CVE-2026-78807High· 7.1▾ TwilightAn issue in wpa_supplicant all versions before v.2.12 allows a local attacker to bypass proper network context and AKMP matching for PMKSA caching via missing validation in the driver based PMKSA selection path in wpa.c
▾ Twilight zone — High severity, or a signal on a lesser flaw
impact 39.1 · likelihood 0 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Stakeholder-Specific Vulnerability Categorization from CISA's ADP record at CVE.org: whether exploitation is observed, whether an attack can be automated, and how much of the system is at stake.
Exploit-prediction probability, daily snapshots since Sep 12.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
0.08%
Last analysed / modified upstream
An issue in wpa_supplicant all versions before v.2.12 allows a local attacker to bypass proper network context and AKMP matching for PMKSA caching via missing validation in the driver based PMKSA selection path in wpa.c
Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
Connected by shared product, vendor, weakness, or advisory.
CVE-2026-80929High· 7.0kernel: sysctl: move the "cad_pid" entry from pid_table[] to kern_reboot_table[] (CVE-2026-80929)
CVE-2026-89773Medium· 5.5kernel: drm/amd/display: Skip Update HDCP Config In Transition State (CVE-2026-89773)
CVE-2026-89588Medium· 5.5kernel: ACPI: APEI: GHES: fix ARM section length accounting after header (CVE-2026-89588)
CVE-2026-89601Medium· 5.5kernel: ext2: Fix lost inode updates for IS_SYNC inodes (CVE-2026-89601)
CVE-2026-89677High· 7.0kernel: nfsd: fix possible fh_compose of wrong dentry in nfsd4_create_file() (CVE-2026-89677)
CVE-2026-89754High· 7.0kernel: mm/pagewalk: fix stale walk->action escaping walk_pmd_range() (CVE-2026-89754)