← Back to the live CVE advisory feed

CVE-2026-97971: Product identification pending

Severity
7.8 (HIGH)
Patch status
Unknown
Published
2026-09-25T11:17:24.980
Modified
2026-09-25T15:18:03.220

Why it matters

This matters because the affected product may be exposed on public websites. A vulnerable plugin can create a direct path to site compromise, malicious code deployment, or data theft.

Recommended admin actions

  • Review and patch based on exposure, asset criticality, and business impact.
  • Check whether the affected WordPress plugin or theme is installed.
  • Update, disable, or remove the affected component if present.
  • Compare installed versions against the affected version range in the advisory.

Technical summary

In the Linux kernel, the following vulnerability has been resolved: nstree: check listing permission before taking a namespace reference legitimize_ns() takes a reference on the candidate namespace before may_list_ns() has decided whether the caller may see it. The __free(ns_put) cleanup on the denied path can drop the last reference to a mount namespace while we still hold the rcu read lock, and put_mnt_ns() may sleep there. This is the same problem commit 2ec2aff3c8e2 ("ns: make sure reference are dropped outside of rcu lock") fixed for the put_user() path. Neither ns_requested() nor may_list_ns() needs a reference, both only look at the namespace type and at the caller's own namespaces, so do the checks first and take the reference last. Splat: Voluntary context switch within RCU read-side critical section! WARNING: kernel/rcu/tree_plugin.h:332 at rcu_note_context_switch+0x238/0x2a0, CPU#5: a/3442 CPU: 5 UID: 1000 PID: 3442 Comm: a Not tainted 7.0.0-30-generic #30-Ubuntu PREEMPT(lazy) RIP: 0010:rcu_note_context_switch+0x238/0x2a0 Call Trace: __schedule+0xcf/0x650 schedule+0x27/0x90 schedule_preempt_disabled+0x15/0x30 __mutex_lock.constprop.0+0x550/0xaf0 __mutex_lock_slowpath+0x13/0x20 mutex_lock+0x3b/0x50 exp_funnel_lock+0xb2/0x260 synchronize_rcu_expedited+0xe7/0x220 namespace_unlock+0x26a/0x320 put_mnt_ns+0xd3/0x120 mntns_put+0xe/0x20 do_listns+0x13e/0x560 __do_sys_listns+0x126/0x2d0 __x64_sys_listns+0x20/0x30 x64_sys_call+0x2366/0x2390 do_syscall_64+0x105/0x5a0 entry_SYSCALL_64_after_hwframe+0x76/0x7e

CVE data is sourced from NVD/CNA records and optional enrichment. Validate against the vendor advisory before taking production action.

VULNERABILITY PULSE

LAST UPDATED: SEP 26, 2026 12:00 AM UTC
683 RECORDS
SECURE FEED ACTIVE
AFFECTED PRODUCT ACTION
CVE-2026-100382
Product identification pending PATCH
Reporter: C4F26CC8-17FF-4C99-B5E2-38FC1793EACC
10
CRITICAL
VIEW RECORD
CVE-2026-14281
Automation Web Platform – Notifications and OTP for WooCommerce, Advanced Country Code
Reporter: SECURITY
9.8
CRITICAL
VIEW RECORD
CVE-2026-92609
Product identification pending PATCH
Reporter: SECURITY
9.8
CRITICAL
VIEW RECORD
CVE-2026-100075
Linux PATCH
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
9.8
CRITICAL
VIEW RECORD
CVE-2026-93643
Product identification pending
Reporter: CVE
9.8
CRITICAL
VIEW RECORD
CVE-2026-92161
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
9.8
CRITICAL
VIEW RECORD
CVE-2026-48482
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
9.4
CRITICAL
VIEW RECORD
CVE-2026-95832
Product identification pending PATCH
Reporter: 4DAA8CEA-433A-44BD-9456-53B127FC289A
9.3
CRITICAL
VIEW RECORD
CVE-2026-93641
Product identification pending
Reporter: CVE
9.3
CRITICAL
VIEW RECORD
CVE-2026-93642
Product identification pending
Reporter: CVE
9.3
CRITICAL
VIEW RECORD
CVE-2026-93647
Product identification pending
Reporter: CVE
9.3
CRITICAL
VIEW RECORD
CVE-2026-97063
X-SpringBoot
Reporter: DISCLOSURE
9.3
CRITICAL
VIEW RECORD
CVE-2026-97064
X-SpringBoot
Reporter: DISCLOSURE
9.3
CRITICAL
VIEW RECORD
CVE-2026-100389
GestSup PATCH
Reporter: DISCLOSURE
9.2
CRITICAL
VIEW RECORD
CVE-2026-92288
Lemonldap-NG-Portal PATCH
Reporter: 9B29ABF9-4AB0-4765-B253-1875CD9B441E
9.1
CRITICAL
VIEW RECORD
CVE-2026-89055
Customer Reviews for WooCommerce
Reporter: SECURITY
9.1
CRITICAL
VIEW RECORD
CVE-2026-93399
Online Scheduling and Appointment Booking System – Bookly
Reporter: SECURITY
9.1
CRITICAL
VIEW RECORD
CVE-2026-39353
InvoicePlane PATCH
Reporter: SECURITY-ADVISORIES
9.1
CRITICAL
VIEW RECORD
CVE-2026-42322
Piwigo PATCH
Reporter: SECURITY-ADVISORIES
9.1
CRITICAL
VIEW RECORD
CVE-2026-62262
Piwigo
Reporter: SECURITY-ADVISORIES
9.1
CRITICAL
VIEW RECORD
CVE-2026-84458
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
9.1
CRITICAL
VIEW RECORD
CVE-2026-100390
Product identification pending
Reporter: DISCLOSURE
9.1
CRITICAL
VIEW RECORD
CVE-2026-62062
Product identification pending
Reporter: AUDIT
8.8
HIGH
VIEW RECORD
CVE-2026-19804
s2Member – Excellent for All Kinds of Memberships, Content Restriction Paywalls & Member Access Subscriptions
Reporter: SECURITY
8.8
HIGH
VIEW RECORD
CVE-2026-89426
Knit Pay – Cashfree, Instamojo, Razorpay, PayPal and more
Reporter: SECURITY
8.8
HIGH
VIEW RECORD
CVE-2026-97527
Product identification pending
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
8.8
HIGH
VIEW RECORD
CVE-2026-97528
Product identification pending
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
8.8
HIGH
VIEW RECORD
CVE-2026-97555
Linux PATCH
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
8.8
HIGH
VIEW RECORD
CVE-2026-97957
Product identification pending
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
8.8
HIGH
VIEW RECORD
CVE-2026-98115
Linux PATCH
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
8.8
HIGH
VIEW RECORD
CVE-2025-51457
Product identification pending
Reporter: CVE
8.8
HIGH
VIEW RECORD
CVE-2026-85542
Product identification pending
Reporter: PSIRT
8.8
HIGH
VIEW RECORD
CVE-2026-93834
Product identification pending
Reporter: SECALERT
8.8
HIGH
VIEW RECORD
CVE-2026-96812
Product identification pending
Reporter: CVE-COORDINATION
8.8
HIGH
VIEW RECORD
CVE-2026-94445
Product identification pending
Reporter: SECURITY
8.8
HIGH
VIEW RECORD
CVE-2026-61525
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
8.8
HIGH
VIEW RECORD
CVE-2026-100391
Product identification pending
Reporter: DISCLOSURE
8.8
HIGH
VIEW RECORD
CVE-2026-96795
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
8.8
HIGH
VIEW RECORD
CVE-2026-89032
Product identification pending PATCH
Reporter: DISCLOSURE
8.7
HIGH
VIEW RECORD
CVE-2026-56725
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
8.7
HIGH
VIEW RECORD
CVE-2026-56733
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
8.7
HIGH
VIEW RECORD
CVE-2026-97818
Product identification pending
Reporter: CVE
8.6
HIGH
VIEW RECORD
CVE-2026-84462
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
8.6
HIGH
VIEW RECORD
CVE-2026-97060
Product identification pending
Reporter: DISCLOSURE
8.6
HIGH
VIEW RECORD
CVE-2026-100372
Product identification pending PATCH
Reporter: DISCLOSURE
8.6
HIGH
VIEW RECORD
CVE-2026-85082
Product identification pending
Reporter: HELP
8.5
HIGH
VIEW RECORD
CVE-2026-97730
Product identification pending PATCH
Reporter: CVE
8.5
HIGH
VIEW RECORD
CVE-2026-100172
Product identification pending
Reporter: 5A6E4751-2F3F-4070-9419-94FB35B644E8
8.5
HIGH
VIEW RECORD
CVE-2026-100176
Product identification pending
Reporter: 5A6E4751-2F3F-4070-9419-94FB35B644E8
8.5
HIGH
VIEW RECORD
CVE-2026-47679
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
8.5
HIGH
VIEW RECORD
CVE-2026-55214
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
8.5
HIGH
VIEW RECORD
CVE-2026-71483
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
8.5
HIGH
VIEW RECORD
CVE-2026-97898
Product identification pending
Reporter: 5A6E4751-2F3F-4070-9419-94FB35B644E8
8.4
HIGH
VIEW RECORD
CVE-2026-100248
Product identification pending PATCH
Reporter: CVE
8.4
HIGH
VIEW RECORD
CVE-2026-56731
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
8.4
HIGH
VIEW RECORD
CVE-2026-100368
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
8.4
HIGH
VIEW RECORD
CVE-2026-100369
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
8.4
HIGH
VIEW RECORD
CVE-2026-100501
Product identification pending
Reporter: DISCLOSURE
8.3
HIGH
VIEW RECORD
CVE-2026-97525
Product identification pending
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
8.2
HIGH
VIEW RECORD
CVE-2026-67236
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
8.2
HIGH
VIEW RECORD
CVE-2026-67409
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
8.2
HIGH
VIEW RECORD
CVE-2026-67410
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
8.2
HIGH
VIEW RECORD
CVE-2026-92713
Modula Image Gallery – Photo Grid & Video Gallery
Reporter: SECURITY
8.1
HIGH
VIEW RECORD
CVE-2026-97570
Product identification pending
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
8.1
HIGH
VIEW RECORD
CVE-2026-97573
Product identification pending
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
8.1
HIGH
VIEW RECORD
CVE-2026-97875
Product identification pending
Reporter: 74B3A70D-CCA6-4D34-9789-E83B222AE3BE
8.1
HIGH
VIEW RECORD
CVE-2026-98069
Product identification pending
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
8.1
HIGH
VIEW RECORD
CVE-2026-98070
Product identification pending
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
8.1
HIGH
VIEW RECORD
CVE-2026-98130
Product identification pending
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
8.1
HIGH
VIEW RECORD
CVE-2026-51773
Product identification pending
Reporter: CVE
8.1
HIGH
VIEW RECORD
CVE-2026-44642
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
8.1
HIGH
VIEW RECORD
CVE-2026-97735
Product identification pending PATCH
Reporter: CVE
8
HIGH
VIEW RECORD
CVE-2026-97548
Product identification pending
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
7.8
HIGH
VIEW RECORD
CVE-2026-97575
Product identification pending
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
7.8
HIGH
VIEW RECORD
CVE-2026-97576
Product identification pending
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
7.8
HIGH
VIEW RECORD
CVE-2026-97577
Product identification pending
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
7.8
HIGH
VIEW RECORD
CVE-2026-97578
Product identification pending
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
7.8
HIGH
VIEW RECORD
CVE-2026-97579
Product identification pending
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
7.8
HIGH
VIEW RECORD
CVE-2026-97580
Product identification pending
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
7.8
HIGH
VIEW RECORD
CVE-2026-97584
Product identification pending
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
7.8
HIGH
VIEW RECORD
CVE-2026-97594
Product identification pending
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
7.8
HIGH
VIEW RECORD
CVE-2026-97602
Product identification pending
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
7.8
HIGH
VIEW RECORD
CVE-2026-97611
Product identification pending
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
7.8
HIGH
VIEW RECORD
CVE-2026-97612
Linux PATCH
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
7.8
HIGH
VIEW RECORD
CVE-2026-97903
Product identification pending
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
7.8
HIGH
VIEW RECORD
CVE-2026-97910
Product identification pending
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
7.8
HIGH
VIEW RECORD
CVE-2026-97911
Product identification pending
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
7.8
HIGH
VIEW RECORD
CVE-2026-97937
Product identification pending
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
7.8
HIGH
VIEW RECORD
CVE-2026-97940
Product identification pending
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
7.8
HIGH
VIEW RECORD
CVE-2026-97941
Product identification pending
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
7.8
HIGH
VIEW RECORD
CVE-2026-97971
Product identification pending
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
7.8
HIGH
VIEW RECORD
CVE-2026-97991
Product identification pending
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
7.8
HIGH
VIEW RECORD
CVE-2026-98002
Product identification pending
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
7.8
HIGH
VIEW RECORD
CVE-2026-98017
Product identification pending
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
7.8
HIGH
VIEW RECORD
CVE-2026-98023
Product identification pending
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
7.8
HIGH
VIEW RECORD
CVE-2026-98052
Product identification pending
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
7.8
HIGH
VIEW RECORD
CVE-2026-98073
Linux PATCH
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
7.8
HIGH
VIEW RECORD
CVE-2026-98112
Linux PATCH
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
7.8
HIGH
VIEW RECORD
CVE-2026-98116
Product identification pending
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
7.8
HIGH
VIEW RECORD
CVE-2026-98122
Product identification pending
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
7.8
HIGH
VIEW RECORD

About the Vulnerability Pulse CVE Feed

The Vulnerability Pulse feed tracks live CVE advisories sourced from the National Vulnerability Database and vendor security disclosures. It is designed for SOC analysts, IT administrators, and security teams who need a fast, filterable view of current vulnerabilities without digging through raw NVD data.

How to Use the CVE Advisory Tracker

Use the severity filters to narrow results to Critical or High priority vulnerabilities. Filter by vendor to focus on software and hardware relevant to your environment. Export to CSV for reporting, ticketing, or patch prioritization workflows.

What Is a CVE Advisory?

A CVE (Common Vulnerabilities and Exposures) advisory is a public disclosure of a security vulnerability assigned a unique identifier by MITRE. Advisories include severity scores (CVSS), affected versions, and remediation guidance. Monitoring CVE advisories is a core function of vulnerability management programs and SOC operations.

CVE Analysis & Writeups

For in-depth analysis of specific vulnerabilities, visit the IT Knowledge Bases blog for CVE breakdowns, exploitation analysis, and remediation guidance written for security practitioners.