Security Box Score — June 24, 2026 — page 2
Edition of June 24, 2026, continued — page 2 of 2. Back to page 1
| CVE | CVSS | EPSS %ile | Vendor | Product | CWE | Title |
|---|---|---|---|---|---|---|
| CVE-2026-52990 | 5.5 | 5.5 | Linux | Linux | — | fsnotify: fix inode reference leak in fsnotify_recalc_mask() |
| CVE-2026-53001 | 5.5 | 5.6 | Linux | Linux | — | netfilter: xtables: restrict several matches to inet family |
| CVE-2026-53013 | 5.5 | 5.5 | Linux | Linux | — | macvlan: fix macvlan_get_size() not reserving space for IFLA_MACVLAN_BC_CUTOFF |
| CVE-2026-53014 | 5.5 | 5.5 | Linux | Linux | — | net/sched: act_mirred: fix wrong device for mac_header_xmit check in tcf_bloc… |
| CVE-2026-53015 | 5.5 | 5.5 | Linux | Linux | — | erofs: unify lcn as u64 for 32-bit platforms |
| CVE-2026-53022 | 5.5 | 5.6 | Linux | Linux | — | platform/x86: dell-wmi-sysman: bound enumeration string aggregation |
| CVE-2026-53023 | 5.5 | 5.6 | Linux | Linux | — | fs/ntfs3: terminate the cached volume label after UTF-8 conversion |
| CVE-2026-53032 | 5.5 | 5.5 | Linux | Linux | CWE-476 | bpf: Fix NULL deref in map_kptr_match_type for scalar regs |
| CVE-2026-53034 | 5.5 | 5.6 | Linux | Linux | CWE-476 | bpf, sockmap: Fix af_unix null-ptr-deref in proto update |
| CVE-2026-53038 | 5.5 | 5.5 | Linux | Linux | CWE-125 | ima_fs: Correctly create securityfs files for unsupported hash algos |
| CVE-2026-53048 | 5.5 | 5.6 | Linux | Linux | CWE-476 | gfs2: prevent NULL pointer dereference during unmount |
| CVE-2026-53051 | 5.5 | 5.6 | Linux | Linux | — | PCI: tegra194: Fix CBB timeout caused by DBI access before core power-on |
| CVE-2026-53052 | 5.5 | 5.6 | Linux | Linux | — | ASoC: qcom: qdsp6: topology: check widget type before accessing data |
| CVE-2026-53056 | 5.5 | 5.6 | Linux | Linux | — | drm/msm/dpu: fix mismatch between power and frequency |
| CVE-2026-53058 | 5.5 | 5.6 | Linux | Linux | CWE-476 | drm/bridge: cadence: cdns-mhdp8546-core: Set the mhdp connector earlier in at… |
| CVE-2026-53061 | 5.5 | 5.6 | Linux | Linux | — | dm cache: fix dirty mapping checking in passthrough mode switching |
| CVE-2026-53065 | 5.5 | 5.6 | Linux | Linux | CWE-401 | ASoC: sti: use managed regmap_field allocations |
| CVE-2026-53066 | 5.5 | 5.6 | Linux | Linux | CWE-476 | drm/sun4i: backend: fix error pointer dereference |
| CVE-2026-53073 | 5.5 | 5.6 | Linux | Linux | CWE-476 | Bluetooth: hci_ldisc: Clear HCI_UART_PROTO_INIT on error |
| CVE-2026-53074 | 5.5 | 5.6 | Linux | Linux | — | bpf: reject short IPv4/IPv6 inputs in bpf_prog_test_run_skb |
| CVE-2026-53082 | 5.5 | 5.6 | Linux | Linux | CWE-908 | net: hamradio: 6pack: fix uninit-value in sixpack_receive_buf |
| CVE-2026-53083 | 5.5 | 5.5 | Linux | Linux | — | bpf: Fix RCU stall in bpf_fd_array_map_clear() |
| CVE-2026-53084 | 5.5 | 5.5 | Linux | Linux | — | bpf: return VMA snapshot from task_vma iterator |
| CVE-2026-53105 | 5.5 | 5.5 | Linux | Linux | CWE-476 | wifi: mt76: mt7925: prevent NULL vif dereference in mt7925_mac_write_txwi |
| CVE-2026-53111 | 5.5 | 5.6 | Linux | Linux | CWE-476 | bpf: test_run: Fix the null pointer dereference issue in bpf_lwt_xmit_push_encap |
| CVE-2026-53123 | 5.5 | 5.5 | Linux | Linux | — | md: wake raid456 reshape waiters before suspend |
| CVE-2026-53126 | 5.5 | 5.5 | Linux | Linux | — | blk-cgroup: fix disk reference leak in blkcg_maybe_throttle_current() |
| CVE-2026-53128 | 5.5 | 5.6 | Linux | Linux | — | drbd: Balance RCU calls in drbd_adm_dump_devices() |
| CVE-2025-60466 | 5.0 | 5.6 | n/a | n/a | CWE-416 | A use-after-free in the gf_filter_pid_get_packet function (/filter_core/filte… |
| CVE-2026-52937 | 5.5 | 5.4 | Linux | Linux | CWE-401 | tap: fix stack info leak in tap_ioctl() SIOCGIFHWADDR |
| CVE-2026-52940 | 5.5 | 5.4 | Linux | Linux | — | tun: zero the whole vnet header in tun_put_user() |
| CVE-2026-52978 | 5.5 | 5.4 | Linux | Linux | — | net: psp: require admin permission for dev-set and key-rotate |
| CVE-2026-52994 | 5.5 | 5.4 | Linux | Linux | — | vsock/virtio: fix MSG_ZEROCOPY pinned-pages accounting |
| CVE-2026-52997 | 5.5 | 5.4 | Linux | Linux | CWE-476 | net/sched: sch_dualpi2: drain both C-queue and L-queue in dualpi2_change() |
| CVE-2026-53018 | 5.5 | 5.4 | Linux | Linux | — | f2fs: avoid reading already updated pages during GC |
| CVE-2026-53019 | 5.5 | 5.4 | Linux | Linux | — | clk: spacemit: ccu_mix: fix inverted condition in ccu_mix_trigger_fc() |
| CVE-2026-53028 | 5.5 | 5.4 | Linux | Linux | CWE-476 | usb: typec: Fix error pointer dereference |
| CVE-2026-53030 | 5.5 | 5.4 | Linux | Linux | CWE-401 | i3c: master: renesas: Fix memory leak in renesas_i3c_i3c_xfers() |
| CVE-2026-53042 | 5.5 | 5.4 | Linux | Linux | CWE-824 | fwctl: Fix class init ordering to avoid NULL pointer dereference on device re… |
| CVE-2026-53095 | 5.5 | 5.4 | Linux | Linux | — | bpf: Fix abuse of kprobe_write_ctx via freplace |
| CVE-2026-53104 | 5.5 | 5.4 | Linux | Linux | CWE-401 | wifi: mt76: Fix memory leak destroying device |
| CVE-2026-53114 | 5.5 | 5.4 | Linux | Linux | — | perf/amd/ibs: Avoid calling perf_allow_kernel() from the IBS NMI handler |
| CVE-2026-53121 | 5.5 | 5.4 | Linux | Linux | CWE-401 | amd-pstate: Fix memory leak in amd_pstate_epp_cpu_init() |
| CVE-2026-52965 | 5.5 | 5.0 | Linux | Linux | CWE-835 | drm/ttm: Fix ttm_bo_swapout() infinite LRU walk on swapout failure |
| CVE-2026-52988 | 7.1 | 5.0 | Linux | Linux | — | netfilter: nf_tables: join hook list via splice_list_rcu() in commit phase |
| CVE-2026-57289 | 4.8 | 5.0 | Jenkins Project | Jenkins Bitbucket Push and Pull Request Plugin | CWE-295 | Jenkins Bitbucket Push and Pull Request Plugin 3.3.8 and earlier unconditiona… |
| CVE-2026-53113 | 5.5 | 4.8 | Linux | Linux | CWE-401 | wifi: ath11k: fix memory leaks in beacon template setup |
| CVE-2026-54905 | 2.0 | 4.7 | ruby-concurrency | concurrent-ruby | CWE-128 | concurrent-ruby: `ReentrantReadWriteLock` read-count overflow grants a write … |
| CVE-2026-13037 | 7.8 | 4.2 | Chrome | CWE-416 | Use after free in WebView in Google Chrome on Android prior to 149.0.7827.197… | |
| CVE-2026-13201 | 7.3 | 4.2 | Red Hat | Red Hat Container Native Virtualization 4.13 | CWE-61 | Kubevirt: virt-handler-rhel9: kubevirt: safepath symlink following in virt-ha… |
| CVE-2026-52976 | 7.8 | 3.9 | Linux | Linux | CWE-416 | drm/xe: Fix error cleanup in xe_exec_queue_create_ioctl() |
| CVE-2026-52938 | 5.5 | 3.8 | Linux | Linux | CWE-476 | bpf: Fix NULL pointer dereference in bpf_sk_storage_clone and diag paths |
| CVE-2026-52949 | 5.5 | 3.8 | Linux | Linux | — | drm/ttm: Fix ttm_bo_shrink() infinite LRU walk on backup failure |
| CVE-2026-53007 | 5.5 | 3.8 | Linux | Linux | CWE-476 | ice: fix potential NULL pointer deref in error path of ice_set_ringparam() |
| CVE-2026-53017 | 5.5 | 3.8 | Linux | Linux | — | f2fs: fix data loss caused by incorrect use of nat_entry flag |
| CVE-2026-53029 | 5.5 | 3.8 | Linux | Linux | CWE-908 | fs/ntfs3: prevent uninitialized lcn caused by zero len |
| CVE-2026-53079 | 5.5 | 3.8 | Linux | Linux | CWE-401 | net_sched: fix skb memory leak in deferred qdisc drops |
| CVE-2026-53099 | 5.5 | 3.8 | Linux | Linux | — | bpf: Switch CONFIG_CFI_CLANG to CONFIG_CFI |
| CVE-2026-53102 | 5.5 | 3.8 | Linux | Linux | CWE-401 | wifi: mt76: Fix memory leak after mt76_connac_mcu_alloc_sta_req() |
| CVE-2026-53106 | 5.5 | 3.8 | Linux | Linux | CWE-401 | bpf: Do not allow deleting local storage in NMI |
| CVE-2026-53124 | 5.5 | 3.8 | Linux | Linux | — | ublk: reset per-IO canceled flag on each fetch |
| CVE-2026-53127 | 5.5 | 3.8 | Linux | Linux | CWE-401 | block: fix zones_cond memory leak on zone revalidation error paths |
| CVE-2026-52973 | 7.8 | 3.7 | Linux | Linux | CWE-416 | futex: Drop CLONE_THREAD requirement for private default hash alloc |
| CVE-2026-53016 | 7.8 | 3.6 | Linux | Linux | CWE-787 | crypto: ccp - copy IV using skcipher ivsize |
| CVE-2026-53059 | 7.8 | 3.6 | Linux | Linux | CWE-787 | dm log: fix out-of-bounds write due to region_count overflow |
| CVE-2026-52950 | 7.8 | 3.5 | Linux | Linux | CWE-416 | drm/xe/dma-buf: fix UAF with retry loop |
| CVE-2026-52975 | 7.8 | 3.5 | Linux | Linux | — | bonding: 3ad: implement proper RCU rules for port->aggregator |
| CVE-2026-53036 | 7.8 | 3.5 | Linux | Linux | CWE-193 | bpf, arm64: Fix off-by-one in check_imm signed range check |
| CVE-2026-39894 | 2.5 | 3.5 | Cacti | cacti | CWE-474 | Cacti: RRDtool metric shift via LC_NUMERIC locale comma decimal formatting |
| CVE-2026-57292 | 5.4 | 3.3 | Jenkins Project | Jenkins Gitee Plugin | CWE-352 | A cross-site request forgery (CSRF) vulnerability in Jenkins Gitee Plugin 128… |
| CVE-2026-57298 | 5.4 | 3.3 | Jenkins Project | Jenkins Contrast Continuous Application Security Plugin | CWE-352 | A cross-site request forgery (CSRF) vulnerability in Jenkins Contrast Continu… |
| CVE-2026-52923 | 7.8 | 3.1 | Linux | Linux | CWE-401 | ipc: limit next_id allocation to the valid ID range |
| CVE-2026-53005 | 7.8 | 3.1 | Linux | Linux | CWE-416 | af_unix: Drop all SCM attributes for SOCKMAP. |
| CVE-2026-53054 | 7.8 | 3.1 | Linux | Linux | CWE-667 | drm/msm: Fix VM_BIND UNMAP locking |
| CVE-2026-7539 | 7.3 | 2.9 | HP Inc. | HP Dock Accessory | CWE-379 | HP Dock Accessory WMI Provider Installer Security Update |
| CVE-2026-9721 | 4.3 | 2.8 | chuhpl | Book a Room Event Calendar | CWE-352 | Book a Room Event Calendar <= 1.9 - Cross-Site Request Forgery to Settings Up… |
| CVE-2026-53000 | 7.8 | 2.8 | Linux | Linux | CWE-763 | netfilter: nat: use kfree_rcu to release ops |
| CVE-2026-53004 | 7.8 | 2.8 | Linux | Linux | CWE-787 | sctp: fix OOB write to userspace in sctp_getsockopt_peer_auth_chunks |
| CVE-2026-53009 | 7.8 | 2.8 | Linux | Linux | CWE-415 | ice: fix double-free of tx_buf skb |
| CVE-2026-52948 | 5.5 | 2.8 | Linux | Linux | CWE-190 | i2c: dev: prevent integer overflow in I2C_TIMEOUT ioctl |
| CVE-2026-56269 | 4.3 | 2.8 | Flowise | Flowise | CWE-798 | Flowise - Weak Default Token Hash Secret in JWT Token Encryption |
| CVE-2026-52984 | 5.5 | 2.7 | Linux | Linux | — | net/sched: netem: fix queue limit check to include reordered packets |
| CVE-2026-53060 | 5.5 | 2.7 | Linux | Linux | CWE-401 | dm cache metadata: fix memory leak on metadata abort retry |
| CVE-2026-53063 | 5.5 | 2.7 | Linux | Linux | — | dm cache: fix write hang in passthrough mode |
| CVE-2026-53020 | 7.8 | 2.6 | Linux | Linux | CWE-362 | um: Fix potential race condition in TLB sync |
| CVE-2026-52915 | 7.1 | 2.5 | Linux | Linux | CWE-129 | netfilter: ip6t_hbh: reject oversized option lists |
| CVE-2026-13208 | 6.5 | 2.5 | Red Hat | Red Hat OpenShift Virtualization 4 | CWE-287 | Kubevirt: virt-handler-rhel9: kubevirt: virt-handler notify server trusts vmi… |
| CVE-2026-52942 | 7.1 | 2.5 | Linux | Linux | CWE-125 | netfilter: nf_log: validate MAC header was set before dumping it |
| CVE-2026-53035 | 5.5 | 2.5 | Linux | Linux | CWE-667 | bpf, sockmap: Fix af_unix iter deadlock |
| CVE-2026-53037 | 5.5 | 2.5 | Linux | Linux | CWE-667 | HID: usbhid: fix deadlock in hid_post_reset() |
| CVE-2026-53101 | 5.5 | 2.4 | Linux | Linux | CWE-667 | wifi: mt76: mt7921: fix potential deadlock in mt7921_roc_abort_sync |
| CVE-2026-53122 | 5.5 | 2.4 | Linux | Linux | CWE-667 | btrfs: fix deadlock between reflink and transaction commit when using flushon… |
| CVE-2026-52979 | 5.5 | 2.3 | Linux | Linux | CWE-667 | net: psp: check for device unregister when creating assoc |
| CVE-2026-53100 | 5.5 | 2.3 | Linux | Linux | CWE-667 | wifi: mt76: fix deadlock in remain-on-channel |
| CVE-2026-53103 | 5.5 | 2.3 | Linux | Linux | CWE-667 | wifi: mt76: mt7925: fix potential deadlock in mt7925_roc_abort_sync |
| CVE-2026-53125 | 5.5 | 2.3 | Linux | Linux | CWE-667 | md: fix array_state=clear sysfs deadlock |
| CVE-2026-52977 | 5.5 | 2.3 | Linux | Linux | — | futex: Prevent lockup in requeue-PI during signal/ timeout wakeup |
| CVE-2026-52995 | 5.5 | 2.2 | Linux | Linux | — | net/rds: zero per-item info buffer before handing it to visitors |
| CVE-2026-53021 | 5.5 | 2.2 | Linux | Linux | CWE-190 | scsi: target: core: Fix integer overflow in UNMAP bounds check |
| CVE-2026-53039 | 5.5 | 2.2 | Linux | Linux | CWE-617 | ocfs2: validate group add input before caching |
| CVE-2026-53064 | 5.5 | 2.3 | Linux | Linux | CWE-476 | dm cache: fix null-deref with concurrent writes in passthrough mode |
| CVE-2026-53093 | 5.5 | 2.3 | Linux | Linux | CWE-476 | wifi: brcmfmac: Fix error pointer dereference |
| CVE-2026-53027 | 5.5 | 2.2 | Linux | Linux | — | fs/ntfs3: fix missing run load for vcn0 in attr_data_get_block_locked() |
| CVE-2026-52927 | 7.8 | 2.0 | Linux | Linux | CWE-125 | netfilter: ebtables: fix OOB read in compat_mtw_from_user |
| CVE-2026-52933 | 7.8 | 2.0 | Linux | Linux | CWE-835 | io_uring/poll: fix signed comparison in io_poll_get_ownership() |
| CVE-2026-52919 | 7.8 | 1.8 | Linux | Linux | CWE-191 | batman-adv: fix tp_meter counter underflow during shutdown |
| CVE-2026-53129 | 7.8 | 1.8 | Linux | Linux | CWE-416 | fs/mbcache: cancel shrink work before destroying the cache |
| CVE-2026-53766 | 6.1 | 1.8 | ChromeDevTools | chrome-devtools-mcp | CWE-22 | chrome-devtools-mcp: validatePath() does not canonicalize symlinks before enf… |
| CVE-2026-52991 | 7.8 | 1.7 | Linux | Linux | CWE-362 | sched/psi: fix race between file release and pressure write |
| CVE-2026-52930 | 5.5 | 1.7 | Linux | Linux | — | ipc/shm: serialize orphan cleanup with shm_nattch updates |
| CVE-2026-52928 | 5.5 | 1.7 | Linux | Linux | — | af_unix: Reject SIOCATMARK on non-stream sockets |
| CVE-2026-53080 | 5.5 | 1.7 | Linux | Linux | CWE-476 | net/sched: cls_fw: fix NULL dereference of "old" filters before change() |
| CVE-2026-52959 | 7.8 | 1.6 | Linux | Linux | — | virt: sev-guest: Do not use host-controlled page order in cleanup path |
| CVE-2026-53107 | 5.5 | 1.6 | Linux | Linux | — | wifi: libertas: don't kill URBs in interrupt context |
| CVE-2026-53765 | 6.1 | 1.1 | ChromeDevTools | chrome-devtools-mcp | CWE-59 | chrome-devtools-mcp: daemon.pid write follows symlinks in /tmp fallback runti… |
| CVE-2026-53050 | 7.8 | 0.9 | Linux | Linux | CWE-362 | quota: Fix race of dquot_scan_active() with quota deactivation |
| CVE-2026-53008 | 4.7 | 0.8 | Linux | Linux | CWE-362 | ice: fix race condition in TX timestamp ring cleanup |
| CVE-2026-53108 | 4.7 | 0.8 | Linux | Linux | CWE-362 | powerpc/64s: Fix unmap race with PMD migration entries |
| CVE-2026-53062 | 7.8 | 0.8 | Linux | Linux | CWE-667 | dm cache policy smq: fix missing locks in invalidating cache blocks |
| CVE-2026-56272 | 5.6 | 0.8 | Flowise | Flowise | CWE-916 | Flowise - Insufficient Password Salt Rounds in Bcrypt Hashing |