VulniPulse uses Google Ads measurement to understand visits from advertisements and campaign performance. It runs cookie-free until you choose — accepting enables cookies for more accurate attribution. Rejecting keeps it cookie-free and never limits the site.
See exactly what is measuredComplete feed
Critical/high still unreviewed, or CISA KEV listed
Arbitrary code execution via expression parser. Red Hat rates this important (CVSS 8.8). Weakness: CWE-917. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released.
Arbitrary code execution via improper input validation in admin console. Red Hat rates this important (CVSS 7.2). Weakness: CWE-94. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released.
Arbitrary code execution via improper input validation in HTTP Discovery transport. Red Hat rates this important (CVSS 8.8). Weakness: CWE-94. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released.
Denial of Service via large queries. Red Hat rates this important (CVSS 7.5). Weakness: CWE-770. Affected package(s): multicluster-globalhub/multicluster-globalhub-grafana-rhel9:1779925273, multicluster-globalhub/multicluster-globalhub-grafana-rhel9:1779212259, multicluster-globalhub/multicluster-globalhub-grafana-rhel9:1780167118, multicluster-globalhub/multicluster-globalhub-grafana-rhel9:1778867753, multicluster-globalhub/multicluster-globalhub-grafana-rhel9:1779579439. Resolved in Red Hat advisory RHSA-2026:21769 — update the affected packages (`sudo dnf update`).
Arbitrary code execution via deserialization bypass. Red Hat rates this important (CVSS 8.1). Weakness: CWE-502. Affected package(s): ruby, ruby4.0, ruby:3.3, ruby:4.0. Resolved in Red Hat advisory RHSA-2026:20614 — update the affected packages (`sudo dnf update`).
hold dev ref until after transport_finish NF_HOOK. Red Hat rates this important (CVSS 7). Weakness: CWE-826. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released.
fix RESPONSE authenticator parser OOB read. Red Hat rates this moderate (CVSS 7.1). Weakness: CWE-805. Affected package(s): kernel. Resolved in Red Hat advisory RHSA-2026:30129 — update the affected packages (`sudo dnf update`).
Fix RxGK token loading to check bounds. Red Hat rates this important (CVSS 7.3). Weakness: CWE-190. Affected package(s): kernel. Resolved in Red Hat advisory RHSA-2026:27288 — update the affected packages (`sudo dnf update`).
validate minimum block_len in ncm_unwrap_ntb(). Red Hat rates this important (CVSS 7). Weakness: CWE-191. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released.
fix OOB reads parsing symlink error response. Red Hat rates this moderate (CVSS 7.1). Weakness: CWE-125. Affected package(s): kernel-rt, kernel. Resolved in Red Hat advisory RHSA-2026:25120 — update the affected packages (`sudo dnf update`).
fix slab-use-after-free in __inet_lookup_established. Red Hat rates this moderate (CVSS 7.5). Weakness: CWE-763. Affected package(s): kernel, kernel-rt. Resolved in Red Hat advisory RHSA-2026:27288 — update the affected packages (`sudo dnf update`).
validate number_of_packets in usbip_pack_ret_submit(). Red Hat rates this important (CVSS 7.3). Weakness: CWE-805. Affected package(s): kernel. Resolved in Red Hat advisory RHSA-2026:19569 — update the affected packages (`sudo dnf update`).
Race in GPU. Red Hat rates this important (CVSS 9.6). Weakness: CWE-368. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released.
Out of bounds read in GPU. Red Hat rates this important (CVSS 9). Weakness: CWE-125. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released.
Unauthenticated local command execution via exposed RC endpoint. Red Hat rates this important (CVSS 9.8). Weakness: CWE-94. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released.
Arbitrary Code Execution and Denial of Service via Lua Code Injection. Red Hat rates this important (CVSS 8.1). Weakness: CWE-94. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released.
Denial of Service via malformed workflow pod annotation. Red Hat rates this important (CVSS 7.7). Weakness: CWE-1285. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released.
Use after free in DevTools. Red Hat rates this important (CVSS 8.8). Weakness: CWE-825. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released.
Cross-Site Scripting (XSS) via inconsistent tag sanitization. Red Hat rates this moderate (CVSS 8.1). Weakness: CWE-79. Affected package(s): rhoai/odh-mod-arch-model-registry-rhel9:1780467147, devspaces/openvsx-rhel9:1779528224, cryostat/cryostat-openshift-console-plugin-rhel9:4.2.0, devspaces/code-rhel9:1779814592, rhoai/odh-dashboard-rhel9:1780467029, automation-platform-ui. Resolved in Red Hat advisory RHSA-2026:27872 — update the affected packages (`sudo dnf update`).
X.Org X server: Information exposure and denial of service via out-of-bounds memory access. Red Hat rates this important (CVSS 7.8). Weakness: CWE-125. Affected package(s): tigervnc, xorg-x11-server-Xwayland, xorg-x11-server. Resolved in Red Hat advisory RHSA-2026:24341 — update the affected packages (`sudo dnf update`).