377,174 CVE lengkap 1999–2026

CVE Notifier

Arsip lengkap dari cve.org (CVE Record), skor CVSS dari NVD, dan daftar eksploitasi aktif dari CISA KEV. Ter-update tiap 30 menit.

arsip 377,174 CVE • 12,754 critical • 1,713 KEV

  • 1999–2026
  • 395.000+ CVE
  • cve.org
  • NVD CVSS
  • CISA KEV
  • Auto-update 30m
  • SQLite full-text

Menampilkan 12 dari 377,174 entri — halaman 185/31432

CVE-2026-89898 CWE-? 8.8

media: cec: extron-da-hd-4k-plus: add sanity check

In the Linux kernel, the following vulnerability has been resolved: media: cec: extron-da-hd-4k-plus: add sanity check Add check to prevent overflowing msg.msg[] in case the incoming data is malformed.

cve.org Linux:Linux · Linux:Linux 16 Sep 2026
CVE-2026-89897 CWE-? 7.5

media: cec: Serialize exclusive follower delivery

In the Linux kernel, the following vulnerability has been resolved: media: cec: Serialize exclusive follower delivery cec_receive_notify() reads the exclusive follower pointer without the adapter lock. Serialize the no…

cve.org Linux:Linux · Linux:Linux 16 Sep 2026
CVE-2026-89896 CWE-? N/A

media: cedrus: fix memory leak in cedrus_init_ctrls()

In the Linux kernel, the following vulnerability has been resolved: media: cedrus: fix memory leak in cedrus_init_ctrls() In cedrus_init_ctrls(), the V4L2 control handler is initialized before allocating memory for ctx…

cve.org Linux:Linux · Linux:Linux 16 Sep 2026
CVE-2026-89895 CWE-? N/A

media: cobalt: Avoid freeing ALSA private data twice

In the Linux kernel, the following vulnerability has been resolved: media: cobalt: Avoid freeing ALSA private data twice snd_cobalt_card_create() stores cobsc in sc->private_data and installs snd_cobalt_card_private_fr…

cve.org Linux:Linux · Linux:Linux 16 Sep 2026
CVE-2026-89894 CWE-? 7.8

media: cx231xx: reject geometry changes while the VBI queue is busy

In the Linux kernel, the following vulnerability has been resolved: media: cx231xx: reject geometry changes while the VBI queue is busy vidioc_s_fmt_vid_cap() and vidioc_s_std() change the device-wide dev->width / dev-…

cve.org Linux:Linux · Linux:Linux 16 Sep 2026
CVE-2026-89893 CWE-? 7.8

media: cx23885: cancel NetUP CI work before teardown

In the Linux kernel, the following vulnerability has been resolved: media: cx23885: cancel NetUP CI work before teardown netup_ci_exit() frees a netup_ci_state while its work item, netup_read_ci_status(), may still be …

cve.org Linux:Linux · Linux:Linux 16 Sep 2026
CVE-2026-89892 CWE-? N/A

media: em28xx: defer audio-only extension registration

In the Linux kernel, the following vulnerability has been resolved: media: em28xx: defer audio-only extension registration The audio-only path registers extensions while probing the primary device. For a dual-TS board,…

cve.org Linux:Linux · Linux:Linux 16 Sep 2026
CVE-2026-89891 CWE-? N/A

media: em28xx: fix use-after-free of dev_next->devlist on disconnect

In the Linux kernel, the following vulnerability has been resolved: media: em28xx: fix use-after-free of dev_next->devlist on disconnect When a device with has_dual_ts=1 is probed and the is_audio_only path is taken, b…

cve.org Linux:Linux · Linux:Linux 16 Sep 2026
CVE-2026-89890 CWE-? 7.8

media: go7007: defer the ALSA v4l2 put until card release

In the Linux kernel, the following vulnerability has been resolved: media: go7007: defer the ALSA v4l2 put until card release go7007_snd_init() already takes a v4l2_device reference for the ALSA side, but go7007_snd_re…

cve.org Linux:Linux · Linux:Linux 16 Sep 2026
CVE-2026-89889 CWE-? N/A

media: i2c: imx415: Release runtime PM reference on VBLANK error

In the Linux kernel, the following vulnerability has been resolved: media: i2c: imx415: Release runtime PM reference on VBLANK error The VBLANK path returned immediately when programming VMAX failed after pm_runtime_ge…

cve.org Linux:Linux · Linux:Linux 16 Sep 2026
CVE-2026-89888 CWE-? 7.8

media: i2c: ov02a10: fix endpoint parsing use-after-free

In the Linux kernel, the following vulnerability has been resolved: media: i2c: ov02a10: fix endpoint parsing use-after-free The ov02a10_check_hwcfg() function calls fwnode_handle_put(ep) immediately after allocating a…

cve.org Linux:Linux · Linux:Linux 16 Sep 2026
CVE-2026-89887 CWE-? 7.8

media: i2c: ov7740: fix use-after-destroy in remove

In the Linux kernel, the following vulnerability has been resolved: media: i2c: ov7740: fix use-after-destroy in remove The ov7740_remove() function had a severe teardown order bug where it destroyed the driver's mutex…

cve.org Linux:Linux · Linux:Linux 16 Sep 2026

Statistik

Arsip lengkap kerentanan dari semua sumber — live dari database.

cache/cve.db • 26 Sep 2026 00:36
377,174 Total CVE terindeks
▲ 1999–2026
60,905 Tahun 2026
12,754 Critical (skor ≥ 9)
1,713 CISA KEV aktif

Distribusi Severity

CVSS v3
12,754 critical
  • Critical 12,754 (8%)
  • High 61,345 (41%)
  • Medium 68,090 (45%)
  • Low 8,634 (6%)
150,872 dinilai • 226,302 belum

Tren CVE per Tahun

1999–2026
2017
2018
2019
2020
2021
2022
2023
2024
2025
2026

cve.org

Arsip penuh CVE dari CVE Program — id, deskripsi, CWE, referensi.

245,461 CVE Record

NVD

Kerentanan dengan skor CVSS v3.x dari NIST National Vulnerability Database.

150,872 CVSS dinilai

Wordfence

Kerentanan plugin/theme WordPress dari Wordfence Intelligence.

11,134 WordPress

WPScan

Kerentanan ekosistem WordPress dari WPScan (Patchstack).

5,444 WordPress

GitHub

CVE yang menyentuh ekosistem GitHub (judul/deskripsi/produk).

3,208 Ekosistem

MITRE

CNA asli yang menerbitkan dan mengelola CVE Record.

114,963 CNA Publish

Sumber Data

cve.org

Arsip CVE Program — id, deskripsi, CWE, referensi. Update tiap 30 menit via delta release.

NVD

Skor CVSS v3.1 untuk entri yang dinilai NIST NVD.

CISA KEV

Kerentanan yang aktif dieksploitasi — prioritas tinggi.

WPScan

Kerentanan ekosistem WordPress.

Wordfence

Kerentanan plugin/theme WordPress.

GitHub

Security Advisories ekosistem open source.