Skip to content
VulniPulse

Complete feed

Security advisories & CVEs

3496 advisories across 32 monitored vendors.

Home overview

Android app · Google Play

Take your CVE monitoring with you.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.

Medium6.1Red Hat

Medium [CVE-2026-74965] Privilege escalation in the Shell Integration component

Privilege escalation in the Shell Integration component. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-266. Red Hat lists fixing advisory RHSA-2026:58897 with package firefox-0:140.14.0-1.el10_2, firefox-0:140.14.0-1.el8_10, firefox-0:140.14.0-1.el9_8. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9.

CVE-2026-74965
Unclassified
Aug 18, 2026
Medium6.1Red Hat

Medium [CVE-2026-74967] Same-origin policy bypass in the Audio/Video: Playback component

Same-origin policy bypass in the Audio/Video: Playback component. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-940. Red Hat lists fixing advisory RHSA-2026:58897 with package firefox-0:140.14.0-1.el10_2, firefox-0:140.14.0-1.el8_10, firefox-0:140.14.0-1.el9_8. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9.

CVE-2026-74967
Unclassified
Aug 18, 2026
Medium6.1Red Hat

Medium [CVE-2026-74963] Same-origin policy bypass in the Networking: Cookies component

Same-origin policy bypass in the Networking: Cookies component. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-346. Red Hat lists fixing advisory RHSA-2026:58897 with package firefox-0:140.14.0-1.el10_2, firefox-0:140.14.0-1.el8_10, firefox-0:140.14.0-1.el9_8. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9.

CVE-2026-74963
Unclassified
Aug 18, 2026
Medium6.1Red Hat

Medium [CVE-2026-74964] Integer overflow in the Graphics component

Integer overflow in the Graphics component. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-190. Red Hat lists fixing advisory RHSA-2026:58897 with package firefox-0:140.14.0-1.el10_2, firefox-0:140.14.0-1.el8_10, firefox-0:140.14.0-1.el9_8. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9.

CVE-2026-74964
Unclassified
Aug 18, 2026
Medium6.1Red Hat

Medium [CVE-2026-74960] Site isolation issue in the WebExtensions component

Site isolation issue in the WebExtensions component. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-501. Red Hat lists fixing advisory RHSA-2026:58897 with package firefox-0:140.14.0-1.el10_2, firefox-0:140.14.0-1.el8_10, firefox-0:140.14.0-1.el9_8. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9.

CVE-2026-74960
Unclassified
Aug 18, 2026
Medium6.1Red Hat

Medium [CVE-2026-74959] Mitigation bypass in the Storage: Cache API component

Mitigation bypass in the Storage: Cache API component. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-807. Red Hat lists fixing advisory RHSA-2026:58897 with package firefox-0:140.14.0-1.el10_2, firefox-0:140.14.0-1.el8_10, firefox-0:140.14.0-1.el9_8. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9.

CVE-2026-74959
Unclassified
Aug 18, 2026
Medium6.1Red Hat

Medium [CVE-2026-74962] Site isolation issue in the Networking: Cookies component

Site isolation issue in the Networking: Cookies component. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-1100. Red Hat lists fixing advisory RHSA-2026:58897 with package firefox-0:140.14.0-1.el10_2, firefox-0:140.14.0-1.el8_10, firefox-0:140.14.0-1.el9_8. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9.

CVE-2026-74962
Unclassified
Aug 18, 2026
Medium6.1Red Hat Updated

Medium [CVE-2026-74957] Mitigation bypass in the Safe Browsing component

Mitigation bypass in the Safe Browsing component. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-807. Red Hat lists fixing advisory RHSA-2026:58897 with package firefox-0:140.14.0-1.el10_2, firefox-0:140.14.0-1.el8_10, firefox-0:140.14.0-1.el9_8. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9.

CVE-2026-74957
Unclassified
Aug 18, 2026
Medium6.1Red Hat

Medium [CVE-2026-74953] Privilege escalation in the Networking: Cookies component

Privilege escalation in the Networking: Cookies component. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-472. Red Hat lists fixing advisory RHSA-2026:58897 with package firefox-0:140.14.0-1.el10_2, firefox-0:140.14.0-1.el8_10, firefox-0:140.14.0-1.el9_8. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9.

CVE-2026-74953
Unclassified
Aug 18, 2026
Medium5.3Red Hat

Medium [CVE-2026-19608] Name-only group claims let same-name groups satisfy path-specific group policies

Name-only group claims let same-name groups satisfy path-specific group policies. Red Hat rates this moderate (CVSS 5.3). Weakness: CWE-285. Affected product named by the advisory: Red Hat Build of Keycloak.

CVE-2026-19608
Unclassified
Aug 18, 2026
Medium6.8Red Hat Updated

Medium [CVE-2026-61308] Enhance HTTP Connections (2026-08 Security Update)

Enhance HTTP Connections (2026-08 Security Update). Red Hat rates this moderate (CVSS 6.8). Red Hat lists fixing advisory RHSA-2026:55788 with package java-21-openjdk-portable-main-21.0.12.1.1-0.1.hum1, java-25-openjdk-1:25.0.4.1.1-1.1.el9, java-25-openjdk-windows, java-25-openjdk-main-25.0.4.1.1-1.1.hum1. Affected products named by the advisory: Red Hat Enterprise Linux 9; Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8.

CVE-2026-61308
Unclassified
Aug 18, 2026
Medium5.3Red Hat Updated

Medium [CVE-2026-70907] Enhance TLS server (2026-08 Security Update)

Enhance TLS server (2026-08 Security Update). Red Hat rates this moderate (CVSS 5.3). Red Hat lists fixing advisory RHSA-2026:55788 with package java-21-openjdk-portable-main-21.0.12.1.1-0.1.hum1, java-25-openjdk-1:25.0.4.1.1-1.1.el9, java-25-openjdk-windows, java-25-openjdk-main-25.0.4.1.1-1.1.hum1. Affected products named by the advisory: Red Hat Enterprise Linux 9; Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8.

CVE-2026-70907
Unclassified
Aug 18, 2026
Medium6.5Red Hat Updated

Medium [CVE-2026-64778] Visiting a maliciously crafted website may leak sensitive data

Visiting a maliciously crafted website may leak sensitive data. Red Hat rates this moderate (CVSS 6.5). Weakness: CWE-200. Affected products named by the advisory: Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 3 more. Affected products named by the advisory: Red Hat package: webkitgtk3; Red Hat package: webkitgtk4; Red Hat package: webkit2gtk3.

CVE-2026-64778
Red Hat Enterprise Linux
Aug 17, 2026
Medium6.5Red Hat Updated

Medium [CVE-2026-73560] Server-Side Request Forgery and arbitrary file read via improper media processing

Server-Side Request Forgery and arbitrary file read via improper media processing. Red Hat rates this moderate (CVSS 6.5). Weakness: CWE-918. Affected products named by the advisory: Red Hat AI Inference Server; Red Hat Enterprise Linux AI (RHEL AI) 3; Red Hat OpenShift AI (RHOAI).

CVE-2026-73560
Unclassified
Aug 17, 2026
Medium4.3Red Hat Updated

Medium [CVE-2026-71486] Denial of Service via unbounded token ID decoding

Denial of Service via unbounded token ID decoding. Red Hat rates this moderate (CVSS 4.3). Weakness: CWE-770. Affected products named by the advisory: Red Hat AI Inference Server; Red Hat Enterprise Linux AI (RHEL AI) 3; Red Hat OpenShift AI (RHOAI).

CVE-2026-71486
Unclassified
Aug 17, 2026
Medium5.3Red Hat Updated

Medium [CVE-2026-59894] Arbitrary code execution via unescaped backslashes in generated snippets

Arbitrary code execution via unescaped backslashes in generated snippets. Red Hat rates this moderate (CVSS 5.3). Weakness: CWE-94. Affected products named by the advisory: Red Hat Ansible Automation Platform 2; Red Hat Discovery 2; Red Hat OpenShift AI (RHOAI); Red Hat OpenShift Container Platform 4; and 7 more. Affected products named by the advisory: Red Hat OpenStack Platform 16.2; Red Hat OpenStack Platform 17.1; Red Hat OpenStack Platform 18.0; Red Hat Satellite 6; and 3 more.

CVE-2026-59894
Unclassified
Aug 17, 2026
Medium5.6Red Hat

Medium [CVE-2026-19999] Remote buffer overflow allows information disclosure or denial of service

Remote buffer overflow allows information disclosure or denial of service. Red Hat rates this moderate (CVSS 5.6). Weakness: CWE-120.

CVE-2026-19999
Unclassified
Aug 17, 2026
Medium6.3Red Hat

Medium [CVE-2026-19970] Remote heap-based buffer overflow vulnerability

Remote heap-based buffer overflow vulnerability. Red Hat rates this moderate (CVSS 6.3). Weakness: CWE-787. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat package: qt6-qtquick3d; Red Hat package: qt5-qt3d.

CVE-2026-19970
Red Hat Enterprise Linux
Aug 17, 2026
Medium5.4Red Hat

Medium [CVE-2026-19969] Buffer overflow in 3DGS MDL7 model processing

Buffer overflow in 3DGS MDL7 model processing. Red Hat rates this moderate (CVSS 5.4). Weakness: CWE-120. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat package: qt6-qtquick3d; Red Hat package: qt5-qt3d.

CVE-2026-19969
Red Hat Enterprise Linux
Aug 17, 2026
Medium4.3Red Hat

Medium [CVE-2026-19968] Denial of service via heap-based buffer overflow in 3DGS MDL7 Model Parser

Denial of service via heap-based buffer overflow in 3DGS MDL7 Model Parser. Red Hat rates this moderate (CVSS 4.3). Weakness: CWE-120. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat package: qt6-qtquick3d; Red Hat package: qt5-qt3d.

CVE-2026-19968
Red Hat Enterprise Linux
Aug 17, 2026