Skip to content
VulniPulse

Complete feed

Recently updated

Advisories the vendor has revised

Home overview

Android app · Google Play

Take your CVE monitoring with you.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.

High7.4Red Hat

High [CVE-2026-58062] Bouncy Castle for Java: Certificate validation bypass via stapled OCSP response

Bouncy Castle for Java: Certificate validation bypass via stapled OCSP response. Red Hat rates this important (CVSS 7.4). Weakness: CWE-295. Affected products named by the advisory: Red Hat AMQ Clients; Red Hat Ceph Storage 9; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 3 more. Affected products named by the advisory: Red Hat JBoss Enterprise Application Platform 7; Red Hat Single Sign-On 7; Red Hat package: resteasy.

CVE-2026-58062
Red Hat Enterprise Linux
Aug 3, 2026
High7.4Red Hat

High [CVE-2026-59650] Bouncy Castle for Java: Cryptographic key compromise due to unvalidated Diffie-Hellman peer value

Bouncy Castle for Java: Cryptographic key compromise due to unvalidated Diffie-Hellman peer value. Red Hat rates this important (CVSS 7.4). Weakness: CWE-325.

CVE-2026-59650
Unclassified
Aug 3, 2026
High7.4Red Hat

High [CVE-2026-8763] Bouncy Castle for Java: Name Constraints bypass via trailing dot in rfc822Name and URI

Bouncy Castle for Java: Name Constraints bypass via trailing dot in rfc822Name and URI. Red Hat rates this important (CVSS 7.4). Weakness: CWE-295. Affected products named by the advisory: Red Hat AMQ Clients; Red Hat Ceph Storage 9; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 3 more. Affected products named by the advisory: Red Hat JBoss Enterprise Application Platform 7; Red Hat Single Sign-On 7; Red Hat package: resteasy.

CVE-2026-8763
Red Hat Enterprise Linux
Aug 3, 2026
High7.5Red Hat

High [CVE-2026-68580] Remote code execution or denial of service via audio input integer overflow

Remote code execution or denial of service via audio input integer overflow. Red Hat rates this important (CVSS 7.5). Weakness: CWE-190. Red Hat lists fixing advisory RHSA-2026:54487 with package freerdp-2:2.11.7-11.el8_10, freerdp-2:2.11.7-7.el9_8.5, freerdp-2:3.10.3-12.el10_2.8. Affected products named by the advisory: Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat Enterprise Linux 10.

CVE-2026-68580
Unclassified
Aug 2, 2026
High8.4Red Hat

High [CVE-2026-67323] Arbitrary code execution via command injection due to unguarded Git options

Arbitrary code execution via command injection due to unguarded Git options. Red Hat rates this important (CVSS 8.4). Weakness: CWE-88. Red Hat lists fixing advisory RHSA-2026:44416 with package swift-lang-main-6.3.3-0.1.1.hum1, llvm21-main-21.1.8-8.hum1, llvm-main-22.1.8-4.1.hum1.

CVE-2026-67323
Unclassified
Aug 1, 2026
High7.0Vendor: MediumRed Hat

High [CVE-2026-67326] Remote Code Execution via Newline Injection in config_writer

Remote Code Execution via Newline Injection in config_writer(). Red Hat rates this moderate (CVSS 7). Weakness: CWE-93. Red Hat lists fixing advisory RHSA-2026:44416 with package swift-lang-main-6.3.3-0.1.1.hum1, llvm21-main-21.1.8-8.hum1, llvm-main-22.1.8-4.1.hum1.

CVE-2026-67326
Unclassified
Aug 1, 2026
High7.5Red Hat

High [CVE-2026-67312] Denial of Service via uncontrolled recursion in form data processing

Denial of Service via uncontrolled recursion in form data processing. Red Hat rates this important (CVSS 7.5). Weakness: CWE-674. Red Hat lists fixing advisory RHSA-2026:47619 with package jaeger-main-2.20.0-0.8.hum1, grafana13-1-main-13.1.1-0.3.hum1, grafana12-4-main-12.4.6-0.2.hum1.

CVE-2026-67312
Unclassified
Aug 1, 2026
High7.5Red Hat

High [CVE-2026-67321] Denial of Service via object serialization bypass

Denial of Service via object serialization bypass. Red Hat rates this important (CVSS 7.5). Weakness: CWE-770. Red Hat lists fixing advisory RHSA-2026:47619 with package jaeger-main-2.20.0-0.8.hum1, grafana13-1-main-13.1.1-0.3.hum1, grafana12-4-main-12.4.6-0.2.hum1.

CVE-2026-67321
Unclassified
Aug 1, 2026
High8.8Red Hat

High [CVE-2026-67324] Arbitrary Code Execution via Joined Short Options Bypass

Arbitrary Code Execution via Joined Short Options Bypass. Red Hat rates this important (CVSS 8.8). Weakness: CWE-78.

CVE-2026-67324
Unclassified
Aug 1, 2026
High7.1Red Hat

High [CVE-2026-67298] Denial of Service via integer underflow in RAIL channel handling

Denial of Service via integer underflow in RAIL channel handling. Red Hat rates this important (CVSS 7.1). Weakness: CWE-191.

CVE-2026-67298
Unclassified
Aug 1, 2026
High7.4Red Hat

High [CVE-2026-67320] Information disclosure via Prototype Pollution in Node HTTP adapter

Information disclosure via Prototype Pollution in Node HTTP adapter. Red Hat rates this important (CVSS 7.4). Weakness: CWE-915. Red Hat lists fixing advisory RHSA-2026:47619 with package jaeger-main-2.20.0-0.8.hum1, grafana13-1-main-13.1.1-0.3.hum1, grafana12-4-main-12.4.6-0.2.hum1.

CVE-2026-67320
Unclassified
Aug 1, 2026
High7.5Red Hat

High [CVE-2026-67322] Environment variable exfiltration via attacker-controlled clone URL

Environment variable exfiltration via attacker-controlled clone URL. Red Hat rates this important (CVSS 7.5). Weakness: CWE-214. Red Hat lists fixing advisory RHSA-2026:44416 with package swift-lang-main-6.3.3-0.1.1.hum1, llvm21-main-21.1.8-8.hum1, llvm-main-22.1.8-4.1.hum1.

CVE-2026-67322
Unclassified
Aug 1, 2026
High8.8Red Hat

High [CVE-2026-67325] Command Injection via Git option prefix abbreviation

Command Injection via Git option prefix abbreviation. Red Hat rates this important (CVSS 8.8). Weakness: CWE-78. Red Hat lists fixing advisory RHSA-2026:44416 with package swift-lang-main-6.3.3-0.1.1.hum1, llvm21-main-21.1.8-8.hum1, llvm-main-22.1.8-4.1.hum1.

CVE-2026-67325
Unclassified
Aug 1, 2026
High7.5Red Hat

High [CVE-2026-67313] Denial of Service via uncontrolled recursion in formDataToJSON

Denial of Service via uncontrolled recursion in formDataToJSON. Red Hat rates this important (CVSS 7.5). Weakness: CWE-674. Red Hat lists fixing advisory RHSA-2026:50826 with package jaeger-main-2.20.0-0.8.hum1, grafana13-1-main-13.1.1-0.5.2.hum1, grafana13-1-main-13.1.1-0.5.hum1.

CVE-2026-67313
Unclassified
Aug 1, 2026
High7.4Red Hat

High [CVE-2026-67314] Outbound Request Tampering via Prototype Pollution in Basic Auth

Outbound Request Tampering via Prototype Pollution in Basic Auth. Red Hat rates this important (CVSS 7.4). Weakness: CWE-915. Red Hat lists fixing advisory RHSA-2026:50826 with package jaeger-main-2.20.0-0.8.hum1, grafana13-1-main-13.1.1-0.5.2.hum1, grafana13-1-main-13.1.1-0.5.hum1.

CVE-2026-67314
Unclassified
Aug 1, 2026
High7.5Red Hat

High [CVE-2026-67305] Remote Code Execution via Heap Buffer Overflow in Clipboard Processing

Remote Code Execution via Heap Buffer Overflow in Clipboard Processing. Red Hat rates this important (CVSS 7.5). Weakness: CWE-122.

CVE-2026-67305
Unclassified
Aug 1, 2026
High7.5Red Hat

High [CVE-2026-18536] Predictable random numbers due to unencrypted remote entropy sources

Predictable random numbers due to unencrypted remote entropy sources. Red Hat rates this important (CVSS 7.5). Weakness: CWE-319.

CVE-2026-18536
Unclassified
Aug 1, 2026
High7.1Red Hat

High [CVE-2026-65981] Authorization bypass allows session takeover via MOBILITY-TICKET session resume

Authorization bypass allows session takeover via MOBILITY-TICKET session resume. Red Hat rates this important (CVSS 7.1). Weakness: CWE-303.

CVE-2026-65981
Unclassified
Jul 31, 2026
High7.4Red Hat

High [CVE-2026-68770] Remote Code Execution via Security Control Bypass

Remote Code Execution via Security Control Bypass. Red Hat rates this important (CVSS 7.4). Weakness: CWE-454. Affected products named by the advisory: Lightspeed Core; OpenShift Lightspeed; Red Hat Ansible Automation Platform 2; Red Hat Enterprise Linux AI (RHEL AI) 3; and 1 more. Affected products named by the advisory: Red Hat OpenShift AI (RHOAI).

CVE-2026-68770
Unclassified
Jul 31, 2026
High7.5Red Hat

High [CVE-2026-62959] Pre-authentication heap memory disclosure

Pre-authentication heap memory disclosure. Red Hat rates this important (CVSS 7.5). Weakness: CWE-908.

CVE-2026-62959
Unclassified
Jul 31, 2026