Skip to content
VulniPulse

Complete feed

Recently updated

Advisories the vendor has revised

Home overview

Android app · Google Play

Take your CVE monitoring with you.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.

Low3.1Red Hat Updated

Low [CVE-2026-76888] Heap-based Buffer Overflow in RDP dissector leads to Denial of Service

Heap-based Buffer Overflow in RDP dissector leads to Denial of Service. Red Hat rates this low (CVSS 3.1). Weakness: CWE-120. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat package: wireshark.

CVE-2026-76888
Red Hat Enterprise Linux
Aug 19, 2026
Low3.1Red Hat Updated

Low [CVE-2026-76887] Denial of service via heap-based buffer overflow in dissection engine

Denial of service via heap-based buffer overflow in dissection engine. Red Hat rates this low (CVSS 3.1). Weakness: CWE-120. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat package: wireshark.

CVE-2026-76887
Red Hat Enterprise Linux
Aug 19, 2026
Low3.3Red Hat Updated

Low [CVE-2026-76884] Denial of Service via ERF file parser crash

Denial of Service via ERF file parser crash. Red Hat rates this low (CVSS 3.3). Weakness: CWE-130. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat package: wireshark.

CVE-2026-76884
Red Hat Enterprise Linux
Aug 19, 2026
Low3.3Red Hat Updated

Low [CVE-2026-63632] Denial of Service via out-of-bounds read in version converter

Open Neural Network Exchange (ONNX) is an open standard for machine learning interoperability. From 1.3.0 until 1.22.0, onnx.version_converter.convert_version() can perform an out-of-bounds read in Gemm_7_6::adapt_gemm_7_6() in onnx/version_converter/adapters/gemm_7_6.h when a Gemm node has input tensors with fewer than two dimensions because B_shape[1], A_shape[0], or A_shape[1] is accessed without a rank check, potentially causing a process crash during an opset 7 to 6 downgrade. This issue is fixed in version 1.22.0. This vulnerability, caused by a lack of rank checking, could allow an attacker to trigger a process crash during an opset 7 to 6 downgrade, leading to a Denial of Service (DoS). Red Hat severity: Low — CVSS 3.3 (CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L). Weakness: CWE-125. Affected Red Hat products: Red Hat OpenShift AI (RHOAI). Red Hat does not currently list a fixing RHSA for this CVE.

CVE-2026-63632
Unclassified
Aug 18, 2026
Low3.4Red Hat Updated

Low [CVE-2026-74985] Privilege escalation in the Enterprise Policies component

Privilege escalation in the Enterprise Policies component. Red Hat rates this low (CVSS 3.4). Weakness: CWE-266.

CVE-2026-74985
Unclassified
Aug 18, 2026
Low3.4Red Hat Updated

Low [CVE-2026-74986] Site isolation issue in the CSS Parsing and Computation component

Site isolation issue in the CSS Parsing and Computation component. Red Hat rates this low (CVSS 3.4). Weakness: CWE-501.

CVE-2026-74986
Unclassified
Aug 18, 2026
Low3.4Red Hat Updated

Low [CVE-2026-74984] Race condition in the JavaScript Engine component

Race condition in the JavaScript Engine component. Red Hat rates this low (CVSS 3.4). Weakness: CWE-366.

CVE-2026-74984
Unclassified
Aug 18, 2026
Low3.4Red Hat Updated

Low [CVE-2026-74981] Site isolation issue in the Audio/Video: Web Codecs component

Site isolation issue in the Audio/Video: Web Codecs component. Red Hat rates this low (CVSS 3.4). Weakness: CWE-501.

CVE-2026-74981
Unclassified
Aug 18, 2026
Low3.4Red Hat Updated

Low [CVE-2026-74980] Clickjacking issue in the Downloads component in Firefox for Android

Clickjacking issue in the Downloads component in Firefox for Android. Red Hat rates this low (CVSS 3.4). Weakness: CWE-1021.

CVE-2026-74980
Unclassified
Aug 18, 2026
Low3.4Red Hat Updated

Low [CVE-2026-74982] Denial-of-service in the Widget component

Denial-of-service in the Widget component. Red Hat rates this low (CVSS 3.4). Weakness: CWE-770.

CVE-2026-74982
Unclassified
Aug 18, 2026
Low3.4Red Hat Updated

Low [CVE-2026-74977] Integer overflow in the Graphics component

Integer overflow in the Graphics component. Red Hat rates this low (CVSS 3.4). Weakness: CWE-190.

CVE-2026-74977
Unclassified
Aug 18, 2026
Low3.4Red Hat Updated

Low [CVE-2026-74978] Clickjacking issue in the Widget component

Clickjacking issue in the Widget component. Red Hat rates this low (CVSS 3.4). Weakness: CWE-1021.

CVE-2026-74978
Unclassified
Aug 18, 2026
Low3.4Red Hat Updated

Low [CVE-2026-74979] Mitigation bypass in the Add-ons Manager component

Mitigation bypass in the Add-ons Manager component. Red Hat rates this low (CVSS 3.4). Weakness: CWE-807.

CVE-2026-74979
Unclassified
Aug 18, 2026
Low3.4Red Hat Updated

Low [CVE-2026-74975] Spoofing issue in the Downloads component in Firefox for Android

Spoofing issue in the Downloads component in Firefox for Android. Red Hat rates this low (CVSS 3.4). Weakness: CWE-494.

CVE-2026-74975
Unclassified
Aug 18, 2026
Low3.4Red Hat

Low [CVE-2026-74983] Mitigation bypass in the Data Loss Prevention component

Mitigation bypass in the Data Loss Prevention component. Red Hat rates this low (CVSS 3.4). Weakness: CWE-807. Red Hat lists fixing advisory RHSA-2026:58897 with package firefox-0:140.14.0-1.el10_2, firefox-0:140.14.0-1.el8_10, firefox-0:140.14.0-1.el9_8. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9.

CVE-2026-74983
Unclassified
Aug 18, 2026
Low3.4Red Hat

Low [CVE-2026-74976] JIT miscompilation in the JavaScript Engine: JIT component

JIT miscompilation in the JavaScript Engine: JIT component. Red Hat rates this low (CVSS 3.4). Weakness: CWE-733. Red Hat lists fixing advisory RHSA-2026:58897 with package firefox-0:140.14.0-1.el10_2, firefox-0:140.14.0-1.el8_10, firefox-0:140.14.0-1.el9_8. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9.

CVE-2026-74976
Unclassified
Aug 18, 2026
Low2.7Red Hat

Low [CVE-2026-23938] Denial of Service via crafted JavaScript scripts

Denial of Service via crafted JavaScript scripts. Red Hat rates this low (CVSS 2.7). Weakness: CWE-770.

CVE-2026-23938
Unclassified
Aug 18, 2026
Low3.7Vendor: MediumRed Hat Updated

Low [CVE-2026-60589] Improve Resource Resolving (2026-08 Security Update)

Improve Resource Resolving (2026-08 Security Update). Red Hat rates this moderate (CVSS 3.7). Red Hat lists fixing advisory RHSA-2026:55788 with package java-21-openjdk-portable-main-21.0.12.1.1-0.1.hum1, java-25-openjdk-1:25.0.4.1.1-1.1.el9, java-25-openjdk-windows, java-25-openjdk-main-25.0.4.1.1-1.1.hum1. Affected products named by the advisory: Red Hat Enterprise Linux 9; Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8.

CVE-2026-60589
Unclassified
Aug 18, 2026
Low3.1Red Hat

Low [CVE-2026-74797] Denial of Service via malicious zip archives

Denial of Service via malicious zip archives. Red Hat rates this low (CVSS 3.1). Weakness: CWE-400.

CVE-2026-74797
Unclassified
Aug 16, 2026
Low3.1Red Hat

Low [CVE-2026-63650] User misidentification via ignored X.509 identity field

User misidentification via ignored X.509 identity field. Red Hat rates this low (CVSS 3.1). Weakness: CWE-303.

CVE-2026-63650
Unclassified
Aug 14, 2026