VulniPulse uses Google Ads measurement to understand visits from advertisements and campaign performance. It runs cookie-free until you choose — accepting enables cookies for more accurate attribution. Rejecting keeps it cookie-free and never limits the site.
See exactly what is measuredComplete feed
2022 advisories across 32 monitored vendors.
Arbitrary Code Execution via deserialization of crafted objects. Red Hat rates this important (CVSS 8). Weakness: CWE-502. Affected package(s): com.mchange/c3p0, org.hibernate.orm/hibernate-c3p0, eap8-hibernate, c3p0/c3p0, candlepin. Resolved in Red Hat advisory RHSA-2026:28385 — update the affected packages (`sudo dnf update`).
Remote Code Execution via WebSocket Hijacking. Red Hat rates this important (CVSS 8.8). Weakness: CWE-346. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released.
Arbitrary code execution via heap out-of-bounds write in RLE planar decode path. Red Hat rates this important (CVSS 8.8). Weakness: CWE-787. Affected package(s): freerdp. Resolved in Red Hat advisory RHSA-2026:5936 — update the affected packages (`sudo dnf update`).
Arbitrary code execution via heap buffer overflow in GDI surface pipeline. Red Hat rates this important (CVSS 8.8). Weakness: CWE-805. Affected package(s): freerdp. Resolved in Red Hat advisory RHSA-2026:5936 — update the affected packages (`sudo dnf update`).
Authentication bypass due to SQL injection in JWT processing. Red Hat rates this important (CVSS 8.2). Weakness: CWE-89. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released.
Arbitrary code execution via JNDI dereferencing of crafted objects. Red Hat rates this important (CVSS 8.3). Weakness: CWE-502. Affected package(s): candlepin, eap8-hibernate, mchange-commons-java. Resolved in Red Hat advisory RHSA-2026:18054 — update the affected packages (`sudo dnf update`).
File overwrite due to path traversal. Red Hat rates this important (CVSS 7.5). Weakness: CWE-22. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released.
Missing Authorization Check Allows Unprivileged Users to Restore LUKS Headers via udisks D-Bus API. Red Hat rates this important (CVSS 7.1). Weakness: CWE-862. Affected package(s): udisks2. Resolved in Red Hat advisory RHSA-2026:5831 — update the affected packages (`sudo dnf update`).
possible infinite loop when loading circular /Prev entries in cross-reference streams. Red Hat rates this moderate (CVSS 7.5). Weakness: CWE-835. Affected package(s): quay/quay-rhel9:1775069491, rhoai/odh-llama-stack-core-rhel9:1775144403, quay/quay-rhel8:1773771962, quay/quay-rhel8:1773971077, quay/quay-rhel9:1775169226, quay/quay-rhel8:1773936323. Resolved in Red Hat advisory RHSA-2026:10184 — update the affected packages (`sudo dnf update`).
WebSockets pre-auth memory DoS. Red Hat rates this moderate (CVSS 7.5). Weakness: CWE-770. Affected package(s): multicluster-globalhub/multicluster-globalhub-grafana-rhel9:1773650060, multicluster-globalhub/multicluster-globalhub-grafana-rhel9:1773650767. Resolved in Red Hat advisory RHSA-2026:6226 — update the affected packages (`sudo dnf update`).
Memory safety bugs fixed in Firefox 148 and Thunderbird 148. Red Hat rates this important (CVSS 7.5). No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released.
Use-after-free in the DOM: Core & HTML component. Red Hat rates this important (CVSS 7.5). No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released.
Use-after-free in the JavaScript: GC component. Red Hat rates this important (CVSS 7.5). No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released.
JIT miscompilation in the JavaScript: WebAssembly component. Red Hat rates this important (CVSS 7.5). No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released.
Information disclosure due to uninitialized memory in Firefox and Firefox Focus for Android. Red Hat rates this important (CVSS 7.5). No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released.
Memory safety bugs fixed in Firefox ESR 115.33, Firefox ESR 140.8, Thunderbird ESR 140.8, Firefox 148 and Thunderbird 148. Red Hat rates this important (CVSS 7.5). Affected package(s): thunderbird, firefox. Resolved in Red Hat advisory RHSA-2026:3984 — update the affected packages (`sudo dnf update`).
Memory safety bugs fixed in Firefox ESR 140.8, Thunderbird ESR 140.8, Firefox 148 and Thunderbird 148. Red Hat rates this important (CVSS 7.5). Affected package(s): thunderbird, firefox. Resolved in Red Hat advisory RHSA-2026:3984 — update the affected packages (`sudo dnf update`).
Sandbox escape due to incorrect boundary conditions in the DOM: Core & HTML component. Red Hat rates this important (CVSS 7.5). Affected package(s): thunderbird, firefox. Resolved in Red Hat advisory RHSA-2026:3984 — update the affected packages (`sudo dnf update`).
Sandbox escape due to incorrect boundary conditions in the Telemetry component in External Software. Red Hat rates this important (CVSS 7.5). Affected package(s): thunderbird, firefox. Resolved in Red Hat advisory RHSA-2026:3984 — update the affected packages (`sudo dnf update`).
Privilege escalation in the Messaging System component. Red Hat rates this important (CVSS 7.5). Affected package(s): thunderbird, firefox. Resolved in Red Hat advisory RHSA-2026:3984 — update the affected packages (`sudo dnf update`).