VulniPulse uses Google Ads measurement to understand visits from advertisements and campaign performance. It runs cookie-free until you choose — accepting enables cookies for more accurate attribution. Rejecting keeps it cookie-free and never limits the site.
See exactly what is measuredComplete feed
Critical/high still unreviewed, or CISA KEV listed
Heap buffer overflow leading to denial of service and potential code execution from a malicious server.. Red Hat rates this important (CVSS 7.6). Weakness: CWE-122. Affected package(s): freerdp. Resolved in Red Hat advisory RHSA-2026:2952 — update the affected packages (`sudo dnf update`).
WeasyPrint Server-Side Request Forgery (SSRF). Red Hat rates this important (CVSS 7.5). Weakness: CWE-918. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released.
Information disclosure and data deletion via second-order SQL injection. Red Hat rates this important (CVSS 8.3). Weakness: CWE-89. Affected package(s): eap7-hibernate, eap7-wildfly, org.hibernate/hibernate-core:5.3.38.Final-redhat. Resolved in Red Hat advisory RHSA-2026:4924 — update the affected packages (`sudo dnf update`).
Arbitrary file overwrite and symlink poisoning via unsanitized linkpaths in archives. Red Hat rates this important (CVSS 8.2). Weakness: CWE-22. Affected package(s): network-observability/network-observability-console-plugin-rhel9:1771227650, devspaces/udi-rhel9:1774451954, rhtas/rekor-search-ui-rhel9:1770107452, rhtas/rekor-search-ui-rhel9:1770739056, rhoai/odh-dashboard-rhel9:1779189627, linux-sgx. Resolved in Red Hat advisory RHSA-2026:19712 — update the affected packages (`sudo dnf update`).
Remote Code Execution via persistent cross-site scripting. Red Hat rates this important. Weakness: CWE-79. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released.
Denial of Service due to memory exhaustion from malformed RELATIVE-OID. Red Hat rates this important (CVSS 7.5). Weakness: CWE-770. Affected package(s): python-pyasn1, ansible-automation-platform, fence-agents, rhelai3/bootc-azure-rocm-rhel9:1778677745, resource-agents, automation-controller. Resolved in Red Hat advisory RHSA-2026:5606 — update the affected packages (`sudo dnf update`).
Arbitrary Code Execution and Denial of Service via crafted EAP-MSCHAPv2 message. Red Hat rates this important (CVSS 8.1). Weakness: CWE-191. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released.
HTTP Request Smuggling due to improper case-sensitive parsing of Transfer-Encoding header. Red Hat rates this important (CVSS 8.9). Weakness: CWE-444. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released.
Denial of Service due to improper input validation. Red Hat rates this important (CVSS 7.5). Weakness: CWE-405. Affected package(s): rhtas/rekor-search-ui-rhel9:1770107452, rhtas/rekor-search-ui-rhel9:1770739056. Resolved in Red Hat advisory RHSA-2026:2926 — update the affected packages (`sudo dnf update`).
Denial of Service due to excessive resource consumption from untrusted input. Red Hat rates this important (CVSS 7.5). Weakness: CWE-405. Affected package(s): rhtas/rekor-search-ui-rhel9:1770107452, rhtas/rekor-search-ui-rhel9:1770739056. Resolved in Red Hat advisory RHSA-2026:2926 — update the affected packages (`sudo dnf update`).
Denial of Service via crafted HDF5 weight loading file. Red Hat rates this important (CVSS 7.6). Weakness: CWE-770. Affected package(s): rhoai/odh-pipeline-runtime-tensorflow-cuda-py312-rhel9:1772093304, rhoai/odh-pipeline-runtime-tensorflow-rocm-py312-rhel9:1772093283, rhoai/odh-workbench-jupyter-tensorflow-cuda-py312-rhel9:1772093300, rhoai/odh-pipeline-runtime-tensorflow-rocm-py312-rhel9:1771502844, rhoai/odh-workbench-jupyter-tensorflow-rocm-py312-rhel9:1771502884, rhoai/odh-modelmesh-runtime-adapter-rhel9:1772094445. Resolved in Red Hat advisory RHSA-2026:4271 — update the affected packages (`sudo dnf update`).
Arbitrary code execution via Use After Free in PluginTARGA.cpp;loadRLE(). Red Hat rates this important (CVSS 9.8). Weakness: CWE-416. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released.
Integer overflow in memalign leads to heap corruption. Red Hat rates this low (CVSS 8.1). Weakness: CWE-190. Affected package(s): glibc-main, costmanagement/costmanagement-metrics-rhel9-operator:1770836349, insights-proxy/insights-proxy-container-rhel9:1773685509, rhui5/rhua-rhel9:1773670137, rhui5/cds-rhel9:1773670073, rhui5/haproxy-rhel9:1773672059. Resolved in Red Hat advisory RHSA-2026:3228 — update the affected packages (`sudo dnf update`).
FreeRDP heap-buffer-overflow. Red Hat rates this important (CVSS 7.4). Weakness: CWE-125. Affected package(s): freerdp. Resolved in Red Hat advisory RHSA-2026:4439 — update the affected packages (`sudo dnf update`).
FreeRDP global-buffer-overflow. Red Hat rates this important (CVSS 7.4). Weakness: CWE-787. Affected package(s): freerdp. Resolved in Red Hat advisory RHSA-2026:4439 — update the affected packages (`sudo dnf update`).
FreeRDP heap-use-after-free. Red Hat rates this moderate (CVSS 8.1). Weakness: CWE-416. Affected package(s): freerdp. Resolved in Red Hat advisory RHSA-2026:6958 — update the affected packages (`sudo dnf update`).
FreeRDP heap-buffer-overflow. Red Hat rates this moderate (CVSS 8.1). Weakness: CWE-122. Affected package(s): freerdp. Resolved in Red Hat advisory RHSA-2026:6958 — update the affected packages (`sudo dnf update`).
FreeRDP heap-buffer-overflow. Red Hat rates this important (CVSS 8.1). Weakness: CWE-787. Affected package(s): freerdp. Resolved in Red Hat advisory RHSA-2026:19033 — update the affected packages (`sudo dnf update`).
Arbitrary file disclosure via specially crafted connector configuration. Red Hat rates this important (CVSS 8.6). Weakness: CWE-918. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released.
make decode_pool() more resilient against corrupted osdmaps. Red Hat rates this moderate (CVSS 7.1). Weakness: CWE-125. Affected package(s): kernel, kernel-rt. Resolved in Red Hat advisory RHSA-2026:26462 — update the affected packages (`sudo dnf update`).