Skip to content

Commit c90f0d4

Browse files
Update KEV: Sat May 2 00:31:01 UTC 2026
Signed-off-by: AboutCode Automation <automation@aboutcode.org>
1 parent dec13ab commit c90f0d4

1 file changed

Lines changed: 18 additions & 3 deletions

File tree

known_exploited_vulnerabilities.json

Lines changed: 18 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -1,9 +1,24 @@
11
{
22
"title": "CISA Catalog of Known Exploited Vulnerabilities",
3-
"catalogVersion": "2026.04.30",
4-
"dateReleased": "2026-04-30T16:30:36.316Z",
5-
"count": 1586,
3+
"catalogVersion": "2026.05.01",
4+
"dateReleased": "2026-05-01T18:00:49.4551Z",
5+
"count": 1587,
66
"vulnerabilities": [
7+
{
8+
"cveID": "CVE-2026-31431",
9+
"vendorProject": "Linux",
10+
"product": "Kernel",
11+
"vulnerabilityName": "Linux Kernel Incorrect Resource Transfer Between Spheres Vulnerability",
12+
"dateAdded": "2026-05-01",
13+
"shortDescription": "Linux Kernel contains an incorrect resource transfer between spheres vulnerability that could allow for privilege escalation.",
14+
"requiredAction": "\"Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.",
15+
"dueDate": "2026-05-15",
16+
"knownRansomwareCampaignUse": "Unknown",
17+
"notes": "https:\/\/lore.kernel.org\/linux-cve-announce\/2026042214-CVE-2026-31431-3d65@gregkh\/; https:\/\/xint.io\/blog\/copy-fail-linux-distributions#the-fix-6 ; https:\/\/git.kernel.org\/pub\/scm\/linux\/kernel\/git\/stable\/linux.git\/about\/ ; https:\/\/nvd.nist.gov\/vuln\/detail\/CVE-2026-31431",
18+
"cwes": [
19+
"CWE-699"
20+
]
21+
},
722
{
823
"cveID": "CVE-2026-41940",
924
"vendorProject": "WebPros",

0 commit comments

Comments
 (0)