Complete feed
Security advisories & CVEs
1332 advisories across 32 monitored vendors.
Android app · Google Play
Take your CVE monitoring with you.
Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.
High [CVE-2026-66033] Libssh2 Vulnerability in NetApp Products
Libssh2 versions through 1.11.1 are susceptible to a vulnerability which when successfully exploited could lead to Denial of Service (DoS). Successful exploitation of this vulnerability could lead to Denial of Service (DoS). Affected products: Active IQ Unified Manager for VMware vSphere, ONTAP Select Deploy administration utility. NetApp reports that one or more additional products remain under investigation; review the canonical advisory for current status. NetApp states there is no workaround available at this time.
High [CVE-2026-70632] Arbitrary Code Execution in CFHD Decoder via Crafted AVI File
Arbitrary Code Execution in CFHD Decoder via Crafted AVI File. Red Hat rates this important (CVSS 7.8). Weakness: CWE-787. Affected products named by the advisory: Red Hat Enterprise Linux AI (RHEL AI) 3; Red Hat OpenShift AI (RHOAI).
High [CVE-2026-70628] Arbitrary code execution via crafted WTV file in DVB subtitle parser
Arbitrary code execution via crafted WTV file in DVB subtitle parser. Red Hat rates this important (CVSS 7.8). Weakness: CWE-805. Affected products named by the advisory: Red Hat Enterprise Linux AI (RHEL AI) 3; Red Hat OpenShift AI (RHOAI).
High [CVE-2026-71430] Denial of Service due to excessive string length in replacements
Denial of Service due to excessive string length in replacements. Red Hat rates this important (CVSS 7.5). Weakness: CWE-131.
High [CVE-2026-19177] Sandbox escape via crafted HTML page
Sandbox escape via crafted HTML page. Red Hat rates this important (CVSS 8). Weakness: CWE-1289.
High [CVE-2026-19175] Remote sandbox escape via use-after-free in Payments
Remote sandbox escape via use-after-free in Payments. Red Hat rates this important (CVSS 8.8). Weakness: CWE-825.
High [CVE-2026-19174] Arbitrary code execution via crafted HTML page
Arbitrary code execution via crafted HTML page. Red Hat rates this important (CVSS 8.8). Weakness: CWE-190.
High [CVE-2026-19171] Sandbox escape via use-after-free in Media component
Sandbox escape via use-after-free in Media component. Red Hat rates this important (CVSS 8.3). Weakness: CWE-825.
High [CVE-2026-19166] Sandbox escape due to use-after-free in Web Authentication
Sandbox escape due to use-after-free in Web Authentication. Red Hat rates this important (CVSS 8.3). Weakness: CWE-825.
High [CVE-2026-19164] Sandbox escape via crafted HTML page
Sandbox escape via crafted HTML page. Red Hat rates this important (CVSS 8.8). Weakness: CWE-1286.
High [CVE-2026-19163] Sandbox escape via use-after-free in Media component
Sandbox escape via use-after-free in Media component. Red Hat rates this important (CVSS 8). Weakness: CWE-825.
High [CVE-2026-19162] Arbitrary code execution via out-of-bounds write in V8.
Arbitrary code execution via out-of-bounds write in V8. Red Hat rates this important (CVSS 8.8). Weakness: CWE-787.
High [CVE-2026-19158] Arbitrary code execution via use-after-free in Views
Arbitrary code execution via use-after-free in Views. Red Hat rates this important (CVSS 8.8). Weakness: CWE-825.
High [CVE-2026-19159] Arbitrary code execution via use-after-free in Views
Arbitrary code execution via use-after-free in Views. Red Hat rates this important (CVSS 7.5). Weakness: CWE-787.
High [CVE-2026-19153] Site isolation bypass via insufficient input validation in Workers
Site isolation bypass via insufficient input validation in Workers. Red Hat rates this important (CVSS 8.7). Weakness: CWE-807.
High [CVE-2026-19156] Heap buffer overflow allows heap corruption via malicious extension
Heap buffer overflow allows heap corruption via malicious extension. Red Hat rates this important (CVSS 7.8). Weakness: CWE-787.
High [CVE-2026-19151] Arbitrary code execution via use-after-free in V8
Arbitrary code execution via use-after-free in V8. Red Hat rates this important (CVSS 8.8). Weakness: CWE-825.
High [CVE-2026-19152] Sandbox escape via insufficient policy enforcement in Navigation
Sandbox escape via insufficient policy enforcement in Navigation. Red Hat rates this important (CVSS 8.2). Weakness: CWE-266.
High [CVE-2026-19148] Sandbox escape via out-of-bounds write in GPU
Sandbox escape via out-of-bounds write in GPU. Red Hat rates this important (CVSS 8.2). Weakness: CWE-787.
High [CVE-2026-19150] Google Chrome (V8): Arbitrary code execution via crafted HTML page
Google Chrome (V8): Arbitrary code execution via crafted HTML page. Red Hat rates this important (CVSS 8.8). Weakness: CWE-843.