EN
58.254 CVE seguite
789 Sfruttate ora
188 Usate dai ransomware
Ultima sincronia

CVE Tracker

58.254 CVE

Dieci fornitori seguiti per identificativo CPE, non per parola chiave: una CVE compare qui quando NVD dichiara quali prodotti tocca, di solito qualche giorno dopo la pubblicazione.

CVE Tracker
Identificativo Gravità, ordinato dal più alto Prodotto e difetto EPSS, ordina dal più alto In KEV dal, ordina dal più alto
CVE-2025-21671 HIGH 7.8 linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: zram: fix potential UAF of zram table If zram_meta_alloc failed early, it frees allocated zram->table without setting it NULL. Which will potentially cause zram_meta_free to access the tabl 0,2% —
CVE-2025-21669 HIGH 7.8 linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: vsock/virtio: discard packets if the transport changes If the socket has been de-assigned or assigned to another transport, we must discard any packets received because they are not expected 0,2% —
CVE-2025-21664 HIGH 7.8 linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: dm thin: make get_first_thin use rcu-safe list first function The documentation in rculist.h explains the absence of list_empty_rcu() and cautions programmers against relying on a list_empty 0,2% —
CVE-2025-21661 HIGH 7.8 linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: gpio: virtuser: fix missing lookup table cleanups When a virtuser device is created via configfs and the probe fails due to an incorrect lookup table, the table is not removed. This prevents 0,2% —
CVE-2025-21655 HIGH 7.8 linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: io_uring/eventfd: ensure io_eventfd_signal() defers another RCU period io_eventfd_do_signal() is invoked from an RCU callback, but when dropping the reference to the io_ev_fd, it calls io_ev 0,3% —
CVE-2025-21652 HIGH 7.8 linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: ipvlan: Fix use-after-free in ipvlan_get_iflink(). syzbot presented an use-after-free report [0] regarding ipvlan and linkwatch. ipvlan does not hold a refcnt of the lower device unlike vla 0,2% —
CVE-2025-21631 HIGH 7.8 linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: block, bfq: fix waker_bfqq UAF after bfq_split_bfqq() Our syzkaller report a following UAF for v6.6: BUG: KASAN: slab-use-after-free in bfq_init_rq+0x175d/0x17a0 block/bfq-iosched.c:6958 Re 0,2% —
CVE-2025-21420 HIGH 7.8 microsoft windows_10_1507 Windows Disk Cleanup Tool Elevation of Privilege Vulnerability 3,7% —
CVE-2025-21418 HIGH 7.8 microsoft windows_10_1607 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability 1,6%
CVE-2025-21402 HIGH 7.8 microsoft office Microsoft Office OneNote Remote Code Execution Vulnerability 0,7% —
CVE-2025-21397 HIGH 7.8 microsoft 365_apps Microsoft Office Remote Code Execution Vulnerability 0,8% —
CVE-2025-21395 HIGH 7.8 microsoft 365_apps Microsoft Access Remote Code Execution Vulnerability 1,0% —
CVE-2025-21394 HIGH 7.8 microsoft 365_apps Microsoft Excel Remote Code Execution Vulnerability 0,8% —
CVE-2025-21392 HIGH 7.8 microsoft 365_apps Microsoft Office Remote Code Execution Vulnerability 0,8% —
CVE-2025-21390 HIGH 7.8 microsoft 365_apps Microsoft Excel Remote Code Execution Vulnerability 0,8% —
CVE-2025-21387 HIGH 7.8 microsoft 365_apps Microsoft Excel Remote Code Execution Vulnerability 0,9% —
CVE-2025-21386 HIGH 7.8 microsoft 365_apps Microsoft Excel Remote Code Execution Vulnerability 0,8% —
CVE-2025-21383 HIGH 7.8 microsoft 365_apps Microsoft Excel Information Disclosure Vulnerability 1,0% —
CVE-2025-21382 HIGH 7.8 microsoft windows_10_1809 Windows Graphics Component Elevation of Privilege Vulnerability 0,5% —
CVE-2025-21381 HIGH 7.8 microsoft 365_apps Microsoft Excel Remote Code Execution Vulnerability 1,1% —
CVE-2025-21378 HIGH 7.8 microsoft windows_10_1507 Windows CSC Service Elevation of Privilege Vulnerability 0,6% —
CVE-2025-21375 HIGH 7.8 microsoft windows_10_1507 Kernel Streaming WOW Thunk Service Driver Elevation of Privilege Vulnerability 0,6% —
CVE-2025-21373 HIGH 7.8 microsoft windows_10_1507 Windows Installer Elevation of Privilege Vulnerability 0,8% —
CVE-2025-21372 HIGH 7.8 microsoft windows_11_24h2 Microsoft Brokering File System Elevation of Privilege Vulnerability 0,4% —
CVE-2025-21370 HIGH 7.8 microsoft windows_11_22h2 Windows Virtualization-Based Security (VBS) Enclave Elevation of Privilege Vulnerability 0,5% —