ubuntu has 3 CVEs on record. The median CVSS is 5.5 (medium), with 1 rated critical.
CVEs per month
Last 12 months, by publish date
1025/101125/111225/120126/010226/020326/030426/040526/050626/060726/070826/080926/09
- Exploited share
- 0% vs 1% corpus
- Median CVSS
- 5.5
- Publish → KEV
- —
- Last 90 days
- 0 prev 2
3
Total CVEs
1
Critical
0
CISA KEV
0
Exploited
ubuntu vulnerabilities
CVEs affecting ubuntu, newest first. Open any entry for full detail, references, and exploit status.
3 CVEsRSS
CVE-2026-12249Critical· 9.0Canonical ADSys Uses a Less Trusted Source
Canonical ADSys Uses a Less Trusted Source
▾ Midnightubuntu · github.com/ubuntu/adsysEPSS 0.14%via GHSA
CVE-2026-6862Medium· 5.5A flaw was found in libefiboot, a component of efivar
A flaw was found in libefiboot, a component of efivar. The device path node parser in libefiboot fails to validate that each node's Length field is at least 4 bytes, which is the minimum size for an EFI (Extensible Firmware Interface) de…
▾ Sunlitubuntu · libefibootEPSS 0.10%via NVD
CVE-2026-3497Low· 2.7Vulnerability in the OpenSSH GSSAPI delta included in various Linux distributions
Vulnerability in the OpenSSH GSSAPI delta included in various Linux distributions. This vulnerability affects the GSSAPI patches added by various Linux distributions and does not affect the OpenSSH upstream project itself. The usage of s…
▾ SunlitUbuntu · opensshEPSS 2.2%via CVEORG