← Back to the live CVE advisory feed

CVE-2026-58005: Trusted Firmware

Severity
8.3 (HIGH)
Vendor
ALTERA
Affected versions
0 through socfpga_v2.14.0
Patch status
Unknown
Published
2026-09-24T15:17:24.750
Modified
2026-09-24T19:36:39.327

Why it matters

High-severity vulnerability requiring prioritized review.

Recommended admin actions

  • Review and patch based on exposure, asset criticality, and business impact.
  • Compare installed versions against the affected version range in the advisory.

Technical summary

Out-of-bounds read vulnerability in Altera Trusted Firmware on HPS allows Privilege Escalation and Overflow Buffers. This issue affects Trusted Firmware: through socfpga_v2.14.0.

CVE data is sourced from NVD/CNA records and optional enrichment. Validate against the vendor advisory before taking production action.

VULNERABILITY PULSE

LAST UPDATED: SEP 24, 2026 08:00 PM UTC
605 RECORDS
SECURE FEED ACTIVE
AFFECTED PRODUCT ACTION
CVE-2026-97359
hfs2
Reporter: DISCLOSURE
10
CRITICAL
VIEW RECORD
CVE-2026-97360
hfs2
Reporter: DISCLOSURE
10
CRITICAL
VIEW RECORD
CVE-2026-61732
Decepticon PATCH
Reporter: SECURITY-ADVISORIES
10
CRITICAL
VIEW RECORD
CVE-2026-84719
Red Hat Ansible Automation Platform 2.4 for RHEL 8 PATCH
Reporter: SECALERT
9.9
CRITICAL
VIEW RECORD
CVE-2026-89078
GitLab PATCH
Reporter: CVE
9.9
CRITICAL
VIEW RECORD
CVE-2026-93577
GitLab PATCH
Reporter: CVE
9.9
CRITICAL
VIEW RECORD
CVE-2026-19072
Velociraptor
Reporter: CVE
9.9
CRITICAL
VIEW RECORD
CVE-2026-93425
dokploy PATCH
Reporter: SECURITY-ADVISORIES
9.9
CRITICAL
VIEW RECORD
CVE-2026-6721
Product identification pending
Reporter: PSIRT
9.8
CRITICAL
VIEW RECORD
CVE-2026-6730
Product identification pending
Reporter: PSIRT
9.8
CRITICAL
VIEW RECORD
CVE-2026-6928
Product identification pending
Reporter: PSIRT
9.8
CRITICAL
VIEW RECORD
CVE-2026-18467
Paytium: Mollie payment forms & donations
Reporter: SECURITY
9.8
CRITICAL
VIEW RECORD
CVE-2026-78308
DIAEnergie PATCH
Reporter: 759F5E80-C8E1-4224-BEAD-956D7B33C98B
9.8
CRITICAL
VIEW RECORD
CVE-2026-12227
Visual Composer Website Builder
Reporter: SECURITY
9.8
CRITICAL
VIEW RECORD
CVE-2026-13249
PD45 Industrial Printer
Reporter: PSIRT
9.8
CRITICAL
VIEW RECORD
CVE-2026-81549
DataStage on Cloud Pak for Data
Reporter: PSIRT
9.6
CRITICAL
VIEW RECORD
CVE-2026-87898
Plesk extension "Site Import" PATCH
Reporter: SUPPORT
9.4
CRITICAL
VIEW RECORD
CVE-2026-87899
cPanel PATCH
Reporter: SUPPORT
9.4
CRITICAL
VIEW RECORD
CVE-2026-87900
WP Toolkit for cPanel PATCH
Reporter: SUPPORT
9.4
CRITICAL
VIEW RECORD
CVE-2026-93352
Product identification pending PATCH
Reporter: DISCLOSURE
9.3
CRITICAL
VIEW RECORD
CVE-2026-96891
DIR-825
Reporter: CNA
9.3
CRITICAL
VIEW RECORD
CVE-2026-91187
nimble_zta PATCH
Reporter: 6B3AD84C-E1A6-4BF7-A703-F496B71E49DB
9.3
CRITICAL
VIEW RECORD
CVE-2026-61604
ixo-blockchain PATCH
Reporter: SECURITY-ADVISORIES
9.3
CRITICAL
VIEW RECORD
CVE-2026-61741
http4s-scala-xml
Reporter: SECURITY-ADVISORIES
9.3
CRITICAL
VIEW RECORD
CVE-2026-61742
dbhub PATCH
Reporter: SECURITY-ADVISORIES
9.3
CRITICAL
VIEW RECORD
CVE-2026-13016
ServiceNow AI Platform PATCH
Reporter: PSIRT
9.3
CRITICAL
VIEW RECORD
CVE-2026-86860
ServiceNow AI Platform PATCH
Reporter: PSIRT
9.3
CRITICAL
VIEW RECORD
CVE-2026-67404
rabbitmq-server PATCH
Reporter: SECURITY-ADVISORIES
9.2
CRITICAL
VIEW RECORD
CVE-2026-97055
signoz PATCH
Reporter: DISCLOSURE
9.2
CRITICAL
VIEW RECORD
CVE-2026-90481
Burp Suite DAST PATCH
Reporter: CVE
9.2
CRITICAL
VIEW RECORD
CVE-2026-97404
Product identification pending PATCH
Reporter: CVE
9.2
CRITICAL
VIEW RECORD
CVE-2026-75884
Product identification pending
Reporter: SECALERT
9.1
CRITICAL
VIEW RECORD
CVE-2026-67231
rabbitmq-server PATCH
Reporter: SECURITY-ADVISORIES
9.1
CRITICAL
VIEW RECORD
CVE-2026-78312
Product identification pending PATCH
Reporter: 759F5E80-C8E1-4224-BEAD-956D7B33C98B
9.1
CRITICAL
VIEW RECORD
CVE-2026-79766
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
9.1
CRITICAL
VIEW RECORD
CVE-2026-94606
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
8.9
HIGH
VIEW RECORD
CVE-2026-80379
Product identification pending
Reporter: PSIRT
8.8
HIGH
VIEW RECORD
CVE-2026-80412
Product identification pending
Reporter: PSIRT
8.8
HIGH
VIEW RECORD
CVE-2026-80425
Product identification pending
Reporter: PSIRT
8.8
HIGH
VIEW RECORD
CVE-2026-80423
Product identification pending
Reporter: PSIRT
8.8
HIGH
VIEW RECORD
CVE-2026-81537
Product identification pending
Reporter: PSIRT
8.8
HIGH
VIEW RECORD
CVE-2026-86583
Import and export users and customers
Reporter: SECURITY
8.8
HIGH
VIEW RECORD
CVE-2026-70125
Microsoft 365 Apps for Enterprise
Reporter: SECURE
8.8
HIGH
VIEW RECORD
CVE-2026-78309
Product identification pending PATCH
Reporter: 759F5E80-C8E1-4224-BEAD-956D7B33C98B
8.8
HIGH
VIEW RECORD
CVE-2026-78311
Product identification pending PATCH
Reporter: 759F5E80-C8E1-4224-BEAD-956D7B33C98B
8.8
HIGH
VIEW RECORD
CVE-2026-85682
YOP Poll
Reporter: SECURITY
8.8
HIGH
VIEW RECORD
CVE-2026-97059
Product identification pending
Reporter: DISCLOSURE
8.8
HIGH
VIEW RECORD
CVE-2026-81539
Product identification pending
Reporter: PSIRT
8.8
HIGH
VIEW RECORD
CVE-2026-81545
Product identification pending
Reporter: PSIRT
8.8
HIGH
VIEW RECORD
CVE-2026-81547
Product identification pending
Reporter: PSIRT
8.8
HIGH
VIEW RECORD
CVE-2026-81548
Product identification pending
Reporter: PSIRT
8.8
HIGH
VIEW RECORD
CVE-2026-81552
Product identification pending
Reporter: PSIRT
8.8
HIGH
VIEW RECORD
CVE-2026-82093
Product identification pending
Reporter: PSIRT
8.8
HIGH
VIEW RECORD
CVE-2026-94609
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
8.8
HIGH
VIEW RECORD
CVE-2026-13248
Product identification pending
Reporter: PSIRT
8.8
HIGH
VIEW RECORD
CVE-2026-68492
Product identification pending PATCH
Reporter: SUPPORT
8.7
HIGH
VIEW RECORD
CVE-2026-82405
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
8.7
HIGH
VIEW RECORD
CVE-2026-84683
Product identification pending
Reporter: SECALERT
8.7
HIGH
VIEW RECORD
CVE-2026-84691
Product identification pending
Reporter: SECALERT
8.7
HIGH
VIEW RECORD
CVE-2026-97057
Product identification pending
Reporter: DISCLOSURE
8.7
HIGH
VIEW RECORD
CVE-2026-97362
Product identification pending
Reporter: DISCLOSURE
8.7
HIGH
VIEW RECORD
CVE-2026-56744
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
8.7
HIGH
VIEW RECORD
CVE-2026-63498
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
8.7
HIGH
VIEW RECORD
CVE-2026-91122
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
8.7
HIGH
VIEW RECORD
CVE-2026-85057
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
8.7
HIGH
VIEW RECORD
CVE-2026-61825
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
8.7
HIGH
VIEW RECORD
CVE-2026-86858
Product identification pending PATCH
Reporter: PSIRT
8.7
HIGH
VIEW RECORD
CVE-2026-86859
Product identification pending PATCH
Reporter: PSIRT
8.7
HIGH
VIEW RECORD
CVE-2026-86064
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
8.6
HIGH
VIEW RECORD
CVE-2026-82369
Product identification pending PATCH
Reporter: SIRT
8.6
HIGH
VIEW RECORD
CVE-2026-82370
Product identification pending PATCH
Reporter: SIRT
8.6
HIGH
VIEW RECORD
CVE-2026-97152
Product identification pending PATCH
Reporter: CVE
8.6
HIGH
VIEW RECORD
CVE-2026-96515
Netlink ICT HG323RW Router
Reporter: VDISCLOSE
8.6
HIGH
VIEW RECORD
CVE-2026-77874
Product identification pending
Reporter: PSIRT
8.6
HIGH
VIEW RECORD
CVE-2026-77581
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
8.6
HIGH
VIEW RECORD
CVE-2026-63493
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
8.6
HIGH
VIEW RECORD
CVE-2026-95985
Product identification pending PATCH
Reporter: FF89BA41-3AA1-4D27-914A-91399E9639E5
8.6
HIGH
VIEW RECORD
CVE-2026-81455
Product identification pending
Reporter: SECURITY_ALERT
8.6
HIGH
VIEW RECORD
CVE-2026-56739
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
8.5
HIGH
VIEW RECORD
CVE-2026-56738
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
8.5
HIGH
VIEW RECORD
CVE-2026-82371
Product identification pending PATCH
Reporter: SIRT
8.5
HIGH
VIEW RECORD
CVE-2026-82409
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
8.4
HIGH
VIEW RECORD
CVE-2026-97151
Product identification pending PATCH
Reporter: CVE
8.4
HIGH
VIEW RECORD
CVE-2026-86857
Product identification pending PATCH
Reporter: PSIRT
8.4
HIGH
VIEW RECORD
CVE-2026-13465
Trusted Firmware
Reporter: 04C0172E-9735-4A9D-A92A-FE01FA863447
8.3
HIGH
VIEW RECORD
CVE-2026-13466
Trusted Firmware
Reporter: 04C0172E-9735-4A9D-A92A-FE01FA863447
8.3
HIGH
VIEW RECORD
CVE-2026-13467
Trusted Firmware
Reporter: 04C0172E-9735-4A9D-A92A-FE01FA863447
8.3
HIGH
VIEW RECORD
CVE-2026-58004
Trusted Firmware
Reporter: 04C0172E-9735-4A9D-A92A-FE01FA863447
8.3
HIGH
VIEW RECORD
CVE-2026-58005
Trusted Firmware
Reporter: 04C0172E-9735-4A9D-A92A-FE01FA863447
8.3
HIGH
VIEW RECORD
CVE-2026-58006
Trusted Firmware
Reporter: 04C0172E-9735-4A9D-A92A-FE01FA863447
8.3
HIGH
VIEW RECORD
CVE-2026-58007
Trusted Firmware
Reporter: 04C0172E-9735-4A9D-A92A-FE01FA863447
8.3
HIGH
VIEW RECORD
CVE-2026-58008
Trusted Firmware
Reporter: 04C0172E-9735-4A9D-A92A-FE01FA863447
8.3
HIGH
VIEW RECORD
CVE-2026-96746
Product identification pending
Reporter: CNA
8.3
HIGH
VIEW RECORD
CVE-2026-82157
Product identification pending
Reporter: SECURITY_ALERT
8.3
HIGH
VIEW RECORD
CVE-2026-96748
Python Driver
Reporter: CNA
8.3
HIGH
VIEW RECORD
CVE-2026-66079
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
8.2
HIGH
VIEW RECORD
CVE-2026-68490
cPanel PATCH
Reporter: SUPPORT
8.2
HIGH
VIEW RECORD
CVE-2026-67232
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
8.2
HIGH
VIEW RECORD
CVE-2026-56736
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
8.2
HIGH
VIEW RECORD
CVE-2026-91160
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
8.2
HIGH
VIEW RECORD

About the Vulnerability Pulse CVE Feed

The Vulnerability Pulse feed tracks live CVE advisories sourced from the National Vulnerability Database and vendor security disclosures. It is designed for SOC analysts, IT administrators, and security teams who need a fast, filterable view of current vulnerabilities without digging through raw NVD data.

How to Use the CVE Advisory Tracker

Use the severity filters to narrow results to Critical or High priority vulnerabilities. Filter by vendor to focus on software and hardware relevant to your environment. Export to CSV for reporting, ticketing, or patch prioritization workflows.

What Is a CVE Advisory?

A CVE (Common Vulnerabilities and Exposures) advisory is a public disclosure of a security vulnerability assigned a unique identifier by MITRE. Advisories include severity scores (CVSS), affected versions, and remediation guidance. Monitoring CVE advisories is a core function of vulnerability management programs and SOC operations.

CVE Analysis & Writeups

For in-depth analysis of specific vulnerabilities, visit the IT Knowledge Bases blog for CVE breakdowns, exploitation analysis, and remediation guidance written for security practitioners.