Linuxfoundation
134 known vulnerabilities
Top Products
Open Neural Network Exchange (ONNX) is an open standard for machine learning interoperability. Prior to version 1.21.0,
Open Neural Network Exchange (ONNX) is an open standard for machine learning interoperability. Prior to version 1.21.0,
Open Neural Network Exchange (ONNX) is an open standard for machine learning interoperability. Prior to version 1.21.0,
Open Neural Network Exchange (ONNX) is an open standard for machine learning interoperability. Prior to version 1.21.0,
OpenTelemetry Java Instrumentation provides OpenTelemetry auto-instrumentation and instrumentation libraries for Java. I
EVerest is an EV charging software stack. Prior to version 2026.02.0, even immediately after CSMS performs a RemoteStop
EVerest is an EV charging software stack. Prior to version 2026.02.0, during RemoteStop processing, a delayed authorizat
EVerest is an EV charging software stack. Versions prior to 2026.02.0 have a data race leading to C++ UB (potential memo
EVerest is an EV charging software stack. Prior to version 2026.02.0, when WithdrawAuthorization is processed before the
EVerest is an EV charging software stack. Prior to version 2026.02.0, ISO15118_chargerImpl::handle_session_setup uses v2
EVerest is an EV charging software stack. Prior to versions to 2026.02.0, ISO15118_chargerImpl::handle_update_energy_tra
EVerest is an EV charging software stack. Prior to versions to 2026.02.0, ISO15118_chargerImpl::handle_session_setup cop
EVerest is an EV charging software stack. Versions prior to 2026.02.0 have a data race (C++ UB) triggered by an A 1-phas
EVerest is an EV charging software stack. Versions prior to 2026.02.0 have a data race leading to use-after-free. This i
EVerest is an EV charging software stack. Versions prior to 2026.02.0 have a data race leading to possible `std::map<std
EVerest is an EV charging software stack. Versions prior to 2026.02.0 have a data race leading to possible `std::queue`/
EVerest is an EV charging software stack. Versions prior to 2026.02.0 have a data race leading to `std::map<std::optiona
EVerest is an EV charging software stack. Versions prior to 2026.02.0 have a data race leading to `std::string` concurre
EVerest is an EV charging software stack. Versions prior to 2026.02.0 have a data race leading to `std::map<std::optiona
EVerest is an EV charging software stack. Versions prior to 2026.02.0 have an out-of-bounds access (std::vector) that le
EVerest is an EV charging software stack. Prior to version 2026.02.0, stack-based buffer overflow in CAN interface initi
EVerest is an EV charging software stack. Prior to version 2026.02.0, `HomeplugMessage::setup_payload` trusts `len` afte
EVerest is an EV charging software stack. Prior to version 2026.02.0, an off-by-one check in IsoMux certificate filename
NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Starting in version 2.11
NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Prior to versions 2.11.1
NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Prior to versions 2.11.1
NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Prior to versions 2.11.1
NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Prior to versions 2.11.1
NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. The nats-server offers a
NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Prior to versions 2.11.1
NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Prior to versions 2.11.1
NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Prior to versions 2.11.1
NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Prior to versions 2.11.1
NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Prior to versions 2.11.1
NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Starting in version 2.2.
NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. The nats-server provides
Tekton Pipelines project provides k8s-style resources for declaring CI/CD-style pipelines. Starting in version 1.0.0 and
Use of hard coded credentials in GoHarbor Harbor version 2.15.0 and below, allows attackers to use the default password
A vulnerability was identified in PyTorch 2.10.0. The affected element is an unknown function of the component pt2 Loadi
Tekton Pipelines project provides k8s-style resources for declaring CI/CD-style pipelines. Versions 0.60.0 through 1.0.0
Open Neural Network Exchange (ONNX) is an open standard for machine learning interoperability. In versions up to and inc
Backstage is an open framework for building developer portals. Prior to 3.1.5, authenticated users with permission to ex
Backstage is an open framework for building developer portals. Prior to 0.27.1, a Server-Side Request Forgery (SSRF) vul
Backstage is an open framework for building developer portals. Prior to 0.27.1, the experimental OIDC provider in @backs
Inspektor Gadget is a set of tools and framework for data collection and system inspection on Kubernetes clusters and Li
Kubewarden is a policy engine for Kubernetes. Kubewarden cluster operators can grant permissions to users to deploy name
In modem, there is a possible improper input validation. This could lead to remote denial of service with no additional
Backstage is an open framework for building developer portals. Prior to version 1.14.3, this is a configuration bypass v
Backstage is an open framework for building developer portals. Prior to version 1.20.1, a vulnerability in the SCM URL p
Backstage is an open framework for building developer portals. Prior to version 3.1.4, a malicious scaffolder template c
Frequently Asked Questions
How many CVEs affect Linuxfoundation?
Linuxfoundation has 134 CVE records in our database, including 16 critical and 54 high severity vulnerabilities.
What are the most severe Linuxfoundation vulnerabilities?
Linuxfoundation has 16 critical severity (CVSS 9.0+) and 54 high severity (CVSS 7.0-8.9) vulnerabilities. Review the list above sorted by publication date to find the most recent high-severity issues.
How can I scan for Linuxfoundation vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Linuxfoundation products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Linuxfoundation Vulnerabilities
CyberStrike scans your infrastructure for Linuxfoundation vulnerabilities and provides real-time remediation guidance.
Get Started