A vulnerability was found in Linux Kernel up to 6.6.139/6.12.89/6.18.31/7.0.8/7.1-rc3. It has been declared as critical. Affected by this issue is the function mesh_state of the component batman-adv. The manipulation results in state issue.
This vulnerability was named CVE-2026-46206. The attack needs to be approached within the local network. There is no available exploit.
It is recommended to upgrade the affected component.
A vulnerability categorized as critical has been discovered in Linux Kernel up to 6.6.139/6.12.89/6.18.31/7.0.8/7.1-rc3. This vulnerability affects the function batadv_mesh_free of the component batman-adv. Such manipulation leads to improper synchronization.
This vulnerability is referenced as CVE-2026-46208. The attack needs to be initiated within the local network. No exploit is available.
It is advisable to upgrade the affected component.
A vulnerability identified as critical has been detected in Linux Kernel up to 7.0.8/7.1-rc2. This issue affects the function iris_close of the component media. Performing a manipulation results in use after free.
This vulnerability is identified as CVE-2026-46210. The attack can only be performed from the local network. There is not any exploit available.
You should upgrade the affected component.
A vulnerability marked as critical has been reported in Linux Kernel up to 6.6.139/6.12.89/6.18.31/7.0.8/7.1-rc1. This impacts the function drm_gem_fb_init_with_funcs of the component drm. This manipulation causes buffer overflow.
This vulnerability is tracked as CVE-2026-46209. The attack is only possible within the local network. No exploit exists.
It is suggested to upgrade the affected component.
A vulnerability marked as critical has been reported in Linux Kernel up to 6.6.139/6.12.89/6.18.31/7.0.8/7.1-rc3. The affected element is the function batadv_bla_del_backbone_claims of the component batman-adv. The manipulation leads to use after free.
This vulnerability is listed as CVE-2026-46212. The attack must be carried out from within the local network. There is no available exploit.
It is suggested to upgrade the affected component.
A vulnerability classified as critical has been found in Linux Kernel up to 6.6.139/6.12.89/6.18.31/7.0.8. This affects an unknown function of the component drm. This manipulation causes unchecked return value.
This vulnerability is registered as CVE-2026-46218. The attack requires access to the local network. No exploit is available.
It is recommended to upgrade the affected component.
A vulnerability was found in Linux Kernel up to 6.18.31/7.0.8/7.1-rc2 and classified as critical. This affects the function drm_gem_handle_create_tail of the component drm. The manipulation results in use after free.
This vulnerability is known as CVE-2026-46215. Access to the local network is required for this attack. No exploit is available.
It is suggested to upgrade the affected component.
A vulnerability categorized as critical has been discovered in TRENDnet TEW-432BRP 3.10B20. Affected is the function formPortFw of the file /goform/formPortFw. The manipulation of the argument server_name results in stack-based buffer overflow. This vulnerability only affects products that are no longer supported by the maintainer.
This vulnerability is known as CVE-2026-10158. It is possible to launch the attack remotely. Furthermore, an exploit is available.
The vendor explains: "This product has been EOL for 15 years (since 2009). As the item has been EOL for such a long time, we are not able to replicate or fix any vulnerabilities."
A vulnerability categorized as problematic has been discovered in xkbcommon up to 0.8.1. The affected element is the function ExprResolveLhs of the file xkbcomp/expr.c of the component Parser. Executing a manipulation can lead to null pointer dereference.
This vulnerability is registered as CVE-2018-15861. The attack needs to be launched locally. No exploit is available.
It is advisable to upgrade the affected component.
A vulnerability, which was classified as problematic, has been found in xkbcommon and libxkbcommon up to 0.8.0. Affected is an unknown function of the file xkbcomp/expr.c of the component Keymap File Handler. Performing a manipulation results in improper resource management.
This vulnerability was named CVE-2018-15853. The attack needs to be approached locally. There is no available exploit.
It is advisable to upgrade the affected component.
A vulnerability was found in xkbcommon up to 0.8.1. It has been rated as problematic. Impacted is the function ExprResolveLhs of the file xkbcomp/expr.c of the component Keymap File Handler. Performing a manipulation results in null pointer dereference.
This vulnerability is cataloged as CVE-2018-15859. The attack must be initiated from a local position. There is no exploit available.
Upgrading the affected component is advised.
A vulnerability was found in tektoncd pipeline up to 1.0.0/1.3.2/1.6.0/1.9.1/1.10.1 and classified as problematic. The affected element is an unknown function. Executing a manipulation can lead to improper validation of array index.
This vulnerability is handled as CVE-2026-33022. The attack can be executed remotely. There is not any exploit available.
It is suggested to upgrade the affected component.
A vulnerability was found in vllm-project vllm 0.14.1/25.py. It has been rated as critical. Impacted is the function trust_remote_code of the component HuggingFace Handler. This manipulation causes path traversal.
This vulnerability is tracked as CVE-2026-4944. The attack is possible to be carried out remotely. No exploit exists.
A vulnerability has been found in tektoncd pipeline up to 1.0.0/1.3.2/1.6.0/1.9.1/1.10.1 and classified as critical. Affected is an unknown function. Performing a manipulation of the argument pathInRepo results in path traversal.
This vulnerability was named CVE-2026-33211. The attack may be initiated remotely. There is no available exploit.
The affected component should be upgraded.
A vulnerability marked as critical has been reported in Flatpak up to 1.16.3. This issue affects some unknown processing. This manipulation causes symlink following.
This vulnerability is registered as CVE-2026-34078. Remote exploitation of the attack is possible. No exploit is available.
It is suggested to upgrade the affected component.
A vulnerability marked as critical has been reported in Flatpak up to 1.16.3. Affected is an unknown function of the component Cache Directory Handler. The manipulation leads to path traversal.
This vulnerability is listed as CVE-2026-34079. The attack may be initiated remotely. There is no available exploit.
It is suggested to upgrade the affected component.
A vulnerability, which was classified as critical, has been found in Google Chrome. This vulnerability affects unknown code of the component Skia. Performing a manipulation results in external control of assumed-immutable web parameter.
This vulnerability is known as CVE-2026-9998. Remote exploitation of the attack is possible. No exploit is available.
It is advisable to upgrade the affected component.
A vulnerability has been found in Google Chrome on macOS and classified as critical. Impacted is an unknown function of the component ANGLE. The manipulation leads to sandbox issue.
This vulnerability is uniquely identified as CVE-2026-9999. The attack is possible to be carried out remotely. No exploit exists.
The affected component should be upgraded.
A vulnerability classified as critical was found in Google Chrome. This affects an unknown part of the component Input. Such manipulation leads to use after free.
This vulnerability is traded as CVE-2026-9997. The attack may be launched remotely. There is no exploit available.
Upgrading the affected component is advised.