CVE Tools

Ubuntu

9,570 CVEs tracked. 71 of them are in CISA KEV.

This hub aggregates every CVE we track for Ubuntu, a product in the operating systems space. Use it to gauge the current risk picture and drill into individual advisories.

Ubuntu CVEs per month

Oct 2024 to Sep 2026. Point at a month, or focus the strip and use the arrow keys.
Ubuntu CVEs per month
MonthCVEs
2024-10227
2024-11165
2024-12205
2025-01129
2025-02322
2025-0382
2025-0496
2025-05255
2025-06152
2025-07113
2025-0872
2025-09279
2025-10210
2025-1135
2025-12146
2026-0196
2026-0216
2026-0344
2026-0442
2026-0532
2026-064
2026-077
2026-080
2026-090

Severity

How the 9,570 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.

  • Critical8829%
  • High3,71539%
  • Medium4,64549%
  • Low3273%

Latest CVEs

The 15 most recently published vulnerabilities affecting Ubuntu.

  1. CVE-2026-8933snap-confine Local Privilege Escalation via Capabilities Misconfiguration or Flaw in Execution Environment Setup7.8
  2. CVE-2026-15226snapd snap-confine Sandbox Confinement Bypass via Omission of setuid Restriction in Seccomp Templates8.4
  3. CVE-2024-5300AppArmor Base Profile Misconfiguration in snapd Permits Confined Snaps Unauthorized Access to Hashed Passwords via systemd-userdbd5.6
  4. CVE-2026-12391ubuntu-pro-client Local Privilege Escalation and Information Disclosure via Symlink Arbitrary File Read in collect-logs5.0
  5. CVE-2026-11386ubuntu-pro-client Input Validation Vulnerability Leading to Arbitrary APT Directive Injection and Remote Code Execution9.0
  6. CVE-2026-9494ubuntu-pro-client Information Disclosure via Cleartext Bearer Token Exposure in Process Command Line5.5
  7. CVE-2026-10037Sandbox Escape in Ubuntu OpenJDK Packages via xdg-desktop-portal8.8
  8. CVE-2026-12249Canonical ADSys Trust Store Poisoning via Plaintext HTTP Certificate Auto-Enrollment9.0
  9. CVE-2026-35058Improper validation of packet length during tls-crypt-v2 key extraction in OpenVPN 2.6.0 through 2.6.19 and 2.7_alpha1 through 2.7.1 allows authenticated attackers to trigger a fatal assertion and ...6.5
  10. CVE-2026-3238Samba: denial of service against ad dc wins server7.5
  11. CVE-2026-46243smb: client: reject userspace cifs.spnego descriptions7.1
  12. CVE-2026-47337NULL pointer dereference in Ubuntu Linux AppArmor IPv4/IPv6 socket mediation3.3
  13. CVE-2026-47336Use of uninitialized value in Ubuntu Linux AppArmor IPv4/IPv6 socket mediation rules3.3
  14. CVE-2026-47335NULL pointer dereference in Ubuntu Linux AppArmor notification handling5.5
  15. CVE-2026-47334Deadlock or kernel panic in Ubuntu Linux AppArmor notification handling5.5

Product grouping is registry-driven, with AI assist and human review. How it works

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store