Skip to content
VulniPulse

Red Hat Linux Security Advisories & CVEs

11217 advisories tracked · Red Hat Security Data API · direct feeds checked every minute; rate-limited backstops use a safe source cadence

Android app · Google Play

Monitor Red Hat CVEs from your phone.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.

Security advisories for your Red Hat release

Pick your distribution release to see every advisory issued for it and its severity mix. Fixes ship as errata — keep the system patched. This is the release's advisory history, not a per-package scan.

Official source

Red Hat Security Data API

Red Hat Enterprise Linux errata (RHSA) via the official Red Hat Security Data API — CVE severity, CVSS and affected packages. A credential-free official source.

Latest Red Hat advisories

Medium5.9Red Hat

Medium [CVE-2026-86248] OCSP checks sometimes soft-fail with FFM even when soft-fail is disabled

OCSP checks sometimes soft-fail with FFM even when soft-fail is disabled. Red Hat rates this moderate (CVSS 5.9). Weakness: CWE-303. Red Hat lists fixing advisory RHSA-2026:68257 with package tomcat11-main-11.0.26-0.1.hum1, tomcat10-main-10.1.60-0.1.hum1. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat Hardened Images; Red Hat package: tomcat9.

CVE-2026-86248
Red Hat Enterprise Linux
Sep 23, 2026
Medium5.3Vendor: LowRed Hat Updated

Medium [CVE-2026-78437] Denial of Service via malformed HTTP/2 request

Denial of Service via malformed HTTP/2 request. Red Hat rates this low (CVSS 5.3). Weakness: CWE-459. Red Hat lists fixing advisory RHSA-2026:68257 with package tomcat11-main-11.0.26-0.1.hum1, tomcat10-main-10.1.60-0.1.hum1. Affected products named by the advisory: Red Hat Hardened Images; Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; and 5 more. Affected products named by the advisory: Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat JBoss Web Server 7; Red Hat package: tomcat9; and 1 more.

CVE-2026-78437
Red Hat Enterprise Linux
Sep 23, 2026
Medium6.5Vendor: LowRed Hat Updated

Medium [CVE-2026-77762] Race condition allows HTTP/2 request manipulation

Race condition allows HTTP/2 request manipulation. Red Hat rates this low (CVSS 6.5). Weakness: CWE-821. Red Hat lists fixing advisory RHSA-2026:68257 with package tomcat11-main-11.0.26-0.1.hum1, tomcat10-main-10.1.60-0.1.hum1. Affected products named by the advisory: Red Hat Hardened Images; Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; and 8 more. Affected products named by the advisory: Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat JBoss Web Server 5; Red Hat JBoss Web Server 6; and 4 more.

CVE-2026-77762
Red Hat Enterprise Linux
Sep 23, 2026
Medium5.3Vendor: LowRed Hat Updated

Medium [CVE-2026-77756] Request smuggling vulnerability can lead to denial of service

Request smuggling vulnerability can lead to denial of service. Red Hat rates this low (CVSS 5.3). Weakness: CWE-444. Red Hat lists fixing advisory RHSA-2026:68257 with package tomcat11-main-11.0.26-0.1.hum1, tomcat10-main-10.1.60-0.1.hum1. Affected products named by the advisory: Red Hat Hardened Images; Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; and 8 more. Affected products named by the advisory: Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat JBoss Web Server 5; Red Hat JBoss Web Server 6; and 4 more.

CVE-2026-77756
Red Hat Enterprise Linux
Sep 23, 2026
Medium6.8Red Hat

Medium [CVE-2026-96445] Conditional OTP skip-header policy evaluated against untrusted proxy headers

Conditional OTP skip-header policy evaluated against untrusted proxy headers. Red Hat rates this moderate (CVSS 6.8). Weakness: CWE-287. Affected product named by the advisory: Red Hat Build of Keycloak.

CVE-2026-96445
Unclassified
Sep 23, 2026
Medium6.5Red Hat Updated

Medium [CVE-2026-73581] TLS implementations ignore Certificate Revocation Lists

TLS implementations ignore Certificate Revocation Lists. Red Hat rates this moderate (CVSS 6.5). Weakness: CWE-295. Red Hat lists fixing advisory RHSA-2026:68257 with package tomcat11-main-11.0.26-0.1.hum1, tomcat10-main-10.1.60-0.1.hum1. Affected products named by the advisory: Red Hat Hardened Images; Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 5 more. Affected products named by the advisory: Red Hat JBoss Web Server 5; Red Hat JBoss Web Server 6; Red Hat JBoss Web Server 7; Red Hat package: tomcat9; and 1 more.

CVE-2026-73581
Red Hat Enterprise Linux
Sep 23, 2026
Medium4.2Red Hat

Medium [CVE-2026-96446] PAR single-use bypass via prompt=none silent authentication path

PAR single-use bypass via prompt=none silent authentication path. Red Hat rates this moderate (CVSS 4.2). Weakness: CWE-862. Affected product named by the advisory: Red Hat Build of Keycloak.

CVE-2026-96446
Unclassified
Sep 23, 2026
Medium4.4Red Hat

Medium [CVE-2026-79616] Denial of Service due to out-of-bounds read in SVG path parsing.

Denial of Service due to out-of-bounds read in SVG path parsing. Red Hat rates this moderate (CVSS 4.4). Weakness: CWE-125. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 2 more. Affected products named by the advisory: Red Hat package: qt6-qtdeclarative; Red Hat package: qt5-qtdeclarative.

CVE-2026-79616
Red Hat Enterprise Linux
Sep 23, 2026
Medium6.6Red Hat Updated

Medium [CVE-2026-82331] Arbitrary file write via symlinks in tar source plugin

Arbitrary file write via symlinks in tar source plugin. Red Hat rates this moderate (CVSS 6.6). Weakness: CWE-59.

CVE-2026-82331
Unclassified
Sep 23, 2026
Medium5.5Red Hat

Medium [CVE-2026-95897] Deserialization vulnerability in Loader component

Deserialization vulnerability in Loader component. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-502. Affected product named by the advisory: Red Hat OpenShift AI (RHOAI).

CVE-2026-95897
Unclassified
Sep 23, 2026
Medium5.0Red Hat

Medium [CVE-2026-84643] missing use_role authorization on the project signature validation credential foreign key allows a project administrator to bind and use another organization's credential cross-tenant

missing use_role authorization on the project signature validation credential foreign key allows a project administrator to bind and use another organization's credential cross-tenant. Red Hat rates this moderate (CVSS 5). Weakness: CWE-639. Red Hat lists fixing advisory RHSA-2026:71177 with package ansible-automation-platform-27/controller-rhel9:1789580684, automation-controller-0:4.7.17-1.el9ap, automation-controller-0:4.6.33-1.el9ap, automation-controller-0:4.6.33-1.el8ap. Affected products named by the advisory: Red Hat Ansible Automation Platform 2.5 for RHEL 8; Red Hat Ansible Automation Platform 2.5 for RHEL 9; Red Hat Ansible Automation Platform 2.6 for RHEL 9; Red Hat Ansible Automation Platform 2.7.

CVE-2026-84643
Unclassified
Sep 23, 2026
Medium4.1Red Hat

Medium [CVE-2026-84680] organization galaxy credential attachment checks only read permission on the credential, allowing an organization admin with read-only visibility to bind and server-side-use another tenant's Automa…

organization galaxy credential attachment checks only read permission on the credential, allowing an organization admin with read-only visibility to bind and server-side-use another tenant's Automation Hub API token. Red Hat rates this moderate (CVSS 4.1). Weakness: CWE-863. Red Hat lists fixing advisory RHSA-2026:71177 with package ansible-automation-platform-27/controller-rhel9:1789580684, automation-controller-0:4.7.17-1.el9ap, automation-controller-0:4.6.33-1.el9ap, automation-controller-0:4.6.33-1.el8ap. Affected products named by the advisory: Red Hat Ansible Automation Platform 2.5 for RHEL 8; Red Hat Ansible Automation Platform 2.5 for RHEL 9; Red Hat Ansible Automation Platform 2.6 for RHEL 9; Red Hat Ansible Automation Platform 2.7.

CVE-2026-84680
Unclassified
Sep 23, 2026
Medium6.8Red Hat

Medium [CVE-2026-84703] execution environment credential foreign key is not use-permission checked, allowing an organization execution-environment admin to bind and disclose another organization's container registry crede…

execution environment credential foreign key is not use-permission checked, allowing an organization execution-environment admin to bind and disclose another organization's container registry credential (cross-tenant credential disclosure). Red Hat rates this moderate (CVSS 6.8). Weakness: CWE-639. Red Hat lists fixing advisory RHSA-2026:71177 with package ansible-automation-platform-27/controller-rhel9:1789580684, automation-controller-0:4.7.17-1.el9ap, automation-controller-0:4.6.33-1.el9ap, automation-controller-0:4.6.33-1.el8ap. Affected products named by the advisory: Red Hat Ansible Automation Platform 2.5 for RHEL 8; Red Hat Ansible Automation Platform 2.5 for RHEL 9; Red Hat Ansible Automation Platform 2.6 for RHEL 9; Red Hat Ansible Automation Platform 2.7.

CVE-2026-84703
Unclassified
Sep 23, 2026
Medium6.5Red Hat

Medium [CVE-2026-84707] host_filter SmartFilter ORM traversal exposes JobEvent/AdHocCommandEvent event_data and stdout to users without permission on the job, enabling blind character-by-character extraction of job output…

host_filter SmartFilter ORM traversal exposes JobEvent/AdHocCommandEvent event_data and stdout to users without permission on the job, enabling blind character-by-character extraction of job output (cross-tenant information disclosure). Red Hat rates this moderate (CVSS 6.5). Weakness: CWE-639. Red Hat lists fixing advisory RHSA-2026:71177 with package ansible-automation-platform-27/controller-rhel9:1789580684, automation-controller-0:4.7.17-1.el9ap, automation-controller-0:4.6.33-1.el9ap, automation-controller-0:4.6.33-1.el8ap. Affected products named by the advisory: Red Hat Ansible Automation Platform 2.5 for RHEL 8; Red Hat Ansible Automation Platform 2.5 for RHEL 9; Red Hat Ansible Automation Platform 2.6 for RHEL 9; Red Hat Ansible Automation Platform 2.7.

CVE-2026-84707
Unclassified
Sep 23, 2026
Medium4.9Red Hat

Medium [CVE-2026-84709] CredentialType injector validation renders attacker-supplied Jinja2 templates synchronously in the web worker, allowing uncontrolled resource consumption (denial of service) and an unhandled-except…

CredentialType injector validation renders attacker-supplied Jinja2 templates synchronously in the web worker, allowing uncontrolled resource consumption (denial of service) and an unhandled-exception (500) via /api/controller/v2/credential_types/. Red Hat rates this moderate (CVSS 4.9). Weakness: CWE-1050. Red Hat lists fixing advisory RHSA-2026:71177 with package ansible-automation-platform-27/controller-rhel9:1789580684, automation-controller-0:4.7.17-1.el9ap, automation-controller-0:4.6.33-1.el9ap, automation-controller-0:4.6.33-1.el8ap. Affected products named by the advisory: Red Hat Ansible Automation Platform 2.5 for RHEL 8; Red Hat Ansible Automation Platform 2.5 for RHEL 9; Red Hat Ansible Automation Platform 2.6 for RHEL 9; Red Hat Ansible Automation Platform 2.7.

CVE-2026-84709
Unclassified
Sep 23, 2026
Low2.5Red Hat

Low [CVE-2026-96546] one-byte out-of-bounds heap read in the uncompressed DDS loader

one-byte out-of-bounds heap read in the uncompressed DDS loader. Red Hat rates this low (CVSS 2.5). Weakness: CWE-125. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; and 2 more. Affected products named by the advisory: Red Hat Enterprise Linux 9; Red Hat package: gimp.

CVE-2026-96546
Red Hat Enterprise Linux
Sep 23, 2026
Low3.1Red Hat

Low [CVE-2026-71465] Ad-hoc command limit field allows CLI argument injection into ansible executable

RunAdHocCommand.build_args() appends limit as bare positional (args.append(limit)) instead of using args.extend(['-l', limit]) like RunJob. A limit beginning with - is parsed as an ansible CLI option. Currently limited to short-circuit flags (--version, --help) since injected element displaces required pattern positional. Would escalate if ansible-core ever defaults pattern. Red Hat severity: Low — CVSS 3.1 (CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:N). Weakness: CWE-88. Affected Red Hat products: Red Hat Ansible Automation Platform 2.5 for RHEL 8; Red Hat Ansible Automation Platform 2.5 for RHEL 9; Red Hat Ansible Automation Platform 2.6 for RHEL 9; Red Hat Ansible Automation Platform 2.6; Red Hat Ansible Automation Platform 2.7. Red Hat fixing advisory: RHSA-2026:71114, RHSA-2026:71113, RHSA-2026:71179, RHSA-2026:71177.

CVE-2026-71465
Unclassified
Sep 23, 2026
Low3.1Red Hat

Low [CVE-2026-71464] Schedule and WorkflowJobTemplateNode scm_branch prompt bypasses leading-dash git-argument guard

LaunchConfigurationBaseSerializer.scm_branch has no validate_scm_branch() leading-dash check, unlike Project/JobTemplate/JobLaunch serializers. Schedule and WFJT Node accept --upload-pack=/bin/id as scm_branch. Currently blocked at runtime by jobs.py:1502 ValueError check (defense-in-depth), but the API validation gap means sole reliance on a task-layer guard. Refactoring that guard away would promote this to RCE. Red Hat severity: Low — CVSS 3.1 (CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:N). Weakness: CWE-88. Affected Red Hat products: Red Hat Ansible Automation Platform 2.5 for RHEL 8; Red Hat Ansible Automation Platform 2.5 for RHEL 9; Red Hat Ansible Automation Platform 2.6 for RHEL 9; Red Hat Ansible Automation Platform 2.6; Red Hat Ansible Automation Platform 2.7. Red Hat fixing advisory: RHSA-2026:71114, RHSA-2026:71113, RHSA-2026:71179, RHSA-2026:71177.

CVE-2026-71464
Unclassified
Sep 23, 2026
Low2.7Red Hat

Low [CVE-2026-71463] Notification template Jinja whitelist bypass via conditional gating leaks tracebacks

Notification template Jinja AST whitelist only inspects static Getattr nodes. Dynamic subscripts (job['job'+'_env']) and {% if job.id > 100 %} conditional gating bypass both the AST check and the test-render (stub has small job.id). At runtime, the gated branch executes and exceptions write full tracebacks into notification body, which is POSTed to attacker-controlled webhook URL. Leaks install paths, Python version, source line numbers. Red Hat severity: Low — CVSS 2.7 (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N). Weakness: CWE-209. Affected Red Hat products: Red Hat Ansible Automation Platform 2.5 for RHEL 8; Red Hat Ansible Automation Platform 2.5 for RHEL 9; Red Hat Ansible Automation Platform 2.6 for RHEL 9; Red Hat Ansible Automation Platform 2.6; Red Hat Ansible Automation Platform 2.7. Red Hat fixing advisory: RHSA-2026:71114, RHSA-2026:71113, RHSA-2026:71179, RHSA-2026:71177.

CVE-2026-71463
Unclassified
Sep 23, 2026
Low3.3Red Hat

Low [CVE-2026-88841] dpkg write_status_file stale cursor causes out-of-bounds read and status file corruption

dpkg write_status_file() stale cursor causes out-of-bounds read and status file corruption. Red Hat rates this low (CVSS 3.3). Weakness: CWE-125. Red Hat lists fixing advisory RHSA-2026:73514 with package busybox-main-1.37.0-9.2.hum1. Affected product named by the advisory: Red Hat Hardened Images.

CVE-2026-88841
Unclassified
Sep 23, 2026

← All vendors