Month: February 2026
CVE-2011-4969 Cross-site scripting (XSS) vulnerability in jQuery before 1.6.3, when using location.hash to select elements, allows remote attackers to inject arbitrary web script or HTML via a crafted tag.
CVE-2024-0408 Xorg-x11-server: selinux unlabeled glx pbuffer
Information published. Continue reading CVE-2024-0408 Xorg-x11-server: selinux unlabeled glx pbuffer
CVE-2022-33103 Das U-Boot from v2020.10 to v2022.07-rc3 was discovered to contain an out-of-bounds write via the function sqfs_readdir().
CVE-2023-45283 Insecure parsing of Windows paths with a \??\ prefix in path/filepath
CVE-2025-37943 wifi: ath12k: Fix invalid data access in ath12k_dp_rx_h_undecap_nwifi
CVE-2024-42078 nfsd: initialise nfsd_info.mutex early.
Information published. Continue reading CVE-2024-42078 nfsd: initialise nfsd_info.mutex early.
CVE-2025-21631 block, bfq: fix waker_bfqq UAF after bfq_split_bfqq()
Information published. Continue reading CVE-2025-21631 block, bfq: fix waker_bfqq UAF after bfq_split_bfqq()
