Complete feed
Security advisories & CVEs
2797 advisories across 32 monitored vendors.
Android app · Google Play
Take your CVE monitoring with you.
Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.
High [CVE-2026-80589] stop the timeout timer when releasing a never added disk
stop the timeout timer when releasing a never added disk. Red Hat rates this moderate (CVSS 7). Weakness: CWE-825. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.
High [CVE-2026-80528] avoid fs reclaim while using current->journal_info
avoid fs reclaim while using current->journal_info. Red Hat rates this moderate (CVSS 7). Weakness: CWE-843. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 1 more. Affected products named by the advisory: Red Hat package: kernel-rt.
High [CVE-2026-80552] Ensure index for read/write regions are within range
Ensure index for read/write regions are within range. Red Hat rates this moderate (CVSS 7). Weakness: CWE-125. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.
High [CVE-2026-80561] fix multiple unsafe decodes in decode_locker
fix multiple unsafe decodes in decode_locker(). Red Hat rates this moderate (CVSS 7). Weakness: CWE-125. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 1 more. Affected products named by the advisory: Red Hat package: kernel-rt.
Medium [CVE-2026-80158] ipa_getkeytab does not set no_log on the bind_pw parameter, disclosing the IPA bind password in logs and process listings
ipa_getkeytab does not set no_log on the bind_pw parameter, disclosing the IPA bind password in logs and process listings. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-214. Affected products named by the advisory: Red Hat Ceph Storage 5; Red Hat Ceph Storage 9; Red Hat OpenStack Platform 17.1; Red Hat OpenStack Platform 18.0.
Medium [CVE-2026-80206] Denial of Service vulnerability in tgrep module
Denial of Service vulnerability in tgrep module. Red Hat rates this moderate (CVSS 5.9). Weakness: CWE-1333. Affected products named by the advisory: Exploit Intelligence; Lightspeed Core; OpenShift Lightspeed; Red Hat Ansible Automation Platform 2; and 1 more. Affected products named by the advisory: Red Hat OpenShift AI (RHOAI).
Medium [CVE-2026-79654] Katello Content View History API Cross-Organization Authorization Bypass
Katello Content View History API Cross-Organization Authorization Bypass. Red Hat rates this moderate (CVSS 4.3). Weakness: CWE-639. Affected product named by the advisory: Red Hat Satellite 6.
Medium [CVE-2026-74749] Prevent hard lockup on granted time slice extension
Prevent hard lockup on granted time slice extension. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-366.
Medium [CVE-2026-80529] don't swallow dquot recovery verification errors
don't swallow dquot recovery verification errors. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-252. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; and 2 more. Affected products named by the advisory: Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.
Medium [CVE-2026-80531] avoid UAF on sc->tempip in xrep_tempfile_create
avoid UAF on sc->tempip in xrep_tempfile_create. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-825.
Medium [CVE-2026-80538] propagate errors from xfs_rtginode_load
propagate errors from xfs_rtginode_load. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-253.
Medium [CVE-2026-80535] don't double-lock when deleting a self-referential directory
don't double-lock when deleting a self-referential directory. Red Hat rates this low (CVSS 5.5). Weakness: CWE-764.
Medium [CVE-2026-80533] don't walk off the end of a null sc->sa.agi_bp in AGI repair
don't walk off the end of a null sc->sa.agi_bp in AGI repair. Red Hat rates this low (CVSS 5.5). Weakness: CWE-476.
Medium [CVE-2026-80532] fix another iunlink infinite loop bug in online fsck
fix another iunlink infinite loop bug in online fsck. Red Hat rates this low (CVSS 5.5). Weakness: CWE-835.
Medium [CVE-2026-80534] fix ilock leak on error in xfs_dq_get_next_id
fix ilock leak on error in xfs_dq_get_next_id. Red Hat rates this low (CVSS 4.7). Weakness: CWE-667. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 1 more. Affected products named by the advisory: Red Hat package: kernel-rt.
Medium [CVE-2026-80524] Add NULL check in optee_ffa_lend_protmem
Add NULL check in optee_ffa_lend_protmem. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-476.
Medium [CVE-2026-80554] Limit the number of channel program segments
Limit the number of channel program segments. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-770. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.
Medium [CVE-2026-80547] Implement a crw lock
Implement a crw lock. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-413. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.
Medium [CVE-2026-74734] fix NULL pointer dereference in ar_context_release
fix NULL pointer dereference in ar_context_release. Red Hat rates this low (CVSS 5.5). Weakness: CWE-476. Affected products named by the advisory: Red Hat Enterprise Linux 6; Red Hat package: kernel.
Medium [CVE-2026-74751] Fix ZBB strnlen reading past count boundary
Fix ZBB strnlen reading past count boundary. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-125.