Red Hat Linux Security Advisories & CVEs
3066 advisories tracked · Red Hat Security Data API · direct feeds checked every minute; rate-limited backstops use a safe source cadence
Android app · Google Play
Monitor Red Hat CVEs from your phone.
Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.
Security advisories for your Red Hat release
Pick your distribution release to see every advisory issued for it and its severity mix. Fixes ship as errata — keep the system patched. This is the release's advisory history, not a per-package scan.
Official source
Red Hat Security Data API
Red Hat Enterprise Linux errata (RHSA) via the official Red Hat Security Data API — CVE severity, CVSS and affected packages. A credential-free official source.
Latest Red Hat advisories
High [CVE-2026-3338] Signature bypass due to improper validation in PKCS7_verify()
Signature bypass due to improper validation in PKCS7_verify(). Red Hat rates this important (CVSS 7.5). Weakness: CWE-347. Affected package(s): rhtas/tuffer-rhel9:1773307309, rhtas/tuftool-rhel9:1773307309. Resolved in Red Hat advisory RHSA-2026:5459 — update the affected packages (`sudo dnf update`). Affected products named by the advisory: Red Hat Trusted Artifact Signer 1.3; Confidential Compute Attestation; Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; and 2 more.
High [CVE-2026-3336] Certificate validation bypass via improper handling of PKCS7 objects
Certificate validation bypass via improper handling of PKCS7 objects. Red Hat rates this important (CVSS 7.5). Weakness: CWE-295. Affected package(s): rhtas/tuffer-rhel9:1773307309, rhtas/tuftool-rhel9:1773307309. Resolved in Red Hat advisory RHSA-2026:5459 — update the affected packages (`sudo dnf update`). Affected products named by the advisory: Red Hat Trusted Artifact Signer 1.3; Confidential Compute Attestation; Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; and 2 more.
High [CVE-2026-28416] Server-Side Request Forgery allows access to internal services via malicious Space loading
Server-Side Request Forgery allows access to internal services via malicious Space loading. Red Hat rates this important (CVSS 8.2). Weakness: CWE-918. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released. Affected product named by the advisory: Red Hat Enterprise Linux.
High [CVE-2026-28406] Arbitrary code execution via path traversal in build context archive unpacking
Arbitrary code execution via path traversal in build context archive unpacking. Red Hat rates this important (CVSS 8.5). Weakness: CWE-22. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released. Affected product named by the advisory: Red Hat Enterprise Linux.
High [CVE-2026-2293] Authentication bypass via Fastify path-normalization
Authentication bypass via Fastify path-normalization. Red Hat rates this important (CVSS 7.5). Weakness: CWE-551. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released. Affected product named by the advisory: Red Hat Enterprise Linux.
High [CVE-2026-3304] Denial of Service via malformed requests
Denial of Service via malformed requests. Red Hat rates this important (CVSS 7.5). Weakness: CWE-459. Affected package(s): rhdh/rhdh-hub-rhel9:1774545605, rhdh/rhdh-hub-rhel9:1775140647. Resolved in Red Hat advisory RHSA-2026:6174 — update the affected packages (`sudo dnf update`). Affected products named by the advisory: Red Hat Developer Hub 1.8; Red Hat Developer Hub 1.9.
High [CVE-2026-2359] Denial of Service via dropped file upload connections
Denial of Service via dropped file upload connections. Red Hat rates this important (CVSS 7.5). Weakness: CWE-772. Affected package(s): rhdh/rhdh-hub-rhel9:1774545605, rhdh/rhdh-hub-rhel9:1775140647. Resolved in Red Hat advisory RHSA-2026:6174 — update the affected packages (`sudo dnf update`). Affected products named by the advisory: Red Hat Developer Hub 1.8; Red Hat Developer Hub 1.9.
High [CVE-2026-28364] Remote code execution via buffer over-read in Marshal deserialization
Remote code execution via buffer over-read in Marshal deserialization. Red Hat rates this important (CVSS 7.9). Weakness: CWE-125. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9.
High [CVE-2026-27970] @angular/core: Angular: Cross-site scripting via compromised translation files
@angular/core: Angular: Cross-site scripting via compromised translation files. Red Hat rates this important (CVSS 7.1). Weakness: CWE-79. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat Fuse 7.
High [CVE-2026-27959] Host header injection vulnerability due to malformed HTTP Host header parsing
Host header injection vulnerability due to malformed HTTP Host header parsing. Red Hat rates this important (CVSS 8.2). Weakness: CWE-20. Affected package(s): rhoai/odh-mod-arch-model-registry-rhel9:1776742141, rhoai/odh-dashboard-rhel9:1776742021, openshift4/ose-monitoring-plugin-rhel9:1775577192. Resolved in Red Hat advisory RHSA-2026:10184 — update the affected packages (`sudo dnf update`). Affected products named by the advisory: Red Hat OpenShift AI 2.25; Red Hat OpenShift Container Platform 4.19; Red Hat Developer Hub.
High [CVE-2026-27942] Stack overflow leads to Denial of Service
Stack overflow leads to Denial of Service. Red Hat rates this moderate (CVSS 7.5). Weakness: CWE-776. Affected package(s): odf4/mcg-core-rhel9:1776403991, odf4/mcg-rhel9-operator:1776404009, odf4/odf-cloudnative-pg-rhel9-operator:1776406131, odf4/odf-external-snapshotter-rhel9-operator:1776406284, odf4/odf-external-snapshotter-sidecar-rhel9:1776406291, advanced-cluster-security/rhacs-main-rhel8:1775594284. Resolved in Red Hat advisory RHSA-2026:7110 — update the affected packages (`sudo dnf update`). Affected products named by the advisory: Red Hat Enterprise Linux.
High [CVE-2026-27896] improper handling of case sensitivity
improper handling of case sensitivity. Red Hat rates this important (CVSS 7.2). Weakness: CWE-178. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released. Affected products named by the advisory: OpenShift Lightspeed; OpenShift Serverless; Red Hat OpenShift AI (RHOAI).
High [CVE-2026-27830] Arbitrary Code Execution via deserialization of crafted objects
Arbitrary Code Execution via deserialization of crafted objects. Red Hat rates this important (CVSS 8). Weakness: CWE-502. Affected package(s): com.mchange/c3p0, org.hibernate.orm/hibernate-c3p0, eap8-hibernate, c3p0/c3p0, candlepin. Resolved in Red Hat advisory RHSA-2026:28385 — update the affected packages (`sudo dnf update`). Affected products named by the advisory: Red Hat JBoss Enterprise Application Platform 8.1 for RHEL 8; Red Hat JBoss Enterprise Application Platform 8.1 for RHEL 9; Red Hat Satellite 6.18 for RHEL 9; Red Hat build of Debezium 2; and 4 more.
High [CVE-2026-27148] Remote Code Execution via WebSocket Hijacking
Remote Code Execution via WebSocket Hijacking. Red Hat rates this important (CVSS 8.8). Weakness: CWE-346. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released. Affected product named by the advisory: Red Hat Enterprise Linux.
High [CVE-2026-26965] Arbitrary code execution via heap out-of-bounds write in RLE planar decode path
Arbitrary code execution via heap out-of-bounds write in RLE planar decode path. Red Hat rates this important (CVSS 8.8). Weakness: CWE-787. Affected package(s): freerdp. Resolved in Red Hat advisory RHSA-2026:5936 — update the affected packages (`sudo dnf update`). Affected products named by the advisory: Red Hat Enterprise Linux 10.0 Extended Update Support; Red Hat Enterprise Linux 7 Extended Lifecycle Support; Red Hat Enterprise Linux 8.2 Advanced Update Support; Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support; and 10 more.
High [CVE-2026-26955] Arbitrary code execution via heap buffer overflow in GDI surface pipeline
Arbitrary code execution via heap buffer overflow in GDI surface pipeline. Red Hat rates this important (CVSS 8.8). Weakness: CWE-805. Affected package(s): freerdp. Resolved in Red Hat advisory RHSA-2026:5936 — update the affected packages (`sudo dnf update`). Affected products named by the advisory: Red Hat Enterprise Linux 10.0 Extended Update Support; Red Hat Enterprise Linux 7 Extended Lifecycle Support; Red Hat Enterprise Linux 8.2 Advanced Update Support; Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support; and 10 more.
High [CVE-2026-25554] Authentication bypass due to SQL injection in JWT processing
Authentication bypass due to SQL injection in JWT processing. Red Hat rates this important (CVSS 8.2). Weakness: CWE-89. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released. Affected product named by the advisory: Red Hat Enterprise Linux.
High [CVE-2026-27727] Arbitrary code execution via JNDI dereferencing of crafted objects
Arbitrary code execution via JNDI dereferencing of crafted objects. Red Hat rates this important (CVSS 8.3). Weakness: CWE-502. Affected package(s): candlepin, eap8-hibernate, mchange-commons-java. Resolved in Red Hat advisory RHSA-2026:18054 — update the affected packages (`sudo dnf update`). Affected products named by the advisory: Red Hat build of Apache Camel 4.14.4 for Spring Boot 3.5.11; Red Hat Build of Debezium 3.2; Red Hat JBoss Enterprise Application Platform 8.1 for RHEL 8; Red Hat JBoss Enterprise Application Platform 8.1 for RHEL 9; and 9 more.
High [CVE-2026-27699] File overwrite due to path traversal
File overwrite due to path traversal. Red Hat rates this important (CVSS 7.5). Weakness: CWE-22. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released. Affected product named by the advisory: Red Hat Enterprise Linux.
High [CVE-2026-26103] Missing Authorization Check Allows Unprivileged Users to Restore LUKS Headers via udisks D-Bus API
Missing Authorization Check Allows Unprivileged Users to Restore LUKS Headers via udisks D-Bus API. Red Hat rates this important (CVSS 7.1). Weakness: CWE-862. Affected package(s): udisks2. Resolved in Red Hat advisory RHSA-2026:5831 — update the affected packages (`sudo dnf update`). Affected product named by the advisory: Red Hat Enterprise Linux 10.0 Extended Update Support.