VulniPulse uses Google Ads measurement to understand visits from advertisements and campaign performance. It runs cookie-free until you choose — accepting enables cookies for more accurate attribution. Rejecting keeps it cookie-free and never limits the site.
See exactly what is measuredComplete feed
4429 advisories across 32 monitored vendors.
Use after free in DevTools. Red Hat rates this important (CVSS 8.8). Weakness: CWE-825. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released.
Cross-Site Scripting (XSS) via inconsistent tag sanitization. Red Hat rates this moderate (CVSS 8.1). Weakness: CWE-79. Affected package(s): rhoai/odh-mod-arch-model-registry-rhel9:1780467147, devspaces/openvsx-rhel9:1779528224, cryostat/cryostat-openshift-console-plugin-rhel9:4.2.0, devspaces/code-rhel9:1779814592, rhoai/odh-dashboard-rhel9:1780467029, automation-platform-ui. Resolved in Red Hat advisory RHSA-2026:27872 — update the affected packages (`sudo dnf update`).
X.Org X server: Information exposure and denial of service via out-of-bounds memory access. Red Hat rates this important (CVSS 7.8). Weakness: CWE-125. Affected package(s): tigervnc, xorg-x11-server-Xwayland, xorg-x11-server. Resolved in Red Hat advisory RHSA-2026:24341 — update the affected packages (`sudo dnf update`).
X.Org X server: Use-after-free vulnerability leads to server crash and potential memory corruption. Red Hat rates this important (CVSS 7.8). Weakness: CWE-825. Affected package(s): tigervnc, xorg-x11-server-Xwayland, xorg-x11-server. Resolved in Red Hat advisory RHSA-2026:24341 — update the affected packages (`sudo dnf update`).
X.Org X server: Denial of Service via integer underflow in XKB compatibility map handling. Red Hat rates this important (CVSS 7.8). Weakness: CWE-191. Affected package(s): tigervnc, xorg-x11-server-Xwayland, xorg-x11-server. Resolved in Red Hat advisory RHSA-2026:24341 — update the affected packages (`sudo dnf update`).
Denial of Service and buffer overflow via crafted ECDH ciphertext. Red Hat rates this moderate (CVSS 7.5). Weakness: CWE-131. Affected package(s): libgcrypt-main. Resolved in Red Hat advisory RHSA-2026:8466 — update the affected packages (`sudo dnf update`).
Luanti (Minetest): Arbitrary code execution and full filesystem access via malicious mod sandbox escape. Red Hat rates this important (CVSS 8.2). Weakness: CWE-749. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released.
fix ro->uniq use-after-free in raw_rcv(). Red Hat rates this moderate (CVSS 7.1). Weakness: CWE-366. Affected package(s): kernel, kernel-rt. Resolved in Red Hat advisory RHSA-2026:25095 — update the affected packages (`sudo dnf update`).
Denial of Service or data integrity issues from missing bounds check during Dilithium signing.. Red Hat rates this low (CVSS 3.3). Weakness: CWE-787. Affected package(s): libgcrypt-main. Resolved in Red Hat advisory RHSA-2026:8466 — update the affected packages (`sudo dnf update`).
Unauthorized access to administrative functions through unauthenticated Remote Control endpoint.. Red Hat rates this important (CVSS 9.8). Weakness: CWE-15. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released.
Arbitrary file write inside guest image via CopyFile policy. Red Hat rates this important (CVSS 8.8). Weakness: CWE-1220. Affected package(s): rhcos. Resolved in Red Hat advisory RHSA-2026:25200 — update the affected packages (`sudo dnf update`).
race condition vulnerability leads to arbitrary package installation as root. Red Hat rates this important (CVSS 8.8). Weakness: CWE-367. Affected package(s): PackageKit. Resolved in Red Hat advisory RHSA-2026:11504 — update the affected packages (`sudo dnf update`).
Authentication bypass due to missing mutual authentication verification. Red Hat rates this important (CVSS 7.3). Weakness: CWE-325. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released.
Authorization bypass due to incorrect servlet path matching. Red Hat rates this important (CVSS 7.5). Weakness: CWE-551. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released.
User impersonation via malformed X.509 certificate Common Name (CN) values. Red Hat rates this important (CVSS 8.1). Weakness: CWE-295. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released.
Do not skip unrelated mode changes in DSC validation. Red Hat rates this important (CVSS 7.8). Weakness: CWE-1288. Affected package(s): kernel, kernel-rt. Resolved in Red Hat advisory RHSA-2026:27354 — update the affected packages (`sudo dnf update`).
Avoid releasing netdev before teardown completes. Red Hat rates this moderate (CVSS 7). Weakness: CWE-367. Affected package(s): kernel. Resolved in Red Hat advisory RHSA-2026:25217 — update the affected packages (`sudo dnf update`).
fix tx.buf use-after-free in isotp_sendmsg(). Red Hat rates this important (CVSS 7.8). Weakness: CWE-364. Affected package(s): kernel. Resolved in Red Hat advisory RHSA-2026:27288 — update the affected packages (`sudo dnf update`).
algif_aead - Revert to operating out-of-place. Red Hat rates this important (CVSS 7.8). Weakness: CWE-1288. Affected package(s): kernel, rhcos, kernel-rt, kpatch-patch. Resolved in Red Hat advisory RHSA-2026:13729 — update the affected packages (`sudo dnf update`).
Cross-Site Scripting (XSS) vulnerability in http.cookies module. Red Hat rates this moderate (CVSS 6.8). Weakness: CWE-79. Affected package(s): python3, python3.14. Resolved in Red Hat advisory RHSA-2026:28247 — update the affected packages (`sudo dnf update`).