The Wayback Machine - https://web.archive.org/web/20260203192244/https://nvd.nist.gov/
U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.


The NVD is the U.S. government repository of standards based vulnerability management data represented using the Security Content Automation Protocol (SCAP). This data enables automation of vulnerability management, security measurement, and compliance. The NVD includes databases of security checklist references, security-related software flaws, product names, and impact metrics.

For information on how to cite the NVD, including the database's Digital Object Identifier (DOI), please consult NIST's Public Data Repository.

Last 20 Scored Vulnerability IDs & Summaries CVSS Severity
  • CVE-2023-53668 - In the Linux kernel, the following vulnerability has been resolved: ring-buffer: Fix deadloop issue on reading trace_pipe Soft lockup occurs when reading file 'trace_pipe': watchdog: BUG: soft lockup - CPU#6 stuck for 22s! [cat:4488] [...] ... read CVE-2023-53668
    Published: October 07, 2025; 12:15:50 PM -0400

    V3.1: 7.1 HIGH

  • CVE-2023-53669 - In the Linux kernel, the following vulnerability has been resolved: tcp: fix skb_copy_ubufs() vs BIG TCP David Ahern reported crashes in skb_copy_ubufs() caused by TCP tx zerocopy using hugepages, and skb length bigger than ~68 KB. skb_copy_ubu... read CVE-2023-53669
    Published: October 07, 2025; 12:15:50 PM -0400

    V3.1: 5.5 MEDIUM

  • CVE-2023-53670 - In the Linux kernel, the following vulnerability has been resolved: nvme-core: fix dev_pm_qos memleak Call dev_pm_qos_hide_latency_tolerance() in the error unwind patch to avoid following kmemleak:- blktests (master) # kmemleak-clear; ./check n... read CVE-2023-53670
    Published: October 07, 2025; 12:15:50 PM -0400

    V3.1: 5.5 MEDIUM

  • CVE-2023-53671 - In the Linux kernel, the following vulnerability has been resolved: srcu: Delegate work to the boot cpu if using SRCU_SIZE_SMALL Commit 994f706872e6 ("srcu: Make Tree SRCU able to operate without snp_node array") assumes that cpu 0 is always onl... read CVE-2023-53671
    Published: October 07, 2025; 12:15:51 PM -0400

    V3.1: 5.5 MEDIUM

  • CVE-2023-53672 - In the Linux kernel, the following vulnerability has been resolved: btrfs: output extra debug info if we failed to find an inline backref [BUG] Syzbot reported several warning triggered inside lookup_inline_extent_backref(). [CAUSE] As usual, t... read CVE-2023-53672
    Published: October 07, 2025; 12:15:51 PM -0400

    V3.1: 5.5 MEDIUM

  • CVE-2023-53673 - In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_event: call disconnect callback before deleting conn In hci_cs_disconnect, we do hci_conn_del even if disconnection failed. ISO, L2CAP and SCO connections refer ... read CVE-2023-53673
    Published: October 07, 2025; 12:15:51 PM -0400

    V3.1: 7.8 HIGH

  • CVE-2025-68142 - PyMdown Extensions is a set of extensions for the `Python-Markdown` markdown project. Versions prior to 10.16.1 have a ReDOS bug found within the figure caption extension (`pymdownx.blocks.caption`). In systems that take unchecked user content, th... read CVE-2025-68142
    Published: December 16, 2025; 1:16:16 PM -0500

    V3.1: 5.3 MEDIUM

  • CVE-2023-53674 - In the Linux kernel, the following vulnerability has been resolved: clk: Fix memory leak in devm_clk_notifier_register() devm_clk_notifier_register() allocates a devres resource for clk notifier but didn't register that to the device, so the not... read CVE-2023-53674
    Published: October 07, 2025; 12:15:51 PM -0400

    V3.1: 5.5 MEDIUM

  • CVE-2023-53675 - In the Linux kernel, the following vulnerability has been resolved: scsi: ses: Fix possible desc_ptr out-of-bounds accesses Sanitize possible desc_ptr out-of-bounds accesses in ses_enclosure_data_process().
    Published: October 07, 2025; 12:15:51 PM -0400

    V3.1: 7.1 HIGH

  • CVE-2023-53676 - In the Linux kernel, the following vulnerability has been resolved: scsi: target: iscsi: Fix buffer overflow in lio_target_nacl_info_show() The function lio_target_nacl_info_show() uses sprintf() in a loop to print details for every iSCSI connec... read CVE-2023-53676
    Published: October 07, 2025; 12:15:51 PM -0400

    V3.1: 7.8 HIGH

  • CVE-2023-53677 - In the Linux kernel, the following vulnerability has been resolved: drm/i915: Fix memory leaks in i915 selftests This patch fixes memory leaks on error escapes in function fake_get_pages (cherry picked from commit 8bfbdadce85c4c51689da10f39c805... read CVE-2023-53677
    Published: October 07, 2025; 12:15:51 PM -0400

    V3.1: 5.5 MEDIUM

  • CVE-2026-22791 - openCryptoki is a PKCS#11 library and tools for Linux and AIX. In 3.25.0 and 3.26.0, there is a heap buffer overflow vulnerability in the CKM_ECDH_AES_KEY_WRAP implementation allows an attacker with local access to cause out-of-bounds writes in th... read CVE-2026-22791
    Published: January 13, 2026; 2:16:26 PM -0500

    V3.1: 6.1 MEDIUM

  • CVE-2026-21223 - Microsoft Edge Elevation Service exposes a privileged COM interface that inadequately validates the privileges of the calling process. A standard (non‑administrator) local user can invoke the IElevatorEdge interface method LaunchUpdateCmdElevatedA... read CVE-2026-21223
    Published: January 16, 2026; 5:16:25 PM -0500

  • CVE-2025-65396 - A vulnerability in the boot process of Blurams Flare Camera version 24.1114.151.929 and earlier allows a physically proximate attacker to hijack the boot mechanism and gain a bootloader shell via the UART interface. This is achieved by inducing a ... read CVE-2025-65396
    Published: January 14, 2026; 12:16:06 PM -0500

  • CVE-2026-22708 - Cursor is a code editor built for programming with AI. Prior to 2.3, hen the Cursor Agent is running in Auto-Run Mode with Allowlist mode enabled, certain shell built-ins can still be executed without appearing in the allowlist and without requiri... read CVE-2026-22708
    Published: January 14, 2026; 12:16:08 PM -0500

    V3.1: 9.8 CRITICAL

  • CVE-2025-65397 - An insecure authentication mechanism in the safe_exec.sh startup script of Blurams Flare Camera version 24.1114.151.929 and earlier allows an attacker with physical access to the device to execute arbitrary commands with root privileges, if file /... read CVE-2025-65397
    Published: January 14, 2026; 1:16:41 PM -0500

  • CVE-2023-53678 - In the Linux kernel, the following vulnerability has been resolved: drm/i915: Fix system suspend without fbdev being initialized If fbdev is not initialized for some reason - in practice on platforms without display - suspending fbdev should be ... read CVE-2023-53678
    Published: October 07, 2025; 12:15:51 PM -0400

    V3.1: 5.5 MEDIUM

  • CVE-2023-53679 - In the Linux kernel, the following vulnerability has been resolved: wifi: mt7601u: fix an integer underflow Fix an integer underflow that leads to a null pointer dereference in 'mt7601u_rx_skb_from_seg()'. The variable 'dma_len' in the URB packe... read CVE-2023-53679
    Published: October 07, 2025; 12:15:52 PM -0400

    V3.1: 5.5 MEDIUM

  • CVE-2026-0861 - Passing too large an alignment to the memalign suite of functions (memalign, posix_memalign, aligned_alloc) in the GNU C Library version 2.30 to 2.42 may result in an integer overflow, which could consequently result in a heap corruption. Note th... read CVE-2026-0861
    Published: January 14, 2026; 4:15:52 PM -0500

  • CVE-2023-53680 - In the Linux kernel, the following vulnerability has been resolved: NFSD: Avoid calling OPDESC() with ops->opnum == OP_ILLEGAL OPDESC() simply indexes into nfsd4_ops[] by the op's operation number, without range checking that value. It assumes c... read CVE-2023-53680
    Published: October 07, 2025; 12:15:52 PM -0400

    V3.1: 7.8 HIGH

Created September 20, 2022 , Updated August 27, 2024