Vulnerabilities

With the aim of informing, warning and helping professionals with the latest security vulnerabilities in technology systems, we have made a database available for users interested in this information, which is in Spanish and includes all of the latest documented and recognised vulnerabilities.

This repository, with over 75,000 registers, is based on the information from the NVD (National Vulnerability Database) – by virtue of a partnership agreement – through which INCIBE translates the included information into Spanish.

On occasions this list will show vulnerabilities that have still not been translated, as they are added while the INCIBE team is still carrying out the translation process. The CVE  (Common Vulnerabilities and Exposures) Standard for Information Security Vulnerability Names is used with the aim to support the exchange of information between different tools and databases.

All vulnerabilities collected are linked to different information sources, as well as available patches or solutions provided by manufacturers and developers. It is possible to carry out advanced searches, as there is the option to select different criteria to narrow down the results, some examples being vulnerability types, manufacturers and impact levels, among others.

Through RSS feeds or Newsletters we can be informed daily about the latest vulnerabilities added to the repository. Below there is a list, updated daily, where you can discover the latest vulnerabilities.

CVE-2026-46327

Publication date:
09/06/2026
In the Linux kernel, the following vulnerability has been resolved:<br /> <br /> dm: fix unlocked test for dm_suspended_md<br /> <br /> The function dm_blk_report_zones tests if the device is suspended with<br /> the "dm_suspended_md" call. However, this function is called without<br /> holding any locks, so the device may be suspended just after it.<br /> <br /> Move the call to dm_suspended_md after dm_get_live_table, so that the<br /> device can&amp;#39;t be suspended after the suspended state was tested.
Severity CVSS v4.0: Pending analysis
Last modification:
23/07/2026

CVE-2026-46328

Publication date:
09/06/2026
In the Linux kernel, the following vulnerability has been resolved:<br /> <br /> apparmor: fix rlimit for posix cpu timers<br /> <br /> Posix cpu timers requires an additional step beyond setting the rlimit.<br /> Refactor the code so its clear when what code is setting the<br /> limit and conditionally update the posix cpu timers when appropriate.
Severity CVSS v4.0: Pending analysis
Last modification:
23/07/2026

CVE-2026-46329

Publication date:
09/06/2026
In the Linux kernel, the following vulnerability has been resolved:<br /> <br /> erofs: handle end of filesystem properly for file-backed mounts<br /> <br /> I/O requests beyond the end of the filesystem should be zeroed out,<br /> similar to loopback devices and that is what we expect.
Severity CVSS v4.0: Pending analysis
Last modification:
23/07/2026

CVE-2026-46330

Publication date:
09/06/2026
In the Linux kernel, the following vulnerability has been resolved:<br /> <br /> Revert "net/smc: Introduce TCP ULP support"<br /> <br /> This reverts commit d7cd421da9da2cc7b4d25b8537f66db5c8331c40.<br /> <br /> As reported by Al Viro, the TCP ULP support for SMC is fundamentally<br /> broken. The implementation attempts to convert an active TCP socket<br /> into an SMC socket by modifying the underlying `struct file`, dentry,<br /> and inode in-place, which violates core VFS invariants that assume<br /> these structures are immutable for an open file, creating a risk of<br /> use after free errors and general system instability.<br /> <br /> Given the severity of this design flaw and the fact that cleaner<br /> alternatives (e.g., LD_PRELOAD, BPF) exist for legacy application<br /> transparency, the correct course of action is to remove this feature<br /> entirely.
Severity CVSS v4.0: Pending analysis
Last modification:
23/07/2026

CVE-2026-46332

Publication date:
09/06/2026
In the Linux kernel, the following vulnerability has been resolved:<br /> <br /> greybus: gb-beagleplay: bound bootloader receive buffering<br /> <br /> cc1352_bootloader_rx() appends each serdev chunk into the fixed<br /> rx_buffer before parsing bootloader packets. The helper can keep<br /> leftover bytes between callbacks and may receive multiple packets in one<br /> callback, so a single count value is not constrained by one packet<br /> length.<br /> <br /> Check that the incoming chunk fits in the remaining receive buffer space<br /> before memcpy(). If it does not, drop the staged data and consume the<br /> bytes instead of overflowing rx_buffer.
Severity CVSS v4.0: Pending analysis
Last modification:
23/07/2026

CVE-2026-11789

Publication date:
09/06/2026
A flaw was found in 389 Directory Server. The SMD5 password storage plugin performs unsigned integer underflow when computing salt length from a crafted password hash shorter than 16 bytes, causing a buffer over-read that crashes the LDAP server during authentication.
Severity CVSS v4.0: Pending analysis
Last modification:
23/07/2026

CVE-2026-11790

Publication date:
09/06/2026
A flaw was found in 389 Directory Server. The PBKDF2-SHA256 password storage plugin does not enforce an upper bound on the iteration count extracted from stored password hashes. A privileged attacker who can modify a user&amp;#39;s password hash can cause excessive CPU consumption during authentication, resulting in denial of service.
Severity CVSS v4.0: Pending analysis
Last modification:
23/07/2026

CVE-2026-11792

Publication date:
09/06/2026
A heap buffer overflow flaw was found in 389 Directory Server. When audit logging is enabled, the create_masked_entry_string() function in auditlog.c copies a fixed-length password mask into a precisely-sized heap buffer without checking available space. If a short cleartext password is logged (requiring non-default CLEAR password storage or a compromised replication peer), the copy overflows the buffer, corrupting heap memory and audit log output.
Severity CVSS v4.0: Pending analysis
Last modification:
23/07/2026

CVE-2026-11793

Publication date:
09/06/2026
A stack buffer overflow flaw was found in 389 Directory Server. The checkPrefix() function in pw.c copies an attacker-controlled algorithm ID into a 256-byte stack buffer without bounds checking when parsing reversible-encrypted attribute values. An attacker with Directory Manager privileges can crash the LDAP server by storing a crafted credential with an oversized algorithm ID. FORTIFY_SOURCE mitigates this to denial of service only.
Severity CVSS v4.0: Pending analysis
Last modification:
23/07/2026

CVE-2026-11785

Publication date:
09/06/2026
A flaw was found in 389 Directory Server. A type confusion in the SSO token extended operation handler causes partial stack address information to be disclosed in LDAP responses to authenticated users.
Severity CVSS v4.0: Pending analysis
Last modification:
23/07/2026

CVE-2026-11786

Publication date:
09/06/2026
A flaw was found in 389 Directory Server. The LDIF parser reads past the end of a heap buffer when processing attribute types with trailing semicolons during database import, causing an out-of-bounds read detectable under memory instrumentation.
Severity CVSS v4.0: Pending analysis
Last modification:
23/07/2026

CVE-2026-11787

Publication date:
09/06/2026
A flaw was found in 389 Directory Server. The ldap_utf8prev() function reads bytes before the start of a buffer without bounds checking, causing a heap buffer over-read in string filter parsing that may influence internal filter processing behavior.
Severity CVSS v4.0: Pending analysis
Last modification:
23/07/2026