A vulnerability classified as critical was found in Linux Kernel up to 6.18.7. This affects the function tty_port_link_device of the file drivers/tty/tty_io.c. The manipulation results in race condition.
This vulnerability is identified as CVE-2026-23115. The attack can only be performed from the local network. There is not any exploit available.
Upgrading the affected component is advised.
A vulnerability was found in Linux Kernel up to 6.18.8 and classified as critical. This impacts the function auxiliary_device_init of the file drm/xe/ of the component nvm. The manipulation results in double free.
This vulnerability is cataloged as CVE-2026-23162. The attack must originate from the local network. There is no exploit available.
It is suggested to upgrade the affected component.
A vulnerability labeled as critical has been found in Linux Kernel up to 6.18.8. Affected is the function nci_unregister_device. Executing a manipulation can lead to allocation of resources.
This vulnerability appears as CVE-2026-23167. The attacker needs to be present on the local network. There is no available exploit.
The affected component should be upgraded.
A vulnerability was found in Linux Kernel up to 5.15.198/6.1.161/6.6.121/6.12.67/6.18.7. It has been rated as critical. Affected is the function ndisc_router_discovery of the component ipv6. Performing a manipulation results in race condition.
This vulnerability is cataloged as CVE-2026-23124. The attack must originate from the local network. There is no exploit available.
Upgrading the affected component is advised.
A vulnerability marked as critical has been reported in Element Pack Addons for Elementor Plugin up to 8.3.17 on WordPress. Affected by this issue is the function render_svg of the component SVG Widget. This manipulation causes path traversal.
This vulnerability is registered as CVE-2026-1793. Remote exploitation of the attack is possible. No exploit is available.
A vulnerability labeled as critical has been found in Ecwid by Lightspeed Ecommerce Shopping Cart Plugin up to 7.0.7 on WordPress. Affected by this vulnerability is the function save_custom_user_profile_fields. The manipulation of the argument ec_store_admin_access results in improper privilege management.
This vulnerability is cataloged as CVE-2026-1750. The attack may be launched remotely. There is no exploit available.
A vulnerability identified as problematic has been detected in CleanTalk Spam protection, Anti-Spam, FireWall Plugin up to 6.71 on WordPress. Affected is the function checkWithoutToken of the component Plugin Installation Handler. The manipulation leads to authorization bypass.
This vulnerability is listed as CVE-2026-1490. The attack may be initiated remotely. There is no available exploit.
A vulnerability categorized as critical has been discovered in Linux Kernel up to 6.18.8. This impacts the function mptcp_pm_nl_flush_addrs_doit. Executing a manipulation can lead to denial of service.
This vulnerability is tracked as CVE-2026-23169. The attack is only possible within the local network. No exploit exists.
It is advisable to upgrade the affected component.
A vulnerability was found in Linux Kernel up to 6.18.7. It has been rated as critical. This affects the function ath12k_mac_op_flush of the component wifi. Performing a manipulation results in race condition.
This vulnerability is identified as CVE-2026-23130. The attack can only be performed from the local network. There is not any exploit available.
Upgrading the affected component is advised.
A vulnerability was found in Linux Kernel up to 6.18.9. It has been declared as critical. The impacted element is an unknown function of the component ASoC. Such manipulation leads to memory leak.
This vulnerability is referenced as CVE-2026-23190. The attack needs to be initiated within the local network. No exploit is available.
It is recommended to upgrade the affected component.
A vulnerability was found in Linux Kernel up to 6.18.9. It has been classified as critical. The affected element is an unknown function of the component rust_binder. This manipulation causes out-of-bounds read.
The identification of this vulnerability is CVE-2026-23194. The attack needs to be done within the local network. There is no exploit available.
Upgrading the affected component is recommended.
A vulnerability was found in Linux Kernel up to 6.18.9 and classified as critical. Impacted is the function page_counter_uncharge. The manipulation results in use after free.
This vulnerability was named CVE-2026-23195. The attack needs to be approached within the local network. There is no available exploit.
It is suggested to upgrade the affected component.
A vulnerability has been found in Linux Kernel up to 6.6.121/6.12.67/6.18.7 and classified as critical. This issue affects the function debugfs_create_str. The manipulation leads to uninitialized pointer.
This vulnerability is uniquely identified as CVE-2026-23123. The attack can only be initiated within the local network. No exploit exists.
The affected component should be upgraded.
A vulnerability, which was classified as critical, was found in Linux Kernel up to 6.18.7. This vulnerability affects the function perf_mmap_rb in the library lib/refcount.c. Executing a manipulation can lead to use after free.
This vulnerability is handled as CVE-2026-23127. The attack can only be done within the local network. There is not any exploit available.
You should upgrade the affected component.
A vulnerability, which was classified as critical, has been found in Linux Kernel up to 6.18.7. This affects the function mISDN_read/mISDN_poll of the component mISDN. Performing a manipulation results in race condition.
This vulnerability is known as CVE-2026-23121. Access to the local network is required for this attack. No exploit is available.
It is advisable to upgrade the affected component.
A vulnerability classified as critical was found in Linux Kernel up to 6.18.7. Affected by this issue is the function l2tp_tunnel_del_work of the component l2tp. Such manipulation leads to race condition.
This vulnerability is traded as CVE-2026-23120. Access to the local network is required for this attack to succeed. There is no exploit available.
Upgrading the affected component is advised.
A vulnerability classified as critical has been found in Linux Kernel up to 6.12.68/6.18.7. Affected by this vulnerability is the function ktime_get_seconds of the component rxrpc. This manipulation causes insufficient verification of data authenticity.
This vulnerability appears as CVE-2026-23118. The attacker needs to be present on the local network. There is no available exploit.
It is recommended to upgrade the affected component.
A vulnerability described as critical has been identified in Linux Kernel up to 6.1.161/6.6.121/6.12.67/6.18.7. Affected is the function imx8mq_vpu_power_notifier of the component pmdomain. The manipulation results in privilege escalation.
This vulnerability is reported as CVE-2026-23116. The attacker must have access to the local network to execute the attack. No exploit exists.
Upgrading the affected component is recommended.
A vulnerability marked as critical has been reported in Linux Kernel up to 6.18.8. This impacts an unknown function of the component tve. The manipulation leads to memory leak.
This vulnerability is documented as CVE-2026-23170. The attack requires being on the local network. There is not any exploit available.
It is suggested to upgrade the affected component.