Known Exploited Vulnerabilities (KEV)

ID Title Severity CVSS EPSS Source Updated
cve-2025-0689 grub2: udf: Heap based buffer overflow in grub_udf_read_block() may lead to arbitrary code execution HIGH 7.8 0.48% cvelistv5 2026-06-30
cve-2025-0686 grub2: romfs: Integer overflow when handling symlinks may lead to heap based out-of-bounds write when reading dat MEDIUM 6.4 0.28% cvelistv5 2026-06-30
cve-2025-0685 grub2: jfs: Integer overflow when handling symlinks may lead to heap based out-of-bounds write when reading data MEDIUM 6.4 0.28% cvelistv5 2026-06-30
cve-2025-0684 grub2: reiserfs: Integer overflow when handling symlinks may lead to heap based out-of-bounds write when reading data MEDIUM 6.4 0.28% cvelistv5 2026-06-30
cve-2025-0678 grub2: squash4: Integer overflow may lead to heap based out-of-bounds write when reading data HIGH 7.8 0.28% cvelistv5 2026-06-30
cve-2025-0677 grub2: UFS: Integer overflow may lead to heap based out-of-bounds write when handling symlinks MEDIUM 6.4 0.33% cvelistv5 2026-06-30
cve-2025-0624 grub2: net: Out-of-bounds write in grub_net_search_config_file() HIGH 7.6 1.41% cvelistv5 2026-08-31
cve-2025-0622 grub2: command/gpg: Use-after-free due to hooks not being removed on module unload MEDIUM 6.4 0.28% cvelistv5 2026-06-30
cve-2024-8176 libexpat: expat: Improper Restriction of XML Entity Expansion Depth in libexpat HIGH 7.5 1.33% cvelistv5 2026-08-04
cve-2024-7347 nginx: specially crafted MP4 file may cause denial of service MEDIUM 4.7 0.32% cvelistv5 2026-07-11
cve-2024-58097 kernel: wifi: ath11k: fix RCU stall while reaping monitor destination ring MEDIUM 5.5 0.21% cvelistv5 2026-06-29
cve-2024-58096 kernel: wifi: ath11k: add srng->lock for ath11k_hal_srng_* in monitor mode MEDIUM 4.4 0.25% cvelistv5 2026-08-04
cve-2024-47834 gstreamer1-plugins-good: Use-After-Free read in Matroska CodecPrivate MEDIUM 5.1 0.92% cvelistv5 2026-06-29
cve-2024-47778 gstreamer1-plugins-good: OOB-read in gst_wavparse_adtl_chunk MEDIUM 5.1 0.84% cvelistv5 2026-06-29
cve-2024-47777 gstreamer1-plugins-good: OOB-read in gst_wavparse_smpl_chunk MEDIUM 5.1 1.17% cvelistv5 2026-06-29
cve-2024-47776 SUSE CVE CVE-2024-47776 MEDIUM 5.5 1.17% cvelistv5 2026-09-01
cve-2024-47775 gstreamer1-plugins-good: OOB-read in parse_ds64 MEDIUM 5.1 1.17% cvelistv5 2026-06-29
cve-2024-47774 gstreamer1-plugins-good: GStreamer has an OOB-read in gst_avi_subtitle_parse_gab2_chunk MEDIUM 5.1 0.83% cvelistv5 2026-06-29
cve-2024-47613 gstreamer1-plugins-good: null pointer dereference in gst_gdk_pixbuf_dec_flush MEDIUM 6.5 0.90% cvelistv5 2026-06-29
cve-2024-47606 SUSE CVE CVE-2024-47606 HIGH 7.8 1.36% cvelistv5 2026-09-02
cve-2024-47603 gstreamer1-plugins-good: NULL-pointer dereference in Matroska/WebM demuxer MEDIUM 5.5 0.87% cvelistv5 2026-06-29
cve-2024-47602 gstreamer1-plugins-good: NULL-pointer dereferences and out-of-bounds reads in Matroska/WebM demuxer MEDIUM 5.5 0.92% cvelistv5 2026-06-29
cve-2024-47601 SUSE CVE CVE-2024-47601 MEDIUM 5.5 0.87% cvelistv5 2026-08-22
cve-2024-47599 gstreamer1-plugins-good: insufficient error handling in JPEG decoder that can lead to NULL-pointer dereferences MEDIUM 5.5 0.87% cvelistv5 2026-06-29
cve-2024-47598 gstreamer1-plugins-good: OOB-read in qtdemux_merge_sample_table MEDIUM 5.1 0.95% cvelistv5 2026-06-29
cve-2024-47597 gstreamer1-plugins-good: OOB-read in qtdemux_parse_samples MEDIUM 5.1 1.17% cvelistv5 2026-06-29
cve-2024-47596 gstreamer1-plugins-good: OOB-read in FOURCC_SMI_ parsing MEDIUM 5.1 1.15% cvelistv5 2026-06-29
cve-2024-47546 gstreamer1-plugins-good: integer underflow in extract_cc_from_data leading to OOB-read MEDIUM 6.2 1.08% cvelistv5 2026-06-29
cve-2024-47545 gstreamer1-plugins-good: integer underflow in FOURCC_strf parsing leading to OOB-read MEDIUM 6.2 1.08% cvelistv5 2026-06-29
cve-2024-47544 gstreamer1-plugins-good: NULL-pointer dereferences in MP4/MOV demuxer CENC handling MEDIUM 6.2 1.08% cvelistv5 2026-06-29