Complete feed
No mitigation yet
No fix, workaround or mitigation extracted yet
Android app · Google Play
Take your CVE monitoring with you.
Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.
High [CVE-2026-17659] Inappropriate implementation in SiteIsolation
Inappropriate implementation in SiteIsolation. Red Hat rates this important (CVSS 8.7). Weakness: CWE-653.
High [CVE-2026-17658] Use after free in V8
Use after free in V8. Red Hat rates this important (CVSS 8.8). Weakness: CWE-825.
High [CVE-2026-17661] Use after free in Loader
Use after free in Loader. Red Hat rates this important (CVSS 8.8). Weakness: CWE-825.
High [CVE-2026-17657] Use after free in Navigation
Use after free in Navigation. Red Hat rates this important (CVSS 8.2). Weakness: CWE-825.
High [CVE-2026-17654] Race in Updater
Race in Updater. Red Hat rates this critical (CVSS 8.8). Weakness: CWE-367.
High [CVE-2026-18378] cluster pull-secret token exfiltration via user-controlled api_url (SSRF / confused deputy)
cluster pull-secret token exfiltration via user-controlled api_url (SSRF / confused deputy). Red Hat rates this important (CVSS 7.6). Weakness: CWE-918.
High [CVE-2026-18381] operator service-account token exfiltration via user-controlled Prometheus service_address
operator service-account token exfiltration via user-controlled Prometheus service_address. Red Hat rates this important (CVSS 7.6). Weakness: CWE-918.
High [CVE-2026-11721] ISC BIND Vulnerability in NetApp Products
ISC BIND versions 9.11.0 through 9.18.50, 9.20.0 through 9.20.24, and 9.21.0 through 9.21.23 are susceptible to a vulnerability which when successfully exploited could lead to addition or modification of data. Successful exploitation of this vulnerability could lead to addition or modification of data. NetApp reports that one or more additional products remain under investigation; review the canonical advisory for current status. NetApp states there is no workaround available at this time.
High [CVE-2026-11331] ISC BIND Vulnerability in NetApp Products
ISC BIND versions 9.16.0 through 9.18.50, 9.20.0 through 9.20.24, and 9.21.0 through 9.21.23 are susceptible to a vulnerability which when successfully exploited could lead to disclosure of sensitive information. Successful exploitation of this vulnerability could lead to disclosure of sensitive information. NetApp reports that one or more additional products remain under investigation; review the canonical advisory for current status. NetApp states there is no workaround available at this time.
High [CVE-2026-11605] ISC BIND Vulnerability in NetApp Products
ISC BIND versions 9.20.0 through 9.20.24 and 9.21.0 through 9.21.23 are susceptible to a vulnerability which when successfully exploited could lead to Denial of Service (DoS). Successful exploitation of this vulnerability could lead to Denial of Service (DoS). NetApp reports that one or more additional products remain under investigation; review the canonical advisory for current status. NetApp states there is no workaround available at this time.
High [CVE-2026-11622] ISC BIND Vulnerability in NetApp Products
ISC BIND versions 9.11.0 through 9.18.50, 9.20.0 through 9.20.24, and 9.21.0 through 9.21.23 are susceptible to a vulnerability which when successfully exploited could lead to Denial of Service (DoS). Successful exploitation of this vulnerability could lead to Denial of Service (DoS). NetApp reports that one or more additional products remain under investigation; review the canonical advisory for current status. NetApp states there is no workaround available at this time.
High [CVE-2026-12617] ISC BIND Vulnerability in NetApp Products
ISC BIND versions 9.18.0 through 9.18.50 and 9.20.0 through 9.20.24 are susceptible to a vulnerability which when successfully exploited could lead to Denial of Service (DoS). Successful exploitation of this vulnerability could lead to Denial of Service (DoS). NetApp reports that one or more additional products remain under investigation; review the canonical advisory for current status. NetApp states there is no workaround available at this time.
High [CVE-2026-18022] Arbitrary Code Execution via Integer Wraparound
Arbitrary Code Execution via Integer Wraparound. Red Hat rates this important (CVSS 8.8). Weakness: CWE-787.
High [CVE-2026-64556] Detach event groups during remove_on_exec
Detach event groups during remove_on_exec. Red Hat rates this moderate (CVSS 7). Weakness: CWE-663.
High [CVE-2026-64557] Fix use-after-free in l2cap_sock_new_connection_cb
Fix use-after-free in l2cap_sock_new_connection_cb(). Red Hat rates this moderate (CVSS 7). Weakness: CWE-825.
High [CVE-2026-64558] Check length in pkey_pckmo handler implementation
Check length in pkey_pckmo handler implementation. Red Hat rates this important (CVSS 7). Weakness: CWE-787.
High [CVE-2026-64559] Check length in PKEY_VERIFYPROTK ioctl
Check length in PKEY_VERIFYPROTK ioctl. Red Hat rates this moderate (CVSS 7). Weakness: CWE-805.
High [CVE-2026-64560] Prevent UAF caused by non-leader exec race
Prevent UAF caused by non-leader exec() race. Red Hat rates this important (CVSS 7). Weakness: CWE-364.
High [CVE-2026-6949] TSIG packet with crafted name compression can crash DNS server
TSIG packet with crafted name compression can crash DNS server. Red Hat rates this important (CVSS 7.5). Weakness: CWE-787.
High [CVE-2026-58221] authenticated LDAP access to internal LDB special DNs permits domain takeover
authenticated LDAP access to internal LDB special DNs permits domain takeover. Red Hat rates this important (CVSS 8.8). Weakness: CWE-284.