| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-74569 | netfilter: nf_conntrack_sip: widen NAT rewrite delta to s32 in sip_help_tcp() | Linux | Linux | Critical | 9.8 | 2026-08-15 12:28:09 | Deep Dive |
| CVE-2026-74568 | KVM: arm64: vgic: Fix race between LPI release and re-registration | Linux | Linux | Critical | 9.3 | 2026-08-15 12:28:09 | Deep Dive |
| CVE-2026-74556 | scsi: libiscsi_tcp: Bound SCSI Response data segment to the connection buffer | Linux | Linux | Critical | 9.8 | 2026-08-15 12:28:01 | Deep Dive |
| CVE-2026-74545 | rtase: fix double free of multi-frag skb on DMA map failure | Linux | Linux | Critical | 9.8 | 2026-08-15 12:27:55 | Deep Dive |
| CVE-2026-74521 | ksmbd: use memcmp() to compare ClientGUIDs | Linux | Linux | Critical | 9.1 | 2026-08-15 12:27:39 | Deep Dive |
| CVE-2026-74517 | KVM: x86: Cancel delayed I/O APIC EOI handling before destroying vCPUs | Linux | Linux | Critical | 9.3 | 2026-08-15 12:27:37 | Deep Dive |
| CVE-2026-74495 | igbvf: Fix leak in TX DMA error cleanup | Linux | Linux | Critical | 9.8 | 2026-08-15 12:27:23 | Deep Dive |
| CVE-2026-74493 | net/smc: fix socket use-after-free during link group termination | Linux | Linux | Critical | 9.8 | 2026-08-15 12:27:22 | Deep Dive |
| CVE-2026-74480 | net: bridge: stop fast-leave after deleting a port group | Linux | Linux | Critical | 9.8 | 2026-08-15 12:27:14 | Deep Dive |
| CVE-2026-74478 | um: vector: fix use-after-free in vector_mmsg_rx() | Linux | Linux | Critical | 9.8 | 2026-08-15 12:27:13 | Deep Dive |
| CVE-2026-74475 | vxlan: use neigh_ha_snapshot() in route_shortcircuit() | Linux | Linux | Critical | 10.0 | 2026-08-15 12:27:11 | Deep Dive |
| CVE-2026-74476 | veth: convert frag_list skbs before running XDP | Linux | Linux | Critical | 9.1 | 2026-08-15 12:27:11 | Deep Dive |
| CVE-2026-74474 | vxlan: use pskb_network_may_pull() for transmit path header pulls | Linux | Linux | Critical | 9.8 | 2026-08-15 12:27:10 | Deep Dive |
| CVE-2026-74473 | vxlan: use pskb_network_may_pull() in route_shortcircuit() | Linux | Linux | Critical | 9.8 | 2026-08-15 12:27:09 | Deep Dive |
| CVE-2026-16142 | TrueBooker <= 1.2.6 - Unauthenticated Account Takeover via Insecure Direct Object Reference in 'truebooker_wp_user_id' Parameter | themetechmount | TrueBooker – Appointment Booking and Scheduler System | Critical | 9.8 | 2026-08-15 08:27:17 | Deep Dive |
| CVE-2026-15826 📌 💣 | User Profile Builder <= 3.16.4 - Unauthenticated Authentication Bypass via Type Confusion to Administrator Account Takeover via 'username' Parameter | cozmoslabs | User Profile Builder – Beautiful User Registration Forms, User Profiles & User Role Editor | Critical | 9.8 | 2026-08-15 06:38:10 | Deep Dive |
| CVE-2026-74439 | iommu/vt-d: Clear Present bit before tearing down scalable-mode context entry | Linux | Linux | Critical | 9.3 | 2026-08-15 05:59:37 | Deep Dive |
| CVE-2026-74436 | rxrpc: serialize kernel accept preallocation with socket teardown | Linux | Linux | Critical | 9.8 | 2026-08-15 05:59:35 | Deep Dive |
| CVE-2026-74433 | rxrpc: Fix UAF in rxgk_issue_challenge() | Linux | Linux | Critical | 9.8 | 2026-08-15 05:59:33 | Deep Dive |
| CVE-2026-74434 | rxrpc: Don't move a peeked OOB message onto the pending queue | Linux | Linux | Critical | 9.8 | 2026-08-15 05:59:33 | Deep Dive |