Complete feed
Security advisories & CVEs
302 advisories across 32 monitored vendors.
Android app · Google Play
Take your CVE monitoring with you.
Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.
Low [CVE-2026-16410] JIT miscompilation in the JavaScript Engine: JIT component
JIT miscompilation in the JavaScript Engine: JIT component. Red Hat rates this low (CVSS 3.4). Weakness: CWE-1037.
Low [CVE-2026-16409] Invalid pointer in the Security: PSM component
Invalid pointer in the Security: PSM component. Red Hat rates this low (CVSS 3.4). Weakness: CWE-476.
Low [CVE-2026-16408] Integer overflow in the Audio/Video: Playback component
Integer overflow in the Audio/Video: Playback component. Red Hat rates this low (CVSS 3.4). Weakness: CWE-190.
Low [CVE-2026-16407] Mitigation bypass in the DOM: Service Workers component
Mitigation bypass in the DOM: Service Workers component. Red Hat rates this low (CVSS 3.4). Weakness: CWE-807.
Low [CVE-2026-16406] Mitigation bypass in the Networking component
Mitigation bypass in the Networking component. Red Hat rates this low (CVSS 3.4).
Low [CVE-2026-16405] Information disclosure in the Networking: WebSockets component
Information disclosure in the Networking: WebSockets component. Red Hat rates this low (CVSS 3.4). Weakness: CWE-201. Red Hat lists fixing advisory RHSA-2026:47101 with package firefox-0:140.13.0-1.el10_2, firefox-0:140.13.0-1.el8_10, firefox-0:140.13.0-1.el9_8, thunderbird-0:140.13.0-1.el10_2. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9.
Low [CVE-2026-16404] Spoofing issue in Firefox for Android
Spoofing issue in Firefox for Android. Red Hat rates this low (CVSS 3.4). Weakness: CWE-290.
Low [CVE-2026-16403] Spoofing issue in the Address Bar component
Spoofing issue in the Address Bar component. Red Hat rates this low (CVSS 3.4).
Low [CVE-2026-59842] information disclosure via short GSSAPI Curve25519 public key
A flaw was found in libssh. During server-side GSSAPI key exchange, a client-supplied Curve25519 public key shorter than the expected length is copied without proper length validation, leading to an out-of-bounds heap read. This could allow a remote unauthenticated attacker to disclose small amounts of server memory. Red Hat severity: Low — CVSS 3.7 (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N). Weakness: CWE-125. Affected Red Hat products: Red Hat Enterprise Linux 10; Red Hat Hardened Images. Red Hat lists Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9 as not affected. Red Hat fixing advisory: RHSA-2026:55855, RHSA-2026:42922. Affected products named by the advisory: Red Hat package: libssh.
Low [CVE-2026-61081] Performance Schema unspecified vulnerability (CPU Jul 2026)
Performance Schema unspecified vulnerability (CPU Jul 2026). Red Hat rates this low (CVSS 2.7). Weakness: CWE-497.
Low [CVE-2026-60190] Replication unspecified vulnerability (CPU Jul 2026)
Replication unspecified vulnerability (CPU Jul 2026). Red Hat rates this low (CVSS 2.2). Weakness: CWE-770.
Low [CVE-2026-61096] Pluggable Auth unspecified vulnerability (CPU Jul 2026)
Pluggable Auth unspecified vulnerability (CPU Jul 2026). Red Hat rates this low (CVSS 2.9). Weakness: CWE-266.
Low [CVE-2026-47081] Information disclosure of mailbox existence via XAPPLEPUSHSERVICE command
Information disclosure of mailbox existence via XAPPLEPUSHSERVICE command. Red Hat rates this low (CVSS 3.1). Weakness: CWE-497.
Low [CVE-2026-47088] Information disclosure via heap exposure in MIME comment parsing
Information disclosure via heap exposure in MIME comment parsing. Red Hat rates this low (CVSS 3.1). Weakness: CWE-125.
Low [CVE-2026-47087] Unauthorized access due to URLAUTH not honoring revoked authorizer access
Unauthorized access due to URLAUTH not honoring revoked authorizer access. Red Hat rates this low (CVSS 3.5). Weakness: CWE-613.
Low [CVE-2026-61872] Denial of Service due to memory leak in TIFF encoder
Denial of Service due to memory leak in TIFF encoder. Red Hat rates this low (CVSS 2.5). Weakness: CWE-772.
Low [CVE-2026-61871] Denial of Service via memory leak in ICON decoder
Denial of Service via memory leak in ICON decoder. Red Hat rates this low (CVSS 3.7). Weakness: CWE-772.
Low [CVE-2026-61869] Denial of Service via memory leak in MIFF encoder
Denial of Service via memory leak in MIFF encoder. Red Hat rates this low (CVSS 2.9). Weakness: CWE-770.
Low [CVE-2026-61868] Denial of Service due to memory leak in YUV decoder
Denial of Service due to memory leak in YUV decoder. Red Hat rates this low (CVSS 3.7). Weakness: CWE-772.
Low [CVE-2026-61867] Denial of Service due to memory leak in TIFF encoder
Denial of Service due to memory leak in TIFF encoder. Red Hat rates this low (CVSS 2.9). Weakness: CWE-772.