Skip to content
VulniPulse

Red Hat Linux Security Advisories & CVEs

5472 advisories tracked · Red Hat Security Data API · direct feeds checked every minute; rate-limited backstops use a safe source cadence

Android app · Google Play

Monitor Linux CVEs from your phone.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.

Security advisories for your Linux release

Pick your distribution release to see every advisory issued for it and its severity mix. Fixes ship as errata — keep the system patched. This is the release's advisory history, not a per-package scan.

Official source

Red Hat Security Data API

Red Hat Enterprise Linux errata (RHSA) via the official Red Hat Security Data API — CVE severity, CVSS and affected packages. A credential-free official source.

Latest Linux advisories

Medium6.1Linux

Medium [CVE-2026-16386] Information disclosure due to uninitialized memory in the Graphics: WebGPU component

Information disclosure due to uninitialized memory in the Graphics: WebGPU component. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-824.

CVE-2026-16386
Unclassified
Jul 21, 2026
Medium6.1Linux

Medium [CVE-2026-16383] Mitigation bypass in the DOM: Networking component

Mitigation bypass in the DOM: Networking component. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-807. Red Hat lists fixing advisory RHSA-2026:47101 with package firefox-0:140.13.0-1.el10_2, firefox-0:140.13.0-1.el8_10, firefox-0:140.13.0-1.el9_8, thunderbird-0:140.13.0-1.el10_2. Affected products named by the advisory: Red Hat Enterprise Linux 1; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9.

CVE-2026-16383
Red Hat Enterprise Linux
Jul 21, 2026
Medium6.1Linux

Medium [CVE-2026-16382] Mitigation bypass in the DOM: Service Workers component

Mitigation bypass in the DOM: Service Workers component. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-807.

CVE-2026-16382
Unclassified
Jul 21, 2026
Medium6.1Linux

Medium [CVE-2026-16381] Same-origin policy bypass in the Networking: DNS component

Same-origin policy bypass in the Networking: DNS component. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-346. Red Hat lists fixing advisory RHSA-2026:47101 with package firefox-0:140.13.0-1.el10_2, firefox-0:140.13.0-1.el8_10, firefox-0:140.13.0-1.el9_8, thunderbird-0:140.13.0-1.el10_2. Affected products named by the advisory: Red Hat Enterprise Linux 1; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9.

CVE-2026-16381
Red Hat Enterprise Linux
Jul 21, 2026
Medium6.1Linux

Medium [CVE-2026-16380] Mitigation bypass in the Networking component

Mitigation bypass in the Networking component. Red Hat rates this moderate (CVSS 6.1).

CVE-2026-16380
Unclassified
Jul 21, 2026
Medium6.1Linux

Medium [CVE-2026-16358] Site isolation issue in the Graphics: WebRender component

Site isolation issue in the Graphics: WebRender component. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-368. Red Hat lists fixing advisory RHSA-2026:47101 with package firefox-0:140.13.0-1.el10_2, firefox-0:140.13.0-1.el8_10, firefox-0:140.13.0-1.el9_8, thunderbird-0:140.13.0-1.el10_2. Affected products named by the advisory: Red Hat Enterprise Linux 1; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9.

CVE-2026-16358
Red Hat Enterprise Linux
Jul 21, 2026
Medium6.1Linux

Medium [CVE-2026-16379] Privilege escalation in the DOM: Content Processes component

Privilege escalation in the DOM: Content Processes component. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-653. Red Hat lists fixing advisory RHSA-2026:47101 with package firefox-0:140.13.0-1.el10_2, firefox-0:140.13.0-1.el8_10, firefox-0:140.13.0-1.el9_8, thunderbird-0:140.13.0-1.el10_2. Affected products named by the advisory: Red Hat Enterprise Linux 1; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9.

CVE-2026-16379
Red Hat Enterprise Linux
Jul 21, 2026
Medium6.1Linux Updated

Medium [CVE-2026-16377] Mitigation bypass in the PDF Viewer component

Mitigation bypass in the PDF Viewer component. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-358. Red Hat lists fixing advisory RHSA-2026:47101 with package firefox-0:140.13.0-1.el10_2, firefox-0:140.13.0-1.el8_10, firefox-0:140.13.0-1.el9_8, thunderbird-0:140.13.0-1.el10_2. Affected products named by the advisory: Red Hat Enterprise Linux 1; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9.

CVE-2026-16377
Red Hat Enterprise Linux
Jul 21, 2026
Medium6.1Linux

Medium [CVE-2026-16378] Other issue in the DOM: Copy & Paste and Drag & Drop component

Other issue in the DOM: Copy & Paste and Drag & Drop component. Red Hat rates this moderate (CVSS 6.1).

CVE-2026-16378
Unclassified
Jul 21, 2026
Medium6.1Linux

Medium [CVE-2026-16376] Denial-of-service in the Graphics: WebGPU component

Denial-of-service in the Graphics: WebGPU component. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-770.

CVE-2026-16376
Unclassified
Jul 21, 2026
Medium6.1Linux Updated

Medium [CVE-2026-16375] Site isolation issue in the Networking: HTTP component

Site isolation issue in the Networking: HTTP component. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-653. Red Hat lists fixing advisory RHSA-2026:47101 with package firefox-0:140.13.0-1.el10_2, firefox-0:140.13.0-1.el8_10, firefox-0:140.13.0-1.el9_8, thunderbird-0:140.13.0-1.el10_2. Affected products named by the advisory: Red Hat Enterprise Linux 1; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9.

CVE-2026-16375
Red Hat Enterprise Linux
Jul 21, 2026
Medium6.1Linux

Medium [CVE-2026-16374] Information disclosure in the Framework component in DevTools

Information disclosure in the Framework component in DevTools. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-215. Red Hat lists fixing advisory RHSA-2026:47101 with package firefox-0:140.13.0-1.el10_2, firefox-0:140.13.0-1.el8_10, firefox-0:140.13.0-1.el9_8, thunderbird-0:140.13.0-1.el10_2. Affected products named by the advisory: Red Hat Enterprise Linux 1; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9.

CVE-2026-16374
Red Hat Enterprise Linux
Jul 21, 2026
Medium6.1Linux

Medium [CVE-2026-16373] Information disclosure in the Privacy component in Firefox for Android

Information disclosure in the Privacy component in Firefox for Android. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-201.

CVE-2026-16373
Unclassified
Jul 21, 2026
Medium6.1Linux

Medium [CVE-2026-16371] Privilege escalation in the DOM: Navigation component

Privilege escalation in the DOM: Navigation component. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-266. Red Hat lists fixing advisory RHSA-2026:47101 with package firefox-0:140.13.0-1.el10_2, firefox-0:140.13.0-1.el8_10, firefox-0:140.13.0-1.el9_8, thunderbird-0:140.13.0-1.el10_2. Affected products named by the advisory: Red Hat Enterprise Linux 1; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9.

CVE-2026-16371
Red Hat Enterprise Linux
Jul 21, 2026
Medium6.1Linux

Medium [CVE-2026-16372] Privilege escalation in the DOM: Content Processes component

Privilege escalation in the DOM: Content Processes component. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-653.

CVE-2026-16372
Unclassified
Jul 21, 2026
Medium6.1Linux

Medium [CVE-2026-16370] Mitigation bypass in the DOM: Networking component

Mitigation bypass in the DOM: Networking component. Red Hat rates this moderate (CVSS 6.1).

CVE-2026-16370
Unclassified
Jul 21, 2026
Medium5.9Linux Updated

Medium [CVE-2026-46968] Enhance TLS certificate handling (Oracle CPU 2026-07)

Enhance TLS certificate handling (Oracle CPU 2026-07). Red Hat rates this moderate (CVSS 5.9). Weakness: CWE-295. Red Hat lists fixing advisory RHSA-2026:50281 with package java-21-openjdk-1:21.0.12.0.8-1.1.el8, java-21-openjdk-1:21.0.12.0.8-1.1.el9, java-25-openjdk-windows, java-11-openjdk-1:11.0.32.0.9-1.el9. Affected products named by the advisory: Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat Enterprise Linux 1; Red Hat Enterprise Linux 7.

CVE-2026-46968
Red Hat Enterprise Linux
Jul 21, 2026
Medium6.5Linux

Medium [CVE-2026-16461] stack buffer overflow in rpcinfo rpcbdump short-mode version-list formatting

stack buffer overflow in rpcinfo rpcbdump() short-mode version-list formatting. Red Hat rates this moderate (CVSS 6.5). Weakness: CWE-121.

CVE-2026-16461
Unclassified
Jul 21, 2026
Medium6.5Linux

Medium [CVE-2026-59844] denial of service via oversized SFTP read length

denial of service via oversized SFTP read length. Red Hat rates this moderate (CVSS 6.5). Weakness: CWE-789. Red Hat lists fixing advisory RHSA-2026:42922 with package libssh-main-0.12.1-4.hum1.

CVE-2026-59844
Unclassified
Jul 21, 2026
Medium5.3Linux

Medium [CVE-2026-59845] denial of service via unchecked ProxyCommand fork failure

denial of service via unchecked ProxyCommand fork() failure. Red Hat rates this moderate (CVSS 5.3). Red Hat lists fixing advisory RHSA-2026:42922 with package libssh-main-0.12.1-4.hum1.

CVE-2026-59845
Unclassified
Jul 21, 2026

← All vendors