fix use-after-free of timer for log writer thread
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  8. CVE-2024-38581Unknown severity
    drm/amdgpu/mes: fix use-after-free issue
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  9. CVE-2024-38580Unknown severity
    epoll: be better about file lifetimes
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  10. CVE-2024-38578Unknown severity
    ecryptfs: Fix buffer size for tag 66 packet
    Not scoredSource severity not reported
    Linux/Linux, Siemens/RUGGEDCOM RST2428P +2generic
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  11. CVE-2024-38577Unknown severity
    rcu-tasks: Fix show_rcu_tasks_trace_gp_kthread buffer overflow
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  12. CVE-2024-38576Unknown severity
    rcu: Fix buffer overflow in print_cpu_stall_info()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  13. CVE-2024-38572Unknown severity
    wifi: ath12k: fix out-of-bound access of qmi_invoke_handler()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  14. CVE-2024-38570Unknown severity
    gfs2: Fix potential glock use-after-free on unmount
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  15. CVE-2024-38569Unknown severity
    drivers/perf: hisi_pcie: Fix out-of-bound access when valid event group
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  16. CVE-2024-38568Unknown severity
    drivers/perf: hisi: hns3: Fix out-of-bound access when valid event group
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  17. CVE-2024-38564Unknown severity
    bpf: Add BPF_PROG_TYPE_CGROUP_SKB attach type enforcement in BPF_LINK_CREATE
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  18. CVE-2024-38558Unknown severity
    net: openvswitch: fix overwriting ct original tuple for ICMPv6
    Not scoredSource severity not reported
    Linux/Linux, Siemens/RUGGEDCOM RST2428P +2generic
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  19. CVE-2024-38556Unknown severity
    net/mlx5: Add a timeout to acquire the command queue semaphore
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  20. CVE-2024-38555Unknown severity
    net/mlx5: Discard command completions in internal error
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  21. CVE-2024-38552Unknown severity
    drm/amd/display: Fix potential index out of bounds in color transformation function
    Not scoredSource severity not reported
    Linux/Linux, Siemens/SIMATIC S7-1500 TM MFP - GNU/Linux subsystemgeneric
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  22. CVE-2024-38545Unknown severity
    RDMA/hns: Fix UAF for cq async event
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  23. CVE-2024-38544Unknown severity
    RDMA/rxe: Fix seg fault in rxe_comp_queue_pkt
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  24. CVE-2024-38542Unknown severity
    RDMA/mana_ib: boundary check before installing cq callbacks
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  25. CVE-2024-38541Unknown severity
    of: module: add buffer overflow check in of_modalias()
    Not scoredSource severity not reported
    Linux/Linux, linux/linux_kernelgeneric
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  26. CVE-2024-38539Unknown severity
    RDMA/cma: Fix kmemleak in rdma_core observed during blktests nvme/rdma use siw
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  27. CVE-2024-38538Unknown severity
    net: bridge: xmit: make sure we have at least eth header len bytes
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  28. CVE-2024-36979Unknown severity
    net: bridge: mst: fix vlan use-after-free
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  29. CVE-2024-36978Unknown severity
    net: sched: sch_multiq: fix possible OOB write in multiq_tune()
    Not scoredSource severity not reported
    Linux/Linux, Siemens/RUGGEDCOM RST2428P +2generic
    PublishedJun 19, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  30. CVE-2024-36977Unknown severity
    usb: dwc3: Wait unconditionally after issuing EndXfer command
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJun 18, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  31. CVE-2024-36974Unknown severity
    net/sched: taprio: always validate TCA_TAPRIO_ATTR_PRIOMAP
    Not scoredSource severity not reported
    Linux/Linux, Siemens/RUGGEDCOM RST2428P +2generic
    PublishedJun 18, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  32. CVE-2024-37079High
    CISA ADP Vulnrichment
    Not scored Known exploited
    n/a/VMware Cloud Foundation, n/a/VMware vCenter Servergeneric
    PublishedJun 18, 2024First seen at HOL May 24, 2026Updated Feb 13, 2026 Fix availableView HOL analysis
  33. CVE-2024-37821High
    CISA ADP Vulnrichment
    CVSS 8.8
    dolibarr/dolibarr_erp\/crm, n/a/n/ageneric
    PublishedJun 18, 2024First seen at HOL Jul 5, 2026Updated Jul 9, 2026View HOL analysis
  34. CVE-2024-36973Unknown severity
    misc: microchip: pci1xxxx: fix double free in the error handling of gp_aux_bus_probe()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJun 17, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  35. CVE-2024-6047High
    GeoVision EOL device - OS Command Injection
    Not scored Known exploited
    GeoVision/GV VS04A, GeoVision/GV VS04H +36generic
    PublishedJun 17, 2024First seen at HOL May 24, 2026Updated Oct 21, 2025 Fix availableView HOL analysis
  36. CVE-2023-37057Critical
    CISA ADP Vulnrichment
    CVSS 9.8
    jlink/ax1800, n/a/n/ageneric
    PublishedJun 17, 2024First seen at HOL Jul 5, 2026Updated Jul 9, 2026View HOL analysis
  37. CVE-2023-37058Critical
    CISA ADP Vulnrichment
    CVSS 9.8
    n/a/n/ageneric
    PublishedJun 17, 2024First seen at HOL Jul 5, 2026Updated Jul 9, 2026View HOL analysis
  38. CVE-2024-36543Critical
    CISA ADP Vulnrichment
    CVSS 9.8
    n/a/n/a, strimza_project/kafka_connect_rest_apigeneric
    PublishedJun 17, 2024First seen at HOL Jul 5, 2026Updated Jul 9, 2026 Fix availableView HOL analysis
  39. CVE-2024-32896High
    CISA ADP Vulnrichment
    Not scored Known exploited
    Google/Android, google/androidgeneric
    PublishedJun 13, 2024First seen at HOL May 24, 2026Updated Oct 21, 2025 Fix availableView HOL analysis
  40. CVE-2024-34102High
    XXE can expose crypt key and other secrets granting full admin access
    Not scored Known exploited
    Adobe/Adobe Commerce, adobe/commercegeneric
    PublishedJun 13, 2024First seen at HOL May 24, 2026Updated Oct 21, 2025View HOL analysis
  41. CVE-2024-36265Critical
    Apache Submarine Server Core: authorization bypass
    CVSS 9.8
    Apache Software Foundation/Apache Submarine Server Coregeneric
    PublishedJun 12, 2024First seen at HOL Jul 14, 2026Updated Jul 14, 2026View HOL analysis
  42. CVE-2023-4727High
    Ca: token authentication bypass vulnerability
    CVSS 7.5
    Affected software not mappedEcosystem not listed
    PublishedJun 11, 2024First seen at HOL Jun 26, 2026Updated Jun 26, 2026View HOL analysis
  43. CVE-2024-36702High
    CISA ADP Vulnrichment
    CVSS 7.4
    mz-automation/libiec61850, n/a/n/ageneric
    PublishedJun 11, 2024First seen at HOL Jul 5, 2026Updated Jul 9, 2026 Fix availableView HOL analysis
  44. CVE-2024-36972Unknown severity
    af_unix: Update unix_sk(sk)->oob_skb under sk_receive_queue lock.
    Not scoredSource severity not reported
    Linux/Linux, linux/linux_kernelgeneric
    PublishedJun 10, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  45. CVE-2024-36971High
    net: fix __dst_negative_advice() race
    Not scored Known exploited
    Linux/Linux, linux/linux_kernelgeneric
    PublishedJun 10, 2024First seen at HOL May 24, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  46. CVE-2024-4577High
    Argument Injection in PHP-CGI
    Not scored Known exploited
    PHP Group/PHP, php_group/phpgeneric
    PublishedJun 9, 2024First seen at HOL May 24, 2026Updated Oct 21, 2025 Fix availableView HOL analysis
  47. CVE-2024-36968Unknown severity
    Bluetooth: L2CAP: Fix div-by-zero in l2cap_le_flowctl_init()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJun 8, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  48. CVE-2024-36965Unknown severity
    remoteproc: mediatek: Make sure IPI buffer fits in L2TCM
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJun 8, 2024First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  49. CVE-2024-4610High
    Mali GPU Kernel Driver allows improper GPU memory processing operations
    Not scored Known exploited
    Arm Ltd/Bifrost GPU Kernel Driver, Arm Ltd/Valhall GPU Kernel Driver +2generic
    PublishedJun 7, 2024First seen at HOL May 24, 2026Updated Oct 21, 2025View HOL analysis
  50. CVE-2024-37383High
    CISA ADP Vulnrichment
    Not scored Known exploited
    n/a/n/a, roundcube/webmailgeneric
    PublishedJun 7, 2024First seen at HOL May 24, 2026Updated Oct 21, 2025 Fix availableView HOL analysis
Page 354 of 419
Previous352353354355356Next
How this catalog works

Active means a non-withdrawn CVE List record with a validated alias, English description, publication date, and source reference. Published is the CVE Program date; First seen at HOL is when this feed first indexed the record; Modified and Source checked describe later feed activity. Severity uses the reported source value when present, otherwise a valid CVSS score supplies the displayed band. Unmapped records do not imply package coverage.

Put Guard beside your supply-chain workflow.

Explore HOL Guard