VEX records
Browse vendor VEX statements available in this Vulnerability-Lookup instance and pivot to the related vulnerability.
78834 VEX records
API response| Vulnerability | Source | Title | Product status | Imported | Links |
|---|---|---|---|---|---|
| CVE-2026-91866 | redhat_vex | Neethi: Neethi: Denial of Service via crafted WS-Policy documents | known affected: 8 known not affected: 2 | 2026-10-05T08:55:50+00:00 | Vulnerability · Source |
| CVE-2026-91865 | redhat_vex | org.apache.neethi/neethi: Apache Neethi: Denial of Service via crafted WS-Policy documents | known affected: 8 known not affected: 2 | 2026-10-05T08:55:49+00:00 | Vulnerability · Source |
| CVE-2026-91864 | redhat_vex | org.apache.neethi/neethi: Apache Neethi: Denial of Service via crafted WS-Policy documents | known affected: 8 known not affected: 2 | 2026-10-05T08:55:46+00:00 | Vulnerability · Source |
| CVE-2026-88881 | redhat_vex | renovate: Renovate before 44.11.3 Credential Exfiltration via Link Header | known not affected: 1 | 2026-10-05T08:55:44+00:00 | Vulnerability · Source |
| CVE-2026-91863 | redhat_vex | org.apache.neethi/neethi: Apache Neethi: Denial of Service via uncontrolled recursion in WS-Policy document parsing | known affected: 8 known not affected: 2 | 2026-10-05T08:55:44+00:00 | Vulnerability · Source |
| CVE-2021-3506 | redhat_vex | kernel: Out of bounds memory access bug in get_next_net_page() in fs/f2fs/node.c | known not affected: 197 | 2026-10-05T08:55:08+00:00 | Vulnerability · Source |
| CVE-2021-3739 | redhat_vex | kernel: null-ptr-dereference bug in btrfs_rm_device in fs/btrfs/volumes.c | known not affected: 197 | 2026-10-05T08:55:08+00:00 | Vulnerability · Source |
| CVE-2026-63622 | redhat_vex | libvirt: swtpm privilege escalation via symlink following | fixed: 4472 known affected: 32 known not affected: 6 | 2026-10-05T08:29:44+00:00 | Vulnerability · Source |
| CVE-2026-18917 | redhat_vex | libvirt: Integer overflow in NodeGetFreePages RPC handler leading to heap buffer overflow | fixed: 4472 known affected: 32 known not affected: 6 | 2026-10-05T08:29:44+00:00 | Vulnerability · Source |
| CVE-2026-72887 | redhat_vex | Net-OAuth: Net::OAuth::Client: Session fixation via OAuth 1.0a downgrade | known not affected: 1 | 2026-10-05T06:56:02+00:00 | Vulnerability · Source |
| CVE-2026-84305 | redhat_vex | sqlparse: sqlparse: Denial of Service via reindentation of tuple lists | known not affected: 10 under investigation: 191 | 2026-10-05T06:47:02+00:00 | Vulnerability · Source |
| CVE-2026-105302 | redhat_vex | keycloak-services: keycloak-services: User Session Note mapper exposes upstream IdP access tokens | known affected: 2 known not affected: 1 | 2026-10-05T06:15:16+00:00 | Vulnerability · Source |
| CVE-2026-105306 | redhat_vex | keycloak-services: keycloak-services: Token introspection audience bypass via Dynamic Client Registration | known affected: 2 known not affected: 1 | 2026-10-05T06:15:16+00:00 | Vulnerability · Source |
| CVE-2026-105301 | redhat_vex | keycloak-services: keycloak-services: Blind SSRF via X.509 authenticator fetching attacker-controlled CRL-DP/OCSP URLs | known affected: 2 known not affected: 1 | 2026-10-05T05:58:50+00:00 | Vulnerability · Source |
| CVE-2026-49362 | redhat_vex | artemis-server: undertow-core: wildfly-messaging-activemq-subsystem: artemis core protocol permits unauthed queue creation | fixed: 561 known not affected: 3 | 2026-10-05T05:51:26+00:00 | Vulnerability · Source |
| CVE-2026-75604 | redhat_vex | next: Next.js: Unauthenticated Remote Code Execution on windows-hosted servers | known not affected: 20 | 2026-10-05T05:21:05+00:00 | Vulnerability · Source |
| CVE-2026-44236 | redhat_vex | rabbitmq-c: rabbitmq-c: Heap buffer overflow leading to denial of service | fixed: 57 known affected: 11 | 2026-10-05T04:34:32+00:00 | Vulnerability · Source |
| CVE-2026-64438 | redhat_vex | kernel: crypto: qat - fix VF2PF work teardown race in adf_disable_sriov() | fixed: 1457 known affected: 22 known not affected: 91 | 2026-10-05T03:35:54+00:00 | Vulnerability · Source |
| CVE-2026-64368 | redhat_vex | kernel: mm/slab: do not limit zeroing to orig_size when only red zoning is enabled | fixed: 1457 known affected: 22 known not affected: 91 | 2026-10-05T03:35:47+00:00 | Vulnerability · Source |
| CVE-2026-43493 | redhat_vex | kernel: crypto: pcrypt - Fix handling of MAY_BACKLOG requests | fixed: 1374 known affected: 50 known not affected: 14 | 2026-10-05T03:35:26+00:00 | Vulnerability · Source |
| CVE-2026-31467 | redhat_vex | kernel: Linux kernel: Denial of Service in erofs filesystem | fixed: 616 known not affected: 198 | 2026-10-05T03:35:01+00:00 | Vulnerability · Source |
| CVE-2026-22984 | redhat_vex | kernel: libceph: prevent potential out-of-bounds reads in handle_auth_done() | fixed: 1980 known affected: 22 known not affected: 42 | 2026-10-05T03:34:53+00:00 | Vulnerability · Source |
| CVE-2026-64017 | redhat_vex | kernel: blk-mq: pop cached request if it is usable | fixed: 1224 known affected: 22 known not affected: 90 | 2026-10-05T03:32:27+00:00 | Vulnerability · Source |
| CVE-2026-52993 | redhat_vex | kernel: tipc: fix double-free in tipc_buf_append() | fixed: 2122 known affected: 22 known not affected: 42 | 2026-10-05T03:32:06+00:00 | Vulnerability · Source |
| CVE-2026-72098 | redhat_vex | kernel: dm-verity: fix buffer overflow in FEC calculation | fixed: 1607 known affected: 22 known not affected: 42 | 2026-10-05T03:31:51+00:00 | Vulnerability · Source |
| CVE-2026-83619 | redhat_vex | @xmldom/xmldom: xmldom: Denial of Service via crafted XML input | fixed: 1 known affected: 18 known not affected: 8 | 2026-10-05T03:28:28+00:00 | Vulnerability · Source |
| CVE-2026-83617 | redhat_vex | @xmldom/xmldom: xmldom: XML injection via embedded line terminator in element/attribute names | known affected: 2 known not affected: 23 | 2026-10-05T03:28:23+00:00 | Vulnerability · Source |
| CVE-2026-83616 | redhat_vex | xmldom: xmldom: XML Structure Injection via Unvalidated Processing Instruction Targets | fixed: 1 known affected: 3 known not affected: 25 | 2026-10-05T03:28:17+00:00 | Vulnerability · Source |
| CVE-2026-83615 | redhat_vex | xmldom: @xmldom/xmldom: xmldom: Denial of Service via quadratic memory consumption | fixed: 1 known affected: 2 known not affected: 25 | 2026-10-05T03:28:07+00:00 | Vulnerability · Source |
| CVE-2026-83613 | redhat_vex | xmldom: @xmldom/xmldom: xmldom: Denial of Service due to quadratic-time attribute processing | fixed: 1 known affected: 3 known not affected: 24 | 2026-10-05T03:28:05+00:00 | Vulnerability · Source |
| CVE-2026-83609 | redhat_vex | @xmldom/xmldom: xmldom: Markup injection via embedded line terminators in XML names | known affected: 3 known not affected: 22 | 2026-10-05T03:28:00+00:00 | Vulnerability · Source |
| CVE-2026-76183 | redhat_vex | tomcat: Apache Tomcat: Authentication Bypass in WebSocket Endpoints | fixed: 42 known affected: 79 known not affected: 12 | 2026-10-05T03:27:47+00:00 | Vulnerability · Source |
| CVE-2026-76561 | redhat_vex | pki-core: Dogtag/PKI: certprofile-import allows code execution via unsanitized profile content (ExternalProcessConstraint) | fixed: 97 known affected: 58 | 2026-10-05T03:18:16+00:00 | Vulnerability · Source |
| CVE-2026-102317 | redhat_vex | chromium-browser: chromium-browser: Improper privilege management in Mojo | known not affected: 1 | 2026-10-05T00:58:07+00:00 | Vulnerability · Source |
| CVE-2017-7383 | suse_vex | SUSE CVE CVE-2017-7383 | known affected: 6 recommended: 28 | 2026-10-04T23:41:15+00:00 | Vulnerability · Source |
| CVE-2019-19227 | suse_vex | SUSE CVE CVE-2019-19227 | known affected: 117 known not affected: 61 recommended: 634 | 2026-10-04T23:40:38+00:00 | Vulnerability · Source |
| CVE-2020-36385 | suse_vex | SUSE CVE CVE-2020-36385 | known affected: 299 known not affected: 156 recommended: 1743 | 2026-10-04T23:40:21+00:00 | Vulnerability · Source |
| CVE-2021-47055 | suse_vex | SUSE CVE CVE-2021-47055 | known affected: 388 known not affected: 270 recommended: 227 | 2026-10-04T23:40:06+00:00 | Vulnerability · Source |
| CVE-2021-47311 | suse_vex | SUSE CVE CVE-2021-47311 | known affected: 453 known not affected: 276 recommended: 253 | 2026-10-04T23:40:02+00:00 | Vulnerability · Source |
| CVE-2021-47404 | suse_vex | SUSE CVE CVE-2021-47404 | known affected: 269 known not affected: 166 recommended: 685 | 2026-10-04T23:39:59+00:00 | Vulnerability · Source |
| CVE-2022-0617 | suse_vex | SUSE CVE CVE-2022-0617 | known affected: 207 known not affected: 2 recommended: 1629 | 2026-10-04T23:39:53+00:00 | Vulnerability · Source |
| CVE-2022-2991 | suse_vex | SUSE CVE CVE-2022-2991 | known affected: 394 known not affected: 59 recommended: 266 | 2026-10-04T23:39:49+00:00 | Vulnerability · Source |
| CVE-2022-3169 | suse_vex | SUSE CVE CVE-2022-3169 | known affected: 255 known not affected: 2 recommended: 1436 | 2026-10-04T23:39:47+00:00 | Vulnerability · Source |
| CVE-2022-36280 | suse_vex | SUSE CVE CVE-2022-36280 | known affected: 262 known not affected: 2 recommended: 1454 | 2026-10-04T23:39:36+00:00 | Vulnerability · Source |
| CVE-2022-39188 | suse_vex | SUSE CVE CVE-2022-39188 | known affected: 237 known not affected: 308 recommended: 1798 | 2026-10-04T23:39:34+00:00 | Vulnerability · Source |
| CVE-2022-40897 | suse_vex | SUSE CVE CVE-2022-40897 | known affected: 272 known not affected: 95 recommended: 348 | 2026-10-04T23:39:32+00:00 | Vulnerability · Source |
| CVE-2022-49080 | suse_vex | SUSE CVE CVE-2022-49080 | known affected: 506 known not affected: 81 recommended: 447 | 2026-10-04T23:39:24+00:00 | Vulnerability · Source |
| CVE-2022-49371 | suse_vex | SUSE CVE CVE-2022-49371 | known affected: 497 known not affected: 154 recommended: 377 | 2026-10-04T23:39:19+00:00 | Vulnerability · Source |
| CVE-2022-49542 | suse_vex | SUSE CVE CVE-2022-49542 | known affected: 376 known not affected: 311 recommended: 319 | 2026-10-04T23:39:15+00:00 | Vulnerability · Source |
| CVE-2022-49727 | suse_vex | SUSE CVE CVE-2022-49727 | known affected: 727 known not affected: 81 recommended: 40 | 2026-10-04T23:39:12+00:00 | Vulnerability · Source |