Total
398899 CVE
| CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
|---|---|---|---|---|---|
| CVE-2026-67592 | 1 Apache | 1 Qpid Protonj2 | 2026-08-07 | N/A | 7.5 HIGH |
| It was not possible to govern the maximum number of transfer frames per incoming delivery, enabling an authenticated attacker to cause excessive resource usage and potential denial of service. This issue affects Apache Qpid ProtonJ2: through 1.1.0. Users are recommended to upgrade to version 1.2.0, which fixes the issue | |||||
| CVE-2026-67591 | 1 Apache | 1 Qpid Protonj2 | 2026-08-07 | N/A | 6.5 MEDIUM |
| An authenticated attacker could exceed the session flow control incoming window potentially leading to denial of service. This issue affects Apache Qpid ProtonJ2: through 1.1.0. Users are recommended to upgrade to version 1.2.0, which fixes the issue. | |||||
| CVE-2026-24253 | 2 Linux, Nvidia | 2 Linux Kernel, Dynamo | 2026-08-07 | N/A | 8.2 HIGH |
| NVIDIA Dynamo for Linux contains a vulnerability where an attacker could cause an out-of-bounds write. A successful exploit of this vulnerability might lead to denial of service and data tampering. | |||||
| CVE-2026-24254 | 2 Linux, Nvidia | 2 Linux Kernel, Dynamo | 2026-08-07 | N/A | 9.8 CRITICAL |
| NVIDIA Dynamo for Linux contains a vulnerability in the multimodal serving topology, where an attacker could cause an out-of-bounds write. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, denial of service, and information disclosure. | |||||
| CVE-2026-24255 | 2 Linux, Nvidia | 2 Linux Kernel, Dynamo | 2026-08-07 | N/A | 7.5 HIGH |
| NVIDIA Dynamo for Linux contains a vulnerability in the multimodal embedding cache, where an attacker could cause a hash collision by submitting images that share an identical pixel byte sequence but have different dimensions. A successful exploit of this vulnerability might lead to data tampering. | |||||
| CVE-2026-47612 | 2 Linux, Nvidia | 2 Linux Kernel, Dynamo | 2026-08-07 | N/A | 7.5 HIGH |
| NVIDIA Dynamo for Linux contains a vulnerability in the image loading component where an attacker may cause improper limitation of a pathname to a restricted directory. A successful exploit of this vulnerability might lead to information disclosure. | |||||
| CVE-2026-56160 | 1 Microsoft | 1 Azure Red Hat Openshift | 2026-08-07 | N/A | 9.1 CRITICAL |
| Improper authorization in Azure Red Hat OpenShift (ARO) allows an authorized attacker to elevate privileges over a network. | |||||
| CVE-2026-47613 | 2 Linux, Nvidia | 2 Linux Kernel, Dynamo | 2026-08-07 | N/A | 7.5 HIGH |
| NVIDIA Dynamo for Linux contains a vulnerability where an attacker may cause improper limitation of a pathname to a restricted directory by supplying a crafted local path in a multimodal request. A successful exploit of this vulnerability might lead to information disclosure. | |||||
| CVE-2026-62825 | 1 Microsoft | 1 Azure Key Vault | 2026-08-07 | N/A | 10.0 CRITICAL |
| Improper authentication in Azure Key Vault allows an unauthorized attacker to elevate privileges over a network. | |||||
| CVE-2026-50481 | 1 Microsoft | 1 Azure Active Directory | 2026-08-07 | N/A | 9.9 CRITICAL |
| Modification of assumed-immutable data (maid) in Azure Active Directory allows an authorized attacker to elevate privileges over a network. | |||||
| CVE-2026-56161 | 1 Microsoft | 1 Azure Logic Apps | 2026-08-07 | N/A | 9.6 CRITICAL |
| Improper access control in Azure Logic Apps allows an authorized attacker to disclose information over a network. | |||||
| CVE-2026-47614 | 2 Linux, Nvidia | 2 Linux Kernel, Dynamo | 2026-08-07 | N/A | 7.5 HIGH |
| NVIDIA Dynamo for Linux contains a vulnerability where an attacker may cause server-side request forgery. A successful exploit of this vulnerability might lead to information disclosure. | |||||
| CVE-2026-59115 | 1 Microsoft | 1 Entra Provisioning Service | 2026-08-07 | N/A | 9.9 CRITICAL |
| '.../...//' in Microsoft Entra Provisioning Service (SyncFabric) allows an authorized attacker to elevate privileges over a network. | |||||
| CVE-2026-47615 | 2 Linux, Nvidia | 2 Linux Kernel, Dynamo | 2026-08-07 | N/A | 7.5 HIGH |
| NVIDIA Dynamo for Linux contains a vulnerability where an attacker may cause server-side request forgery by supplying a crafted URL in a multimodal request. A successful exploit of this vulnerability might lead to information disclosure. | |||||
| CVE-2023-2235 | 1 Linux | 1 Linux Kernel | 2026-08-07 | N/A | 7.8 HIGH |
| A use-after-free vulnerability in the Linux Kernel Performance Events system can be exploited to achieve local privilege escalation. The perf_group_detach function did not check the event's siblings' attach_state before calling add_event_to_groups(), but remove_on_exec made it possible to call list_del_event() on before detaching from their group, making it possible to use a dangling pointer causing a use-after-free vulnerability. We recommend upgrading past commit fd0815f632c24878e325821943edccc7fde947a2. | |||||
| CVE-2022-2196 | 2 Debian, Linux | 2 Debian Linux, Linux Kernel | 2026-08-07 | N/A | 5.8 MEDIUM |
| A regression exists in the Linux Kernel within KVM: nVMX that allowed for speculative execution attacks. L2 can carry out Spectre v2 attacks on L1 due to L1 thinking it doesn't need retpolines or IBPB after running L2 due to KVM (L0) advertising eIBRS support to L1. An attacker at L2 with code execution can execute code on an indirect branch on the host machine. We recommend upgrading to Kernel 6.2 or applying the relevant stable backports (v5.4.233, v5.10.170, v5.15.96, v6.1.14). | |||||
| CVE-2026-47616 | 2 Linux, Nvidia | 2 Linux Kernel, Dynamo | 2026-08-07 | N/A | 7.5 HIGH |
| NVIDIA Dynamo for Linux contains a vulnerability in the multimodal media fetcher where an attacker may cause server-side request forgery. A successful exploit of this vulnerability might lead to information disclosure. | |||||
| CVE-2026-62918 | 1 Microsoft | 1 Teams | 2026-08-07 | N/A | 7.5 HIGH |
| Improper verification of cryptographic signature in Microsoft Teams allows an unauthorized attacker to perform spoofing over a network. | |||||
| CVE-2026-65668 | 1 Microsoft | 1 Purview Ediscovery | 2026-08-07 | N/A | 8.8 HIGH |
| Improper access control in Microsoft Purview eDiscovery allows an authorized attacker to elevate privileges over a network. | |||||
| CVE-2026-68823 | 1 Microsoft | 1 Azure Confidential Ledger | 2026-08-07 | N/A | 9.1 CRITICAL |
| Exposed dangerous method or function in Azure Confidential Ledger allows an authorized attacker to execute code over a network. | |||||
