CYBERSECURITYTRACKER
TRACKING3,612 stories653 vuln stories
Patch Day month

March 2026 vulnerabilities

A server-rendered hunting trail for March 2026: 1,512 returned patch records across 4 vendors. Browse page by page, or use “Load next” to keep adding rows without losing your place.

1,512all patches
60critical
0exploitation detected
2in CISA KEV
181tracked here
Red Hat 859Microsoft 460Android 136Cisco 57

Page 2 of 8 · records 201–400 of 1,512

Microsoft Security Response Center

CVEDateProductMSRC severityOut-of-bandEPSSTitle
CVE-2026-23381 ↗2026-03-26azl3 kernel 6.6.126.1-1 on Azure Linux 3.0ModerateOut-of-bandnet: bridge: fix nd_tbl NULL dereference when IPv6 is disabled
CVE-2026-23281 ↗2026-03-26azl3 kernel 6.6.126.1-1 on Azure Linux 3.0ImportantOut-of-bandwifi: libertas: fix use-after-free in lbs_free_adapter()
CVE-2026-23300 ↗2026-03-26azl3 kernel 6.6.126.1-1 on Azure Linux 3.0ImportantOut-of-bandnet: ipv6: fix panic when IPv4 route references loopback IPv6 nexthop
CVE-2026-23336 ↗2026-03-26azl3 kernel 6.6.126.1-1 on Azure Linux 3.0ImportantOut-of-bandwifi: cfg80211: cancel rfkill_block work in wiphy_unregister()
CVE-2026-23319 ↗2026-03-26azl3 kernel 6.6.126.1-1 on Azure Linux 3.0ModerateOut-of-bandbpf: Fix a UAF issue in bpf_trampoline_link_cgroup_shim
CVE-2026-23287 ↗2026-03-26azl3 kernel 6.6.126.1-1 on Azure Linux 3.0ImportantOut-of-bandirqchip/sifive-plic: Fix frozen interrupt due to affinity setting
CVE-2026-23357 ↗2026-03-26azl3 kernel 6.6.126.1-1 on Azure Linux 3.0ModerateOut-of-bandcan: mcp251x: fix deadlock in error path of mcp251x_open
CVE-2026-23291 ↗2026-03-26azl3 kernel 6.6.126.1-1 on Azure Linux 3.0ModerateOut-of-bandnfc: pn533: properly drop the usb interface reference on disconnect
CVE-2026-23308 ↗2026-03-26azl3 kernel 6.6.126.1-1 on Azure Linux 3.0ImportantOut-of-bandpinctrl: equilibrium: fix warning trace on load
CVE-2026-23386 ↗2026-03-26azl3 kernel 6.6.126.1-1 on Azure Linux 3.0ImportantOut-of-bandgve: fix incorrect buffer cleanup in gve_tx_clean_pending_packets for QPL
CVE-2026-23302 ↗2026-03-26azl3 kernel 6.6.126.1-1 on Azure Linux 3.0ModerateOut-of-bandnet: annotate data-races around sk->sk_{data_ready,write_space}
CVE-2026-23351 ↗2026-03-26azl3 kernel 6.6.126.1-1 on Azure Linux 3.0ImportantOut-of-bandnetfilter: nft_set_pipapo: split gc into unlink and reclaim phase
CVE-2026-23340 ↗2026-03-26azl3 kernel 6.6.126.1-1 on Azure Linux 3.0ImportantOut-of-bandnet: sched: avoid qdisc_reset_all_tx_gt() vs dequeue race for lockless qdiscs
CVE-2026-23371 ↗2026-03-26azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandsched/deadline: Fix missing ENQUEUE_REPLENISH during PI de-boosting
CVE-2026-23335 ↗2026-03-26azl3 kernel 6.6.126.1-1 on Azure Linux 3.0ImportantOut-of-bandRDMA/irdma: Fix kernel stack leak in irdma_create_user_ah()
CVE-2026-23298 ↗2026-03-26azl3 kernel 6.6.126.1-1 on Azure Linux 3.0ModerateOut-of-bandcan: ucan: Fix infinite loop from zero-length messages
CVE-2026-23339 ↗2026-03-26azl3 kernel 6.6.126.1-1 on Azure Linux 3.0ImportantOut-of-bandnfc: nci: free skb on nci_transceive early error paths
CVE-2026-23290 ↗2026-03-26azl3 kernel 6.6.126.1-1 on Azure Linux 3.0ModerateOut-of-bandnet: usb: pegasus: validate USB endpoints
CVE-2026-23320 ↗2026-03-26azl3 kernel 6.6.126.1-1 on Azure Linux 3.0ModerateOut-of-bandusb: gadget: f_ncm: align net_device lifecycle with bind/unbind
CVE-2026-23304 ↗2026-03-26azl3 kernel 6.6.126.1-1 on Azure Linux 3.0ModerateOut-of-bandipv6: fix NULL pointer deref in ip6_rt_get_dev_rcu()
CVE-2026-23303 ↗2026-03-26azl3 kernel 6.6.126.1-1 on Azure Linux 3.0ModerateOut-of-bandsmb: client: Don't log plaintext credentials in cifs_set_cifscreds
CVE-2026-23334 ↗2026-03-26azl3 kernel 6.6.126.1-1 on Azure Linux 3.0ModerateOut-of-bandcan: usb: f81604: handle short interrupt urb messages properly
CVE-2026-23352 ↗2026-03-26azl3 kernel 6.6.126.1-1 on Azure Linux 3.0ImportantOut-of-bandx86/efi: defer freeing of boot services memory
CVE-2026-23378 ↗2026-03-26azl3 kernel 6.6.126.1-1 on Azure Linux 3.0ImportantOut-of-bandnet/sched: act_ife: Fix metalist update behavior
CVE-2026-23348 ↗2026-03-26azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandcxl: Fix race of nvdimm_bus object when creating nvdimm objects
CVE-2026-23346 ↗2026-03-26azl3 kernel 6.6.126.1-1 on Azure Linux 3.0ModerateOut-of-bandarm64: io: Extract user memory type in ioremap_prot()
CVE-2026-23307 ↗2026-03-26azl3 kernel 6.6.126.1-1 on Azure Linux 3.0ModerateOut-of-bandcan: ems_usb: ems_usb_read_bulk_callback(): check the proper length of a message
CVE-2026-23364 ↗2026-03-26azl3 kernel 6.6.126.1-1 on Azure Linux 3.0ImportantOut-of-bandksmbd: Compare MACs in constant time
CVE-2026-23383 ↗2026-03-26azl3 kernel 6.6.126.1-1 on Azure Linux 3.0ModerateOut-of-bandbpf, arm64: Force 8-byte alignment for JIT buffer to prevent atomic tearing
CVE-2026-23292 ↗2026-03-26azl3 kernel 6.6.126.1-1 on Azure Linux 3.0ModerateOut-of-bandscsi: target: Fix recursive locking in __configfs_open_file()
CVE-2026-23390 ↗2026-03-26azl3 kernel 6.6.126.1-1 on Azure Linux 3.0ModerateOut-of-bandtracing/dma: Cap dma_map_sg tracepoint arrays to prevent buffer overflow
CVE-2026-23368 ↗2026-03-26azl3 kernel 6.6.126.1-1 on Azure Linux 3.0ModerateOut-of-bandnet: phy: register phy led_triggers during probe to avoid AB-BA deadlock
CVE-2026-23286 ↗2026-03-26azl3 kernel 6.6.126.1-1 on Azure Linux 3.0ModerateOut-of-bandatm: lec: fix null-ptr-deref in lec_arp_clear_vccs
CVE-2026-23306 ↗2026-03-26azl3 kernel 6.6.126.1-1 on Azure Linux 3.0ImportantOut-of-bandscsi: pm8001: Fix use-after-free in pm8001_queue_command()
CVE-2026-23388 ↗2026-03-26cbl2 kernel 5.15.202.1-1 on CBL Mariner 2.0ImportantOut-of-bandSquashfs: check metadata block offset is within range
CVE-2026-23313 ↗2026-03-26azl3 kernel 6.6.126.1-1 on Azure Linux 3.0ImportantOut-of-bandi40e: Fix preempt count leak in napi poll tracepoint
CVE-2026-23318 ↗2026-03-26azl3 kernel 6.6.126.1-1 on Azure Linux 3.0ImportantOut-of-bandALSA: usb-audio: Use correct version for UAC3 header validation
CVE-2026-23325 ↗2026-03-26azl3 kernel 6.6.126.1-1 on Azure Linux 3.0ImportantOut-of-bandwifi: mt76: mt7996: Fix possible oob access in mt7996_mac_write_txwi_80211()
CVE-2026-23359 ↗2026-03-26cbl2 kernel 5.15.202.1-1 on CBL Mariner 2.0ImportantOut-of-bandbpf: Fix stack-out-of-bounds write in devmap
CVE-2026-23392 ↗2026-03-26azl3 kernel 6.6.126.1-1 on Azure Linux 3.0ImportantOut-of-bandnetfilter: nf_tables: release flowtable after rcu grace period on error
CVE-2026-23296 ↗2026-03-26azl3 kernel 6.6.126.1-1 on Azure Linux 3.0ImportantOut-of-bandscsi: core: Fix refcount leak for tagset_refcnt
CVE-2026-23285 ↗2026-03-26azl3 kernel 6.6.126.1-1 on Azure Linux 3.0ModerateOut-of-banddrbd: fix null-pointer dereference on local read error
CVE-2026-23377 ↗2026-03-26azl3 kernel 6.6.134.1-2 on Azure Linux 3.0ImportantOut-of-bandice: change XDP RxQ frag_size from DMA write length to xdp.frame_sz
CVE-2026-23361 ↗2026-03-26azl3 kernel 6.6.126.1-1 on Azure Linux 3.0ImportantOut-of-bandPCI: dwc: ep: Flush MSI-X write before unmapping its ATU entry
CVE-2026-23330 ↗2026-03-26azl3 kernel 6.6.126.1-1 on Azure Linux 3.0ImportantOut-of-bandnfc: nci: complete pending data exchange on device close
CVE-2026-23391 ↗2026-03-26cbl2 kernel 5.15.202.1-1 on CBL Mariner 2.0ImportantOut-of-bandnetfilter: xt_CT: drop pending enqueued packets on template removal
CVE-2026-23312 ↗2026-03-26azl3 kernel 6.6.126.1-1 on Azure Linux 3.0ModerateOut-of-bandnet: usb: kaweth: validate USB endpoints
CVE-2026-23382 ↗2026-03-26azl3 kernel 6.6.126.1-1 on Azure Linux 3.0ModerateOut-of-bandHID: Add HID_CLAIMED_INPUT guards in raw_event callbacks missing them
CVE-2026-23315 ↗2026-03-26azl3 kernel 6.6.126.1-1 on Azure Linux 3.0ImportantOut-of-bandwifi: mt76: Fix possible oob access in mt76_connac2_mac_write_txwi_80211()
CVE-2026-23372 ↗2026-03-26azl3 kernel 6.6.126.1-1 on Azure Linux 3.0ImportantOut-of-bandnfc: rawsock: cancel tx_work before socket teardown
CVE-2026-23333 ↗2026-03-26azl3 kernel 6.6.126.1-1 on Azure Linux 3.0ModerateOut-of-bandnetfilter: nft_set_rbtree: validate open interval overlap
CVE-2026-23370 ↗2026-03-26azl3 kernel 6.6.126.1-1 on Azure Linux 3.0ModerateOut-of-bandplatform/x86: dell-wmi-sysman: Don't hex dump plaintext password data
CVE-2026-29111 ↗2026-03-26cbl2 systemd-bootstrap 250.3-13 on CBL Mariner 2.0ModerateOut-of-bandsystemd: Local unprivileged user can trigger an assert
CVE-2026-33412 ↗2026-03-26azl3 vim 9.2.0088-1 on Azure Linux 3.0ModerateOut-of-bandVim affected by Command injection via newline in glob()
CVE-2026-33186 ↗2026-03-26cbl2 grpc 1.42.0-11 on CBL Mariner 2.0ImportantOut-of-bandgRPC-Go has an authorization bypass via missing leading slash in :path
CVE-2026-4519 ↗2026-03-25azl3 python3 3.12.9-10 on Azure Linux 3.0ImportantOut-of-bandwebbrowser.open() allows leading dashes in URLs
CVE-2025-13462 ↗2026-03-25azl3 tensorflow 2.16.1-11 on Azure Linux 3.0LowOut-of-bandtarfile: Skip DIRTYPE normalization during GNU LONGNAME/LONGLINK handling
CVE-2026-33228 ↗2026-03-25cbl2 python-tensorboard 2.11.0-3 on CBL Mariner 2.0ImportantOut-of-bandflatted: Prototype Pollution via parse()
CVE-2026-32141 ↗2026-03-25cbl2 python-tensorboard 2.11.0-3 on CBL Mariner 2.0ImportantOut-of-bandflatted: Unbounded recursion DoS in parse() revive phase
CVE-2025-69720 ↗2026-03-25azl3 ncurses 6.4-2 on Azure Linux 3.0CriticalOut-of-bandThe infocmp command-line tool in ncurses before 6.5-20251213 has a stack-based buffer overflow in analyze_string in progs/infocmp.c.
CVE-2026-2646 ↗2026-03-25cbl2 mariadb 10.6.25-1 on CBL Mariner 2.0ModerateOut-of-bandHeap buffer overflow in session parsing with wolfSSL_d2i_SSL_SESSION() function
CVE-2026-3547 ↗2026-03-25cbl2 mariadb 10.6.24-1 on CBL Mariner 2.0ImportantOut-of-bandwolfSSL: out-of-bounds read (DoS) in ALPN parsing due to incomplete validation
CVE-2026-2645 ↗2026-03-25cbl2 mariadb 10.6.25-1 on CBL Mariner 2.0ModerateOut-of-bandAcceptance of CertificateVerify Message before ClientKeyExchange in TLS 1.2
CVE-2026-3549 ↗2026-03-25azl3 mariadb 10.11.16-1 on Azure Linux 3.0ImportantOut-of-bandECH parsing heap buffer overflow
CVE-2026-3548 ↗2026-03-25cbl2 mariadb 10.6.24-1 on CBL Mariner 2.0ImportantOut-of-bandBuffer overflow in CRL number parsing in wolfSSL
CVE-2026-3503 ↗2026-03-25cbl2 mariadb 10.6.24-1 on CBL Mariner 2.0ModerateOut-of-bandFault injection attack with ML-DSA and ML-KEM on ARM
CVE-2026-3230 ↗2026-03-25cbl2 mariadb 10.6.24-1 on CBL Mariner 2.0LowOut-of-bandImproper key_share validation in TLS 1.3 HelloRetryRequest
CVE-2026-3229 ↗2026-03-25azl3 mariadb 10.11.16-1 on Azure Linux 3.0LowOut-of-bandInteger Overflow in Certificate Chain Allocation
CVE-2026-1005 ↗2026-03-25cbl2 mariadb 10.6.24-1 on CBL Mariner 2.0LowOut-of-bandInteger underflow leads to out-of-bounds access in sniffer AES-GCM/CCM/ARIA-GCM decrypt path
CVE-2026-3579 ↗2026-03-25cbl2 mariadb 10.6.25-1 on CBL Mariner 2.0LowOut-of-bandNon-constant time multiplication subroutine __muldi3 on RISC-V RV32I
CVE-2026-3849 ↗2026-03-25cbl2 mariadb 10.6.25-1 on CBL Mariner 2.0ModerateOut-of-bandBuffer Overflow in HPKE via Oversized ECH Config
CVE-2026-4395 ↗2026-03-25cbl2 mariadb 10.6.25-1 on CBL Mariner 2.0LowOut-of-bandHeap-based buffer overflow in wc_ecc_import_x963_ex KCAPI path
CVE-2026-3580 ↗2026-03-25cbl2 mariadb 10.6.24-1 on CBL Mariner 2.0LowOut-of-bandCompiler-induced timing leak in sp_256_get_entry_256_9 on RISC-V
CVE-2026-4159 ↗2026-03-25azl3 mariadb 10.11.16-1 on Azure Linux 3.0LowOut-of-bandwc_PKCS7_DecodeEnvelopedData 1 byte out-of-bounds read
CVE-2026-0819 ↗2026-03-25cbl2 mariadb 10.6.25-1 on CBL Mariner 2.0LowOut-of-bandStack buffer overflow in PKCS7 SignedData encoding with custom signed attributes
CVE-2026-2369 ↗2026-03-25cbl2 libsoup 3.0.4-12 on CBL Mariner 2.0ModerateOut-of-bandLibsoup: libsoup: buffer overread due to integer underflow when handling zero-length resources
CVE-2026-3099 ↗2026-03-25azl3 libsoup 3.4.4-12 on Azure Linux 3.0ModerateOut-of-bandLibsoup: libsoup: authentication bypass via digest authentication replay attack
CVE-2026-4424 ↗2026-03-25cbl2 libarchive 3.6.1-8 on CBL Mariner 2.0ImportantOut-of-bandLibarchive: libarchive: information disclosure via heap out-of-bounds read in rar archive processing
CVE-2026-4426 ↗2026-03-25azl3 libarchive 3.7.7-4 on Azure Linux 3.0ModerateOut-of-bandLibarchive: libarchive: denial of service via malformed iso file processing
CVE-2026-33055 ↗2026-03-25cbl2 kata-containers 3.2.0.azl2-7 on CBL Mariner 2.0ModerateOut-of-bandtar-rs incorrectly ignores PAX size headers if header size is nonzero
CVE-2026-33056 ↗2026-03-25azl3 kata-containers-cc 3.15.0.aks0-7 on Azure Linux 3.0ModerateOut-of-bandtar-rs: unpack_in can chmod arbitrary directories by following symlinks
CVE-2026-25075 ↗2026-03-25azl3 strongswan 5.9.14-8 on Azure Linux 3.0ImportantOut-of-bandstrongSwan 4.5.0 < 6.0.5 EAP-TTLS AVP Parsing Integer Underflow

Cross-vendor patches

VendorCVESeverityProductFixed versionPatchAdvisory
Red HatCVE-2025-14550CVSS 7.5Red Hat Satellite 6.17 for RHEL 9foreman-0:3.14.0.14-1.el9sat.srcPatch ↗Advisory ↗
Red HatCVE-2025-14550CVSS 7.5Red Hat Satellite 6.16 for RHEL 8python-django-0:4.2.28-0.1.el8pc.srcPatch ↗Advisory ↗
Red HatCVE-2025-47907CVSS 7.0Red Hat OpenShift Container Platform 4.14registry.redhat.io/openshift4/cloud-network-config-controller-rhel8@sha256:0d851b87057ce9d97e22a5ce8f1882bf9725559d90ce8abc03cf5c7e87eeffc8_s390xPatch ↗Advisory ↗
Red HatCVE-2025-58183CVSS 7.5Red Hat OpenShift Container Platform 4.14podman-3:4.4.1-24.rhaos4.14.el8.aarch64Patch ↗Advisory ↗
Red HatCVE-2025-58183CVSS 7.5Red Hat OpenShift Container Platform 4.14registry.redhat.io/openshift4/cloud-network-config-controller-rhel8@sha256:0d851b87057ce9d97e22a5ce8f1882bf9725559d90ce8abc03cf5c7e87eeffc8_s390xPatch ↗Advisory ↗
Red HatCVE-2025-61726CVSS 7.5Red Hat Enterprise Linux AppStream EUS (v. 10.0)osbuild-composer-0:134.1-5.el10_0.aarch64Patch ↗Advisory ↗
Red HatCVE-2025-61726CVSS 7.5Red Hat Enterprise Linux AppStream AUS (v.8.6)osbuild-composer-0:46.3-6.el8_6.srcPatch ↗Advisory ↗
Red HatCVE-2025-61726CVSS 7.5Red Hat OpenShift Service Mesh 3.0registry.redhat.io/openshift-service-mesh/istio-cni-rhel9@sha256:35b0638bd3e1f638b2493f92eca8125f6e74038bf43565c8c97dea61f016393d_arm64Patch ↗Advisory ↗
Red HatCVE-2025-61726CVSS 7.5Red Hat OpenShift Service Mesh 3.1registry.redhat.io/openshift-service-mesh/istio-cni-rhel9@sha256:16c4a873fc43fe6e9bd64eb7bca434fdfeab97f4cf722dbacaa97578ffffe79d_arm64Patch ↗Advisory ↗
Red HatCVE-2025-61726CVSS 7.5Red Hat OpenShift Service Mesh 3.2registry.redhat.io/openshift-service-mesh/istio-cni-rhel9@sha256:1ad57736249ed843127edf74f765e810ee91f3e9196c0402ecf6199c0b0eeaab_s390xPatch ↗Advisory ↗
Red HatCVE-2025-61726CVSS 7.5Red Hat Satellite 6.18 for RHEL 9yggdrasil-worker-forwarder-0:0.0.3-4.el9sat.srcPatch ↗Advisory ↗
Red HatCVE-2025-61728CVSS 7.5Red Hat OpenShift Service Mesh 3.0registry.redhat.io/openshift-service-mesh/istio-cni-rhel9@sha256:35b0638bd3e1f638b2493f92eca8125f6e74038bf43565c8c97dea61f016393d_arm64Patch ↗Advisory ↗
Red HatCVE-2025-61728CVSS 7.5Red Hat OpenShift Service Mesh 3.1registry.redhat.io/openshift-service-mesh/istio-cni-rhel9@sha256:16c4a873fc43fe6e9bd64eb7bca434fdfeab97f4cf722dbacaa97578ffffe79d_arm64Patch ↗Advisory ↗
Red HatCVE-2025-61728CVSS 7.5Red Hat OpenShift Service Mesh 3.2registry.redhat.io/openshift-service-mesh/istio-cni-rhel9@sha256:1ad57736249ed843127edf74f765e810ee91f3e9196c0402ecf6199c0b0eeaab_s390xPatch ↗Advisory ↗
Red HatCVE-2025-61729CVSS 7.5Red Hat Enterprise Linux AppStream EUS (v. 10.0)osbuild-composer-0:134.1-5.el10_0.aarch64Patch ↗Advisory ↗
Red HatCVE-2025-61729CVSS 7.5Red Hat Enterprise Linux AppStream AUS (v.8.6)osbuild-composer-0:46.3-6.el8_6.srcPatch ↗Advisory ↗
Red HatCVE-2025-61729CVSS 7.5Red Hat Satellite 6.18 for RHEL 9yggdrasil-worker-forwarder-0:0.0.3-4.el9sat.srcPatch ↗Advisory ↗
Red HatCVE-2025-61731CVSS 8.6Red Hat OpenShift Service Mesh 3.0registry.redhat.io/openshift-service-mesh/istio-cni-rhel9@sha256:35b0638bd3e1f638b2493f92eca8125f6e74038bf43565c8c97dea61f016393d_arm64Patch ↗Advisory ↗
Red HatCVE-2025-61731CVSS 8.6Red Hat OpenShift Service Mesh 3.1registry.redhat.io/openshift-service-mesh/istio-cni-rhel9@sha256:16c4a873fc43fe6e9bd64eb7bca434fdfeab97f4cf722dbacaa97578ffffe79d_arm64Patch ↗Advisory ↗
Red HatCVE-2025-61731CVSS 8.6Red Hat OpenShift Service Mesh 3.2registry.redhat.io/openshift-service-mesh/istio-cni-rhel9@sha256:1ad57736249ed843127edf74f765e810ee91f3e9196c0402ecf6199c0b0eeaab_s390xPatch ↗Advisory ↗
Red HatCVE-2025-61732CVSS 7.4Red Hat OpenShift Service Mesh 3.0registry.redhat.io/openshift-service-mesh/istio-cni-rhel9@sha256:35b0638bd3e1f638b2493f92eca8125f6e74038bf43565c8c97dea61f016393d_arm64Patch ↗Advisory ↗
Red HatCVE-2025-61732CVSS 7.4Red Hat OpenShift Service Mesh 3.1registry.redhat.io/openshift-service-mesh/istio-cni-rhel9@sha256:16c4a873fc43fe6e9bd64eb7bca434fdfeab97f4cf722dbacaa97578ffffe79d_arm64Patch ↗Advisory ↗
Red HatCVE-2025-61732CVSS 7.4Red Hat OpenShift Service Mesh 3.2registry.redhat.io/openshift-service-mesh/istio-cni-rhel9@sha256:1ad57736249ed843127edf74f765e810ee91f3e9196c0402ecf6199c0b0eeaab_s390xPatch ↗Advisory ↗
Red HatCVE-2025-6176CVSS 7.5Red Hat Satellite 6.17 for RHEL 9foreman-0:3.14.0.14-1.el9sat.srcPatch ↗Advisory ↗
Red HatCVE-2025-6176CVSS 7.5Red Hat Satellite 6.16 for RHEL 8python-brotli-0:1.2.0-0.1.el8pc.srcPatch ↗Advisory ↗
Red HatCVE-2025-65637CVSS 7.5Red Hat OpenShift Container Platform 4.14registry.redhat.io/openshift4/ose-cluster-image-registry-operator@sha256:3b121bc71b14ab2696d205622482bb7e2d421ab024c23f74e40dcdac42b0901d_arm64Patch ↗Advisory ↗
Red HatCVE-2025-68121CVSS 7.4Red Hat OpenShift Service Mesh 3.0registry.redhat.io/openshift-service-mesh/istio-cni-rhel9@sha256:35b0638bd3e1f638b2493f92eca8125f6e74038bf43565c8c97dea61f016393d_arm64Patch ↗Advisory ↗
Red HatCVE-2025-68121CVSS 7.4Red Hat OpenShift Service Mesh 3.1registry.redhat.io/openshift-service-mesh/istio-cni-rhel9@sha256:16c4a873fc43fe6e9bd64eb7bca434fdfeab97f4cf722dbacaa97578ffffe79d_arm64Patch ↗Advisory ↗
Red HatCVE-2025-68121CVSS 7.4Red Hat OpenShift Service Mesh 3.2registry.redhat.io/openshift-service-mesh/istio-cni-rhel9@sha256:1ad57736249ed843127edf74f765e810ee91f3e9196c0402ecf6199c0b0eeaab_s390xPatch ↗Advisory ↗
Red HatCVE-2025-68121CVSS 7.4Red Hat Satellite 6.18 for RHEL 9yggdrasil-worker-forwarder-0:0.0.3-4.el9sat.srcPatch ↗Advisory ↗
Red HatCVE-2025-68121CVSS 7.4Red Hat Satellite 6.17 for RHEL 9foreman-0:3.14.0.14-1.el9sat.srcPatch ↗Advisory ↗
Red HatCVE-2025-68121CVSS 7.4Red Hat Satellite 6.16 for RHEL 8yggdrasil-worker-forwarder-0:0.0.3-4.el8sat.srcPatch ↗Advisory ↗
Red HatCVE-2026-0980CVSS 8.3Red Hat Satellite 6.18 for RHEL 9rubygem-rubyipmi-0:0.13.0-1.el9sat.noarchPatch ↗Advisory ↗
Red HatCVE-2026-0980CVSS 8.3Red Hat Satellite 6.17 for RHEL 9foreman-0:3.14.0.14-1.el9sat.srcPatch ↗Advisory ↗
Red HatCVE-2026-0980CVSS 8.3Red Hat Satellite 6.16 for RHEL 8rubygem-rubyipmi-0:0.13.0-0.1.el8sat.noarchPatch ↗Advisory ↗
Red HatCVE-2026-1207trackedCVSS 8.3Red Hat Satellite 6.17 for RHEL 9foreman-0:3.14.0.14-1.el9sat.srcPatch ↗Advisory ↗
Red HatCVE-2026-1207trackedCVSS 8.3Red Hat Satellite 6.16 for RHEL 8python-django-0:4.2.28-0.1.el8pc.srcPatch ↗Advisory ↗
Red HatCVE-2026-1285CVSS 7.5Red Hat Satellite 6.17 for RHEL 9foreman-0:3.14.0.14-1.el9sat.srcPatch ↗Advisory ↗
Red HatCVE-2026-1285CVSS 7.5Red Hat Satellite 6.16 for RHEL 8python-django-0:4.2.28-0.1.el8pc.srcPatch ↗Advisory ↗
Red HatCVE-2026-1287CVSS 8.3Red Hat Satellite 6.17 for RHEL 9foreman-0:3.14.0.14-1.el9sat.srcPatch ↗Advisory ↗
Red HatCVE-2026-1287CVSS 8.3Red Hat Satellite 6.16 for RHEL 8python-django-0:4.2.28-0.1.el8pc.srcPatch ↗Advisory ↗
Red HatCVE-2026-1312CVSS 8.5Red Hat Satellite 6.17 for RHEL 9foreman-0:3.14.0.14-1.el9sat.srcPatch ↗Advisory ↗
Red HatCVE-2026-1312CVSS 8.5Red Hat Satellite 6.16 for RHEL 8python-django-0:4.2.28-0.1.el8pc.srcPatch ↗Advisory ↗
Red HatCVE-2026-1530CVSS 8.1Red Hat Satellite 6.17 for RHEL 9foreman-0:3.14.0.14-1.el9sat.srcPatch ↗Advisory ↗
Red HatCVE-2026-1530CVSS 8.1Red Hat Satellite 6.16 for RHEL 8rubygem-fog-kubevirt-0:1.5.1-1.el8sat.noarchPatch ↗Advisory ↗
Red HatCVE-2026-1531CVSS 8.1Red Hat Satellite 6.18 for RHEL 9rubygem-foreman_kubevirt-0:0.4.3-1.el9sat.noarchPatch ↗Advisory ↗
Red HatCVE-2026-1531CVSS 8.1Red Hat Satellite 6.17 for RHEL 9foreman-0:3.14.0.14-1.el9sat.srcPatch ↗Advisory ↗
Red HatCVE-2026-1531CVSS 8.1Red Hat Satellite 6.16 for RHEL 8rubygem-foreman_kubevirt-0:0.2.0-2.el8sat.noarchPatch ↗Advisory ↗
Red HatCVE-2026-1961CVSS 8.0Red Hat Satellite 6.18 for RHEL 9foreman-0:3.16.0.12-1.el9sat.srcPatch ↗Advisory ↗
Red HatCVE-2026-1961CVSS 8.0Red Hat Satellite 6.17 for RHEL 9foreman-0:3.14.0.14-1.el9sat.srcPatch ↗Advisory ↗
Red HatCVE-2026-1961CVSS 8.0Red Hat Satellite 6.16 for RHEL 8foreman-0:3.12.0.14-1.el8sat.srcPatch ↗Advisory ↗
Red HatCVE-2026-31837CVSS 7.5Red Hat OpenShift Service Mesh 3.0registry.redhat.io/openshift-service-mesh/istio-pilot-rhel9@sha256:620f6be30fde3c8a5416f94405f520902f47989d431904963c308885d59d0e42_amd64Patch ↗Advisory ↗
Red HatCVE-2026-31837CVSS 7.5Red Hat OpenShift Service Mesh 3.1registry.redhat.io/openshift-service-mesh/istio-pilot-rhel9@sha256:5396940a090c47c710fae9ccd2539dd2b7a62f3a0e43251f881d7307720b09fd_amd64Patch ↗Advisory ↗
Red HatCVE-2026-31837CVSS 7.5Red Hat OpenShift Service Mesh 3.2registry.redhat.io/openshift-service-mesh/istio-pilot-rhel9@sha256:037536592c20bc7a10063a371a845a1805dd2bb59bd04ef65cff985fdb77724f_arm64Patch ↗Advisory ↗
Red HatCVE-2026-4324CVSS 5.4Red Hat Satellite 6.18 for RHEL 9rubygem-katello-0:4.18.0.9-1.el9sat.noarchPatch ↗Advisory ↗
Red HatCVE-2026-4324CVSS 5.4Red Hat Satellite 6.17 for RHEL 9foreman-0:3.14.0.14-1.el9sat.srcPatch ↗Advisory ↗
Red HatCVE-2024-25621CVSS 7.7Red Hat OpenShift AI 2.16registry.redhat.io/rhoai/odh-model-controller-rhel8@sha256:a880b9fd06cd7206e3397025371ba3a3655798be5d64bed620f3847ff6a0b5ac_amd64Patch ↗Advisory ↗
Red HatCVE-2025-12060CVSS 8.3Red Hat OpenShift AI 2.16registry.redhat.io/rhoai/odh-modelmesh-runtime-adapter-rhel8@sha256:a291cd5f04c559fd16477ae2ad364a350c4bf0c5a3f5aa2e614260fd4a5bece2_amd64Patch ↗Advisory ↗
Red HatCVE-2025-12638CVSS 7.6Red Hat OpenShift AI 2.16registry.redhat.io/rhoai/odh-modelmesh-runtime-adapter-rhel8@sha256:a291cd5f04c559fd16477ae2ad364a350c4bf0c5a3f5aa2e614260fd4a5bece2_amd64Patch ↗Advisory ↗
Red HatCVE-2025-12816CVSS 8.7Red Hat OpenShift AI 2.16registry.redhat.io/rhoai/odh-dashboard-rhel8@sha256:022c21f044dead0ff28bfc5fb5fb2fd51f3ed8e1a6cfc90bd18222abf0388018_amd64Patch ↗Advisory ↗
Red HatCVE-2025-61726CVSS 7.5Red Hat OpenShift AI 2.16registry.redhat.io/rhoai/odh-codeflare-operator-rhel8@sha256:b68b73951beeabe942be43f65e778ff98e1cdfc6fdb4b052794f0cd4b191b819_amd64Patch ↗Advisory ↗
Red HatCVE-2025-61726CVSS 7.5DevWorkspace Operator 0.4registry.redhat.io/devworkspace/devworkspace-project-clone-rhel9@sha256:11c561bf7aac3f3ac3adfbc437a3f56ef7fdf494f02c161bde982156b36d8b30_amd64Patch ↗Advisory ↗
Red HatCVE-2025-61728CVSS 7.5DevWorkspace Operator 0.4registry.redhat.io/devworkspace/devworkspace-project-clone-rhel9@sha256:11c561bf7aac3f3ac3adfbc437a3f56ef7fdf494f02c161bde982156b36d8b30_amd64Patch ↗Advisory ↗
Red HatCVE-2025-61729CVSS 7.5Red Hat OpenShift AI 2.16registry.redhat.io/rhoai/odh-kf-notebook-controller-rhel8@sha256:b26f5118ae8e7e25783233698fe0d5df1e56cde8d75f745204d9f78c4d838412_amd64Patch ↗Advisory ↗
Red HatCVE-2025-61729CVSS 7.5DevWorkspace Operator 0.4registry.redhat.io/devworkspace/devworkspace-rhel9-operator@sha256:030160d105ab2fd0f9815527f1b37055c4f734bee9f37f7ea923a506f8e39c30_amd64Patch ↗Advisory ↗
Red HatCVE-2025-6193CVSS 5.9Red Hat OpenShift AI 2.16registry.redhat.io/rhoai/odh-trustyai-service-operator-rhel8@sha256:297d22ca72b764328f7d0b85f7f7c013c91ca85d70f08be45a6689c85da6b311_amd64Patch ↗Advisory ↗
Red HatCVE-2025-66031CVSS 5.3Red Hat OpenShift AI 2.16registry.redhat.io/rhoai/odh-dashboard-rhel8@sha256:022c21f044dead0ff28bfc5fb5fb2fd51f3ed8e1a6cfc90bd18222abf0388018_amd64Patch ↗Advisory ↗
Red HatCVE-2025-66418CVSS 7.5Red Hat OpenShift AI 2.16registry.redhat.io/rhoai/odh-modelmesh-runtime-adapter-rhel8@sha256:a291cd5f04c559fd16477ae2ad364a350c4bf0c5a3f5aa2e614260fd4a5bece2_amd64Patch ↗Advisory ↗
Red HatCVE-2025-66626CVSS 8.3Red Hat OpenShift AI 2.16registry.redhat.io/rhoai/odh-data-science-pipelines-argo-argoexec-rhel8@sha256:fd02f0f70e38c947cdc307be3d9660f87262d92c5a361fa1bf68f24a72c91476_amd64Patch ↗Advisory ↗
Red HatCVE-2025-68121CVSS 7.4DevWorkspace Operator 0.4registry.redhat.io/devworkspace/devworkspace-rhel9-operator@sha256:030160d105ab2fd0f9815527f1b37055c4f734bee9f37f7ea923a506f8e39c30_amd64Patch ↗Advisory ↗
Red HatCVE-2025-68156CVSS 7.5Red Hat OpenShift AI 2.16registry.redhat.io/rhoai/odh-data-science-pipelines-argo-argoexec-rhel8@sha256:fd02f0f70e38c947cdc307be3d9660f87262d92c5a361fa1bf68f24a72c91476_amd64Patch ↗Advisory ↗
Red HatCVE-2025-69873CVSS 7.5Red Hat OpenShift AI 2.16registry.redhat.io/rhoai/odh-dashboard-rhel8@sha256:022c21f044dead0ff28bfc5fb5fb2fd51f3ed8e1a6cfc90bd18222abf0388018_amd64Patch ↗Advisory ↗
Red HatCVE-2026-1526CVSS 7.5Red Hat OpenShift AI 2.16registry.redhat.io/rhoai/odh-dashboard-rhel8@sha256:022c21f044dead0ff28bfc5fb5fb2fd51f3ed8e1a6cfc90bd18222abf0388018_amd64Patch ↗Advisory ↗
Red HatCVE-2026-1528CVSS 7.5Red Hat OpenShift AI 2.16registry.redhat.io/rhoai/odh-dashboard-rhel8@sha256:022c21f044dead0ff28bfc5fb5fb2fd51f3ed8e1a6cfc90bd18222abf0388018_amd64Patch ↗Advisory ↗
CiscoCVE-2026-20012CVSS 8.6Cisco Firepower 2100 Series3.5EPatch ↗Advisory ↗
Red HatCVE-2026-2229CVSS 7.5Red Hat OpenShift AI 2.16registry.redhat.io/rhoai/odh-dashboard-rhel8@sha256:022c21f044dead0ff28bfc5fb5fb2fd51f3ed8e1a6cfc90bd18222abf0388018_amd64Patch ↗Advisory ↗
Red HatCVE-2026-25223CVSS 7.5Red Hat OpenShift AI 2.16registry.redhat.io/rhoai/odh-dashboard-rhel8@sha256:022c21f044dead0ff28bfc5fb5fb2fd51f3ed8e1a6cfc90bd18222abf0388018_amd64Patch ↗Advisory ↗
Red HatCVE-2026-25639CVSS 7.5Red Hat OpenShift AI 2.16registry.redhat.io/rhoai/odh-dashboard-rhel8@sha256:022c21f044dead0ff28bfc5fb5fb2fd51f3ed8e1a6cfc90bd18222abf0388018_amd64Patch ↗Advisory ↗
Red HatCVE-2026-29074CVSS 7.5Red Hat OpenShift AI 2.16registry.redhat.io/rhoai/odh-dashboard-rhel8@sha256:022c21f044dead0ff28bfc5fb5fb2fd51f3ed8e1a6cfc90bd18222abf0388018_amd64Patch ↗Advisory ↗
Red HatCVE-2026-32141CVSS 7.5Red Hat OpenShift AI 2.16registry.redhat.io/rhoai/odh-dashboard-rhel8@sha256:022c21f044dead0ff28bfc5fb5fb2fd51f3ed8e1a6cfc90bd18222abf0388018_amd64Patch ↗Advisory ↗
Red HatCVE-2025-13465CVSS 8.2Red Hat Advanced Cluster Management for Kubernetes 2.12registry.redhat.io/rhacm2/console-rhel9@sha256:0d6238ef864831d455a4a4b86d860469443079f6dcd26ce3b4fe546800565844_ppc64lePatch ↗Advisory ↗
Red HatCVE-2025-13465CVSS 8.2multicluster engine for Kubernetes 2.7registry.redhat.io/multicluster-engine/console-mce-rhel9@sha256:2efa3dbf99e5be1f8eb4f169f5f2229b338fdf2d2c72b9c0b0da9392e612cc5f_s390xPatch ↗Advisory ↗
Red HatCVE-2025-47907CVSS 7.0Red Hat Advanced Cluster Management for Kubernetes 2.12registry.redhat.io/rhacm2/acm-grafana-rhel9@sha256:280e1dc73ea367d9c818086754ece9ea2d5a2c96496dcfea09844a7a55feb51d_s390xPatch ↗Advisory ↗
Red HatCVE-2025-47907CVSS 7.0multicluster engine for Kubernetes 2.7registry.redhat.io/multicluster-engine/backplane-rhel9-operator@sha256:76d00b37dc5c5d7bf489f55f3a41a953677449491b01c789bf7b29c789c461b7_amd64Patch ↗Advisory ↗
Red HatCVE-2025-47907CVSS 7.0cert-manager operator for Red Hat OpenShift 1.17registry.redhat.io/cert-manager/jetstack-cert-manager-acmesolver-rhel9@sha256:3a01605ba6dd883043f622596c54bfdfc938cdab48f4c32638e6cad807c57e9a_arm64Patch ↗Advisory ↗
Red HatCVE-2025-58183CVSS 7.5Red Hat Advanced Cluster Management for Kubernetes 2.12registry.redhat.io/rhacm2/acm-governance-policy-addon-controller-rhel9@sha256:495889c3607c289f7265ef7bf18187686fedcbf8c382e86e8e98cdc31e8479d5_arm64Patch ↗Advisory ↗
Red HatCVE-2025-58183CVSS 7.5multicluster engine for Kubernetes 2.7registry.redhat.io/multicluster-engine/backplane-rhel9-operator@sha256:76d00b37dc5c5d7bf489f55f3a41a953677449491b01c789bf7b29c789c461b7_amd64Patch ↗Advisory ↗
Red HatCVE-2025-58183CVSS 7.5cert-manager operator for Red Hat OpenShift 1.17registry.redhat.io/cert-manager/jetstack-cert-manager-acmesolver-rhel9@sha256:3a01605ba6dd883043f622596c54bfdfc938cdab48f4c32638e6cad807c57e9a_arm64Patch ↗Advisory ↗
Red HatCVE-2025-61726CVSS 7.5Red Hat Enterprise Linux AppStream E4S (v.9.0)osbuild-composer-0:46.3-7.el9_0.aarch64Patch ↗Advisory ↗
Red HatCVE-2025-61726CVSS 7.5Red Hat Enterprise Linux AppStream EUS (v.9.6)osbuild-composer-0:132.2-5.el9_6.aarch64Patch ↗Advisory ↗
Red HatCVE-2025-61726CVSS 7.5Builds for Red Hat OpenShift 1.6.0registry.redhat.io/openshift-builds/openshift-builds-controller-rhel9@sha256:3e7802fd4777d02152c225bd23d99d3a67301ef7dcc4d86624dc0852905b89c0_amd64Patch ↗Advisory ↗
Red HatCVE-2025-61726CVSS 7.5multicluster engine for Kubernetes 2.7registry.redhat.io/multicluster-engine/backplane-rhel9-operator@sha256:76d00b37dc5c5d7bf489f55f3a41a953677449491b01c789bf7b29c789c461b7_amd64Patch ↗Advisory ↗
Red HatCVE-2025-61726CVSS 7.5cert-manager operator for Red Hat OpenShift 1.17registry.redhat.io/cert-manager/jetstack-cert-manager-acmesolver-rhel9@sha256:3a01605ba6dd883043f622596c54bfdfc938cdab48f4c32638e6cad807c57e9a_arm64Patch ↗Advisory ↗
Red HatCVE-2025-61726CVSS 7.5Red Hat Trusted Artifact Signer 1.3registry.redhat.io/rhtas/rhtas-console-rhel9@sha256:7f9dcc3503ef31563733eb925c6c15ce0d945069f1369692456c49361c60a399_amd64Patch ↗Advisory ↗
Red HatCVE-2025-61726CVSS 7.5Red Hat Quay 3.1registry.redhat.io/quay/quay-rhel8@sha256:6e13793ca8f309ec0b69ae609b840ff0f41989d88cd4bba127e1b0040631367e_ppc64lePatch ↗Advisory ↗
Red HatCVE-2025-61728CVSS 7.5Builds for Red Hat OpenShift 1.6.0registry.redhat.io/openshift-builds/openshift-builds-shared-resource-rhel9@sha256:0a3b22036310909533456be9c03ae6b7b3c5d91b89b245533925cfe81e523d9e_amd64Patch ↗Advisory ↗
Red HatCVE-2025-61728CVSS 7.5cert-manager operator for Red Hat OpenShift 1.17registry.redhat.io/cert-manager/jetstack-cert-manager-acmesolver-rhel9@sha256:3a01605ba6dd883043f622596c54bfdfc938cdab48f4c32638e6cad807c57e9a_arm64Patch ↗Advisory ↗
Red HatCVE-2025-61728CVSS 7.5Red Hat Quay 3.1registry.redhat.io/quay/quay-rhel8@sha256:6e13793ca8f309ec0b69ae609b840ff0f41989d88cd4bba127e1b0040631367e_ppc64lePatch ↗Advisory ↗
Red HatCVE-2025-61729CVSS 7.5Red Hat Enterprise Linux AppStream E4S (v.9.0)osbuild-composer-0:46.3-7.el9_0.aarch64Patch ↗Advisory ↗
Red HatCVE-2025-61729CVSS 7.5Red Hat Enterprise Linux AppStream EUS (v.9.6)osbuild-composer-0:132.2-5.el9_6.aarch64Patch ↗Advisory ↗
Red HatCVE-2025-61729CVSS 7.5multicluster engine for Kubernetes 2.7registry.redhat.io/multicluster-engine/backplane-rhel9-operator@sha256:76d00b37dc5c5d7bf489f55f3a41a953677449491b01c789bf7b29c789c461b7_amd64Patch ↗Advisory ↗
Red HatCVE-2025-61729CVSS 7.5cert-manager operator for Red Hat OpenShift 1.17registry.redhat.io/cert-manager/jetstack-cert-manager-acmesolver-rhel9@sha256:3a01605ba6dd883043f622596c54bfdfc938cdab48f4c32638e6cad807c57e9a_arm64Patch ↗Advisory ↗
Red HatCVE-2025-66471CVSS 7.5Builds for Red Hat OpenShift 1.6.0registry.redhat.io/openshift-builds/openshift-builds-shared-resource-rhel9@sha256:0a3b22036310909533456be9c03ae6b7b3c5d91b89b245533925cfe81e523d9e_amd64Patch ↗Advisory ↗
Red HatCVE-2025-68121CVSS 7.4Builds for Red Hat OpenShift 1.6.0registry.redhat.io/openshift-builds/openshift-builds-waiters-rhel9@sha256:10cc203162a18a29b59faedf70efbdce132e92f64f915d3265c4fcb44711df9c_arm64Patch ↗Advisory ↗
Red HatCVE-2025-68121CVSS 7.4multicluster engine for Kubernetes 2.7registry.redhat.io/multicluster-engine/discovery-rhel9@sha256:47c835ad25efcfa42534a1daf7235b18b318030546e81c784027c62ab665b896_s390xPatch ↗Advisory ↗
Red HatCVE-2025-68121CVSS 7.4cert-manager operator for Red Hat OpenShift 1.17registry.redhat.io/cert-manager/jetstack-cert-manager-acmesolver-rhel9@sha256:3a01605ba6dd883043f622596c54bfdfc938cdab48f4c32638e6cad807c57e9a_arm64Patch ↗Advisory ↗