|
631
|
- |
|
-
|
-
|
In the Linux kernel, the following vulnerability has been resolved:
mm/kasan: fix double free for kasan pXds
kasan_free_pxd() assumes the page table is always struct page aligned.
But that's not a…
New
|
-
|
CVE-2026-31686
|
2026-04-28 03:32 |
2026-04-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
632
|
- |
|
-
|
-
|
In the Linux kernel, the following vulnerability has been resolved:
gpio: omap: do not register driver in probe()
Commit 11a78b794496 ("ARM: OMAP: MPUIO wake updates") registers the
omap_mpuio_driv…
New
|
-
|
CVE-2026-31687
|
2026-04-28 03:32 |
2026-04-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
633
|
- |
|
-
|
-
|
In the Linux kernel, the following vulnerability has been resolved:
driver core: enforce device_lock for driver_match_device()
Currently, driver_match_device() is called from three sites. One site
…
New
|
-
|
CVE-2026-31688
|
2026-04-28 03:32 |
2026-04-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
634
|
- |
|
-
|
-
|
In the Linux kernel, the following vulnerability has been resolved:
EDAC/mc: Fix error path ordering in edac_mc_alloc()
When the mci->pvt_info allocation in edac_mc_alloc() fails, the error path
wi…
New
|
-
|
CVE-2026-31689
|
2026-04-28 03:32 |
2026-04-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
635
|
- |
|
-
|
-
|
In the Linux kernel, the following vulnerability has been resolved:
firmware: thead: Fix buffer overflow and use standard endian macros
Addresses two issues in the TH1520 AON firmware protocol driv…
New
|
-
|
CVE-2026-31690
|
2026-04-28 03:32 |
2026-04-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
636
|
- |
|
-
|
-
|
In the Linux kernel, the following vulnerability has been resolved:
igb: remove napi_synchronize() in igb_down()
When an AF_XDP zero-copy application terminates abruptly (e.g., kill -9),
the XSK bu…
New
|
-
|
CVE-2026-31691
|
2026-04-28 03:32 |
2026-04-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
637
|
8.1 |
HIGH
Network
|
zfnd
|
zebra-consensus zebrad
|
ZEBRA is a Zcash node written entirely in Rust. Prior to zebrad version 4.3.1 and zebra-consensus version 5.0.2, a logic error in Zebra's transaction verification cache could allow a malicious miner …
Update
|
CWE-1025
Comparison Using Wrong Factors
|
CVE-2026-40880
|
2026-04-28 03:26 |
2026-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
638
|
9.8 |
CRITICAL
Network
|
jizhicms
|
jizhicms
|
Jizhicms v2.5.4 is vulnerable to SQL injection in the product editing module.
Update
|
CWE-89
SQL Injection
|
CVE-2025-50229
|
2026-04-28 03:24 |
2026-04-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
639
|
7.5 |
HIGH
Network
|
zfnd
|
zebra-network zebrad
|
ZEBRA is a Zcash node written entirely in Rust. Prior to zebrad version 4.3.0 and zebra-network version 5.0.1, when deserializing addr or addrv2 messages, which contain vectors of addresses, Zebra wo…
Update
|
CWE-770
Allocation of Resources Without Limits or Throttling
|
CVE-2026-40881
|
2026-04-28 03:24 |
2026-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
640
|
4.3 |
MEDIUM
Network
|
ibm
|
guardium_data_protection
|
IBM Guardium Data Protection 12.0, 12.1, and 12.2 is vulnerable to Security Misconfiguration vulnerability in the user access control panel.
Update
|
CWE-613
Insufficient Session Expiration
|
CVE-2026-1272
|
2026-04-28 03:23 |
2026-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|