Skip to content
VulniPulse

Red Hat Linux Security Advisories & CVEs

3200 advisories tracked · Red Hat Security Data API · direct feeds checked every minute; rate-limited backstops use a safe source cadence

Android app · Google Play

Monitor Red Hat CVEs from your phone.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.

Security advisories for your Red Hat release

Pick your distribution release to see every advisory issued for it and its severity mix. Fixes ship as errata — keep the system patched. This is the release's advisory history, not a per-package scan.

Official source

Red Hat Security Data API

Red Hat Enterprise Linux errata (RHSA) via the official Red Hat Security Data API — CVE severity, CVSS and affected packages. A credential-free official source.

Latest Red Hat advisories

Medium6.1Red Hat

Medium [CVE-2026-16387] Site isolation issue in the Networking component

Site isolation issue in the Networking component. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-501. Red Hat lists fixing advisory RHSA-2026:47101 with package firefox-0:140.13.0-1.el10_2, firefox-0:140.13.0-1.el8_10, firefox-0:140.13.0-1.el9_8, thunderbird-0:140.13.0-1.el10_2. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9.

CVE-2026-16387
Unclassified
Jul 21, 2026
Medium6.1Red Hat

Medium [CVE-2026-16386] Information disclosure due to uninitialized memory in the Graphics: WebGPU component

Information disclosure due to uninitialized memory in the Graphics: WebGPU component. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-824.

CVE-2026-16386
Unclassified
Jul 21, 2026
Medium6.1Red Hat

Medium [CVE-2026-16383] Mitigation bypass in the DOM: Networking component

Mitigation bypass in the DOM: Networking component. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-807. Red Hat lists fixing advisory RHSA-2026:47101 with package firefox-0:140.13.0-1.el10_2, firefox-0:140.13.0-1.el8_10, firefox-0:140.13.0-1.el9_8, thunderbird-0:140.13.0-1.el10_2. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9.

CVE-2026-16383
Unclassified
Jul 21, 2026
Medium6.1Red Hat

Medium [CVE-2026-16382] Mitigation bypass in the DOM: Service Workers component

Mitigation bypass in the DOM: Service Workers component. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-807.

CVE-2026-16382
Unclassified
Jul 21, 2026
Medium6.1Red Hat

Medium [CVE-2026-16381] Same-origin policy bypass in the Networking: DNS component

Same-origin policy bypass in the Networking: DNS component. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-346. Red Hat lists fixing advisory RHSA-2026:47101 with package firefox-0:140.13.0-1.el10_2, firefox-0:140.13.0-1.el8_10, firefox-0:140.13.0-1.el9_8, thunderbird-0:140.13.0-1.el10_2. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9.

CVE-2026-16381
Unclassified
Jul 21, 2026
Medium6.1Red Hat

Medium [CVE-2026-16380] Mitigation bypass in the Networking component

Mitigation bypass in the Networking component. Red Hat rates this moderate (CVSS 6.1).

CVE-2026-16380
Unclassified
Jul 21, 2026
Medium6.1Red Hat

Medium [CVE-2026-16358] Site isolation issue in the Graphics: WebRender component

Site isolation issue in the Graphics: WebRender component. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-368. Red Hat lists fixing advisory RHSA-2026:47101 with package firefox-0:140.13.0-1.el10_2, firefox-0:140.13.0-1.el8_10, firefox-0:140.13.0-1.el9_8, thunderbird-0:140.13.0-1.el10_2. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9.

CVE-2026-16358
Unclassified
Jul 21, 2026
Medium6.1Red Hat

Medium [CVE-2026-16379] Privilege escalation in the DOM: Content Processes component

Privilege escalation in the DOM: Content Processes component. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-653. Red Hat lists fixing advisory RHSA-2026:47101 with package firefox-0:140.13.0-1.el10_2, firefox-0:140.13.0-1.el8_10, firefox-0:140.13.0-1.el9_8, thunderbird-0:140.13.0-1.el10_2. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9.

CVE-2026-16379
Unclassified
Jul 21, 2026
Medium6.1Red Hat

Medium [CVE-2026-16377] Mitigation bypass in the PDF Viewer component

Mitigation bypass in the PDF Viewer component. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-358. Red Hat lists fixing advisory RHSA-2026:47101 with package firefox-0:140.13.0-1.el10_2, firefox-0:140.13.0-1.el8_10, firefox-0:140.13.0-1.el9_8, thunderbird-0:140.13.0-1.el10_2. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9.

CVE-2026-16377
Unclassified
Jul 21, 2026
Medium6.1Red Hat

Medium [CVE-2026-16378] Other issue in the DOM: Copy & Paste and Drag & Drop component

Other issue in the DOM: Copy & Paste and Drag & Drop component. Red Hat rates this moderate (CVSS 6.1).

CVE-2026-16378
Unclassified
Jul 21, 2026
Medium6.1Red Hat

Medium [CVE-2026-16376] Denial-of-service in the Graphics: WebGPU component

Denial-of-service in the Graphics: WebGPU component. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-770.

CVE-2026-16376
Unclassified
Jul 21, 2026
Medium6.1Red Hat

Medium [CVE-2026-16375] Site isolation issue in the Networking: HTTP component

Site isolation issue in the Networking: HTTP component. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-653. Red Hat lists fixing advisory RHSA-2026:47101 with package firefox-0:140.13.0-1.el10_2, firefox-0:140.13.0-1.el8_10, firefox-0:140.13.0-1.el9_8, thunderbird-0:140.13.0-1.el10_2. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9.

CVE-2026-16375
Unclassified
Jul 21, 2026
Medium6.1Red Hat

Medium [CVE-2026-16374] Information disclosure in the Framework component in DevTools

Information disclosure in the Framework component in DevTools. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-215. Red Hat lists fixing advisory RHSA-2026:47101 with package firefox-0:140.13.0-1.el10_2, firefox-0:140.13.0-1.el8_10, firefox-0:140.13.0-1.el9_8, thunderbird-0:140.13.0-1.el10_2. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9.

CVE-2026-16374
Unclassified
Jul 21, 2026
Medium6.1Red Hat

Medium [CVE-2026-16373] Information disclosure in the Privacy component in Firefox for Android

Information disclosure in the Privacy component in Firefox for Android. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-201.

CVE-2026-16373
Unclassified
Jul 21, 2026
Medium6.1Red Hat

Medium [CVE-2026-16371] Privilege escalation in the DOM: Navigation component

Privilege escalation in the DOM: Navigation component. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-266. Red Hat lists fixing advisory RHSA-2026:47101 with package firefox-0:140.13.0-1.el10_2, firefox-0:140.13.0-1.el8_10, firefox-0:140.13.0-1.el9_8, thunderbird-0:140.13.0-1.el10_2. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9.

CVE-2026-16371
Unclassified
Jul 21, 2026
Medium6.1Red Hat

Medium [CVE-2026-16372] Privilege escalation in the DOM: Content Processes component

Privilege escalation in the DOM: Content Processes component. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-653.

CVE-2026-16372
Unclassified
Jul 21, 2026
Medium6.1Red Hat

Medium [CVE-2026-16370] Mitigation bypass in the DOM: Networking component

Mitigation bypass in the DOM: Networking component. Red Hat rates this moderate (CVSS 6.1).

CVE-2026-16370
Unclassified
Jul 21, 2026
Medium5.9Red Hat

Medium [CVE-2026-46968] Enhance TLS certificate handling (Oracle CPU 2026-07)

Enhance TLS certificate handling (Oracle CPU 2026-07). Red Hat rates this moderate (CVSS 5.9). Weakness: CWE-295. Red Hat lists fixing advisory RHSA-2026:50281 with package java-21-openjdk-1:21.0.12.0.8-1.1.el8, java-25-openjdk-main-25.0.4.0.7-1.1.1.hum1, java-21-openjdk-1:21.0.12.0.8-1.1.el9, java-25-openjdk-windows. Affected products named by the advisory: Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 7.

CVE-2026-46968
Unclassified
Jul 21, 2026
Medium6.5Red Hat

Medium [CVE-2026-16461] stack buffer overflow in rpcinfo rpcbdump short-mode version-list formatting

stack buffer overflow in rpcinfo rpcbdump() short-mode version-list formatting. Red Hat rates this moderate (CVSS 6.5). Weakness: CWE-121.

CVE-2026-16461
Unclassified
Jul 21, 2026
Medium6.5Red Hat

Medium [CVE-2026-59844] denial of service via oversized SFTP read length

denial of service via oversized SFTP read length. Red Hat rates this moderate (CVSS 6.5). Weakness: CWE-789. Red Hat lists fixing advisory RHSA-2026:42922 with package libssh-main-0.12.1-4.hum1. Affected products named by the advisory: Red Hat Hardened Images; Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9.

CVE-2026-59844
Red Hat Enterprise Linux
Jul 21, 2026

← All vendors