VulniPulse uses Google Ads measurement to understand visits from advertisements and campaign performance. It runs cookie-free until you choose — accepting enables cookies for more accurate attribution. Rejecting keeps it cookie-free and never limits the site.
See exactly what is measuredComplete feed
4209 advisories across 32 monitored vendors.
Completely fix fcport double free. Red Hat rates this moderate (CVSS 7.1). Weakness: CWE-1341. Affected package(s): kernel. Resolved in Red Hat advisory RHSA-2026:34094 — update the affected packages (`sudo dnf update`).
SQL injection via specific SQL query conditions. Red Hat rates this moderate (CVSS 5.9). Weakness: CWE-89. Affected package(s): caddy-main, cosign-main, go-fdo-server-main. Resolved in Red Hat advisory RHSA-2026:16133 — update the affected packages (`sudo dnf update`).
Information disclosure of HTTP authentication credentials via redirects. Red Hat rates this moderate (CVSS 6.5). Weakness: CWE-601. Affected package(s): syft-main. Resolved in Red Hat advisory RHSA-2026:17669 — update the affected packages (`sudo dnf update`).
Incorrect URI comparison leading to integrity issues. Red Hat rates this moderate (CVSS 5.3). Weakness: CWE-1025. Affected package(s): uriparser-main. Resolved in Red Hat advisory RHSA-2026:16341 — update the affected packages (`sudo dnf update`).
Data integrity issue due to pointer truncation. Red Hat rates this low (CVSS 2.2). Weakness: CWE-681. Affected package(s): uriparser-main. Resolved in Red Hat advisory RHSA-2026:16341 — update the affected packages (`sudo dnf update`).
Information disclosure of Kubernetes Secret data via Server-Side Apply dry-run mechanism. Red Hat rates this important (CVSS 7.7). Weakness: CWE-201. Affected package(s): openshift-gitops. Resolved in Red Hat advisory RHSA-2026:20943 — update the affected packages (`sudo dnf update`).
Go net/mail: Denial of Service via crafted email inputs. Red Hat rates this important (CVSS 7.5). Weakness: CWE-606. Affected package(s): openshift-service-mesh/istio-proxyv2-rhel9:1782310747, openshift-service-mesh/istio-proxyv2-rhel9:1782303211, rhdh/rhdh-rhel9-operator:1782767215, openshift-service-mesh/istio-cni-rhel9:1782222217, openshift-service-mesh/istio-pilot-rhel9:1782223341, openshift-service-mesh/istio-pilot-rhel9:1782223138. Resolved in Red Hat advisory RHSA-2026:33120 — update the affected packages (`sudo dnf update`).
Go net package: Denial of Service via long CNAME response in LookupCNAME. Red Hat rates this important (CVSS 7.5). Weakness: CWE-1341. Affected package(s): golang-github-openprinting-ipp-usb, opentelemetry-collector, golang1, openshift-service-mesh/istio-proxyv2-rhel9:1782310747, openshift-service-mesh/istio-proxyv2-rhel9:1782303211, rhdh/rhdh-rhel9-operator:1782767215. Resolved in Red Hat advisory RHSA-2026:23262 — update the affected packages (`sudo dnf update`).
Denial of Service via pathological email address parsing. Red Hat rates this important (CVSS 7.5). Weakness: CWE-1046. Affected package(s): openshift-service-mesh/istio-proxyv2-rhel9:1782310747, openshift-service-mesh/istio-proxyv2-rhel9:1782303211, rhdh/rhdh-rhel9-operator:1782767215, openshift-service-mesh/istio-cni-rhel9:1782222217, openshift-service-mesh/istio-pilot-rhel9:1782223341, openshift-service-mesh/istio-pilot-rhel9:1782223138. Resolved in Red Hat advisory RHSA-2026:33120 — update the affected packages (`sudo dnf update`).
Denial of Service via malformed SETTINGS_MAX_FRAME_SIZE frame. Red Hat rates this important (CVSS 7.5). Weakness: CWE-606. Affected package(s): golang1, cluster-observability-operator/distributed-tracing-console-plugin-pf5-rhel9:1782839981, openshift-service-mesh/istio-cni-rhel9:1782222217, cluster-observability-operator/distributed-tracing-console-plugin-pf4-rhel9:1782840519, openshift-service-mesh/istio-pilot-rhel9:1782223138, openshift-service-mesh/istio-pilot-rhel9:1782222366. Resolved in Red Hat advisory RHSA-2026:23262 — update the affected packages (`sudo dnf update`).
Other issue in the WebRTC component. Red Hat rates this important (CVSS 7.5). Affected package(s): firefox. Resolved in Red Hat advisory RHSA-2026:24509 — update the affected packages (`sudo dnf update`).
Memory safety bugs fixed in Firefox 150.0.2. Red Hat rates this important (CVSS 7.5). Weakness: CWE-120. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released.
Memory safety bugs fixed in Firefox ESR 115.35.2, Firefox ESR 140.10.2 and Firefox 150.0.2. Red Hat rates this important (CVSS 7.5). Weakness: CWE-787. Affected package(s): firefox. Resolved in Red Hat advisory RHSA-2026:24509 — update the affected packages (`sudo dnf update`).
Incorrect boundary conditions in the Audio/Video: Playback component. Red Hat rates this important (CVSS 7.5). Weakness: CWE-805. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released.
Use-after-free in the DOM: Networking component. Red Hat rates this important (CVSS 7.5). Weakness: CWE-825. Affected package(s): firefox. Resolved in Red Hat advisory RHSA-2026:24509 — update the affected packages (`sudo dnf update`).
Denial of Service via crafted OOXML documents. Red Hat rates this moderate (CVSS 7.6). Weakness: CWE-787. Affected package(s): libreoffice. Resolved in Red Hat advisory RHSA-2026:28922 — update the affected packages (`sudo dnf update`).
Arbitrary code execution via expression parser. Red Hat rates this important (CVSS 8.8). Weakness: CWE-94. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released.
Information disclosure and denial of service via malformed EXR files. Red Hat rates this important (CVSS 8.1). Weakness: CWE-130. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released.
Arbitrary code execution via integer overflow in image resizing. Red Hat rates this important (CVSS 8.8). Weakness: CWE-190. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released.
Information disclosure of secrets from unintended GCP projects. Red Hat rates this important (CVSS 7.5). Weakness: CWE-1220. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released.