Complete feed
No mitigation yet
No fix, workaround or mitigation extracted yet
Android app · Google Play
Take your CVE monitoring with you.
Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.
High [CVE-2026-54272] Server-Side Request Forgery via IPv4-mapped/NAT64 IPv6 address misclassification
Server-Side Request Forgery via IPv4-mapped/NAT64 IPv6 address misclassification. Red Hat rates this moderate (CVSS 7.2). Weakness: CWE-918.
High [CVE-2026-55737] Denial of Service via crafted external term format binary
Denial of Service via crafted external term format binary. Red Hat rates this important (CVSS 7.5). Weakness: CWE-787.
High [CVE-2026-55968] Apache Thrift Node.js bindings: Denial of Service due to inefficient algorithmic complexity and resource allocation
Apache Thrift Node.js bindings: Denial of Service due to inefficient algorithmic complexity and resource allocation. Red Hat rates this important (CVSS 7.5). Weakness: CWE-770.
High [CVE-2026-49158] Apache Thrift Ruby bindings: Denial of Service via improper handling of highly compressed data
Apache Thrift Ruby bindings: Denial of Service via improper handling of highly compressed data. Red Hat rates this important (CVSS 7.5). Weakness: CWE-409.
High [CVE-2026-17523] can:bcm: arbitrary kernel code execution leading to escalate privileges
A flaw was found in the Linux kernel in net/can/bcm.c in can: bcm, where an unprivileged local user can exploit this vulnerability to execute arbitrary code within the kernel, which leads to a local privilege escalation (LPE). This allows the attacker to gain root privileges and take full control of the affected system. Red Hat severity: Important — CVSS 7.8 (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H). Weakness: CWE-825. Affected Red Hat products: Red Hat Enterprise Linux 8. Red Hat does not currently list a fixing RHSA for this CVE.
High [CVE-2026-51300] Application crash and information leakage due to use-after-free
Application crash and information leakage due to use-after-free. Red Hat rates this a security issue. Weakness: CWE-825.
High [CVE-2026-51296] Use-after-free vulnerability leads to denial of service and information disclosure
Use-after-free vulnerability leads to denial of service and information disclosure. Red Hat rates this a security issue. Weakness: CWE-825.
High [CVE-2026-51303] Arbitrary code execution via specially crafted SQL queries
Arbitrary code execution via specially crafted SQL queries. Red Hat rates this a security issue. Weakness: CWE-825.
High [CVE-2026-64534] check INIT_FAILED before nvmet_req_uninit in digest error path
check INIT_FAILED before nvmet_req_uninit in digest error path. Red Hat rates this important (CVSS 7). Weakness: CWE-911.
High [CVE-2026-64552] fix len check in receive_big
fix len check in receive_big(). Red Hat rates this important (CVSS 7). Weakness: CWE-787.
High [CVE-2026-64551] validate STALE_COOKIE cause length before reading staleness
validate STALE_COOKIE cause length before reading staleness. Red Hat rates this moderate (CVSS 7).
High [CVE-2026-64554] fix stale prevhdr pointer in br_ip6_fragment
fix stale prevhdr pointer in br_ip6_fragment(). Red Hat rates this moderate (CVSS 7).
High [CVE-2026-64543] fix use-after-free of the discoverer in tipc_disc_rcv
fix use-after-free of the discoverer in tipc_disc_rcv(). Red Hat rates this moderate (CVSS 7). Weakness: CWE-825.
High [CVE-2026-64539] Fix stack OOB write when prepending the Flags AD
Fix stack OOB write when prepending the Flags AD. Red Hat rates this moderate (CVSS 7).
High [CVE-2026-64548] bpf, sockmap: reject overflowing copy + len in bpf_msg_push_data
bpf, sockmap: reject overflowing copy + len in bpf_msg_push_data(). Red Hat rates this moderate (CVSS 7). Weakness: CWE-787.
High [CVE-2026-46304] Linux Kernel Vulnerability in NetApp Products
Linux kernel versions 4.9.68 through 4.9.337, 4.10-rc6 through 5.10.257, 5.11-rc1 through 5.15.208, 5.16-rc1 through 6.1.174, 6.2-rc1 through 6.6.139, 6.7-rc1 through 6.12.87, 6.13-rc1 through 6.18.29, 6.19-rc1 through 7.0.6, and 7.1-rc1 are susceptible to a vulnerability which when successfully exploited could lead to Denial of Service (DoS). Successful exploitation of this vulnerability could lead to Denial of Service (DoS). NetApp reports that one or more additional products remain under investigation; review the canonical advisory for current status. NetApp states there is no workaround available at this time.
High [CVE-2026-46306] Linux Kernel Vulnerability in NetApp Products
Linux kernel versions 6.0-rc1 through 6.1.174, 6.2-rc1 through 6.6.139, 6.7-rc1 through 6.12.87, 6.13-rc1 through 6.18.29, and 6.19-rc1 through 7.0.6 are susceptible to a vulnerability which when successfully exploited could lead to Denial of Service (DoS). Successful exploitation of this vulnerability could lead to Denial of Service (DoS). NetApp reports that one or more additional products remain under investigation; review the canonical advisory for current status. NetApp states there is no workaround available at this time.
High [CVE-2026-44892 +3] June 2026 Apache Netty 4.2 Vulnerabilities in NetApp Products
Apache Netty versions 4.2.0 prior to 4.2.15.Final are susceptible to vulnerabilities which when successfully exploited could lead to disclosure of sensitive information, addition or modification of data, or Denial of Service (DoS). NetApp reports that one or more additional products remain under investigation; review the canonical advisory for current status. NetApp states there is no workaround available at this time.
High [CVE-2026-46303] Linux Kernel Vulnerability in NetApp Products
Linux kernel versions 3.18.2 through 5.10.257, 5.11 through 5.15.208, 5.16 through 6.1.174, 6.2 through 6.6.139, 6.7 through 6.12.87, 6.13 through 6.18.29, 6.19 through 7.0.6 are susceptible to a vulnerability which when successfully exploited could lead to disclosure of sensitive information or addition or modification of data. NetApp reports that one or more additional products remain under investigation; review the canonical advisory for current status. NetApp states there is no workaround available at this time.
High [CVE-2026-44432] Urllib3 Vulnerability in NetApp Products
Urllib3 versions 2.6.0 prior to 2.7.0 are susceptible to a vulnerability which when successfully exploited could lead to Denial of Service (DoS). Successful exploitation of this vulnerability could lead to Denial of Service (DoS). NetApp reports that one or more additional products remain under investigation; review the canonical advisory for current status. NetApp states there is no workaround available at this time.