CVE Weekly Report — Week of Jun 15 – June 21, 2026

2026-W25

7
Total CVEs
0
Critical
7
High
0
Actively exploited

🔴 Critical CVEs (0)

No CVEs in this category this week.

🟠 High CVEs (9)

CVEProductCVSSKEVDescriptionPublished
CVE-2026-46331Linux7.8In the Linux kernel, the following vulnerability has been resolved: net/sched: fix pedit partial COW leading to page ca…Jun 16
CVE-2026-48937Node.js7.5A flaw in Node.js HTTP/2 server API can cause servers to keep accepting data even after sending a `GOAWAY` frame. This v…Jun 18
CVE-2026-55204HAProxy7.5HAProxy through 3.4.0, fixed in commit 9a6d1fe, contains a null pointer dereference vulnerability in hpack_dht_insert()…Jun 18
CVE-2026-52911Linux8.8In the Linux kernel, the following vulnerability has been resolved: ksmbd: scope conn->binding slowpath to bound sessio…Jun 21
CVE-2026-55203HAProxy7.5HAProxy through 3.4.0, fixed in commit 5985276, contains an integer overflow vulnerability in the fcgi_conn structure's …Jun 18
CVE-2026-48617Node.js8.2A flaw in Node.js Permission Model enforcement allows Bypass via `process.report.writeReport()` Path Misvalidation. This…Jun 18
CVE-2026-52908Linux7.8In the Linux kernel, the following vulnerability has been resolved: RDMA: During rereg_mr ensure that REREG_ACCESS is c…Jun 19
CVE-2026-52909Linux7.8In the Linux kernel, the following vulnerability has been resolved: ip6_vti: set netns_immutable on the fallback device…Jun 19
CVE-2026-52910Linux7.8In the Linux kernel, the following vulnerability has been resolved: bpf: Free reuseport cBPF prog after RCU grace perio…Jun 19

📦 Most affected products