Skip to content
VulniPulse

Complete feed

Recently updated

Advisories the vendor has revised

Home overview

Android app · Google Play

Take your CVE monitoring with you.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.

Medium5.5GitLab Updated

Medium [CVE-2026-3035] GitLab has remediated an issue in GitLab EE affecting all versions from 11.3 before 19.1.7, 19.2 before 19.2.5, and 19.3 before 19.3.1 that, under certain conditions, an authenticated user with project Maintainer permissions could have accessed the terminal of a protected environment they were not authorized to use due to improper authorization checks

GitLab has remediated an issue in GitLab EE affecting all versions from 11.3 before 19.1.7, 19.2 before 19.2.5, and 19.3 before 19.3.1 that, under certain conditions, an authenticated user with project Maintainer permissions could have accessed the terminal of a protected environment they were not authorized to use due to improper authorization checks.

CVE-2026-3035
Unclassified
Aug 26, 2026
Medium4.3GitLab Updated

Medium [CVE-2026-15387] GitLab has remediated an issue in GitLab EE affecting all versions from 19.1 before 19.1.7, 19.2 before 19.2.5, and 19.3 before 19.3.1 that, under certain conditions, an authenticated user with developer-role permissions could have influenced the execution environment of Pipeline Execution Policy enforcement jobs, due to improper handling of job dependencies

GitLab has remediated an issue in GitLab EE affecting all versions from 19.1 before 19.1.7, 19.2 before 19.2.5, and 19.3 before 19.3.1 that, under certain conditions, an authenticated user with developer-role permissions could have influenced the execution environment of Pipeline Execution Policy enforcement jobs, due to improper handling of job dependencies.

CVE-2026-15387
Unclassified
Aug 26, 2026
Medium6.5GitLab Updated

Medium [CVE-2026-77801] GitLab has remediated an issue in GitLab CE/EE affecting all versions from 12.8 before 19.1.7, 19.2 before 19.2.5, and 19.3 before 19.3.1 that, under certain conditions, could have allowed an authenticated user to cause a denial of service affecting background job processing, due to missing object count limits

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 12.8 before 19.1.7, 19.2 before 19.2.5, and 19.3 before 19.3.1 that, under certain conditions, could have allowed an authenticated user to cause a denial of service affecting background job processing, due to missing object count limits.

CVE-2026-77801
Unclassified
Aug 26, 2026
Medium5.3Apache Updated

Medium [CVE-2026-63041] Reliance on Untrusted Inputs in a Security Decision vulnerability in Apache APISIX

Reliance on Untrusted Inputs in a Security Decision vulnerability in Apache APISIX. This vulnerability allows an attacker to escalate privilege or perform an authorization bypass by sending certain values that the attach-consumer-label plugin does not sanitise correctly. This issue affects Apache APISIX: from 3.11.0 through 3.17.0. Users are recommended to upgrade to version 3.18.0, which fixes the issue.

CVE-2026-63041
Infra & Gateways
Aug 26, 2026
Medium5.9Red Hat Updated

Medium [CVE-2026-80206] Denial of Service vulnerability in tgrep module

Denial of Service vulnerability in tgrep module. Red Hat rates this moderate (CVSS 5.9). Weakness: CWE-1333. Affected products named by the advisory: Exploit Intelligence; Lightspeed Core; OpenShift Lightspeed; Red Hat Ansible Automation Platform 2; and 1 more. Affected products named by the advisory: Red Hat OpenShift AI (RHOAI).

CVE-2026-80206
Unclassified
Aug 26, 2026
Medium4.3Red Hat Updated

Medium [CVE-2026-79654] Katello Content View History API Cross-Organization Authorization Bypass

Katello Content View History API Cross-Organization Authorization Bypass. Red Hat rates this moderate (CVSS 4.3). Weakness: CWE-639. Affected product named by the advisory: Red Hat Satellite 6.

CVE-2026-79654
Unclassified
Aug 26, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-74749] Prevent hard lockup on granted time slice extension

Prevent hard lockup on granted time slice extension. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-366.

CVE-2026-74749
Unclassified
Aug 26, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-80529] don't swallow dquot recovery verification errors

don't swallow dquot recovery verification errors. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-252. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; and 2 more. Affected products named by the advisory: Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.

CVE-2026-80529
Linux Kernel
Aug 26, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-80531] avoid UAF on sc->tempip in xrep_tempfile_create

avoid UAF on sc->tempip in xrep_tempfile_create. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-825.

CVE-2026-80531
Unclassified
Aug 26, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-80538] propagate errors from xfs_rtginode_load

propagate errors from xfs_rtginode_load. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-253.

CVE-2026-80538
Unclassified
Aug 26, 2026
Medium5.5Vendor: LowRed Hat Updated

Medium [CVE-2026-80535] don't double-lock when deleting a self-referential directory

don't double-lock when deleting a self-referential directory. Red Hat rates this low (CVSS 5.5). Weakness: CWE-764.

CVE-2026-80535
Unclassified
Aug 26, 2026
Medium5.5Vendor: LowRed Hat Updated

Medium [CVE-2026-80533] don't walk off the end of a null sc->sa.agi_bp in AGI repair

don't walk off the end of a null sc->sa.agi_bp in AGI repair. Red Hat rates this low (CVSS 5.5). Weakness: CWE-476.

CVE-2026-80533
Unclassified
Aug 26, 2026
Medium5.5Vendor: LowRed Hat Updated

Medium [CVE-2026-80532] fix another iunlink infinite loop bug in online fsck

fix another iunlink infinite loop bug in online fsck. Red Hat rates this low (CVSS 5.5). Weakness: CWE-835.

CVE-2026-80532
Unclassified
Aug 26, 2026
Medium4.7Vendor: LowRed Hat Updated

Medium [CVE-2026-80534] fix ilock leak on error in xfs_dq_get_next_id

fix ilock leak on error in xfs_dq_get_next_id. Red Hat rates this low (CVSS 4.7). Weakness: CWE-667. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 1 more. Affected products named by the advisory: Red Hat package: kernel-rt.

CVE-2026-80534
Linux Kernel
Aug 26, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-80524] Add NULL check in optee_ffa_lend_protmem

Add NULL check in optee_ffa_lend_protmem. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-476.

CVE-2026-80524
Unclassified
Aug 26, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-80554] Limit the number of channel program segments

Limit the number of channel program segments. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-770. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.

CVE-2026-80554
Linux Kernel
Aug 26, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-80547] Implement a crw lock

Implement a crw lock. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-413. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.

CVE-2026-80547
Linux Kernel
Aug 26, 2026
Medium5.5Vendor: LowRed Hat Updated

Medium [CVE-2026-74734] fix NULL pointer dereference in ar_context_release

fix NULL pointer dereference in ar_context_release. Red Hat rates this low (CVSS 5.5). Weakness: CWE-476. Affected products named by the advisory: Red Hat Enterprise Linux 6; Red Hat package: kernel.

CVE-2026-74734
Linux Kernel
Aug 26, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-74751] Fix ZBB strnlen reading past count boundary

Fix ZBB strnlen reading past count boundary. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-125.

CVE-2026-74751
Unclassified
Aug 26, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-74739] skip hash tables in u32_bind_class

skip hash tables in u32_bind_class(). Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-125. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; and 2 more. Affected products named by the advisory: Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.

CVE-2026-74739
Linux Kernel
Aug 26, 2026