Red Hat Linux Security Advisories & CVEs
5810 advisories tracked · Red Hat Security Data API · direct feeds checked every minute; rate-limited backstops use a safe source cadence
Android app · Google Play
Monitor Red Hat CVEs from your phone.
Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 34 official vendor sources and 160+ reviewed platform categories.
Security advisories for your Red Hat release
Pick your distribution release to see every advisory issued for it and its severity mix. Fixes ship as errata — keep the system patched. This is the release's advisory history, not a per-package scan.
Official source
Red Hat Security Data API
Red Hat Enterprise Linux errata (RHSA) via the official Red Hat Security Data API — CVE severity, CVSS and affected packages. A credential-free official source.
Latest Red Hat advisories
Medium [CVE-2026-88265] /dev/null symlink follow during stdio reopen allows host bind-mount write and chown
/dev/null symlink follow during stdio reopen allows host bind-mount write and chown. Red Hat rates this moderate (CVSS 5.6). Weakness: CWE-59. Affected product named by the advisory: Red Hat Hardened Images. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4.
Medium [CVE-2026-80919] fix recursive ww_mutex acquire in amdgpu_devcoredump_format
fix recursive ww_mutex acquire in amdgpu_devcoredump_format. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-833. Affected products named by the advisory: Red Hat Enterprise Linux 6; Red Hat package: kernel.
Medium [CVE-2026-87053] Final container image runs as root (USER root never reverted)
Final container image runs as root (USER root never reverted). Red Hat rates this moderate (CVSS 4.2). Weakness: CWE-250.
Medium [CVE-2026-87054] containers-policy.json defaults to insecureAcceptAnything for non-Red Hat registries
containers-policy.json defaults to insecureAcceptAnything for non-Red Hat registries. Red Hat rates this moderate (CVSS 4.2). Weakness: CWE-345.
Medium [CVE-2026-87050] GitHub Actions and reusable workflow not pinned to commit SHA
GitHub Actions and reusable workflow not pinned to commit SHA. Red Hat rates this moderate (CVSS 4.2). Weakness: CWE-829.
Medium [CVE-2026-87057] Runtime base images referenced by mutable floating tags
Runtime base images referenced by mutable floating tags. Red Hat rates this moderate (CVSS 4.2). Weakness: CWE-829.
Medium [CVE-2026-87062] GitHub Actions referenced by mutable tag/branch instead of commit SHA
GitHub Actions referenced by mutable tag/branch instead of commit SHA. Red Hat rates this moderate (CVSS 4.2). Weakness: CWE-829.
Medium [CVE-2026-58649] .NET Information Disclosure Vulnerability
.NET Information Disclosure Vulnerability. Red Hat rates this moderate (CVSS 6.5). Weakness: CWE-346. Red Hat lists fixing advisory RHSA-2026:68316 with package dotnet9.0-0:9.0.121-1.el9_8, dotnet10.0-0:10.0.112-1.el9_8, dotnet9.0-0:9.0.121-1.el8_10, dotnet8.0-0:8.0.131-1.el8_10. Affected products named by the advisory: Red Hat Enterprise Linux 9; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 10.
Medium [CVE-2026-74859] Gnome-tweaks: path traversal in theme installer
The shell theme installer in gnome-tweaks extracts user-supplied ZIP archives without validating archive member paths. As a result, a crafted theme archive can write files outside ~/.themes by using../ path traversal, absolute paths, or symlink entries. This vulnerability is rated Moderate because it requires a user to actively install a specially crafted GNOME Shell theme via the `gnome-tweaks` utility. Exploitation is not possible without user interaction and the deliberate installation of a malicious theme, limiting the attack surface in typical Red Hat desktop environments. Red Hat severity: Moderate — CVSS 6.8 (CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:H/A:H). Weakness: CWE-22. Affected Red Hat products: Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9. Red Hat does not currently list a fixing RHSA for this CVE. Affected products named by the advisory: Red Hat package: gnome-tweaks.
Medium [CVE-2026-86512] java-json-tools json-patch: Improper Access Control in Copy/Move Operations
java-json-tools json-patch: Improper Access Control in Copy/Move Operations. Red Hat rates this moderate (CVSS 6.3). Weakness: CWE-281. Affected products named by the advisory: Red Hat build of Apicurio Registry 3; Red Hat build of Debezium 3; Red Hat Build of Keycloak; Red Hat build of Quarkus; and 1 more. Affected products named by the advisory: Red Hat Fuse 7.
Medium [CVE-2026-86469] TOCTOU Symlink Race in `G_FILE_CREATE_REPLACE_DESTINATION` Fallback Path
TOCTOU Symlink Race in `G_FILE_CREATE_REPLACE_DESTINATION` Fallback Path. Red Hat rates this moderate (CVSS 5.3). Weakness: CWE-59. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; and 5 more. Affected products named by the advisory: Red Hat Enterprise Linux 9; Red Hat Hardened Images; Red Hat OpenShift Container Platform 4; Red Hat package: glib2; and 1 more.
Medium [CVE-2026-86321] java-json-tools jackson-coreutils: Server-Side Request Forgery via JsonLoader.fromURL
java-json-tools jackson-coreutils: Server-Side Request Forgery via JsonLoader.fromURL. Red Hat rates this moderate (CVSS 5.3). Weakness: CWE-918. Affected products named by the advisory: Red Hat Fuse 7; Red Hat JBoss Enterprise Application Platform 7; Red Hat JBoss Enterprise Application Platform 8; Red Hat JBoss Enterprise Application Platform Expansion Pack; and 1 more. Affected products named by the advisory: Red Hat Single Sign-On 7.
Medium [CVE-2026-86319] java-json-tools json-patch: Resource Consumption Vulnerability
A vulnerability has been found in java-json-tools json-patch up to 1.13. Affected by this vulnerability is the function JsonPatch.apply of the file src/main/java/com/github/fge/jsonpatch/JsonPatch.java of the component Patch Operation Handler. The manipulation leads to resource consumption. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The project was informed of the problem early through an issue report but has not responded yet. By manipulating input, an attacker can cause excessive resource consumption, leading to a Denial of Service (DoS) condition. An attacker can craft a malicious JSON Patch document containing deeply nested structures, excessively large arrays, or recursive references that cause the parser to enter an infinite loop or allocate memory exponentially, leading to CPU or memory exhaustion and denial of service. This vulnerability can be exploited remotely and does not require authentication. As of September 2026, the project maintainers have not responded to vulnerability reports and no patch is currently available. This issue affects Red Hat products that bundle vulnerable versions of json-patch. Red Hat severity: Moderate — CVSS 5.3 (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L). Weakness: CWE-606.
Medium [CVE-2026-86318] java-json-tools json-patch: Remote stack-based buffer overflow via JSON manipulation
java-json-tools json-patch: Remote stack-based buffer overflow via JSON manipulation. Red Hat rates this moderate (CVSS 5.3). Weakness: CWE-120. Affected products named by the advisory: Red Hat build of Apicurio Registry 3; Red Hat build of Debezium 3; Red Hat Build of Keycloak; Red Hat build of Quarkus; and 1 more. Affected products named by the advisory: Red Hat Fuse 7.
Medium [CVE-2026-86308] light0011 cms: Information disclosure via Debug Mode configuration
light0011 cms: Information disclosure via Debug Mode configuration. Red Hat rates this moderate (CVSS 5.3). Weakness: CWE-215.
Medium [CVE-2026-16456 +2] NIM credential Secret readable by any authenticated user
NIM credential Secret readable by any authenticated user. Red Hat rates this moderate (CVSS 6.5). Weakness: CWE-862. Affected product named by the advisory: Red Hat OpenShift AI (RHOAI).
Medium [CVE-2026-78254] Arbitrary file write via path traversal in ftp and scp tasks
Arbitrary file write via path traversal in ftp and scp tasks. Red Hat rates this moderate (CVSS 6.8). Weakness: CWE-22. Affected products named by the advisory: Migration Toolkit for Applications 8; OpenShift Developer Tools and Services; Red Hat build of Apicurio Registry 3; Red Hat Enterprise Linux 10; and 23 more. Affected products named by the advisory: Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 19 more.
Medium [CVE-2026-82312] Denial of service via NULL DACL on named IPC objects
Denial of service via NULL DACL on named IPC objects. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-279.
Medium [CVE-2026-81830] Security Bypass via incorrect file path validation
Security Bypass via incorrect file path validation. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-22.
Medium [CVE-2026-81738] Out-of-bounds write via crafted DOMAIN-SEARCH entries
Out-of-bounds write via crafted DOMAIN-SEARCH entries. Red Hat rates this low (CVSS 4.2). Weakness: CWE-787.