You are using an out of date browser. It may not display this or other websites correctly. You should upgrade or use an alternative browser.
nvd cvss score pending
About this tag
The tag nvd cvss score pending covers vulnerabilities listed in the National Vulnerability Database (NVD) that have not yet received a CVSS severity score. Content under this tag discusses the implications of missing scores, such as delayed risk assessment and prioritization challenges for IT administrators. For example, CVE-2026-45986, a memory leak in the Linux ccree crypto driver, is highlighted as a case where the absence of an NVD score complicates security response, especially in mixed environments where Windows systems rely on Linux kernels. The tag focuses on the practical impact of pending scores on vulnerability management and cross-platform security considerations.
CVE-2026-45986 is a newly published Linux kernel vulnerability from kernel.org, recorded by NVD on May 27, 2026, covering a memory leak in the ccree crypto driver’s cc_mac_digest() path when final hash request mapping fails. It is not yet scored by NVD, and that absence matters almost as much as...