VulniPulse uses Google Ads measurement to understand visits from advertisements and campaign performance. It runs cookie-free until you choose — accepting enables cookies for more accurate attribution. Rejecting keeps it cookie-free and never limits the site.
See exactly what is measuredComplete feed
4555 advisories across 32 monitored vendors.
fix use-after-free on disconnect. Red Hat rates this moderate (CVSS 6.3). Weakness: CWE-825. Affected package(s): kernel, kernel-rt. Resolved in Red Hat advisory RHSA-2026:25120 — update the affected packages (`sudo dnf update`).
Race in GPU. Red Hat rates this important (CVSS 9.6). Weakness: CWE-368. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released.
Out of bounds read in GPU. Red Hat rates this important (CVSS 9). Weakness: CWE-125. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released.
Unauthenticated local command execution via exposed RC endpoint. Red Hat rates this important (CVSS 9.8). Weakness: CWE-94. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released.
Arbitrary Code Execution and Denial of Service via Lua Code Injection. Red Hat rates this important (CVSS 8.1). Weakness: CWE-94. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released.
Denial of Service via malformed workflow pod annotation. Red Hat rates this important (CVSS 7.7). Weakness: CWE-1285. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released.
Use after free in DevTools. Red Hat rates this important (CVSS 8.8). Weakness: CWE-825. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released.
Cross-Site Scripting (XSS) via inconsistent tag sanitization. Red Hat rates this moderate (CVSS 8.1). Weakness: CWE-79. Affected package(s): rhoai/odh-mod-arch-model-registry-rhel9:1780467147, devspaces/openvsx-rhel9:1779528224, cryostat/cryostat-openshift-console-plugin-rhel9:4.2.0, devspaces/code-rhel9:1779814592, rhoai/odh-dashboard-rhel9:1780467029, automation-platform-ui. Resolved in Red Hat advisory RHSA-2026:27872 — update the affected packages (`sudo dnf update`).
X.Org X server: Information exposure and denial of service via out-of-bounds memory access. Red Hat rates this important (CVSS 7.8). Weakness: CWE-125. Affected package(s): tigervnc, xorg-x11-server-Xwayland, xorg-x11-server. Resolved in Red Hat advisory RHSA-2026:24341 — update the affected packages (`sudo dnf update`).
X.Org X server: Use-after-free vulnerability leads to server crash and potential memory corruption. Red Hat rates this important (CVSS 7.8). Weakness: CWE-825. Affected package(s): tigervnc, xorg-x11-server-Xwayland, xorg-x11-server. Resolved in Red Hat advisory RHSA-2026:24341 — update the affected packages (`sudo dnf update`).
X.Org X server: Denial of Service via integer underflow in XKB compatibility map handling. Red Hat rates this important (CVSS 7.8). Weakness: CWE-191. Affected package(s): tigervnc, xorg-x11-server-Xwayland, xorg-x11-server. Resolved in Red Hat advisory RHSA-2026:24341 — update the affected packages (`sudo dnf update`).
Denial of Service and buffer overflow via crafted ECDH ciphertext. Red Hat rates this moderate (CVSS 7.5). Weakness: CWE-131. Affected package(s): libgcrypt-main. Resolved in Red Hat advisory RHSA-2026:8466 — update the affected packages (`sudo dnf update`).
Luanti (Minetest): Arbitrary code execution and full filesystem access via malicious mod sandbox escape. Red Hat rates this important (CVSS 8.2). Weakness: CWE-749. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released.
fix ro->uniq use-after-free in raw_rcv(). Red Hat rates this moderate (CVSS 7.1). Weakness: CWE-366. Affected package(s): kernel, kernel-rt. Resolved in Red Hat advisory RHSA-2026:25095 — update the affected packages (`sudo dnf update`).
Denial of Service or data integrity issues from missing bounds check during Dilithium signing.. Red Hat rates this low (CVSS 3.3). Weakness: CWE-787. Affected package(s): libgcrypt-main. Resolved in Red Hat advisory RHSA-2026:8466 — update the affected packages (`sudo dnf update`).
Unauthorized access to administrative functions through unauthenticated Remote Control endpoint.. Red Hat rates this important (CVSS 9.8). Weakness: CWE-15. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released.
Arbitrary file write inside guest image via CopyFile policy. Red Hat rates this important (CVSS 8.8). Weakness: CWE-1220. Affected package(s): rhcos. Resolved in Red Hat advisory RHSA-2026:25200 — update the affected packages (`sudo dnf update`).
race condition vulnerability leads to arbitrary package installation as root. Red Hat rates this important (CVSS 8.8). Weakness: CWE-367. Affected package(s): PackageKit. Resolved in Red Hat advisory RHSA-2026:11504 — update the affected packages (`sudo dnf update`).
Authentication bypass due to missing mutual authentication verification. Red Hat rates this important (CVSS 7.3). Weakness: CWE-325. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released.
Authorization bypass due to incorrect servlet path matching. Red Hat rates this important (CVSS 7.5). Weakness: CWE-551. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released.