CVE List

cve编号 漏洞描述 危险等级 包名 是否影响lns23-3 修复状态 发现时间 修复时间
CVE-2026-3083 GStreamer rtpqdm2depay Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to e... Important gstreamer1, mingw-gstreamer1, gstreamer-plugins-good, gstreamer 完成修复 2026-03-17 2026-05-16
CVE-2026-3082 GStreamer JPEG Parser Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attacker... Important gstreamer1, mingw-gstreamer1, gstreamer 完成修复 2026-03-17 2026-05-16
CVE-2026-3081 GStreamer H.266 Codec Parser Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote ... Important gstreamer1, mingw-gstreamer1, gstreamer 完成修复 2026-03-17 2026-05-16
CVE-2026-2923 GStreamer DVB Subtitles Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to ... Important gstreamer1, mingw-gstreamer1, gstreamer, gstreamer1-plugins-base, gstreamer1-plugins-good 完成修复 2026-03-17 2026-05-16
CVE-2026-2922 GStreamer RealMedia Demuxer Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers... Important gstreamer1, mingw-gstreamer1, gstreamer 完成修复 2026-03-17 2026-05-16
CVE-2026-2921 GStreamer RIFF Palette Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to exec... Important gstreamer1, gstreamer-plugins-base, mingw-gstreamer1, gstreamer 完成修复 2026-03-17 2026-05-16
CVE-2026-2920 GStreamer ASF Demuxer Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attacker... Important gstreamer1, mingw-gstreamer1, gstreamer 完成修复 2026-03-17 2026-05-16
CVE-2026-4111 A flaw was identified in the RAR5 archive decompression logic of the libarchive library, specifically within the archive_read_d... Important libarchive 完成修复 2026-03-16 2026-05-16
CVE-2026-3497 Vulnerability in the OpenSSH GSSAPI delta included in various Linux distributions. This vulnerability affects the GSSAPI patche... Important openssh 完成修复 2026-03-13 2026-05-16
CVE-2026-32597 A missing verification step has been discovered in PyJWT. PyJWT does not validate the crit (Critical) Header Parameter defined ... Important python-PyJWT 完成修复 2026-03-13 2026-05-16
CVE-2026-3826 IFTOP developed by WellChoose has a Local File Inclusion vulnerability, allowing unauthenticated remote attackers to execute ar... Critical iftop 完成修复 2026-03-12 2026-05-13
CVE-2026-3784 curl would wrongly reuse an existing HTTP proxy connection doing CONNECT to a\nserver, even if the new request uses different c... Important curl 完成修复 2026-03-12 2026-05-14
CVE-2026-3783 When an OAuth2 bearer token is used for an HTTP(S) transfer, and that transfer\nperforms a redirect to a second URL, curl could... Important curl 完成修复 2026-03-12 2026-05-14
CVE-2026-27137 When verifying a certificate chain which contains a certificate containing multiple email address constraints which share commo... Important weldr-client, git-lfs, osbuild-composer, trustee, grafana-pcp, grafana, golang, skopeo 完成修复 2026-03-12 2026-05-16
CVE-2026-25679 url.Parse insufficiently validated the host/authority component and accepted some invalid URLs. Important weldr-client, git-lfs, osbuild-composer, trustee, grafana-pcp, grafana, golang, skopeo 完成修复 2026-03-12 2026-05-17
CVE-2026-3847 Memory safety bugs present in Firefox 148.0.2. Some of these bugs showed evidence of memory corruption and we presume that with... Important firefox 完成修复 2026-03-11 2026-05-13
CVE-2026-3846 Same-origin policy bypass in the CSS Parsing and Computation component. This vulnerability affects Firefox < 148.0.2. Moderate firefox 完成修复 2026-03-11 2026-06-26
CVE-2026-29786 node-tar is a full-featured Tar for Node.js. Prior to version 7.5.10, tar can be tricked into creating a hardlink that points o... Important nodejs:20, gjs, grafana, mozjs60 完成修复 2026-03-11 2026-05-17
CVE-2026-28693 ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6... Important ImageMagick 完成修复 2026-03-11 2026-05-15
CVE-2026-28691 ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6... Important ImageMagick 完成修复 2026-03-11 2026-05-15
CVE-2026-23868 Giflib contains a double-free vulnerability that is the result of a shallow copy in GifMakeSavedImage and incorrect error handl... Important giflib 完成修复 2026-03-11 2026-05-16
CVE-2025-14009 A critical vulnerability exists in the NLTK downloader component of nltk/nltk, affecting all versions. The _unzip_iter function... Important python-nltk 完成修复 2026-03-11 2026-05-16
CVE-2026-2359 Multer is a node.js middleware for handling multipart/form-data. A vulnerability in Multer prior to version 2.1.0 allows an a... Important firefox, thunderbird 完成修复 2026-03-09 2026-05-13
CVE-2026-1605 In Eclipse Jetty, versions 12.0.0-12.0.31 and 12.1.0-12.0.5, class GzipHandler exposes a vulnerability when a compressed HTTP r... Important maven-wagon 完成修复 2026-03-09 2026-05-16
CVE-2024-29902 Cosign provides code signing and transparency for containers and binaries. Prior to version 2.2.4, a remote image with a malici... Important cosign 完成修复 2026-03-09 2026-05-16
CVE-2026-3381 Compress::Raw::Zlib versions through 2.219 for Perl use potentially insecure versions of zlib. Compress::Raw::Zlib includes ... Important perl-Compress-Raw-Zlib 完成修复 2026-03-06 2026-05-16
CVE-2026-28364 In OCaml before 4.14.3 and 5.x before 5.4.1, a buffer over-read in Marshal deserialization (runtime/intern.c) enables remote co... Important ocaml 完成修复 2026-03-06 2026-05-16
CVE-2026-27622 OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion ... Important OpenEXR 完成修复 2026-03-06 2026-05-16
CVE-2026-25702 A Improper Access Control vulnerability in the kernel of SUSE SUSE Linux Enterprise Server 12 SP5 breaks nftables, causing fire... Important kernel 完成修复 2026-03-06 2026-05-14
CVE-2025-69534 Python-Markdown version 3.8 contain a vulnerability where malformed HTML-like sequences can cause html.parser.HTMLParser to rai... Important python-markdown, python3.11, python 完成修复 2026-03-06 2026-05-16
CVE-2025-69194 A security issue was discovered in GNU Wget2 when handling Metalink documents. The application fails to properly validate file ... Important wget, ocaml 完成修复 2026-03-06 2026-05-16
CVE-2026-1312 An issue was discovered in 6.0 before 6.0.2, 5.2 before 5.2.11, and 4.2 before 4.2.28.\n.QuerySet.order_by() is subject to SQ... Important python-django 完成修复 2026-03-05 2026-05-16
CVE-2025-23277 NVIDIA Display Driver for Linux and Windows contains a vulnerability in the kernel mode driver, where an attacker could access ... Important nvidia-driver 完成修复 2026-03-02 2026-05-14
CVE-2026-2807 Memory safety bugs present in Firefox 147 and Thunderbird 147. Some of these bugs showed evidence of memory corruption and we p... Important firefox, thunderbird 完成修复 2026-02-26 2026-05-13
CVE-2026-2805 Invalid pointer in the DOM: Core & HTML component. This vulnerability affects Firefox < 148 and Thunderbird < 148. Moderate firefox, thunderbird 完成修复 2026-02-26 2026-06-26
CVE-2026-2804 Use-after-free in the JavaScript: WebAssembly component. This vulnerability affects Firefox < 148 and Thunderbird < 148. Moderate firefox, thunderbird 完成修复 2026-02-26 2026-06-26
CVE-2026-2803 Information disclosure, mitigation bypass in the Settings UI component. This vulnerability affects Firefox < 148 and Thunderbir... Moderate firefox, thunderbird 完成修复 2026-02-26 2026-06-26
CVE-2026-2802 Race condition in the JavaScript: GC component. This vulnerability affects Firefox < 148 and Thunderbird < 148. Moderate firefox, thunderbird 完成修复 2026-02-26 2026-06-26
CVE-2026-2801 Incorrect boundary conditions in the JavaScript: WebAssembly component. This vulnerability affects Firefox < 148 and Thunderbir... Important firefox, thunderbird 完成修复 2026-02-26 2026-05-13
CVE-2026-2797 Use-after-free in the JavaScript: GC component. This vulnerability affects Firefox < 148 and Thunderbird < 148. Important firefox, thunderbird 完成修复 2026-02-26 2026-05-13
CVE-2026-2795 Use-after-free in the JavaScript: GC component. This vulnerability affects Firefox < 148 and Thunderbird < 148. Important firefox 完成修复 2026-02-26 2026-05-13
CVE-2026-2793 Memory safety bugs present in Firefox ESR 115.32, Firefox ESR 140.7, Thunderbird ESR 140.7, Firefox 147 and Thunderbird 147. So... Important firefox, thunderbird 完成修复 2026-02-26 2026-05-13
CVE-2026-2792 Memory safety bugs present in Firefox ESR 140.7, Thunderbird ESR 140.7, Firefox 147 and Thunderbird 147. Some of these bugs sho... Important firefox, thunderbird 完成修复 2026-02-26 2026-05-13
CVE-2026-2791 Mitigation bypass in the Networking: Cache component. This vulnerability affects Firefox < 148, Firefox ESR < 140.8, Thunderbir... Low firefox, thunderbird 完成修复 2026-02-26 2026-06-26
CVE-2026-2790 Same-origin policy bypass in the Networking: JAR component. This vulnerability affects Firefox < 148, Firefox ESR < 140.8, Thun... Low firefox, thunderbird 完成修复 2026-02-26 2026-06-26
CVE-2026-2789 Use-after-free in the Graphics: ImageLib component. This vulnerability affects Firefox < 148, Firefox ESR < 115.33, Firefox ESR... Moderate firefox, thunderbird 完成修复 2026-02-26 2026-06-26
CVE-2026-2788 Incorrect boundary conditions in the Audio/Video: GMP component. This vulnerability affects Firefox < 148, Firefox ESR < 115.33... Moderate firefox, thunderbird 完成修复 2026-02-26 2026-06-26
CVE-2026-2787 Use-after-free in the DOM: Window and Location component. This vulnerability affects Firefox < 148, Firefox ESR < 115.33, Firef... Moderate firefox, thunderbird 完成修复 2026-02-26 2026-06-26
CVE-2026-2786 Use-after-free in the JavaScript Engine component. This vulnerability affects Firefox < 148, Firefox ESR < 140.8, Thunderbird <... Moderate firefox, thunderbird 完成修复 2026-02-26 2026-06-26
CVE-2026-2785 Invalid pointer in the JavaScript Engine component. This vulnerability affects Firefox < 148, Firefox ESR < 140.8, Thunderbird ... Moderate firefox, thunderbird 完成修复 2026-02-26 2026-06-26
CVE-2026-2784 Mitigation bypass in the DOM: Security component. This vulnerability affects Firefox < 148, Firefox ESR < 140.8, Thunderbird < ... Moderate firefox, thunderbird 完成修复 2026-02-26 2026-06-26
CVE-2026-2783 Information disclosure due to JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability affects Firefox < ... Moderate firefox, thunderbird 完成修复 2026-02-26 2026-06-26
CVE-2026-2782 Privilege escalation in the Netmonitor component. This vulnerability affects Firefox < 148, Firefox ESR < 140.8, Thunderbird < ... Moderate firefox, thunderbird 完成修复 2026-02-26 2026-05-12
CVE-2026-2780 Privilege escalation in the Netmonitor component. This vulnerability affects Firefox < 148, Firefox ESR < 140.8, Thunderbird < ... Moderate firefox, thunderbird 完成修复 2026-02-26 2026-06-26
CVE-2026-2779 Incorrect boundary conditions in the Networking: JAR component. This vulnerability affects Firefox < 148, Firefox ESR < 140.8, ... Moderate firefox, thunderbird 完成修复 2026-02-26 2026-06-26
CVE-2026-2778 Sandbox escape due to incorrect boundary conditions in the DOM: Core & HTML component. This vulnerability affects Firefox < 148... Important firefox, thunderbird 完成修复 2026-02-26 2026-05-13
CVE-2026-2777 Privilege escalation in the Messaging System component. This vulnerability affects Firefox < 148, Firefox ESR < 115.33, Firefox... Important firefox, thunderbird 完成修复 2026-02-26 2026-05-13
CVE-2026-2776 Sandbox escape due to incorrect boundary conditions in the Telemetry component in External Software. This vulnerability affects... Important firefox, thunderbird 完成修复 2026-02-26 2026-05-13
CVE-2026-2775 Mitigation bypass in the DOM: HTML Parser component. This vulnerability affects Firefox < 148, Firefox ESR < 115.33, Firefox ES... Important firefox, thunderbird 完成修复 2026-02-26 2026-05-13
CVE-2026-2774 Integer overflow in the Audio/Video component. This vulnerability affects Firefox < 148, Firefox ESR < 115.33, Firefox ESR < 14... Important firefox, thunderbird 完成修复 2026-02-26 2026-05-13
CVE-2026-2773 Incorrect boundary conditions in the Web Audio component. This vulnerability affects Firefox < 148, Firefox ESR < 115.33, Firef... Important firefox, thunderbird 完成修复 2026-02-26 2026-05-13
CVE-2026-2772 Use-after-free in the Audio/Video: Playback component. This vulnerability affects Firefox < 148, Firefox ESR < 115.33, Firefox ... Important firefox, thunderbird 完成修复 2026-02-26 2026-05-13
CVE-2026-2771 Undefined behavior in the DOM: Core & HTML component. This vulnerability affects Firefox < 148, Firefox ESR < 115.33, Firefox E... Important firefox, thunderbird 完成修复 2026-02-26 2026-05-13
CVE-2026-2770 Use-after-free in the DOM: Bindings (WebIDL) component. This vulnerability affects Firefox < 148, Firefox ESR < 115.33, Firefox... Important firefox, thunderbird 完成修复 2026-02-26 2026-05-13
CVE-2026-2769 Use-after-free in the Storage: IndexedDB component. This vulnerability affects Firefox < 148, Firefox ESR < 115.33, Firefox ESR... Important firefox, thunderbird 完成修复 2026-02-26 2026-05-13
CVE-2026-2768 Sandbox escape in the Storage: IndexedDB component. This vulnerability affects Firefox < 148, Firefox ESR < 140.8, Thunderbird ... Important firefox, thunderbird 完成修复 2026-02-26 2026-05-13
CVE-2026-2767 Use-after-free in the JavaScript: WebAssembly component. This vulnerability affects Firefox < 148, Firefox ESR < 140.8, Thunder... Important firefox, thunderbird 完成修复 2026-02-26 2026-05-13
CVE-2026-2766 Use-after-free in the JavaScript Engine: JIT component. This vulnerability affects Firefox < 148, Firefox ESR < 140.8, Thunderb... Important firefox, thunderbird 完成修复 2026-02-26 2026-05-13
CVE-2026-2765 Use-after-free in the JavaScript Engine component. This vulnerability affects Firefox < 148, Firefox ESR < 140.8, Thunderbird <... Important firefox, thunderbird 完成修复 2026-02-26 2026-05-13
CVE-2026-2764 JIT miscompilation, use-after-free in the JavaScript Engine: JIT component. This vulnerability affects Firefox < 148, Firefox E... Important firefox, thunderbird 完成修复 2026-02-26 2026-05-13
CVE-2026-2763 Use-after-free in the JavaScript Engine component. This vulnerability affects Firefox < 148, Firefox ESR < 115.33, Firefox ESR ... Important firefox, thunderbird 完成修复 2026-02-26 2026-05-13
CVE-2026-2762 Integer overflow in the JavaScript: Standard Library component. This vulnerability affects Firefox < 148, Firefox ESR < 140.8, ... Important firefox, thunderbird 完成修复 2026-02-26 2026-05-13
CVE-2026-2761 Sandbox escape in the Graphics: WebRender component. This vulnerability affects Firefox < 148, Firefox ESR < 115.33, Firefox ES... Important firefox, thunderbird 完成修复 2026-02-26 2026-05-13
CVE-2026-2760 Sandbox escape due to incorrect boundary conditions in the Graphics: WebRender component. This vulnerability affects Firefox < ... Important firefox, thunderbird 完成修复 2026-02-26 2026-05-13
CVE-2026-2759 Incorrect boundary conditions in the Graphics: ImageLib component. This vulnerability affects Firefox < 148, Firefox ESR < 115.... Important firefox, thunderbird 完成修复 2026-02-26 2026-05-13
CVE-2026-2758 Use-after-free in the JavaScript: GC component. This vulnerability affects Firefox < 148, Firefox ESR < 115.33, Firefox ESR < 1... Important firefox, thunderbird 完成修复 2026-02-26 2026-05-13
CVE-2026-2757 Incorrect boundary conditions in the WebRTC: Audio/Video component. This vulnerability affects Firefox < 148, Firefox ESR < 115... Important firefox, thunderbird 完成修复 2026-02-26 2026-05-13
CVE-2026-26103 A flaw was found in the udisks storage management daemon that exposes a privileged D-Bus API for restoring LUKS encryption head... Important udisks2 完成修复 2026-02-26 2026-05-16
CVE-2026-25985 ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-15 and 6... Important ImageMagick 完成修复 2026-02-26 2026-05-15
CVE-2026-25965 ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-15 and 6... Important ImageMagick 完成修复 2026-02-26 2026-05-15
CVE-2026-25794 ImageMagick is free and open-source software used for editing and manipulating digital images. WriteUHDRImage in `coders/uhdr... Important ImageMagick 完成修复 2026-02-26 2026-05-15
CVE-2026-24481 ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-15 and 6... Important ImageMagick 完成修复 2026-02-26 2026-05-15
CVE-2026-26200 HDF5 is software for managing data. Prior to version 1.14.4-2, an attacker who can control an h5 file parsed by HDF5 can trig... Important hdf5 完成修复 2026-02-24 2026-05-15
CVE-2026-26007 cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. Prior to 46.0.5, the pu... Important fence-agents, python3.11-cryptography, python-cryptography 完成修复 2026-02-24 2026-05-15
CVE-2026-2447 Heap buffer overflow in libvpx. This vulnerability affects Firefox < 147.0.4, Firefox ESR < 140.7.1, Firefox ESR < 115.32.1, Th... Important firefox, thunderbird 完成修复 2026-02-24 2026-05-16
CVE-2026-23229 In the Linux kernel, the following vulnerability has been resolved: crypto: virtio - Add spinlock protection with virtqueue ... Moderate kernel:6.6, kernel:4.18, kernel:4.19, kernel:5.10 完成修复 2026-02-24 2026-05-14
CVE-2026-23225 In the Linux kernel, the following vulnerability has been resolved: sched/mmcid: Don't assume CID is CPU owned on mode switc... Moderate kernel:6.6, kernel:4.18, kernel:4.19, kernel:5.10 完成修复 2026-02-24 2026-05-14
CVE-2026-23223 In the Linux kernel, the following vulnerability has been resolved: xfs: fix UAF in xchk_btree_check_block_owner We canno... Moderate kernel:6.6, kernel:4.18, kernel:4.19, kernel:5.10 完成修复 2026-02-24 2026-05-14
CVE-2026-23219 In the Linux kernel, the following vulnerability has been resolved: mm/slab: Add alloc_tagging_slab_free_hook for memcg_allo... Moderate kernel:6.6, kernel:4.18, kernel:4.19, kernel:5.10 完成修复 2026-02-24 2026-05-14
CVE-2026-23218 In the Linux kernel, the following vulnerability has been resolved: gpio: loongson-64bit: Fix incorrect NULL check after dev... Low kernel:6.6, kernel:4.18, kernel:4.19, kernel:5.10 完成修复 2026-02-24 2026-05-14
CVE-2026-23217 In the Linux kernel, the following vulnerability has been resolved: riscv: trace: fix snapshot deadlock with sbi ecall If... Low kernel:6.6, kernel:4.18, kernel:4.19, kernel:5.10 完成修复 2026-02-24 2026-05-14
CVE-2026-23215 In the Linux kernel, the following vulnerability has been resolved: x86/vmware: Fix hypercall clobbers Fedora QA reported... Moderate kernel:6.6, kernel:4.18, kernel:4.19, kernel:5.10 完成修复 2026-02-24 2026-05-14
CVE-2026-23211 In the Linux kernel, the following vulnerability has been resolved: mm, swap: restore swap_space attr aviod kernel panic ... Moderate kernel:6.6, kernel:4.18, kernel:4.19, kernel:5.10 完成修复 2026-02-24 2026-05-14
CVE-2026-23210 In the Linux kernel, the following vulnerability has been resolved: ice: Fix PTP NULL pointer dereference during VSI rebuild... Moderate kernel:6.6, kernel:4.18, kernel:4.19, kernel:5.10 完成修复 2026-02-24 2026-05-14
CVE-2026-23205 In the Linux kernel, the following vulnerability has been resolved: smb/client: fix memory leak in smb2_open_file() Repro... Low kernel:6.6, kernel:4.18, kernel:4.19, kernel:5.10 完成修复 2026-02-24 2026-05-14
CVE-2026-23203 In the Linux kernel, the following vulnerability has been resolved:\nnet: cpsw_new: Execute ndo_set_rx_mode callback in a work ... Low kernel:6.6, kernel:4.18, kernel:4.19, kernel:5.10 完成修复 2026-02-24 2026-05-15
CVE-2026-23201 In the Linux kernel, the following vulnerability has been resolved: ceph: fix oops due to invalid pointer for kfree() in par... Moderate kernel:6.6, kernel:4.18, kernel:4.19, kernel:5.10 完成修复 2026-02-24 2026-05-15
CVE-2026-23199 In the Linux kernel, the following vulnerability has been resolved: procfs: avoid fetching build ID while holding VMA lock\n... Moderate kernel:6.6, kernel:4.18, kernel:4.19, kernel:5.10 完成修复 2026-02-24 2026-05-15
CVE-2026-23198 In the Linux kernel, the following vulnerability has been resolved: \n \nKVM: Don't clobber irqfd routing type when deassigning... Low kernel:6.6, kernel:4.18, kernel:4.19, kernel:5.10 完成修复 2026-02-24 2026-05-15
CVE-2026-23197 In the Linux kernel, the following vulnerability has been resolved: i2c: imx: preserve error state in block data length hand... Moderate kernel:6.6, kernel:4.18, kernel:4.19, kernel:5.10 完成修复 2026-02-24 2026-05-15

第1页 | 上一页| 下一页 | 最后一页

©龙芯开源社区 all right reserved,powered by Gitbook文档更新时间: 2026-08-05 21:34:32

results matching ""

    No results matching ""

    results matching ""

      No results matching ""