CVE Tools

Opensuse Leap

4,390 CVEs tracked. 47 of them are in CISA KEV.

This hub aggregates every CVE we track for Opensuse Leap, a product in the operating systems space. Use it to gauge the current risk picture and drill into individual advisories.

Opensuse Leap CVEs per month

Oct 2024 to Sep 2026. Point at a month, or focus the strip and use the arrow keys.
Opensuse Leap CVEs per month
MonthCVEs
2024-1081
2024-1134
2024-1289
2025-0173
2025-0233
2025-0351
2025-0444
2025-0527
2025-0648
2025-0761
2025-0825
2025-095
2025-1012
2025-1111
2025-122
2026-019
2026-022
2026-0313
2026-043
2026-050
2026-061
2026-070
2026-080
2026-090

Severity

How the 4,390 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.

  • Critical4149%
  • High1,97045%
  • Medium1,83642%
  • Low1704%

Latest CVEs

The 15 most recently published vulnerabilities affecting Opensuse Leap.

  1. CVE-2026-46243smb: client: reject userspace cifs.spnego descriptions7.1
  2. CVE-2026-31431crypto: algif_aead - Revert to operating out-of-place7.8
  3. CVE-2026-22008Vulnerability in Oracle Java SE (component: Libraries). The supported version that is affected is Oracle Java SE: 25.0.1. Difficult to exploit vulnerability allows unauthenticated attacker with n...3.7
  4. CVE-2026-34757LIBPNG has a yse-after-free in png_set_PLTE, png_set_tRNS and png_set_hIST leading to corrupted chunk data and potential heap information disclosure5.1
  5. CVE-2026-33636LIBPNG has ARM NEON Palette Expansion Out-of-Bounds Read on AArch647.6
  6. CVE-2026-33416LIBPNG has use-after-free via pointer aliasing in `png_set_tRNS` and `png_set_PLTE`7.5
  7. CVE-2026-26740Buffer Overflow vulnerability in giflib v.5.2.2 allows a remote attacker to cause a denial of service via the EGifGCBToExtension overwriting an existing Graphic Control Extension block without vali...8.2
  8. CVE-2026-2921GStreamer RIFF Palette Integer Overflow Remote Code Execution Vulnerability7.8
  9. CVE-2026-3083GStreamer rtpqdm2depay Out-Of-Bounds Write Remote Code Execution Vulnerability8.8
  10. CVE-2026-3085GStreamer rtpqdm2depay Heap-based Buffer Overflow Remote Code Execution Vulnerability8.8
  11. CVE-2026-2922GStreamer RealMedia Demuxer Out-Of-Bounds Write Remote Code Execution Vulnerability7.8
  12. CVE-2026-2920GStreamer ASF Demuxer Heap-based Buffer Overflow Remote Code Execution Vulnerability7.8
  13. CVE-2026-31806FreeRDP has a Heap Buffer Overflow in nsc_process_message() via Unchecked SURFACE_BITS_COMMAND Bitmap Dimensions9.8
  14. CVE-2026-29776FreeRDP has an Integer Underflow in update_read_cache_bitmap_order Function of FreeRDP's Core Library3.1
  15. CVE-2026-3909Out of bounds write in Skia in Google Chrome prior to 146.0.7680.75 allowed a remote attacker to perform out of bounds memory access via a crafted HTML page. (Chromium security severity: High)8.8

Product grouping is registry-driven, with AI assist and human review. How it works

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store