Skip to content
VulniPulse

Complete feed

No mitigation yet

No fix, workaround or mitigation extracted yet

Home overview

Android app · Google Play

Take your CVE monitoring with you.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.

Medium5.5Red Hat Updated

Medium [CVE-2026-74627] prevent net-iov / page mixing

prevent net-iov / page mixing. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-843. Affected products named by the advisory: Red Hat Enterprise Linux 6; Red Hat package: kernel.

CVE-2026-74627
Linux Kernel
Aug 22, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-74687] prevent timer rearm during teardown

prevent timer rearm during teardown. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-825.

CVE-2026-74687
Unclassified
Aug 22, 2026
High7.3Red Hat Updated

High [CVE-2026-74580] reset the vring metadata cache on vring reconfiguration

reset the vring metadata cache on vring reconfiguration. Red Hat rates this important (CVSS 7.3). Weakness: CWE-825. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; and 2 more. Affected products named by the advisory: Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.

CVE-2026-74580
Linux Kernel
Aug 21, 2026
High7.0Red Hat Updated

High [CVE-2026-74582] use consistent hard_header_len in non-ring send paths

use consistent hard_header_len in non-ring send paths. Red Hat rates this important (CVSS 7). Weakness: CWE-787. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.

CVE-2026-74582
Linux Kernel
Aug 21, 2026
Medium5.9Red Hat Updated

Medium [CVE-2026-59296] Line-protocol and log injection via unsanitized input allows metric and log spoofing

Line-protocol and log injection via unsanitized input allows metric and log spoofing. Red Hat rates this moderate (CVSS 5.9). Weakness: CWE-93. Affected products named by the advisory: Exploit Intelligence; Red Hat AMQ Broker 7; Red Hat build of Apache Camel 4 for Quarkus 3; Red Hat build of Apache Camel for Spring Boot 4; and 9 more. Affected products named by the advisory: Red Hat build of Apicurio Registry 3; Red Hat build of Debezium 3; Red Hat Build of Keycloak; Red Hat build of Quarkus; and 5 more.

CVE-2026-59296
Unclassified
Aug 21, 2026
Critical9.6Vendor: HighRed Hat Updated

Critical [CVE-2026-76018] Arbitrary Code Execution via crafted file in Import component

Arbitrary Code Execution via crafted file in Import component. Red Hat rates this important (CVSS 9.6). Weakness: CWE-641.

CVE-2026-76018
Unclassified
Aug 20, 2026
High8.6Red Hat Updated

High [CVE-2026-72848] Server-Side Request Forgery and Information Disclosure via nested sitemap entries

Server-Side Request Forgery and Information Disclosure via nested sitemap entries. Red Hat rates this important (CVSS 8.6). Weakness: CWE-918. Affected products named by the advisory: Exploit Intelligence; Migration Toolkit for Applications 8; OpenShift Lightspeed; Red Hat Ansible Automation Platform 2; and 2 more. Affected products named by the advisory: Red Hat Enterprise Linux AI (RHEL AI) 3; Red Hat OpenShift AI (RHOAI).

CVE-2026-72848
Unclassified
Aug 20, 2026
High8.8Red Hat Updated

High [CVE-2026-15679] Hugging Face PyTorch Image Models: Remote Code Execution via Deserialization of Untrusted Data

Hugging Face PyTorch Image Models: Remote Code Execution via Deserialization of Untrusted Data. Red Hat rates this important (CVSS 8.8). Weakness: CWE-502. Affected products named by the advisory: Red Hat AI Inference Server; Red Hat Enterprise Linux AI (RHEL AI) 3; Red Hat OpenShift AI (RHOAI).

CVE-2026-15679
Unclassified
Aug 20, 2026
High8.1Red Hat

High [CVE-2026-77176] Insufficient validation of CreateContainer mount and storage rules in genpolicy

Insufficient validation of CreateContainer mount and storage rules in genpolicy. Red Hat rates this important (CVSS 8.1). Weakness: CWE-73. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.

CVE-2026-77176
Unclassified
Aug 20, 2026
High7.8Red Hat Updated

High [CVE-2026-61898] Arbitrary code execution via shell injection

Arbitrary code execution via shell injection. Red Hat rates this important (CVSS 7.8). Weakness: CWE-78.

CVE-2026-61898
Unclassified
Aug 20, 2026
High7.8Red Hat Updated

High [CVE-2026-61897] Local privilege escalation via incomplete privilege drop in language helper scripts

Local privilege escalation via incomplete privilege drop in language helper scripts. Red Hat rates this important (CVSS 7.8). Weakness: CWE-273.

CVE-2026-61897
Unclassified
Aug 20, 2026
Low2.2Red Hat Updated

Low [CVE-2026-77648] Server-Side Request Forgery allows internal URL access by administrators

Server-Side Request Forgery allows internal URL access by administrators. Red Hat rates this low (CVSS 2.2). Weakness: CWE-918.

CVE-2026-77648
Unclassified
Aug 20, 2026
Medium5.7Red Hat Updated

Medium [CVE-2026-16440] Denial of Service via crafted.class file

Denial of Service via crafted.class file. Red Hat rates this moderate (CVSS 5.7). Weakness: CWE-787. Affected products named by the advisory: Red Hat Enterprise Linux 8; Red Hat package: java-1.8.0-ibm.

CVE-2026-16440
Red Hat Enterprise Linux
Aug 19, 2026
Critical9.0Vendor: HighRed Hat

Critical [CVE-2026-76044] Arbitrary code execution due to a race condition in USB

Arbitrary code execution due to a race condition in USB. Red Hat rates this important (CVSS 9). Weakness: CWE-368.

CVE-2026-76044
Unclassified
Aug 18, 2026
High8.3Red Hat

High [CVE-2026-76047] Arbitrary code execution via type confusion in V8

Arbitrary code execution via type confusion in V8. Red Hat rates this important (CVSS 8.3). Weakness: CWE-843.

CVE-2026-76047
Unclassified
Aug 18, 2026
High8.8Red Hat

High [CVE-2026-76045] Arbitrary code execution via use-after-free

Arbitrary code execution via use-after-free. Red Hat rates this important (CVSS 8.8). Weakness: CWE-825.

CVE-2026-76045
Unclassified
Aug 18, 2026
High8.8Red Hat

High [CVE-2026-76043] Arbitrary code execution via incorrect calculation in HTML processing

Arbitrary code execution via incorrect calculation in HTML processing. Red Hat rates this important (CVSS 8.8). Weakness: CWE-190.

CVE-2026-76043
Unclassified
Aug 18, 2026
High7.1Red Hat

High [CVE-2026-76039] Information disclosure via incorrect reference resolution

Information disclosure via incorrect reference resolution. Red Hat rates this important (CVSS 7.1). Weakness: CWE-386.

CVE-2026-76039
Unclassified
Aug 18, 2026
High8.3Red Hat

High [CVE-2026-76040] Arbitrary code execution via use-after-free vulnerability

Arbitrary code execution via use-after-free vulnerability. Red Hat rates this important (CVSS 8.3). Weakness: CWE-825.

CVE-2026-76040
Unclassified
Aug 18, 2026
High8.7Red Hat

High [CVE-2026-76033] Site isolation bypass due to inappropriate CORS implementation

Site isolation bypass due to inappropriate CORS implementation. Red Hat rates this important (CVSS 8.7). Weakness: CWE-653.

CVE-2026-76033
Unclassified
Aug 18, 2026