|
3121
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
nvmet-fcloop: Check remoteport port_state before calling done callback
In nvme_fc_handle_ls_rqst_work, the lsrsp->done callback i…
|
NVD-CWE-noinfo
|
CVE-2026-23376
|
2026-04-25 01:21 |
2026-03-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3122
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
En el kernel de Linux, la siguiente vulnerabilidad ha sido resuelta:
nvmet-fcloop: Verificar el estado del puerto de remoteport antes de llamar a la función de devolución de llamada 'done'
En nvme_…
|
NVD-CWE-noinfo
|
CVE-2026-23376
|
2026-04-25 01:21 |
2026-03-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3123
|
- |
|
-
|
-
|
Rejected reason: This CVE is a duplicate of another CVE.
|
-
|
CVE-2026-40609
|
2026-04-25 01:16 |
2026-04-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3124
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
net/sched: act_ife: Fix metalist update behavior
Whenever an ife action replace changes the metalist, instead of
replacing the ol…
|
CWE-787
Out-of-bounds Write
|
CVE-2026-23378
|
2026-04-25 00:57 |
2026-03-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3125
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
En el kernel de Linux, la siguiente vulnerabilidad ha sido resuelta:
net/sched: act_ife: Corregir el comportamiento de actualización de la metalista
Siempre que una acción ife replace cambia la met…
|
CWE-787
Out-of-bounds Write
|
CVE-2026-23378
|
2026-04-25 00:57 |
2026-03-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3126
|
7.4 |
HIGH
Network
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
ksmbd: Compare MACs in constant time
To prevent timing attacks, MAC comparisons need to be constant-time.
Replace the memcmp() wi…
|
NVD-CWE-noinfo
|
CVE-2026-23364
|
2026-04-25 00:46 |
2026-03-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3127
|
7.4 |
HIGH
Network
|
linux
|
linux_kernel
|
En el kernel de Linux, la siguiente vulnerabilidad ha sido resuelta:
ksmbd: Comparar MACs en tiempo constante
Para prevenir ataques de temporización, las comparaciones de MAC necesitan ser de tiemp…
|
NVD-CWE-noinfo
|
CVE-2026-23364
|
2026-04-25 00:46 |
2026-03-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3128
|
9.8 |
CRITICAL
Network
|
phpscriptsmall
|
advance_gift_shop_pro_script
|
Advance Gift Shop Pro Script 2.0.3 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the search parame…
|
CWE-89
SQL Injection
|
CVE-2019-25680
|
2026-04-25 00:45 |
2026-04-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3129
|
9.8 |
CRITICAL
Network
|
wisdom
|
pegasus_cms
|
Pegasus CMS 1.0 contains a remote code execution vulnerability in the extra_fields.php plugin that allows unauthenticated attackers to execute arbitrary commands by exploiting unsafe eval functionali…
|
CWE-22
Path Traversal
|
CVE-2019-25687
|
2026-04-25 00:42 |
2026-04-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3130
|
5.3 |
MEDIUM
Network
|
redhat
|
build_of_keycloak
|
A flaw was found in Keycloak. A remote attacker can exploit a Cross-Origin Resource Sharing (CORS) header injection vulnerability in Keycloak's User-Managed Access (UMA) token endpoint. This flaw occ…
|
CWE-346
Origin Validation Error
|
CVE-2026-37977
|
2026-04-25 00:39 |
2026-04-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|