Skip to content
VulniPulse

Complete feed

Recently updated

Advisories the vendor has revised

Home overview

Android app · Google Play

Take your CVE monitoring with you.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.

Medium5.5Red Hat Updated

Medium [CVE-2026-80568] synaptics-rmi4 - block s_input when F54 queue is busy

synaptics-rmi4 - block s_input when F54 queue is busy. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-131.

CVE-2026-80568
Unclassified
Aug 26, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-80519] finish crypto callback cleanup before peer release

finish crypto callback cleanup before peer release. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-825.

CVE-2026-80519
Unclassified
Aug 26, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-80542] Fix NULL pointer dereference in amdgpu_dm_crtc_set_vblank

Fix NULL pointer dereference in amdgpu_dm_crtc_set_vblank(). Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-476. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.

CVE-2026-80542
Linux Kernel
Aug 26, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-80587] avoid combining some incoming suboptions

avoid combining some incoming suboptions. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-1288. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.

CVE-2026-80587
Linux Kernel
Aug 26, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-80544] Improve EP11 CPRB domain handling with ASN.1 parsing

Improve EP11 CPRB domain handling with ASN.1 parsing. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-805. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.

CVE-2026-80544
Linux Kernel
Aug 26, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-80526] Validate values for volume writes

Validate values for volume writes. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-787.

CVE-2026-80526
Unclassified
Aug 26, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-80570] synaptics-rmi4 - zero report size on F54 work error

synaptics-rmi4 - zero report size on F54 work error. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-805.

CVE-2026-80570
Unclassified
Aug 26, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-80556] Fix use-after-free in atmci_remove due to race condition

Fix use-after-free in atmci_remove due to race condition. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-825.

CVE-2026-80556
Unclassified
Aug 26, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-80574] focaltech - fix array out-of-bounds in focaltech_process_rel_packet

focaltech - fix array out-of-bounds in focaltech_process_rel_packet. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-787. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.

CVE-2026-80574
Linux Kernel
Aug 26, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-80548] Selectively expand io_mutex

Selectively expand io_mutex. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-366. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.

CVE-2026-80548
Linux Kernel
Aug 26, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-80551] Ensure first IDAW remains constant

Ensure first IDAW remains constant. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-367. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.

CVE-2026-80551
Linux Kernel
Aug 26, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-80579] clear fb_info->mode before deleting a videomode

clear fb_info->mode before deleting a videomode. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-825. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.

CVE-2026-80579
Linux Kernel
Aug 26, 2026
Medium5.5Vendor: LowRed Hat Updated

Medium [CVE-2026-80549] Move cp cleanup out of not operational

Move cp cleanup out of not operational. Red Hat rates this low (CVSS 5.5). Weakness: CWE-833. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.

CVE-2026-80549
Linux Kernel
Aug 26, 2026
Medium5.5Vendor: LowRed Hat Updated

Medium [CVE-2026-74745] avoid deadlock when canceling IRQ affinity notifier

avoid deadlock when canceling IRQ affinity notifier. Red Hat rates this low (CVSS 5.5). Weakness: CWE-833. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.

CVE-2026-74745
Linux Kernel
Aug 26, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-80588] reclaim forward-allocated memory on RX path errors

reclaim forward-allocated memory on RX path errors. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-772. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.

CVE-2026-80588
Linux Kernel
Aug 26, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-80560] do not restore privileged SR bits on sigreturn

do not restore privileged SR bits on sigreturn. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-15.

CVE-2026-80560
Unclassified
Aug 26, 2026
Low3.5GitLab Updated

Low [CVE-2026-7487] GitLab has remediated an issue in GitLab EE affecting all versions from 13.1 before 19.1.7, 19.2 before 19.2.5, and 19.3 before 19.3.1 that, under certain conditions, an authenticated user with reporter-role permissions who authored a merge request could have reset merge request approval rules due to improper authorization checks

GitLab has remediated an issue in GitLab EE affecting all versions from 13.1 before 19.1.7, 19.2 before 19.2.5, and 19.3 before 19.3.1 that, under certain conditions, an authenticated user with reporter-role permissions who authored a merge request could have reset merge request approval rules due to improper authorization checks.

CVE-2026-7487
Unclassified
Aug 26, 2026
UnratedCisco Updated

Advisory Cisco Advance Notification for Publication of September 2, 2026, Security Advisories

On September 2, 2026, the Cisco Product Security Incident Response Team (PSIRT) will publish advisories to disclose security vulnerability information along with fixed software releases for the following Cisco products: Desk Phone 9800, 7800 and 8800, and 8875 Series Software IOS XR Software (security hardening release) Nexus 9000 Series Switches Silicon One Secure Email

Nexus 9000
Aug 26, 2026
Critical9.1Apache Updated

Critical [CVE-2026-68525] Incorrect Authorization vulnerability in Apache Tomcat's FORM authentication process allows the bypassing of a security constraint that limits user has access to a resource POST but not GET

Incorrect Authorization vulnerability in Apache Tomcat's FORM authentication process allows the bypassing of a security constraint that limits user has access to a resource POST but not GET. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.24, from 10.1.0-M1 through 10.1.57, from 9.0.0.M1 through 9.0.120. The following versions were EOL at the time the CVE was created but are known to be affected: from 8.5.0 through 8.5.100, from 7.0.0 through 7.0.109. Other unsupported versions may also be affected. Users are recommended to upgrade to version 11.0.25, 10.1.58 or 9.0.121, which fixes the issue.

CVE-2026-68525
Tomcat
Aug 25, 2026
Critical9.8Apache Updated

Critical [CVE-2026-65905] Authentication Bypass by Capture-replay vulnerability in Apache Tomcat's DIGEST authenticator

Authentication Bypass by Capture-replay vulnerability in Apache Tomcat's DIGEST authenticator. If, before windowSize requests have been made, a client makes a DIGEST authenticated request with a nonceCount on the upper boundary of the replay window then that request is replayable once only while the associated nonceCount remains within the replay window. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.24, from 10.1.0-M1 through 10.1.57, from 9.0.0.M1 through 9.0.120. The following versions were EOL at the time the CVE was created but are known to be affected: from 8.5.0 through 8.5.100, from 7.0.30 through 7.0.109. Other unsupported versions may also be affected. Users are recommended to upgrade to version 11.0.25, 10.1.58 or 9.0.121, which fix the issue.

CVE-2026-65905
Tomcat
Aug 25, 2026