Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 7.8 CVE-2026-54413

CVE-2026-54413_CVE-2026-54413

driftregion iso14229 through 0.9.0 contains an integer underflow and downstream out-of-bounds read in the Handle_0x27_SecurityAccess() function in ...

driftregion iso14229 CVE
HIGH 7.8 CVE-2026-54412

CVE-2026-54412_CVE-2026-54412

LiamBindle MQTT-C through version 1.1.6 contains a heap-based out-of-bounds read and integer underflow in the mqtt_unpack_publish_response() functi...

LiamBindle MQTT-C CVE
MEDIUM 6.9 CVE-2026-54411

CVE-2026-54411_CVE-2026-54411

Linux-PAM through 1.7.2 contains an observable timing discrepancy (CWE-208) in the pam_userdb module's plaintext-password comparison path in module...

Linux-PAM Linux-PAM CVE
HIGH 7.8 CVE-2026-54410

CVE-2026-54410_CVE-2026-54410

nanoMODBUS through v1.23.0 contains an off-by-one buffer overflow in the recv_msg_header() function of the Modbus/TCP server that allows remote una...

debevv nanoMODBUS CVE
HIGH 7.8 CVE-2026-46275

Bluetooth: hci_uart: fix UAFs and race conditions in close and init paths_CVE-2026-46275

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_uart: fix UAFs and race conditions in close and init paths Vul...

Linux Linux 3b799254cf6f481460719023d7a18f46651e5e7f CVE
HIGH 7.8 CVE-2026-46274

io-wq: check that the predecessor is hashed in io_wq_remove_pending()_CVE-2026-46274

In the Linux kernel, the following vulnerability has been resolved: io-wq: check that the predecessor is hashed in io_wq_remove_pending() io_wq_r...

Linux Linux 204361a77f4018627addd4a06877448f088ddfc0 CVE
HIGH 7.8 CVE-2026-46311

drm/amdgpu/userq: fix access to stale wptr mapping_CVE-2026-46311

In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu/userq: fix access to stale wptr mapping Use drm_exec to take both ...

Linux Linux 5fb2f7fc21a3668e5794cc0d153641b9719713e1 CVE
HIGH 8.3 CVE-2026-46307

wifi: ath5k: do not access array OOB_CVE-2026-46307

In the Linux kernel, the following vulnerability has been resolved: wifi: ath5k: do not access array OOB Vincent reports: > The ath5k driver seem...

Linux Linux 6d7b97b23e114c8fbb825e6721164d228c1af3fc CVE
HIGH 7.5 CVE-2026-46306

flow_dissector: do not dissect PPPoE PFC frames_CVE-2026-46306

In the Linux kernel, the following vulnerability has been resolved: flow_dissector: do not dissect PPPoE PFC frames RFC 2516 Section 7 states tha...

Linux Linux 10f665b52a75df6eb26ddebbbc072ee264183731 CVE
HIGH 7.5 CVE-2026-46304

nvmet: avoid recursive nvmet-wq flush in nvmet_ctrl_free_CVE-2026-46304

In the Linux kernel, the following vulnerability has been resolved: nvmet: avoid recursive nvmet-wq flush in nvmet_ctrl_free nvmet_tcp_release_qu...

Linux Linux 06406d81a2d7cfb8abcc4fa6cdfeb8e5897007c5 CVE