CVE.report search for "Unknown"

Listed below are 50 relevant search results for "Unknown" based on Vendor, Software, and CVE description

These results are gathered from attempted matches with listed vendor and software data, as well as a keyword search in the description of all known CVEs.

If you notice a "Not Listed" in either the vendor or software columns, the underlying source record does not currently include normalized affected-product data.

Search Results

CVE ID Vendor Software Description
CVE-2026-72465In the Linux kernel, the following vulnerability has been resolved: xprtrdma: Sanitize the reply credit grant after parsing ...
CVE-2026-72373In the Linux kernel, the following vulnerability has been resolved: afs: Fix missing NULL pointer check in afs_break_some_ca...
CVE-2026-72085In the Linux kernel, the following vulnerability has been resolved: scsi: xen: scsiback: Free unsubmitted command instead of...
CVE-2026-68471In the Linux kernel, the following vulnerability has been resolved: wifi: ieee80211: validate MLE common info length ieee80...
CVE-2026-67317axios versions 1.7.0 before 1.18.0 fail to enforce maxBodyLength for WHATWG ReadableStream request bodies in the fetch adapte...
CVE-2026-64527In the Linux kernel, the following vulnerability has been resolved: drm/hyperv: validate VMBus packet size in receive callba...
CVE-2026-64104LinuxLinux KernelIn the Linux kernel, the following vulnerability has been resolved: virt: sev-guest: Explicitly leak pages in unknown state ...
CVE-2026-63887In the Linux kernel, the following vulnerability has been resolved: scsi: target: iscsi: Bound iscsi_encode_text_output() ap...
CVE-2026-63871In the Linux kernel, the following vulnerability has been resolved: Bluetooth: ISO: Fix data-race on iso_pi fields in hci_ge...
CVE-2026-63801LinuxLinux KernelIn the Linux kernel, the following vulnerability has been resolved: tipc: fix slab-use-after-free Read in tipc_aead_decrypt_...
CVE-2026-59848LibsshLibsshA flaw was found in libssh. A malicious SFTP server can send responses for unknown request IDs that libssh clients keep queue...
CVE-2026-59531Unauthenticated Unknown in Falcon – WordPress Optimizations & Tweaks <= 2.10.0 versions.
CVE-2026-56788RtklibRtklibRTKLIB through 2.4.3 contains an out-of-bounds read vulnerability in getcodepri function when processing unrecognized RINEX o...
CVE-2026-55953ErlangErlang/otpThe Erlang/OTP ssl TLS 1.2 (and earlier) and DTLS client does not verify that the cipher suite selected by the server in Serv...
CVE-2026-55825Contao is an Open Source CMS. In versions 5.7.0 through 5.7.6, an authenticated backend user who can access one job can reque...
CVE-2026-55407Buffa is a pure-Rust Protocol Buffers implementation with first-class protobuf editions support. Prior to 0.8.0, the decode_u...
CVE-2026-54891ErlangErlang/otpImproper Enforcement of Message Integrity During Transmission in a Communication Channel vulnerability in Erlang/OTP ssl (tls...
CVE-2026-54270Protobufjs ProjectProtobufjsprotobufjs compiles protobuf definitions into JavaScript (JS) functions. From 8.2.0 to 8.4.2, protobufjs preserved unknown wi...
CVE-2026-54019OpenwebuiOpen WebuiOpen WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.9.6, Open WebUI...
CVE-2026-54002Kirby is an open-source content management system. Prior to 4.9.4 and 5.4.4, Kirby sites and plugins that use the writer or l...
CVE-2026-53336LinuxLinux KernelIn the Linux kernel, the following vulnerability has been resolved: nvmem: layouts: onie-tlv: fix hang on unknown types The...
CVE-2026-53284LinuxLinux KernelIn the Linux kernel, the following vulnerability has been resolved: btrfs: only release the dirty pages io tree after succes...
CVE-2026-53262LinuxLinux KernelIn the Linux kernel, the following vulnerability has been resolved: l2tp: pppol2tp: hold reference to session in pppol2tp_io...
CVE-2026-53090LinuxLinux KernelIn the Linux kernel, the following vulnerability has been resolved: bpf: Fix ld_{abs,ind} failure path analysis in subprogs ...
CVE-2026-48819Hey API is an ecosystem for turning API specifications into production-ready code. Prior to 0.97.3, dist/clients/core/params....
CVE-2026-48787gin-vue-admin is an AI-assisted basic development platform. In version 2.9.1, an authenticated attacker with access to the co...
CVE-2026-48772ProxysqlProxysqlProxySQL is a proxy for MySQL and its forks, as well as PostgreSQL. In versions 2.0.0 through 3.0.8, the ProxySQL MySQL front...
CVE-2026-48524Pyjwt ProjectPyjwtPyJWT is a JSON Web Token implementation in Python. Prior to 2.13.0, PyJWKClient.get_signing_key() forces a fresh HTTP reques...
CVE-2026-48513MessagepackMessagepackMessagePack for C# is a MessagePack serializer for C#. Prior to 2.5.301 and 3.1.7, runtime-generated union deserializers emit...
CVE-2026-48506MessagepackMessagepackMessagePack for C# is a MessagePack serializer for C#. Prior to 2.5.301 and 3.1.7, MessagePackReader.TrySkip() recursively de...
CVE-2026-48139NiInstrumentstudioThere is a NULL pointer dereference vulnerability in NI grpc-device in the data moniker service that may allow an attacker to...
CVE-2026-47901Logseq is vulnerable to a sandbox escape flaw where plugins running in sandboxed iframes can inject arbitrary HTML attributes...
CVE-2026-47900Logseq is vulnerable to a stored cross-site scripting (XSS). A malicious plugin can include a JavaScript payload in the "name...
CVE-2026-47899The Electron preload script in Logseq exposes an API method that allows the renderer process to invoke IPC handlers without p...
CVE-2026-47380NocoDB is software for building databases as spreadsheets. Prior to 2026.04.1, sign-in response timing differed between known...
CVE-2026-46186LinuxLinux KernelIn the Linux kernel, the following vulnerability has been resolved: Bluetooth: virtio_bt: validate rx pkt_type header length...
CVE-2026-46133LinuxLinux KernelIn the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Reject unknown opcodes before ICRC processing ...
CVE-2026-45896LinuxLinux KernelIn the Linux kernel, the following vulnerability has been resolved: mtd: intel-dg: Fix accessing regions before setting nreg...
CVE-2026-45363ruby-jwt is a Ruby implementation of the RFC 7519 OAuth JSON Web Token standard. Prior to 2.10.3 and 3.2.0, JWT.decode(token,...
CVE-2026-45155Nextcloud is an open source content collaboration platform. In Nextcloud Server from versions 32.0.0 to before 32.0.7 and 33....
CVE-2026-44690NlnetlabsUnboundIn NLnet Labs Unbound 1.7.0 up to and including 1.25.1, insufficient validation of the RRSIG.Labels field combined with prema...
CVE-2026-44436H2oQuiclyQuicly is an IETF QUIC protocol implementation intended primarily for use within the H2O HTTP server. Prior to commit 8b178e6...
CVE-2026-44316Free5gcFree5gcfree5GC is an open-source implementation of the 5G core network. Prior to 4.2.2, free5GC's PCF POST /npcf-smpolicycontrol/v1/...
CVE-2026-44289Protobufjs ProjectProtobufjsprotobufjs compiles protobuf definitions into JavaScript (JS) functions. Prior to 7.5.6 and 8.0.2, protobufjs could recurse w...
CVE-2026-43617SambaRsyncRsync version 3.4.2 and prior contain an authorization bypass vulnerability in the rsync daemon's hostname-based access cont...
CVE-2026-43299LinuxLinux KernelIn the Linux kernel, the following vulnerability has been resolved: btrfs: do not ASSERT() when the fs flips RO inside btrfs...
CVE-2026-43277LinuxLinux KernelIn the Linux kernel, the following vulnerability has been resolved: APEI/GHES: ensure that won't go past CPER allocated reco...
CVE-2026-43201LinuxLinux KernelIn the Linux kernel, the following vulnerability has been resolved: APEI/GHES: ARM processor Error: don't go past allocated ...
CVE-2026-43167In the Linux kernel, the following vulnerability has been resolved: xfrm: always flush state and policy upon NETDEV_UNREGIST...
CVE-2026-43150LinuxLinux KernelIn the Linux kernel, the following vulnerability has been resolved: perf/arm-cmn: Reject unsupported hardware configurations...

© CVE.report 2026

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

Free CVE JSON API cve.report/api

CVE.report and Source URL Uptime Status status.cve.report