Skip to content
VulniPulse

Complete feed

Security advisories & CVEs

432 advisories across 32 monitored vendors.

Home overview

Android app · Google Play

Take your CVE monitoring with you.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.

Critical9.8Red Hat

Critical [CVE-2026-48853] elixir-grpc grpc: Remote Code Execution and Denial of Service via Deserialization of Untrusted Data

elixir-grpc grpc: Remote Code Execution and Denial of Service via Deserialization of Untrusted Data. Red Hat rates this critical (CVSS 9.8). Weakness: CWE-502. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released. Affected product named by the advisory: Red Hat Enterprise Linux.

CVE-2026-48853
Unclassified
Jun 15, 2026
Critical9.1Vendor: HighRed Hat

Critical [CVE-2026-48165] Arbitrary code execution via global system variable manipulation by a high-privileged user

Arbitrary code execution via global system variable manipulation by a high-privileged user. Red Hat rates this important (CVSS 9.1). Weakness: CWE-78. Affected package(s): mariadb10.11, mariadb11, galera, mariadb:11.8, mariadb11.8, mariadb:10.11. Resolved in Red Hat advisory RHSA-2026:33093 — update the affected packages (`sudo dnf update`). Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat Hardened Images.

CVE-2026-48165
Unclassified
Jun 12, 2026
Critical9.1Vendor: HighRed Hat

Critical [CVE-2026-48163] Arbitrary code execution via improper parameter validation during SST

Arbitrary code execution via improper parameter validation during SST. Red Hat rates this important (CVSS 9.1). Weakness: CWE-78. Affected package(s): mariadb10.11, mariadb11, galera, mariadb:11.8, mariadb11.8, mariadb:10.11. Resolved in Red Hat advisory RHSA-2026:33093 — update the affected packages (`sudo dnf update`). Affected products named by the advisory: Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat Hardened Images; Red Hat Enterprise Linux 10.0 Extended Update Support.

CVE-2026-48163
Unclassified
Jun 12, 2026
Critical9.1Vendor: HighRed Hat

Critical [CVE-2026-44172] MariaDB server: SQL injection vulnerability via improper handling of big5 character set with mysql_real_escape_string()

MariaDB server: SQL injection vulnerability via improper handling of big5 character set with mysql_real_escape_string(). Red Hat rates this important (CVSS 9.1). Weakness: CWE-89. Affected package(s): mariadb10.11, galera, mariadb:11.8, mariadb11.8, mariadb:10.11, mariadb-connector-c-main. Resolved in Red Hat advisory RHSA-2026:33093 — update the affected packages (`sudo dnf update`). Affected products named by the advisory: Red Hat Hardened Images; Red Hat Enterprise Linux 9; Red Hat Enterprise Linux 10.0 Extended Update Support.

CVE-2026-44172
Unclassified
Jun 12, 2026
Critical9.9Vendor: HighRed Hat

Critical [CVE-2026-44170] Arbitrary shell command execution via improper sanitization in CONNECT engine

Arbitrary shell command execution via improper sanitization in CONNECT engine. Red Hat rates this important (CVSS 9.9). Weakness: CWE-78. Affected package(s): mariadb10.11, mariadb11, galera, mariadb:11.8, mariadb11.8, mariadb:10.11. Resolved in Red Hat advisory RHSA-2026:33093 — update the affected packages (`sudo dnf update`). Affected products named by the advisory: Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat Hardened Images; Red Hat Enterprise Linux 10.0 Extended Update Support.

CVE-2026-44170
Unclassified
Jun 12, 2026
Critical9.0Vendor: HighRed Hat

Critical [CVE-2026-49261] Arbitrary code execution via wsrep_notify_cmd

Arbitrary code execution via wsrep_notify_cmd. Red Hat rates this important (CVSS 9). Weakness: CWE-78. Affected package(s): mariadb10.11, mariadb11, galera, mariadb:11.8, mariadb11.8, mariadb:10.11. Resolved in Red Hat advisory RHSA-2026:33093 — update the affected packages (`sudo dnf update`). Affected products named by the advisory: Red Hat Enterprise Linux 8; Red Hat Hardened Images; Red Hat Enterprise Linux 10.0 Extended Update Support; Red Hat Enterprise Linux 9.4 Update Services for SAP Solutions.

CVE-2026-49261
Unclassified
Jun 11, 2026
Critical9.1Vendor: MediumRed Hat

Critical [CVE-2026-45445] AES-OCB IV Ignored on EVP_Cipher() Path

AES-OCB IV Ignored on EVP_Cipher() Path. Red Hat rates this moderate (CVSS 9.1). Weakness: CWE-1204. Affected package(s): insights-proxy/insights-proxy-container-rhel9:1782890503, rhui5/haproxy-rhel9:1781525671, openssl, rhui5/installer-rhel9:1781525693, rhui5/cds-rhel9:1781525684, discovery/discovery-ui-rhel9:1782166952. Resolved in Red Hat advisory RHSA-2026:29197 — update the affected packages (`sudo dnf update`). Affected products named by the advisory: Red Hat Enterprise Linux 1; Red Hat Enterprise Linux 9.

CVE-2026-45445
Unclassified
Jun 9, 2026
Critical9.6Vendor: HighRed Hat

Critical [CVE-2026-11697] Insufficient validation of untrusted input in UI

Insufficient validation of untrusted input in UI. Red Hat rates this important (CVSS 9.6). Weakness: CWE-1286. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released. Affected product named by the advisory: Red Hat Enterprise Linux.

CVE-2026-11697
Unclassified
Jun 8, 2026
Critical9.6Vendor: HighRed Hat

Critical [CVE-2026-11670] Use after free in PDF

Use after free in PDF. Red Hat rates this important (CVSS 9.6). Weakness: CWE-825. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released. Affected product named by the advisory: Red Hat Enterprise Linux.

CVE-2026-11670
Unclassified
Jun 8, 2026
Critical9.0Vendor: HighRed Hat

Critical [CVE-2026-11642] Use after free in Web Apps

Use after free in Web Apps. Red Hat rates this important (CVSS 9). Weakness: CWE-1341. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released. Affected product named by the advisory: Red Hat Enterprise Linux.

CVE-2026-11642
Unclassified
Jun 8, 2026
Critical9.0Vendor: HighRed Hat

Critical [CVE-2026-11635] Use after free in Bluetooth

Use after free in Bluetooth. Red Hat rates this important (CVSS 9). Weakness: CWE-825. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released. Affected product named by the advisory: Red Hat Enterprise Linux.

CVE-2026-11635
Unclassified
Jun 8, 2026
Critical9.0Vendor: HighRed Hat

Critical [CVE-2026-11694] Use after free in ServiceWorker

Use after free in ServiceWorker. Red Hat rates this important (CVSS 9). Weakness: CWE-825. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released. Affected product named by the advisory: Red Hat Enterprise Linux.

CVE-2026-11694
Unclassified
Jun 8, 2026
Critical9.0Vendor: HighRed Hat

Critical [CVE-2026-11652] Use after free in Extensions

Use after free in Extensions. Red Hat rates this important (CVSS 9). Weakness: CWE-825. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released. Affected product named by the advisory: Red Hat Enterprise Linux.

CVE-2026-11652
Unclassified
Jun 8, 2026
Critical9.8Vendor: HighRed Hat

Critical [CVE-2026-11643] Use after free in Proxy

Use after free in Proxy. Red Hat rates this important (CVSS 9.8). Weakness: CWE-825. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released. Affected product named by the advisory: Red Hat Enterprise Linux.

CVE-2026-11643
Unclassified
Jun 8, 2026
Critical9.6Vendor: HighRed Hat

Critical [CVE-2026-11638] Use after free in Printing

Use after free in Printing. Red Hat rates this important (CVSS 9.6). Weakness: CWE-825. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released. Affected product named by the advisory: Red Hat Enterprise Linux.

CVE-2026-11638
Unclassified
Jun 8, 2026
Critical9.6Vendor: HighRed Hat

Critical [CVE-2026-11654] Use after free in CameraCapture

Use after free in CameraCapture. Red Hat rates this important (CVSS 9.6). Weakness: CWE-825. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released. Affected product named by the advisory: Red Hat Enterprise Linux.

CVE-2026-11654
Unclassified
Jun 8, 2026
Critical9.6Vendor: HighRed Hat

Critical [CVE-2026-11671] Use after free in Navigation

Use after free in Navigation. Red Hat rates this important (CVSS 9.6). Weakness: CWE-825. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released. Affected product named by the advisory: Red Hat Enterprise Linux.

CVE-2026-11671
Unclassified
Jun 8, 2026
Critical9.0Vendor: HighRed Hat

Critical [CVE-2026-11661] Use after free in Views

Use after free in Views. Red Hat rates this important (CVSS 9). Weakness: CWE-825. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released. Affected product named by the advisory: Red Hat Enterprise Linux.

CVE-2026-11661
Unclassified
Jun 8, 2026
Critical9.6Vendor: HighRed Hat Exploited CISA KEV

Critical [CVE-2026-11645] Out of bounds memory access in V8

Out of bounds memory access in V8. Red Hat rates this important (CVSS 9.6). Weakness: CWE-125. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released. Affected product named by the advisory: Red Hat Enterprise Linux.

CVE-2026-11645
Unclassified
Jun 8, 2026
Critical9.6Vendor: HighRed Hat

Critical [CVE-2026-11657] Use after free in Payments

Use after free in Payments. Red Hat rates this important (CVSS 9.6). Weakness: CWE-825. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released. Affected product named by the advisory: Red Hat Enterprise Linux.

CVE-2026-11657
Unclassified
Jun 8, 2026