VendorsLinuxlinux_kernelall versions
Vulnerabilities

Linux Kernel

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

19321CVEs
CVE-2026-7910
Use after free in Views in Google Chrome prior to 148.0.7778.96 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page. (Chromium security severity: High)
Published 2026-05-06 · Modified
9.6EPSS 0.003
CVE-2026-11037
Out of bounds write in Codecs in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to potentially perform a sandbox escape via a crafted video file. (Chromium security severity: Medium)
Published 2026-06-04 · Analyzed
9.6EPSS 0.003
CVE-2026-11659
Integer overflow in UI in Google Chrome on Linux prior to 149.0.7827.103 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Published 2026-06-08 · Analyzed
9.6EPSS 0.003
CVE-2026-11638
Use after free in Printing in Google Chrome prior to 149.0.7827.103 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical)
Published 2026-06-08 · Analyzed
9.6EPSS 0.003
CVE-2026-13882
Race in USB in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)
Published 2026-06-30 · Analyzed
9.6EPSS 0.002
CVE-2026-11282
Insufficient policy enforcement in Sandbox in Google Chrome on Linux prior to 149.0.7827.53 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Low)
Published 2026-06-04 · Analyzed
9.6EPSS 0.002
CVE-2026-11671
Use after free in Navigation in Google Chrome prior to 149.0.7827.103 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Published 2026-06-08 · Analyzed
9.6EPSS 0.002
CVE-2026-11250
Inappropriate implementation in DevTools in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security severity: Low)
Published 2026-06-04 · Analyzed
9.6EPSS 0.002
CVE-2024-58006
PCI: dwc: ep: Prevent changing BAR size/flags in pci_epc_set_bar()
Published 2025-02-27 · Modified
9.6EPSS 0.002
CVE-2026-11146
Insufficient validation of untrusted input in Chromoting in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)
Published 2026-06-04 · Modified
9.6EPSS 0.002
CVE-2026-11152
Object lifecycle issue in Dawn in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)
Published 2026-06-04 · Analyzed
9.6EPSS 0.002
CVE-2026-12027
Inappropriate implementation in Headless in Google Chrome prior to 149.0.7827.115 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Published 2026-06-11 · Analyzed
9.6EPSS 0.002
CVE-2026-11112
Insufficient validation of untrusted input in Chromoting in Google Chrome on Linux prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted Chrome Extension. (Chromium security severity: Medium)
Published 2026-06-04 · Modified
9.6EPSS 0.002
CVE-2026-11198
Insufficient validation of untrusted input in Codecs in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to potentially perform a sandbox escape via a crafted video file. (Chromium security severity: Medium)
Published 2026-06-04 · Analyzed
9.6EPSS 0.002
CVE-2026-11207
Insufficient validation of untrusted input in Autofill in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to potentially perform a sandbox escape via malicious network traffic. (Chromium security severity: Medium)
Published 2026-06-04 · Analyzed
9.6EPSS 0.002
CVE-2026-11697
Insufficient validation of untrusted input in UI in Google Chrome prior to 149.0.7827.103 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Published 2026-06-08 · Analyzed
9.6EPSS 0.002
CVE-2026-11293
Use after free in Input in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Low)
Published 2026-06-04 · Analyzed
9.6EPSS 0.002
CVE-2026-11213
Insufficient validation of untrusted input in Reading Mode in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)
Published 2026-06-04 · Analyzed
9.6EPSS 0.002
CVE-2019-15926
An issue was discovered in the Linux kernel before 5.2.3. Out of bounds access exists in the functions ath6kl_wmi_pstream_timeout_event_rx and ath6kl_wmi_cac_event_rx in the file drivers/net/wireless/ath/ath6kl/wmi.c.
Published 2019-09-04 · Modified
9.4EPSS 0.053
CVE-2006-6535
The dev_queue_xmit function in Linux kernel 2.6 can fail before calling the local_bh_disable function, which could lead to data corruption and "node lockups." NOTE: it is not clear whether this issue is exploitable.
Published 2007-01-30 · Modified
9.4EPSS 0.027
CVE-2024-49996
cifs: Fix buffer overflow when parsing NFS reparse points
Published 2024-10-21 · Modified
9.4EPSS 0.008
CVE-2024-26828
cifs: fix underflow in parse_server_interfaces()
Published 2024-04-17 · Modified
9.4EPSS 0.007
CVE-2026-43114
netfilter: nft_set_pipapo_avx2: don't return non-matching entry on expiry
Published 2026-05-06 · Modified
9.4EPSS 0.007
CVE-2026-43383
net/tcp-md5: Fix MAC comparison to be constant-time
Published 2026-05-08 · Modified
9.4EPSS 0.007
CVE-2026-31448
ext4: avoid infinite loops caused by residual data
Published 2026-04-22 · Modified
9.4EPSS 0.007
CVE-2026-31685
netfilter: ip6t_eui64: reject invalid MAC header for all packets
Published 2026-04-25 · Modified
9.4EPSS 0.006
CVE-2024-47678
icmp: change the order of rate limits
Published 2024-10-21 · Modified
9.4EPSS 0.006
CVE-2026-53131
netfilter: require Ethernet MAC header before using eth_hdr()
Published 2026-06-25 · Analyzed
9.4EPSS 0.006
CVE-2024-53058
net: stmmac: TSO: Fix unbalanced DMA map/unmap for non-paged SKB data
Published 2024-11-19 · Modified
9.4EPSS 0.006
CVE-2024-57802
netrom: check buffer length before accessing it
Published 2025-01-15 · Modified
9.4EPSS 0.006
CVE-2026-14525
IBM WebSphere Application Server Liberty is affected by an authenication bypass
Published 2026-08-13 · Analyzed
9.4EPSS 0.006
CVE-2024-52052
Stream Target Remote Code Execution in Wowza Streaming Engine
Published 2024-11-21 · Analyzed
9.4EPSS 0.005
CVE-2025-38120
netfilter: nf_set_pipapo_avx2: fix initial map fill
Published 2025-07-03 · Modified
9.4EPSS 0.005
CVE-2025-38146
net: openvswitch: Fix the dead loop of MPLS parse
Published 2025-07-03 · Modified
9.4EPSS 0.004
CVE-2025-37959
bpf: Scrub packet on bpf_redirect_peer
Published 2025-05-20 · Modified
9.4EPSS 0.004
CVE-2026-64877
An authenticated non-admin user can exploit a SQL injection flaw in the ticketing REST API to access sensitive data stored in the appliance database.
Published 2026-07-21 · Analyzed
9.4EPSS 0.003
CVE-2025-38552
mptcp: plug races between subflow fail and subflow creation
Published 2025-08-16 · Modified
9.4EPSS 0.003
CVE-2025-39943
ksmbd: smbdirect: validate data_offset and data_length field of smb_direct_data_transfer
Published 2025-10-04 · Modified
9.4EPSS 0.003
CVE-2025-39933
smb: client: let recv_done verify data_offset, data_length and remaining_data_length
Published 2025-10-04 · Modified
9.4EPSS 0.002
CVE-2011-0611
Adobe Flash Player before 10.2.154.27 on Windows, Mac OS X, Linux, and Solaris and 10.2.156.12 and earlier on Android; Adobe AIR before 2.6.19140; and Authplay.dll (aka AuthPlayLib.bundle) in Adobe Reader 9.x before 9.4.4 and 10.x through 10.0.1 on Windows, Adobe Reader 9.x before 9.4.4 and 10.x before 10.0.3 on Mac OS X, and Adobe Acrobat 9.x before 9.4.4 and 10.x before 10.0.3 on Windows and Mac OS X allow remote attackers to execute arbitrary code or cause a denial of service (application crash) via crafted Flash content; as demonstrated by a Microsoft Office document with an embedded .swf file that has a size inconsistency in a "group of included constants," object type confusion, ActionScript that adds custom functions to prototypes, and Date objects; and as exploited in the wild in April 2011.
Published 2011-04-13 · Analyzed
9.3KEV2 PoCEPSS 0.994
← Prev30 / 484Next →