Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
7.8 HIGH
CVE-2026-31703 — writeback: Fix use after free in inode_switch_wbs_work_fn()

In the Linux kernel, the following vulnerability has been resolved: writeback: Fix use after free in inode_switch_wbs_work_fn() inode_switch_wbs_work_fn() has a loop like: wb_get(new_wb); whil…

linux_kernel | Memory Corruption
May 01, 2026 May 06, 2026
May 01, 2026
May 06, 2026
7.8 HIGH
CVE-2026-31702 — f2fs: fix use-after-free of sbi in f2fs_compress_write_end_io()

In the Linux kernel, the following vulnerability has been resolved: f2fs: fix use-after-free of sbi in f2fs_compress_write_end_io() In f2fs_compress_write_end_io(), dec_page_count(sbi, type) can br…

linux_kernel | Memory Corruption
May 01, 2026 May 06, 2026
May 01, 2026
May 06, 2026
5.5 MEDIUM
CVE-2026-31701 — ALSA: caiaq: take a reference on the USB device in create_card()

In the Linux kernel, the following vulnerability has been resolved: ALSA: caiaq: take a reference on the USB device in create_card() The caiaq driver stores a pointer to the parent USB device in cd…

linux_kernel | Memory Corruption
May 01, 2026 May 06, 2026
May 01, 2026
May 06, 2026
7.8 HIGH
CVE-2026-31700 — net/packet: fix TOCTOU race on mmap'd vnet_hdr in tpacket_snd()

In the Linux kernel, the following vulnerability has been resolved: net/packet: fix TOCTOU race on mmap'd vnet_hdr in tpacket_snd() In tpacket_snd(), when PACKET_VNET_HDR is enabled, vnet_hdr point…

linux_kernel | Race Condition
May 01, 2026 May 06, 2026
May 01, 2026
May 06, 2026
7.1 HIGH
CVE-2026-31699 — crypto: ccp: Don't attempt to copy CSR to userspace if PSP command failed

In the Linux kernel, the following vulnerability has been resolved: crypto: ccp: Don't attempt to copy CSR to userspace if PSP command failed When retrieving the PEK CSR, don't attempt to copy the …

linux_kernel | Memory Corruption
May 01, 2026 May 06, 2026
May 01, 2026
May 06, 2026
7.1 HIGH
CVE-2026-31698 — crypto: ccp: Don't attempt to copy PDH cert to userspace if PSP command failed

In the Linux kernel, the following vulnerability has been resolved: crypto: ccp: Don't attempt to copy PDH cert to userspace if PSP command failed When retrieving the PDH cert, don't attempt to cop…

linux_kernel | Memory Corruption
May 01, 2026 May 06, 2026
May 01, 2026
May 06, 2026
7.1 HIGH
CVE-2026-31697 — crypto: ccp: Don't attempt to copy ID to userspace if PSP command failed

In the Linux kernel, the following vulnerability has been resolved: crypto: ccp: Don't attempt to copy ID to userspace if PSP command failed When retrieving the ID for the CPU, don't attempt to cop…

linux_kernel | Memory Corruption
May 01, 2026 May 06, 2026
May 01, 2026
May 06, 2026
7.8 HIGH
CVE-2026-31696 — rxrpc: Fix missing validation of ticket length in non-XDR key preparsing

In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix missing validation of ticket length in non-XDR key preparsing In rxrpc_preparse(), there are two paths for parsing key…

linux_kernel | Denial of Service
May 01, 2026 May 06, 2026
May 01, 2026
May 06, 2026
7.8 HIGH
CVE-2026-31695 — wifi: virt_wifi: remove SET_NETDEV_DEV to avoid use-after-free

In the Linux kernel, the following vulnerability has been resolved: wifi: virt_wifi: remove SET_NETDEV_DEV to avoid use-after-free Currently we execute `SET_NETDEV_DEV(dev, &priv->lowerdev->dev)` f…

linux_kernel | Memory Corruption
May 01, 2026 May 06, 2026
May 01, 2026
May 06, 2026
7.8 HIGH
CVE-2026-31694 — fuse: reject oversized dirents in page cache

In the Linux kernel, the following vulnerability has been resolved: fuse: reject oversized dirents in page cache fuse_add_dirent_to_cache() computes a serialized dirent size from the server-control…

linux_kernel | Memory Corruption
May 01, 2026 May 06, 2026
May 01, 2026
May 06, 2026
5.0 MEDIUM
CVE-2026-7581 — alexta69 MeTube CORS Policy main.py on_prepare cross-domain policy

A security vulnerability has been detected in alexta69 MeTube up to 2026.04.09. This affects the function on_prepare of the file app/main.py of the component CORS Policy. The manipulation leads to pe…

Remote | Misconfiguration
May 01, 2026 May 01, 2026
May 01, 2026
May 01, 2026
Showing 20 of 6891 Results