Skip to content
VulniPulse

Complete feed

Recently updated

Advisories the vendor has revised

Home overview

Android app · Google Play

Take your CVE monitoring with you.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.

Medium6.4Red Hat

Medium [CVE-2026-73242] Out-of-bounds memory access in Kerberos decryption

Out-of-bounds memory access in Kerberos decryption. Red Hat rates this moderate (CVSS 6.4). Weakness: CWE-125. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat package: freerdp.

CVE-2026-73242
Red Hat Enterprise Linux
Aug 11, 2026
Medium6.3Red Hat

Medium [CVE-2026-71474] Pull-secret bearer token written to logs on non-200 CCX response

Pull-secret bearer token written to logs on non-200 CCX response. Red Hat rates this moderate (CVSS 6.3). Weakness: CWE-532. Red Hat lists fixing advisory RHSA-2026:60391 with package rhacm2/insights-client-rhel9:1787227689, rhacm2/insights-client-rhel9:1787184541, rhacm2/insights-client-rhel9:1787688993, rhacm2/insights-client-rhel9:1787259125. Affected products named by the advisory: Red Hat Advanced Cluster Management for Kubernetes 2.11; Red Hat Advanced Cluster Management for Kubernetes 2.13; Red Hat Advanced Cluster Management for Kubernetes 2.14; Red Hat Advanced Cluster Management for Kubernetes 2.15; and 2 more. Affected products named by the advisory: Red Hat Advanced Cluster Management for Kubernetes 2.16; Red Hat Advanced Cluster Management for Kubernetes 2.17.

CVE-2026-71474
Unclassified
Aug 11, 2026
Medium5.3Red Hat

Medium [CVE-2026-71468] Cross-user bearer-token reuse via global federation-config cache

Cross-user bearer-token reuse via global federation-config cache. Red Hat rates this moderate (CVSS 5.3). Weakness: CWE-266. Red Hat lists fixing advisory RHSA-2026:60391 with package rhacm2/acm-search-v2-api-rhel9:1787191668, rhacm2/acm-search-v2-api-rhel9:1787263804, rhacm2/acm-search-v2-api-rhel9:1787238618, rhacm2/acm-search-v2-api-rhel9:1787229541. Affected products named by the advisory: Red Hat Advanced Cluster Management for Kubernetes 2.11; Red Hat Advanced Cluster Management for Kubernetes 2.13; Red Hat Advanced Cluster Management for Kubernetes 2.14; Red Hat Advanced Cluster Management for Kubernetes 2.15; and 2 more. Affected products named by the advisory: Red Hat Advanced Cluster Management for Kubernetes 2.16; Red Hat Advanced Cluster Management for Kubernetes 2.17.

CVE-2026-71468
Unclassified
Aug 11, 2026
Medium5.0Red Hat

Medium [CVE-2026-71475] Spoke-controlled ClusterID injected unencoded into Insights API URL path

Spoke-controlled ClusterID injected unencoded into Insights API URL path. Red Hat rates this moderate (CVSS 5). Weakness: CWE-22. Red Hat lists fixing advisory RHSA-2026:60391 with package rhacm2/insights-client-rhel9:1787227689, rhacm2/insights-client-rhel9:1787184541, rhacm2/insights-client-rhel9:1787259125, rhacm2/insights-client-rhel9:1787238585. Affected products named by the advisory: Red Hat Advanced Cluster Management for Kubernetes 2.13; Red Hat Advanced Cluster Management for Kubernetes 2.14; Red Hat Advanced Cluster Management for Kubernetes 2.15; Red Hat Advanced Cluster Management for Kubernetes 2.16; and 1 more. Affected products named by the advisory: Red Hat Advanced Cluster Management for Kubernetes 2.17.

CVE-2026-71475
Unclassified
Aug 11, 2026
Medium6.3Red Hat

Medium [CVE-2026-71845] CCX_TOKEN bearer credential logged in clear text at startup via setDefault

CCX_TOKEN bearer credential logged in clear text at startup via setDefault(). Red Hat rates this moderate (CVSS 6.3). Weakness: CWE-532. Red Hat lists fixing advisory RHSA-2026:60391 with package rhacm2/insights-client-rhel9:1787227689, rhacm2/insights-client-rhel9:1787184541, rhacm2/insights-client-rhel9:1787688993, rhacm2/insights-client-rhel9:1787259125. Affected products named by the advisory: Red Hat Advanced Cluster Management for Kubernetes 2.11; Red Hat Advanced Cluster Management for Kubernetes 2.13; Red Hat Advanced Cluster Management for Kubernetes 2.14; Red Hat Advanced Cluster Management for Kubernetes 2.15; and 2 more. Affected products named by the advisory: Red Hat Advanced Cluster Management for Kubernetes 2.16; Red Hat Advanced Cluster Management for Kubernetes 2.17.

CVE-2026-71845
Unclassified
Aug 11, 2026
Medium5.4Red Hat

Medium [CVE-2026-73283] Tunnel forwarding restriction bypass

Tunnel forwarding restriction bypass. Red Hat rates this moderate (CVSS 5.4). Weakness: CWE-305. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; and 3 more. Affected products named by the advisory: Red Hat Enterprise Linux 9; Red Hat Hardened Images; Red Hat package: openssh.

CVE-2026-73283
Red Hat Enterprise Linux
Aug 11, 2026
Medium5.6Red Hat

Medium [CVE-2026-73282] Information disclosure and data corruption via use-after-free in ssh client

Information disclosure and data corruption via use-after-free in ssh client. Red Hat rates this moderate (CVSS 5.6). Weakness: CWE-825. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; and 4 more. Affected products named by the advisory: Red Hat Enterprise Linux 9; Red Hat Hardened Images; Red Hat OpenShift Container Platform 4; Red Hat package: openssh.

CVE-2026-73282
Red Hat Enterprise Linux
Aug 11, 2026
Medium4.3Red Hat

Medium [CVE-2026-73229] Django REST framework: Information disclosure via improper permission checks in AdminRenderer

Django REST framework: Information disclosure via improper permission checks in AdminRenderer. Red Hat rates this moderate (CVSS 4.3). Weakness: CWE-425. Affected products named by the advisory: Red Hat Ansible Automation Platform 2; Red Hat Discovery 2; Red Hat Satellite 6; Red Hat Update Infrastructure 4 for Cloud Providers; and 1 more. Affected products named by the advisory: Red Hat Update Infrastructure 5.

CVE-2026-73229
Unclassified
Aug 11, 2026
Medium5.3Red Hat

Medium [CVE-2026-73228] Django REST framework: Denial of Service via oversized request bodies

Django REST framework: Denial of Service via oversized request bodies. Red Hat rates this moderate (CVSS 5.3). Weakness: CWE-770. Affected products named by the advisory: Red Hat Ansible Automation Platform 2; Red Hat Discovery 2; Red Hat Satellite 6; Red Hat Update Infrastructure 4 for Cloud Providers; and 1 more. Affected products named by the advisory: Red Hat Update Infrastructure 5.

CVE-2026-73228
Unclassified
Aug 11, 2026
Medium6.5Red Hat

Medium [CVE-2026-73216] Authenticated client can exhaust relay capacity via quota bypass

Authenticated client can exhaust relay capacity via quota bypass. Red Hat rates this moderate (CVSS 6.5). Weakness: CWE-911.

CVE-2026-73216
Unclassified
Aug 11, 2026
Medium6.5Red Hat

Medium [CVE-2026-73215] Denial of Service due to incorrect port allocation

Denial of Service due to incorrect port allocation. Red Hat rates this moderate (CVSS 6.5). Weakness: CWE-772.

CVE-2026-73215
Unclassified
Aug 11, 2026
Medium6.5Red Hat

Medium [CVE-2026-72712] Denial of Service via zero-length TCP option packet

Denial of Service via zero-length TCP option packet. Red Hat rates this moderate (CVSS 6.5). Weakness: CWE-835. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; and 3 more. Affected products named by the advisory: Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; Red Hat package: nmap.

CVE-2026-72712
Red Hat Enterprise Linux
Aug 11, 2026
Medium4.6Vendor: HighMS Server

Medium [CVE-2026-62917] Microsoft SharePoint Server Spoofing Vulnerability

Microsoft SharePoint Server Spoofing Vulnerability Affected products named by the advisory: Microsoft SharePoint Enterprise Server 2016; Microsoft SharePoint Server 2019; Microsoft SharePoint Server Subscription Edition.

CVE-2026-62917
SharePoint Server
Aug 11, 2026
Medium5.5Vendor: HighMS Server

Medium [CVE-2026-62738] Windows Management Instrumentation Information Disclosure Vulnerability

Windows Management Instrumentation Information Disclosure Vulnerability Affected products named by the advisory: Windows Server 2019; Windows Server 2022; Windows Server 2025; Windows Server 2016; and 2 more. Affected products named by the advisory: Windows Server 2012 R2.

CVE-2026-62738
Windows Server
Aug 11, 2026
Medium6.7Vendor: HighMS Server

Medium [CVE-2026-65798] Windows DNS Elevation of Privilege Vulnerability

Windows DNS Elevation of Privilege Vulnerability Affected products named by the advisory: Windows Server 2019; Windows Server 2022; Windows Server 2025; Windows Server 2016; and 2 more. Affected products named by the advisory: Windows Server 2012 R2.

CVE-2026-65798
Windows Server
Aug 11, 2026
Medium6.5Vendor: HighMS Server

Medium [CVE-2026-65794] Windows SMB Client Information Disclosure Vulnerability

Windows SMB Client Information Disclosure Vulnerability Affected products named by the advisory: Windows Server 2019; Windows Server 2022; Windows Server 2025; Windows Server 2016; and 2 more. Affected products named by the advisory: Windows Server 2012 R2.

CVE-2026-65794
Windows Server
Aug 11, 2026
Medium6.7Vendor: HighMS Server

Medium [CVE-2026-65795] Windows DNS Elevation of Privilege Vulnerability

Windows DNS Elevation of Privilege Vulnerability Affected products named by the advisory: Windows Server 2019; Windows Server 2022; Windows Server 2025; Windows Server 2016.

CVE-2026-65795
Windows Server
Aug 11, 2026
Medium5.3Vendor: HighMS Server

Medium [CVE-2026-65777] Active Directory Security Feature Bypass Vulnerability

Active Directory Security Feature Bypass Vulnerability Affected products named by the advisory: Windows Server 2022; Windows Server 2025.

CVE-2026-65777
Windows Server
Aug 11, 2026
Medium5.5Vendor: HighMS Server

Medium [CVE-2026-62887] Windows NTFS Information Disclosure Vulnerability

Windows NTFS Information Disclosure Vulnerability Affected products named by the advisory: Windows Server 2019; Windows Server 2022; Windows Server 2025; Windows Server 2016; and 2 more. Affected products named by the advisory: Windows Server 2012 R2.

CVE-2026-62887
Windows Server
Aug 11, 2026
Medium6.5Vendor: HighMS Server

Medium [CVE-2026-62814] Windows DHCP Server Information Disclosure Vulnerability

Windows DHCP Server Information Disclosure Vulnerability Affected products named by the advisory: Windows Server 2019; Windows Server 2022; Windows Server 2025; Windows Server 2016; and 2 more. Affected products named by the advisory: Windows Server 2012 R2.

CVE-2026-62814
Windows Server
Aug 11, 2026