377,174 CVE lengkap 1999–2026

CVE Notifier

Arsip lengkap dari cve.org (CVE Record), skor CVSS dari NVD, dan daftar eksploitasi aktif dari CISA KEV. Ter-update tiap 30 menit.

arsip 377,174 CVE • 12,754 critical • 1,713 KEV

  • 1999–2026
  • 395.000+ CVE
  • cve.org
  • NVD CVSS
  • CISA KEV
  • Auto-update 30m
  • SQLite full-text

Menampilkan 12 dari 377,174 entri — halaman 187/31432

CVE-2026-89874 CWE-? N/A

media: v4l2-async: avoid deleting unlinked ASC entry on link error

In the Linux kernel, the following vulnerability has been resolved: media: v4l2-async: avoid deleting unlinked ASC entry on link error v4l2_async_match_notify() creates ancillary media links before adding asc->asc_subd…

cve.org Linux:Linux · Linux:Linux 16 Sep 2026
CVE-2026-89873 CWE-? 7.8

media: v4l2-ctrls: validate HEVC EXT SPS RPS counts

In the Linux kernel, the following vulnerability has been resolved: media: v4l2-ctrls: validate HEVC EXT SPS RPS counts The HEVC SPS control carries the short-term and long-term RPS counts that decoder drivers use to w…

cve.org Linux:Linux · Linux:Linux 16 Sep 2026
CVE-2026-89872 CWE-? N/A

media: v4l2-fwnode: Fix fwnode leak in v4l2_fwnode_parse_link

In the Linux kernel, the following vulnerability has been resolved: media: v4l2-fwnode: Fix fwnode leak in v4l2_fwnode_parse_link In v4l2_fwnode_parse_link(), the remote endpoint fwnode reference is acquired using fwno…

cve.org Linux:Linux · Linux:Linux 16 Sep 2026
CVE-2026-89871 CWE-? N/A

media: video-i2c: fix kthread error pointer left in kthread_vid_cap on failure

In the Linux kernel, the following vulnerability has been resolved: media: video-i2c: fix kthread error pointer left in kthread_vid_cap on failure kthread_run() returns an ERR_PTR on failure, not NULL. When start_strea…

cve.org Linux:Linux · Linux:Linux 16 Sep 2026
CVE-2026-89870 CWE-? 7.8

media: zoran: Avoid freeing a registered video_device twice

In the Linux kernel, the following vulnerability has been resolved: media: zoran: Avoid freeing a registered video_device twice zoran_init_video_device() installs zoran_vdev_release() as the video_device release callba…

cve.org Linux:Linux · Linux:Linux 16 Sep 2026
CVE-2026-89869 CWE-? N/A

media: qcom: iris: use disable_irq() during power-off

In the Linux kernel, the following vulnerability has been resolved: media: qcom: iris: use disable_irq() during power-off The IRQ is registered as a threaded IRQ. Using disable_irq_nosync() in iris_vpu_power_off() doe…

cve.org Linux:Linux · Linux:Linux 16 Sep 2026
CVE-2026-89868 CWE-? N/A

media: chips-media: wave5: Add timeout while stop_streaming

In the Linux kernel, the following vulnerability has been resolved: media: chips-media: wave5: Add timeout while stop_streaming When stop_streaming is called, an infinite loop may occur in some cases. Add a bounded pol…

cve.org Linux:Linux · Linux:Linux 16 Sep 2026
CVE-2026-89867 CWE-? N/A

media: chips-media: wave5: Defer job_finish() only when a DEC_PIC was queued

In the Linux kernel, the following vulnerability has been resolved: media: chips-media: wave5: Defer job_finish() only when a DEC_PIC was queued Decoder instances sharing a VPU also share one v4l2_m2m job slot, release…

cve.org Linux:Linux · Linux:Linux 16 Sep 2026
CVE-2026-89866 CWE-? N/A

media: chips-media: wave5: Resume device before setting EOS flag

In the Linux kernel, the following vulnerability has been resolved: media: chips-media: wave5: Resume device before setting EOS flag Setting the EOS flag talks to the firmware via send_firmware_command(), which accesse…

cve.org Linux:Linux · Linux:Linux 16 Sep 2026
CVE-2026-89865 CWE-? N/A

scsi: qla2xxx: Zero SFP DMA buffer in FRU/I2C bsg handlers

In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Zero SFP DMA buffer in FRU/I2C bsg handlers The FRU and I2C bsg handlers stage their transfer in a DMA_POOL_SIZE (256-byte) bounce buff…

cve.org Linux:Linux · Linux:Linux 16 Sep 2026
CVE-2026-89864 CWE-? N/A

scsi: qla2xxx: Bound i2c->length in I2C bsg handlers

In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Bound i2c->length in I2C bsg handlers struct qla_i2c_access carries a 16-bit length field alongside a fixed 64-byte buffer: struct ql…

cve.org Linux:Linux · Linux:Linux 16 Sep 2026
CVE-2026-89863 CWE-? 7.5

scsi: qla2xxx: edif: Fix NULL pointer deref in RX SA delete check

In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: edif: Fix NULL pointer deref in RX SA delete check qla_chk_edif_rx_sa_delete_pending() obtains the SCSI command via GET_CMD_SP(sp) and …

cve.org Linux:Linux · Linux:Linux 16 Sep 2026

Statistik

Arsip lengkap kerentanan dari semua sumber — live dari database.

cache/cve.db • 26 Sep 2026 01:12
377,174 Total CVE terindeks
▲ 1999–2026
60,905 Tahun 2026
12,754 Critical (skor ≥ 9)
1,713 CISA KEV aktif

Distribusi Severity

CVSS v3
12,754 critical
  • Critical 12,754 (8%)
  • High 61,345 (41%)
  • Medium 68,090 (45%)
  • Low 8,634 (6%)
150,872 dinilai • 226,302 belum

Tren CVE per Tahun

1999–2026
2017
2018
2019
2020
2021
2022
2023
2024
2025
2026

cve.org

Arsip penuh CVE dari CVE Program — id, deskripsi, CWE, referensi.

245,461 CVE Record

NVD

Kerentanan dengan skor CVSS v3.x dari NIST National Vulnerability Database.

150,872 CVSS dinilai

Wordfence

Kerentanan plugin/theme WordPress dari Wordfence Intelligence.

11,134 WordPress

WPScan

Kerentanan ekosistem WordPress dari WPScan (Patchstack).

5,444 WordPress

GitHub

CVE yang menyentuh ekosistem GitHub (judul/deskripsi/produk).

3,208 Ekosistem

MITRE

CNA asli yang menerbitkan dan mengelola CVE Record.

114,963 CNA Publish

Sumber Data

cve.org

Arsip CVE Program — id, deskripsi, CWE, referensi. Update tiap 30 menit via delta release.

NVD

Skor CVSS v3.1 untuk entri yang dinilai NIST NVD.

CISA KEV

Kerentanan yang aktif dieksploitasi — prioritas tinggi.

WPScan

Kerentanan ekosistem WordPress.

Wordfence

Kerentanan plugin/theme WordPress.

GitHub

Security Advisories ekosistem open source.