CVE-2026-59818 etcd: gRPC client listener does not enforce `--client-crl-file` certificate revocation
Information published.
Categories: Microsoft
CVE-2026-53359 KVM: x86: Fix shadow paging use-after-free due to unexpected role
Information published.
Categories: Microsoft
CVE-2026-14355 ext/openssl: Memory corruption in openssl_encrypt with AES-WRAP-PAD
Information published.
Categories: Microsoft
CVE-2026-8927 env-set cross-proxy Digest auth state leak
Information published.
Categories: Microsoft
CVE-2026-53167 fuse: limit FUSE_NOTIFY_RETRIEVE to uptodate folios
Information published.
Categories: Microsoft
CVE-2026-53339 i2c: qcom-cci: Fix NULL pointer dereference in cci_remove()
Information published.
Categories: Microsoft
CVE-2026-53336 nvmem: layouts: onie-tlv: fix hang on unknown types
Information published.
Categories: Microsoft
CVE-2026-53327 debugobjects: Do not fill_pool() if pi_blocked_on
Information published.
Categories: Microsoft
CVE-2026-53332 slimbus: qcom-ngd-ctrl: Register callbacks after creating the ngd
Information published.
Categories: Microsoft
CVE-2026-43010 bpf: Reject sleepable kprobe_multi programs at attach time
Information published.
Categories: Microsoft
CVE-2026-53345 KVM: Don't WARN if memory is dirtied without a vCPU when the VM is dying
Information published.
Categories: Microsoft
CVE-2026-53354 arm64: errata: Mitigate TLBI errata on various Arm CPUs
Information published.
Categories: Microsoft
CVE-2026-47241 Net::IMAP: Denial of Service via incomplete raw argument validation
Information published.
Categories: Microsoft
CVE-2026-54908 Pion DTLS: Denial of service via panic while parsing a crafted ECDHE_PSK ServerKeyExchange message
Information published.
Categories: Microsoft
CVE-2026-38969 ruby webrick through v1.9.2 WEBrick reparses trailer Content-Length into canonical request state, enabling request smuggling.
Information published.
Categories: Microsoft


