Linux
19,044 known vulnerabilities
Top Products
IBM Aspera Faspex 5 5.0.0 through 5.0.14.3 is vulnerable to cross-site scripting. This vulnerability allows an authentic
IBM Aspera Orchestrator 3.0.0 through 4.1.2 stores sensitive information in URL parameters. This may lead to information
Nefteprodukttekhnika BUK TS-G Gas Station Automation System 2.9.1 on Linux contains a SQL Injection vulnerability (CWE-8
Incorrect default permissions in .NET allows an authorized attacker to elevate privileges locally.
Out-of-bounds read in .NET allows an unauthorized attacker to deny service over a network.
In the Linux kernel, the following vulnerability has been resolved: tls: Fix race condition in tls_sw_cancel_work_tx()
In the Linux kernel, the following vulnerability has been resolved: espintcp: Fix race condition in espintcp_close() T
In the Linux kernel, the following vulnerability has been resolved: fs/xattr: missing fdput() in fremovexattr error pat
Sensitive information disclosure due to improper access control. The following products are affected: Acronis Cyber Prot
Sensitive information disclosure due to improper configuration of a headless browser. The following products are affecte
Unauthorized data access due to insufficient access control validation. The following products are affected: Acronis Cyb
Unauthorized report deletion due to insufficient access control. The following products are affected: Acronis Cyber Prot
Unauthorized modification of settings due to insufficient authorization checks. The following products are affected: Acr
Unauthorized resource manipulation due to improper authorization checks. The following products are affected: Acronis Cy
Denial of service due to insufficient input validation in authentication logging. The following products are affected: A
Information disclosure and manipulation due to improper authorization checks. The following products are affected: Acron
Sensitive information disclosure due to improper authorization checks. The following products are affected: Acronis Cybe
Unnecessary transmission of sensitive cryptographic material. The following products are affected: Acronis Cyber Protect
Sensitive information disclosure and manipulation due to improper authentication. The following products are affected: A
Unauthorized resource manipulation due to improper authorization checks. The following products are affected: Acronis Cy
Credentials are not deleted from Acronis Agent after plan revocation. The following products are affected: Acronis Cyber
Sensitive information disclosure and manipulation due to insufficient authorization checks. The following products are a
Credentials are not deleted from Acronis Agent after plan revocation. The following products are affected: Acronis Cyber
Insufficient Verification of Data Authenticity, Improper Handling of Exceptional Conditions vulnerability in rustdesk-cl
Missing Authorization vulnerability in rustdesk-client RustDesk Client rustdesk-client on Windows, MacOS, Linux, iOS, An
Cleartext Transmission of Sensitive Information, Insufficiently Protected Credentials vulnerability in rustdesk-client R
Cleartext Transmission of Sensitive Information vulnerability in rustdesk-client RustDesk Client rustdesk-client on Wind
Cross-Site Request Forgery (CSRF) vulnerability in rustdesk-client RustDesk Client rustdesk-client on Windows, MacOS, Li
A vulnerability in rustdesk-client RustDesk Client rustdesk-client on Windows, MacOS, Linux, iOS, Android, WebClient (St
Use of Password Hash With Insufficient Computational Effort, Improper Restriction of Excessive Authentication Attempts v
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution'), Use of Password Hash With Ins
A vulnerability in rustdesk-client RustDesk Client rustdesk-client on Windows, MacOS, Linux, iOS, Android, WebClient (Cl
Use of a Broken or Risky Cryptographic Algorithm vulnerability in rustdesk-server-pro RustDesk Server Pro rustdesk-serve
Use of a Broken or Risky Cryptographic Algorithm vulnerability in rustdesk-client RustDesk Client rustdesk-client on Win
Insufficient data validation in Navigation in Google Chrome prior to 145.0.7632.159 allowed a remote attacker to potenti
Heap buffer overflow in WebCodecs in Google Chrome prior to 145.0.7632.159 allowed a remote attacker to perform an out o
Inappropriate implementation in V8 in Google Chrome prior to 145.0.7632.159 allowed a remote attacker to potentially per
Inappropriate implementation in WebAssembly in Google Chrome prior to 145.0.7632.159 allowed a remote attacker to perfor
Inappropriate implementation in CSS in Google Chrome prior to 145.0.7632.159 allowed a remote attacker to perform an out
Inappropriate implementation in WebAudio in Google Chrome prior to 145.0.7632.159 allowed a remote attacker to perform o
Integer overflow in Skia in Google Chrome prior to 145.0.7632.159 allowed a remote attacker to potentially perform out o
Object lifecycle issue in PowerVR in Google Chrome on Android prior to 145.0.7632.159 allowed a remote attacker to poten
Integer overflow in ANGLE in Google Chrome prior to 145.0.7632.159 allowed a remote attacker to potentially perform out
In the Linux kernel, the following vulnerability has been resolved: romfs: check sb_set_blocksize() return value romfs
In the Linux kernel, the following vulnerability has been resolved: platform/x86: classmate-laptop: Add missing NULL po
In the Linux kernel, the following vulnerability has been resolved: fbdev: smscufx: properly copy ioctl memory to kerne
In the Linux kernel, the following vulnerability has been resolved: f2fs: fix out-of-bounds access in sysfs attribute r
In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to avoid UAF in f2fs_write_end_io() As s
In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to avoid mapping wrong physical block for
In the Linux kernel, the following vulnerability has been resolved: Revert "f2fs: block cache/dio write during f2fs_ena
Frequently Asked Questions
How many CVEs affect Linux?
Linux has 19,044 CVE records in our database, including 767 critical and 8163 high severity vulnerabilities. 47 of these are listed in CISA's Known Exploited Vulnerabilities catalog.
What are the most severe Linux vulnerabilities?
Linux has 767 critical severity (CVSS 9.0+) and 8163 high severity (CVSS 7.0-8.9) vulnerabilities. 47 vulnerabilities are confirmed as actively exploited in the wild.
How can I scan for Linux vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Linux products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Linux Vulnerabilities
CyberStrike scans your infrastructure for Linux vulnerabilities and provides real-time remediation guidance.
Get Started