Red Hat Linux Security Advisories & CVEs
4618 advisories tracked · Red Hat Security Data API · direct feeds checked every minute; rate-limited backstops use a safe source cadence
Android app · Google Play
Monitor Red Hat CVEs from your phone.
Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 34 official vendor sources and 160+ reviewed platform categories.
Security advisories for your Red Hat release
Pick your distribution release to see every advisory issued for it and its severity mix. Fixes ship as errata — keep the system patched. This is the release's advisory history, not a per-package scan.
Official source
Red Hat Security Data API
Red Hat Enterprise Linux errata (RHSA) via the official Red Hat Security Data API — CVE severity, CVSS and affected packages. A credential-free official source.
Latest Red Hat advisories
High [CVE-2026-79678] idp-add eval reachable before authorization check allows environment disclosure and denial of service
idp-add eval() reachable before authorization check allows environment disclosure and denial of service. Red Hat rates this important (CVSS 8.1). Weakness: CWE-95. Red Hat lists fixing advisory RHSA-2026:72279 with package ipa-0:4.13.4-1.el9_8, ipa-0:4.13.4-1.el10_2. Affected products named by the advisory: Red Hat Enterprise Linux 9; Red Hat Enterprise Linux 10. Affected products named by the advisory: Red Hat Enterprise Linux 8.
High [CVE-2026-86404] Artemis-server: artemis-jms-client: artemis-core-client: undertow-core: wildfly-messaging-activemq-subsystem: artemis messaging handlers in red hat eap permit deserialization by default
EAP's Artemis deserialization configuration permits deserialization by default. ObjectMessage.getObject() uses ObjectInputStreamWithClassLoader, which implements allow-list/block-list filtering via its checkSecurity()/isTrustedType() method. However, by default both allow-list and block-list are empty. When the allow-list is empty (size == 0), isTrustedType() returns true for ALL classes. This means all classes are deserializable by default. Red Hat severity: Important — CVSS 8.8 (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H). Weakness: CWE-502. Affected Red Hat products: Red Hat JBoss Enterprise Application Platform 7.4 ELS on RHEL 7; Red Hat JBoss Enterprise Application Platform 7; Red Hat JBoss Enterprise Application Platform 8. Red Hat lists Red Hat AMQ Broker 7; Red Hat build of Apache Camel 4 for Quarkus 3; Red Hat build of Apache Camel for Spring Boot 4 as not affected. Red Hat fixing advisory: RHSA-2026:53644.
High [CVE-2026-19204] org.eclipse.jetty.websocket/websocket-core-common: Jetty: Denial of Service via crafted WebSocket frame with unknown opcode
org.eclipse.jetty.websocket/websocket-core-common: Jetty: Denial of Service via crafted WebSocket frame with unknown opcode. Red Hat rates this important (CVSS 7.5). Weakness: CWE-789. Affected products named by the advisory: Red Hat Enterprise Linux 9; Red Hat Satellite 6; Red Hat package: jmc.
High [CVE-2026-84732] Remote Denial of Service via crafted ACK packets
Remote Denial of Service via crafted ACK packets. Red Hat rates this important (CVSS 7.5). Weakness: CWE-190.
High [CVE-2026-84256] Arbitrary command execution via crafted certificate subject
Arbitrary command execution via crafted certificate subject. Red Hat rates this important (CVSS 8.8). Weakness: CWE-88.
High [CVE-2026-84226] Arbitrary Code Execution via Binary Planting on Windows
Arbitrary Code Execution via Binary Planting on Windows. Red Hat rates this important (CVSS 7.8). Weakness: CWE-426.
High [CVE-2026-78221] Memory corruption and information disclosure vulnerability
Memory corruption and information disclosure vulnerability. Red Hat rates this important (CVSS 7.5). Weakness: CWE-120.
High [CVE-2026-86250] Denial of Service via unbounded chunked cookie processing
Denial of Service via unbounded chunked cookie processing. Red Hat rates this important (CVSS 7.5). Weakness: CWE-606. Affected product named by the advisory: Red Hat OpenShift AI (RHOAI).
High [CVE-2026-0799] Out-of-bounds read and write vulnerability allows arbitrary memory access
Out-of-bounds read and write vulnerability allows arbitrary memory access. Red Hat rates this important (CVSS 8.7). Weakness: CWE-125. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; and 3 more. Affected products named by the advisory: Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; Red Hat package: libpcap.
High [CVE-2026-86145] Out-of-bounds write allows arbitrary code execution via crafted regular expressions
Out-of-bounds write allows arbitrary code execution via crafted regular expressions. Red Hat rates this important (CVSS 8.2). Weakness: CWE-787. Red Hat lists fixing advisory RHSA-2026:67534 with package pcre2-main-10.48-0.1.hum1. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat Hardened Images; and 5 more. Affected products named by the advisory: Red Hat OpenShift Container Platform 4; Red Hat package: mariadb10.11; Red Hat package: mariadb11.8; Red Hat package: mingw-pcre2; and 1 more.
High [CVE-2026-86140] Arbitrary code execution via stack-based buffer overflow in xmlSnprintfElements
Arbitrary code execution via stack-based buffer overflow in xmlSnprintfElements. Red Hat rates this important (CVSS 7.4). Weakness: CWE-120. Red Hat lists fixing advisory RHSA-2026:64463 with package libxml2-0:2.12.5-10.el10_2.4, libxml2-0:2.9.13-14.el9_8.5, libxml2-0:2.9.7-21.el8_10.9, libxml2-main-2.15.4-0.1.hum1. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat Enterprise Linux 8.
High [CVE-2026-85781] github.com/kubernetes-sigs/aws-efs-csi-driver: Amazon EFS CSI Driver: Unauthorized directory deletion via unverified access point ownership
github.com/kubernetes-sigs/aws-efs-csi-driver: Amazon EFS CSI Driver: Unauthorized directory deletion via unverified access point ownership. Red Hat rates this important (CVSS 7.7). Weakness: CWE-639. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.
High [CVE-2026-19534] Denial of Service via unrequested WebSocket subprotocol
Denial of Service via unrequested WebSocket subprotocol. Red Hat rates this important (CVSS 7.5). Weakness: CWE-476. Red Hat lists fixing advisory RHSA-2026:69248 with package nodejs26-main-26.8.2-0.1.hum1, grafana12-4-main-12.4.10-0.2.hum1, rhdh/rhdh-hub-rhel9:1789554285. Affected products named by the advisory: Red Hat Hardened Images; Exploit Intelligence; OpenShift Pipelines; Red Hat Build of Podman Desktop; and 14 more. Affected products named by the advisory: Red Hat Developer Hub; Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 10 more.
High [CVE-2026-84961] TLS certificate validation bypass in BalancedPool via dropped connect options
TLS certificate validation bypass in BalancedPool via dropped connect options. Red Hat rates this important (CVSS 7.4). Weakness: CWE-295. Red Hat lists fixing advisory RHSA-2026:69248 with package nodejs26-main-26.8.2-0.1.hum1, nodejs24-main-11.16.0-1.24.18.1.0.2.2.hum1, grafana12-4-main-12.4.10-0.2.hum1, rhdh/rhdh-hub-rhel9:1789554285. Affected products named by the advisory: Red Hat Hardened Images; Exploit Intelligence; OpenShift Pipelines; Red Hat Build of Podman Desktop; and 14 more. Affected products named by the advisory: Red Hat Developer Hub; Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 10 more.
High [CVE-2026-85152] Authentication bypass via cross-origin cache poisoning due to missing origin isolation
Authentication bypass via cross-origin cache poisoning due to missing origin isolation. Red Hat rates this important (CVSS 7.4). Weakness: CWE-346. Red Hat lists fixing advisory RHSA-2026:63782 with package grafana12-4-main-12.4.9-0.6.hum1, nodejs24-main-11.16.0-1.24.18.1.0.2.2.hum1, nodejs26-main-26.7.0-1.5.2.hum1. Affected products named by the advisory: Red Hat Hardened Images; Exploit Intelligence; OpenShift Pipelines; Red Hat AMQ Broker 7; and 15 more. Affected products named by the advisory: Red Hat Build of Podman Desktop; Red Hat Developer Hub; Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; and 11 more.
High [CVE-2026-85730] Denial of Service via malformed TOML documents
Denial of Service via malformed TOML documents. Red Hat rates this important (CVSS 7.5). Weakness: CWE-835. Affected products named by the advisory: Red Hat Build of Podman Desktop; Red Hat Enterprise Linux 10; Red Hat OpenShift AI (RHOAI); Red Hat package: cockpit-image-builder.
High [CVE-2026-85666] Information disclosure via Server-Side Request Forgery in MCP tool server_url
Information disclosure via Server-Side Request Forgery in MCP tool server_url. Red Hat rates this important (CVSS 7.5). Weakness: CWE-918. Affected products named by the advisory: Lightspeed Core; Red Hat OpenShift AI (RHOAI).
High [CVE-2026-85664] Denial of service via unbounded HNSW index parameters.
A flaw was found in Chroma. Unauthenticated attackers can exploit this vulnerability by providing excessively large parameters during collection creation. This can lead to the exhaustion of server memory, resulting in a denial of service during index compaction. Red Hat severity: Important — CVSS 7.5 (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H). Weakness: CWE-1284. Red Hat lists Multicluster Global Hub; Red Hat Advanced Cluster Management for Kubernetes 2; Red Hat Hardened Images; Red Hat OpenShift GitOps; Red Hat OpenStack Platform 18.0 as not affected.
High [CVE-2026-85625] sift 17.1.3 Prototype Pollution Remote Code Execution via $where
sift 17.1.3 Prototype Pollution Remote Code Execution via $where. Red Hat rates this important (CVSS 8.1). Weakness: CWE-94. Affected product named by the advisory: Red Hat Ansible Automation Platform 2.
High [CVE-2026-85623] Arbitrary Command Execution via Recipe Extensions
Arbitrary Command Execution via Recipe Extensions. Red Hat rates this important (CVSS 8.8). Weakness: CWE-78.