Total CVEs

140,284

Critical Severity

3,711

High Severity

13,344

Last 7 Days

1,818
Quick preset (or use dates below)
Clear Filters
๐Ÿ“… Showing Year: 2026 (January 1 - December 31, 2026) View All Years โ†’
Showing 101 - 120 of 36,689 CVEs

In the Linux kernel, the following vulnerability has been resolved: x86/kexec: Push kjump return address even for non-kjump kexec The version of purgatory code shipped by kexec-tools attempts to look above the top of its stack to find a return address for a kjump, even in a non-kjump kexec. After...

Vendor: Linux
Product: Linux
Published: Jun 26, 2026
Source: NVD

In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Avoid NULL pointer dereference or refcount corruption Commit 60f030f7418d ("iommu/vt-d: Avoid use of NULL after WARN_ON_ONCE") fixed a NULL pointer dereference in an unlikely situation partly. If dev_pasid i...

Vendor: Linux
Product: Linux
Published: Jun 26, 2026
Source: NVD

In the Linux kernel, the following vulnerability has been resolved: iommu: Fix NULL group->domain dereference in pci_dev_reset_iommu_done() Local sashiko review pointed it out that group->domain could be NULL when a default domain fails to allocate during the first probe, which can crash at ...

Vendor: Linux
Product: Linux
Published: Jun 26, 2026
Source: NVD

In the Linux kernel, the following vulnerability has been resolved: drm/gma500/oaktrail_lvds: fix hang on init failure The LVDS init code looks up an I2C adapter using i2c_get_adapter() and tries to read the EDID before falling back to allocating and registering its own adapter. The error handlin...

Vendor: Linux
Product: Linux
Published: Jun 26, 2026
Source: NVD

In the Linux kernel, the following vulnerability has been resolved: arm_mpam: Check whether the config array is allocated before destroying it __destroy_component_cfg() is called to free the configuration array. It uses the embedded 'garbage' structure, which means the array has to be al...

Vendor: Linux
Product: Linux
Published: Jun 26, 2026
Source: NVD
CVE-2026-52785 CRITICAL - 9.9

OpenProject is open-source, web-based project management software. Prior to 17.3.3 and 17.4.1, there is a SQL injection in timestamps functionality. OpenProject baseline comparison allows callers to request historic work-package attributes using the timestamps parameter. This vulnerability is fixed ...

Vendor: opf
Product: openproject
Published: Jun 26, 2026
Source: NVD
CVE-2026-52784 HIGH - 8.8

OpenProject is open-source, web-based project management software. Prior to 17.3.3 and 17.4.1, there is a CSRF on TARGET through /users/:id via POST parameter "user[admin]". This vulnerability is fixed in 17.3.3 and 17.4.1.

Vendor: opf
Product: openproject
Published: Jun 26, 2026
Source: NVD
CVE-2026-52783 HIGH - 8.2

OpenProject is open-source, web-based project management software. Prior to 17.3.3 and 17.4.1, OpenProject's Storages module writes the OneDrive/SharePoint userless OAuth access_token plaintext to Rails.cache under the deterministic key storage.<id>.httpx_access_token, repopulated continu...

Vendor: opf
Product: openproject
Published: Jun 26, 2026
Source: NVD
CVE-2026-52782 CRITICAL - 9.9

OpenProject is open-source, web-based project management software. Prior to 17.3.3 and 17.4.1, there is an IDOR through /projects/<A>/settings/project_storages/<A_ps_id> via PATCH parameter "storages_project_storage[project_folder_id]" leads to Access to Unauthorized Resources....

Vendor: opf
Product: openproject
Published: Jun 26, 2026
Source: NVD
CVE-2026-52781 MEDIUM - 6.4

OpenProject is open-source, web-based project management software. Prior to 17.3.3 and 17.4.1, the HTML sanitizer grants <macro> elements unrestricted data-* attributes via :data wildcard. An attacker injects data-controller="poll-for-changes" into a work package description, causing...

Vendor: opf
Product: openproject
Published: Jun 26, 2026
Source: NVD
CVE-2026-52780 CRITICAL - 9.6

OpenProject is open-source, web-based project management software. Prior to 17.3.3 and 17.4.1, cache store poisoning leads to Remote Code Execution (RCE). This vulnerability is fixed in 17.3.3 and 17.4.1.

Vendor: opf
Product: openproject
Published: Jun 26, 2026
Source: NVD
CVE-2026-52779 MEDIUM - 5.4

OpenProject is open-source, web-based project management software. Prior to 17.3.3 and 17.4.1, a cross-project IDOR / authorization context confusion in the Calendar and Team Planner modules allows a user with management permissions in one project to delete public Calendar or Team Planner Queries fr...

Vendor: opf
Product: openproject
Published: Jun 26, 2026
Source: NVD
CVE-2026-49991 HIGH - 8.6

RustFS is a distributed object storage system built in Rust. In 1.0.0-beta.4, authenticated users with only PutObject permission on their own bucket can exploit a path traversal vulnerability in the Snowball auto-extract feature to write arbitrary objects into other users' buckets, completely b...

Vendor: rustfs
Product: rustfs
Published: Jun 26, 2026
Source: NVD
CVE-2026-49355 MEDIUM - 4.3

OpenProject is open-source, web-based project management software. Prior to 17.4.0, `GET /api/v3/meetings/:meeting_id/agenda_items/:agenda_item_id` discloses private work package data from a linked work package that belongs to a private/inaccessible project. This vulnerability is fixed in 17.4.0.

Vendor: opf
Product: openproject
Published: Jun 26, 2026
Source: NVD
CVE-2026-47193 HIGH - 7.5

OpenProject is open-source, web-based project management software. Prior to 17.3.3 and 17.4.1, the journal diff endpoint discloses hidden historical field values without enforcing object and field visibility. This vulnerability is fixed in 17.3.3 and 17.4.1.

Vendor: opf
Product: openproject
Published: Jun 26, 2026
Source: NVD
CVE-2026-46386 CRITICAL - 9.9

OpenProject is open-source, web-based project management software. Prior to , the official openproject/openproject Docker image ships ENV SECRET_KEY_BASE=OVERWRITE_ME as the default Rails master key. Combined with cookies_serializer = :marshal, this gives any logged-in user a deterministic Marshal-d...

Vendor: opf
Product: openproject
Published: Jun 26, 2026
Source: NVD
CVE-2026-44736 MEDIUM - 6.5

OpenProject is open-source, web-based project management software. Prior to 17.4.0, the GET /api/v3/relations endpoint allows any authenticated user to retrieve relations โ€” and the subject (title) of work packages they have no permission to view โ€” by supplying an arbitrary work package ID in the inv...

Vendor: opf
Product: openproject
Published: Jun 26, 2026
Source: NVD
CVE-2026-44735 MEDIUM - 6.5

OpenProject is open-source, web-based project management software. Prior to 17.3.2 and 17.4.0, the GET /api/v3/shares endpoint returns share details for ALL work packages in a project to any user with the view_shared_work_packages permission. The authorization check operates at the project level onl...

Vendor: opf
Product: openproject
Published: Jun 26, 2026
Source: NVD
CVE-2026-44734 MEDIUM - 6.5

OpenProject is open-source, web-based project management software. Prior to 17.3.2 and 17.4.0, a Missing Authorization vulnerability exists in OpenProject's CostReportsController. The rename and update actions allow any authenticated user to modify the name, filters, and grouping of any Public ...

Vendor: opf
Product: openproject
Published: Jun 26, 2026
Source: NVD
CVE-2026-44733 MEDIUM - 5.9

OpenProject is open-source, web-based project management software. Prior to 17.3.2 and 17.4.0, Business Logic Error on OpenProject through PATCH request to /api/v3/users/me permits to bypass password requirements. A password validation flaw in the change password behavior allows attackers to change ...

Vendor: opf
Product: openproject
Published: Jun 26, 2026
Source: NVD