Monitor vulnerabilities that affect your stack. Sign up free to get alerts when software you use is affected.

CVE Vulnerabilities - 14 February 2026

RSS

218 vulnerabilities published on 14 February 2026

Severity:
Smart Forms Plugin for WordPress Allows Access to Sensitive Data
CVE-2026-2022
The Smart Forms plugin for WordPress is open to unauthorized access of sensitive data. This means that attackers with basic access can see details about certain campaigns. To protect your data, update...
4.3
WP Quick Contact Us plugin settings can be updated by attackers
CVE-2026-1394
An attacker can trick a WordPress site administrator into clicking on a malicious link, allowing them to change the plugin's settings without permission. This could expose sensitive information or com...
4.3
LatePoint WordPress Plugin Allows Unauthenticated Admin Actions
CVE-2025-14873
If an attacker tricks an administrator into clicking a malicious link, they can perform unauthorized actions on the WordPress site using the LatePoint plugin. This is a security risk because it allows...
4.3
WordPress MDirector Newsletter Plugin Allows Unauthenticated Settings Updates
CVE-2025-14852
The MDirector Newsletter plugin for WordPress has a security flaw that lets attackers make changes to the plugin's settings without permission. This can happen if an administrator clicks on a maliciou...
4.3
SEATT: Simple Event Attendance plugin allows attackers to delete events
CVE-2026-1983
The SEATT plugin for WordPress is vulnerable to a security threat that could allow hackers to delete any event on a website. This is a risk for sites using the plugin, as it could lead to unauthorized...
4.3
Linux kernel: PTP work crashes server with faulty network setup
CVE-2026-23210
A bug in the Linux kernel can cause a server to crash if it's using a specific network setup, due to a mistake in how it handles periodic network updates. This issue has been fixed in the latest kerne...
Linux Kernel: Macvlan Error Recovery Issue
CVE-2026-23209
A bug in the Linux kernel's macvlan feature could cause the system to crash when creating a new macvlan link with an invalid link name. This issue has been resolved in the latest kernel update, and us...
Linux Kernel: ALSA Audio Driver Excessive Data Transfer
CVE-2026-23208
A bug was fixed in the Linux kernel's ALSA audio driver that could cause a buffer overflow when sending audio data. This could potentially allow an attacker to access unauthorized memory. The fix is i...
Linux Kernel: Potential Data Corruption in Tegra210 SPI Driver
CVE-2026-23207
A vulnerability in the Linux kernel's Tegra210 SPI driver could cause data corruption or a system crash if multiple processes try to access the same data simultaneously. This has been fixed in a recen...
Linux Kernel: Prevents Crash on Certain Network Devices
CVE-2026-23206
A bug in the Linux kernel's network driver for certain devices could cause the system to crash when it detects a device with zero network interfaces. This has been fixed to prevent the crash. Affected...
Linux kernel SMB client memory leak fixed
CVE-2026-23205
A memory leak has been fixed in the Linux kernel's SMB client. This issue occurred when using the CIFS file system to access read-only directories. Affected users should update their kernel to the lat...
Linux Kernel: Out-of-Bounds Access in u32_classify Function
CVE-2026-23204
A security issue was found in the Linux kernel's u32_classify function. This issue allows an attacker to potentially access memory outside of the allowed range, potentially leading to a system crash. ...
Linux Kernel: Potential Data Corruption from Network Traffic
CVE-2026-23203
A bug in the Linux kernel could cause data corruption when handling certain network traffic. This issue affects systems running Linux and can be mitigated by installing the latest kernel updates. Affe...
Linux Kernel: Tegra Quad SPI Driver Data Corruption Risk
CVE-2026-23202
This Linux kernel security issue affects devices using the Tegra quad SPI driver. If left unpatched, it could cause data corruption or crashes due to a race condition between the driver and interrupt ...
Linux Kernel Vulnerability in Ceph File System Causes System Freeze
CVE-2026-23201
A bug in the Linux kernel's Ceph file system handling can cause a system freeze when listing Ceph snapshot directories. This can happen when a Ceph file system is mounted and a user tries to list the ...
Linux Kernel IPv6 Routing May Cause Crash
CVE-2026-23200
A bug in the Linux kernel's IPv6 routing system could cause the system to crash. This issue was fixed to prevent a mismatch in route counts, which could lead to a crash when adding a new route. To fix...
Linux Kernel: Deadlock Risk in procfs Access
CVE-2026-23199
A vulnerability in the Linux kernel's procfs has been fixed, which could cause a deadlock when accessing certain kernel information. This has been resolved, but it's essential to ensure your system is...
Linux KVM: Incorrectly Handling IRQ Routing Can Cause Issues
CVE-2026-23198
A fix has been made in the Linux kernel to prevent incorrectly handling IRQ routing when a KVM_IRQFD is deassigned. This fix ensures that the routing information is not clobbered, and instead checks i...
Linux Kernel I2C Driver: Endless Read Loop Crash
CVE-2026-23197
A bug in the Linux kernel's I2C driver for certain devices can cause a system crash if a block read operation returns an invalid length. This can happen when the driver incorrectly resets its error st...
Linux Kernel: Intel Device Driver Reads Unprepared Data
CVE-2026-23196
A fix has been made to the Linux kernel's Intel device driver to prevent it from trying to read data from a buffer that's not yet ready. This could have caused a computer to crash or behave unexpected...
Linux Kernel cgroup memory leak issue resolved
CVE-2026-23195
A vulnerability in the Linux kernel's cgroup memory management has been fixed. This issue could have led to a memory leak, where a pool of memory was freed too early, causing unexpected behavior. The ...
Linux Kernel Binder: Fix Out-of-Bounds Error with Empty File Descriptor Array
CVE-2026-23194
A fix has been made to the Linux kernel's Binder to prevent an out-of-bounds error when an empty file descriptor array is encountered. This error could cause a program to crash. Users are not required...
Linux Kernel: Incorrect Locking in iSCSI Session Management
CVE-2026-23193
A bug in the Linux kernel's iSCSI session management could cause a program to crash or behave unexpectedly. This has been fixed in the latest Linux kernel updates, so it's essential to apply the lates...
Linux Linkwatch Vulnerability: Device Reference Leak
CVE-2026-23192
A Linux kernel vulnerability could allow a malicious user to access a freed device, potentially causing system instability. This issue has been fixed by moving the device reference release to the corr...
Linux Kernel: ALSA Aloop Driver Trigger Bug
CVE-2026-23191
A bug in the Linux kernel's ALSA aloop driver can cause data loss when a program rapidly opens and closes audio streams. This can be fixed with a patch that adds extra checks to prevent data loss. To ...