Patch Day month
April 2026 vulnerabilities
A server-rendered hunting trail for April 2026: 1,904 returned patch records across 4 vendors. Browse page by page, or use “Load next” to keep adding rows without losing your place.
1,904all patches
140critical
2exploitation detected
5in CISA KEV
322tracked here
Red Hat 1,131Microsoft 737Cisco 31Android 5
Page 1 of 10 · records 1–200 of 1,904
Microsoft Security Response Center
CVEDateProductMSRC severityOut-of-bandEPSSTitle
CVE-2026-7246 ↗2026-05-17azl3 python-click 8.1.7-2 on Azure Linux 3.0ImportantOut-of-band—Pallets Click contains a command injection via Unsanitized Filename "click.edit()"
CVE-2026-41082 ↗2026-05-07azl3 ocaml-dune 3.15.2-1 on Azure Linux 3.0ImportantOut-of-band—In OCaml opam before 2.5.1, a .install field containing a destination filepath can use ../ to reach a parent directory.
CVE-2026-25833 ↗2026-05-07azl3 nodejs24 24.14.1-2 on Azure Linux 3.0ImportantOut-of-band—Mbed TLS 3.5.0 to 3.6.5 fixed in 3.6.6 and 4.1.0 has a buffer overflow in the x509_inet_pton_ipv6() function
CVE-2026-25834 ↗2026-05-07azl3 nodejs24 24.14.1-2 on Azure Linux 3.0ModerateOut-of-band—Mbed TLS v3.3.0 up to 3.6.5 and 4.0.0 allows Algorithm Downgrade.
CVE-2026-34872 ↗2026-05-07azl3 nodejs24 24.14.1-2 on Azure Linux 3.0CriticalOut-of-band—An issue was discovered in Mbed TLS 3.5.x and 3.6.x through 3.6.5 and TF-PSA-Crypto 1.0. There is a lack of contributory behavior in FFDH due to improper input validation. Using finite-field Diffie-Hellman, the other party can force the shared secret into a small set of values (lack of contributory behavior). This is a problem for protocols that depend on contributory behavior (which is not the case for TLS). The attack can be carried by the peer, or depending on the protocol by an active network attacker (person in the middle).
CVE-2026-34871 ↗2026-05-07azl3 nodejs24 24.14.1-2 on Azure Linux 3.0ModerateOut-of-band—An issue was discovered in Mbed TLS before 3.6.6 and 4.x before 4.1.0 and TF-PSA-Crypto before 1.1.0. There is a Predictable Seed in a Pseudo-Random Number Generator (PRNG).
CVE-2026-34873 ↗2026-05-07azl3 nodejs24 24.14.1-2 on Azure Linux 3.0CriticalOut-of-band—An issue was discovered in Mbed TLS 3.5.0 through 4.0.0. Client impersonation can occur while resuming a TLS 1.3 session.
CVE-2025-66442 ↗2026-05-07azl3 nodejs24 24.14.1-2 on Azure Linux 3.0ModerateOut-of-band—In Mbed TLS through 4.0.0, there is a compiler-induced timing side channel (in RSA and CBC/ECB decryption) that only occurs with LLVM's select-optimize feature. TF-PSA-Crypto through 1.0.0 is also affected.
CVE-2026-25835 ↗2026-05-07azl3 nodejs24 24.14.1-2 on Azure Linux 3.0ImportantOut-of-band—Mbed TLS before 3.6.6 and TF-PSA-Crypto before 1.1.0 misuse seeds in a Pseudo-Random Number Generator (PRNG).
CVE-2026-34876 ↗2026-05-07azl3 nodejs24 24.14.1-2 on Azure Linux 3.0ImportantOut-of-band—An issue was discovered in Mbed TLS 3.x before 3.6.6. An out-of-bounds read vulnerability in mbedtls_ccm_finish() in library/ccm.c allows attackers to obtain adjacent CCM context data via invocation of the multipart CCM API with an oversized tag_len parameter. This is caused by missing validation of the tag_len parameter against the size of the internal 16-byte authentication buffer. The issue affects the public multipart CCM API in Mbed TLS 3.x, where mbedtls_ccm_finish() can be invoked directly by applications. In Mbed TLS 4.x versions prior to the fix, the same missing validation exists in the internal implementation; however, the function is not exposed as part of the public API. Exploitation requires application-level invocation of the multipart CCM API.
CVE-2026-34874 ↗2026-05-07azl3 nodejs24 24.14.1-2 on Azure Linux 3.0ImportantOut-of-band—An issue was discovered in Mbed TLS through 3.6.5 and 4.x through 4.0.0. There is a NULL pointer dereference in distinguished name parsing that allows an attacker to write to address 0.
CVE-2026-34875 ↗2026-05-07azl3 nodejs24 24.14.1-2 on Azure Linux 3.0CriticalOut-of-band—An issue was discovered in Mbed TLS through 3.6.5 and TF-PSA-Crypto 1.0.0. A buffer overflow can occur in public key export for FFDH keys.
CVE-2026-6383 ↗2026-05-07cbl2 kubevirt 0.59.0-38 on CBL Mariner 2.0ModerateOut-of-band—Kubevirt: kubevirt: unauthorized subresource access due to improper rbac evaluation
CVE-2026-3832 ↗2026-05-07cbl2 gnutls 3.7.11-6 on CBL Mariner 2.0LowOut-of-band—Gnutls: gnutls: security bypass allows acceptance of revoked server certificates via crafted ocsp response
CVE-2026-3833 ↗2026-05-07cbl2 gnutls 3.7.11-6 on CBL Mariner 2.0ModerateOut-of-band—Gnutls: gnutls: policy bypass due to case-sensitive nameconstraints comparison
CVE-2026-33845 ↗2026-05-07cbl2 gnutls 3.7.11-6 on CBL Mariner 2.0ImportantOut-of-band—Gnutls: gnutls: denial of service via dtls zero-length fragment
CVE-2026-34319 ↗2026-05-07cbl2 mysql 8.0.45-3 on CBL Mariner 2.0ModerateOut-of-band—Vulnerability in the MySQL Shell product of Oracle MySQL (component: Shell: Core Client). Supported versions that are affected are 8.0.0-8.0.45, 8.4.0-8.4.8 and 9.0.0-9.6.0. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where MySQL Shell executes to compromise MySQL Shell. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Shell. CVSS 3.1 Base Score 5.0 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:N/I:N/A:H).
CVE-2026-34318 ↗2026-05-07cbl2 mysql 8.0.45-3 on CBL Mariner 2.0ModerateOut-of-band—Vulnerability in the MySQL Shell product of Oracle MySQL (component: Shell: Core Client). Supported versions that are affected are 8.0.0-8.0.45, 8.4.0-8.4.8 and 9.0.0-9.6.0. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Shell. While the vulnerability is in MySQL Shell, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all MySQL Shell accessible data. CVSS 3.1 Base Score 5.8 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:H/I:N/A:N).
CVE-2026-34317 ↗2026-05-07cbl2 mysql 8.0.45-3 on CBL Mariner 2.0ModerateOut-of-band—Vulnerability in the MySQL Shell product of Oracle MySQL (component: Shell: Core Client). Supported versions that are affected are 8.0.0-8.0.45, 8.4.0-8.4.8 and 9.0.0-9.6.0. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where MySQL Shell executes to compromise MySQL Shell. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Shell. CVSS 3.1 Base Score 5.0 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:N/I:N/A:H).
CVE-2026-40170 ↗2026-05-05cbl2 nodejs18 18.20.3-12 on CBL Mariner 2.0ImportantOut-of-band—ngtcp2 has a qlog transport parameter serialization stack buffer overflow
CVE-2026-42798 ↗2026-05-05cbl2 lcms2 2.13.1-2 on CBL Mariner 2.0ModerateOut-of-band—Little CMS (lcms2) 2.16 through 2.18 before 2.19 has an integer overflow in ParseCube in cmscgats.c.
CVE-2026-32148 ↗2026-05-03cbl2 rabbitmq-server 3.11.24-3 on CBL Mariner 2.0ImportantOut-of-band—Lockfile checksums not verified in Hex allows dependency integrity bypass
CVE-2017-20230 ↗2026-05-03cbl2 perl 5.34.1-491 on CBL Mariner 2.0CriticalOut-of-band—Storable versions before 3.05 for Perl has a stack overflow
CVE-2026-6843 ↗2026-05-03cbl2 nano 6.0-3 on CBL Mariner 2.0ModerateOut-of-band—Nano: nano: format string vulnerability leads to denial of service
CVE-2026-6842 ↗2026-05-03azl3 nano 6.4-2 on Azure Linux 3.0LowOut-of-band—Nano: nano: local attacker can inject malicious .desktop launcher due to insecure directory permissions
CVE-2026-30656 ↗2026-05-03azl3 fio 3.37-3 on Azure Linux 3.0ImportantOut-of-band—A NULL pointer dereference vulnerability exists in fio (Flexible I/O Tester) v3.41 when parsing job files containing the fdp_pli option. The callback function str_fdp_pli_cb() does not validate the input pointer and calls strdup() on a NULL value when the option is specified without an argument. This results in a segmentation fault and process crash.
CVE-2026-6846 ↗2026-05-03azl3 gdb 13.2-7 on Azure Linux 3.0ImportantOut-of-band—Binutils: binutils: arbitrary code execution via malformed xcoff object file processing
CVE-2026-6845 ↗2026-05-03cbl2 binutils 2.37-20 on CBL Mariner 2.0ModerateOut-of-band—Binutils: binutils: denial of service via crafted elf file
CVE-2026-37555 ↗2026-05-03cbl2 libsndfile 1.0.31-4 on CBL Mariner 2.0ImportantOut-of-band—An issue was discovered in libsndfile 1.2.2 IMA ADPCM codec. The AIFF code path (line 241) was fixed with (sf_count_t) cast, but the WAV code path (line 235) and close path (line 167) were not. When samplesperblock (int) * blocks (int) exceeds INT_MAX, the 32-bit multiplication overflows before being assigned to sf.frames (sf_count_t/int64). With samplesperblock=50000 and blocks=50000, the product 2500000000 overflows to -1794967296. This causes incorrect frame count leading to heap buffer overflow or denial of service. Both values come from the WAV file header and are attacker-controlled. This issue was discovered after an incomplete fix for CVE-2022-33065.
CVE-2026-28532 ↗2026-05-02azl3 frr 10.5.0-2 on Azure Linux 3.0ModerateOut-of-band—FRRouting < 10.5.3 Integer Overflow in OSPF TLV Parser Functions
CVE-2026-3087 ↗2026-05-01azl3 python3 3.12.9-13 on Azure Linux 3.0ModerateOut-of-band—shutil.unpack_archive() doesn't check for Windows absolute paths in ZIPs
CVE-2026-40356 ↗2026-05-01azl3 krb5 1.21.3-3 on Azure Linux 3.0ModerateOut-of-band—In MIT Kerberos 5 (aka krb5) before 1.22.3, there is an integer underflow and resultant out-of-bounds read if an application calls gss_accept_sec_context() on a system with a NegoEx mechanism registered in /etc/gss/mech. An unauthenticated remote attacker can trigger this, possibly causing the process to terminate in parse_message.
CVE-2026-40355 ↗2026-05-01azl3 krb5 1.21.3-3 on Azure Linux 3.0ModerateOut-of-band—In MIT Kerberos 5 (aka krb5) before 1.22.3, there is a NULL pointer dereference if an application calls gss_accept_sec_context() on a system with a NegoEx mechanism registered in /etc/gss/mech. An unauthenticated remote attacker can trigger this, causing the process to terminate in parse_nego_message.
CVE-2026-41526 ↗2026-05-01azl3 kf-kcoreaddons 5.249.0-1 on Azure Linux 3.0ModerateOut-of-band—In KDE KCoreAddons before 6.25, KShell::quoteArgs is intended to safely quote arguments so that they can be passed to a shell command. This parsing does not adequately handle metacharacters, leading to an escape from the shell. All applications relying on this method in a security-critical path to handle user input are affected and could be exploited. In particular, because sendInput() sends a string to a terminal, a control character such as \x01 can be used during injection.
CVE-2026-31692 ↗2026-05-01azl3 kernel 6.6.134.1-2 on Azure Linux 3.0ModerateOut-of-band—rtnetlink: add missing netlink_ns_capable() check for peer netns
CVE-2026-31533 ↗2026-05-01azl3 kernel 6.6.134.1-2 on Azure Linux 3.0ImportantOut-of-band—net/tls: fix use-after-free in -EBUSY error path of tls_do_encryption
CVE-2026-41636 ↗2026-04-30azl3 thrift 0.15.0-5 on Azure Linux 3.0ImportantOut-of-band—Apache Thrift: Node.js skip() recursion
CVE-2026-41607 ↗2026-04-30azl3 thrift 0.15.0-5 on Azure Linux 3.0ModerateOut-of-band—Apache Thrift: C++ JSON OOB read
CVE-2026-41606 ↗2026-04-30azl3 thrift 0.15.0-5 on Azure Linux 3.0ModerateOut-of-band—Apache Thrift: c_glib dispatch stack overflow
CVE-2026-41605 ↗2026-04-30azl3 thrift 0.15.0-5 on Azure Linux 3.0ImportantOut-of-band—Apache Thrift: Swift Compact Protocol integer overflow
CVE-2026-41604 ↗2026-04-30azl3 thrift 0.15.0-5 on Azure Linux 3.0ImportantOut-of-band—Apache Thrift: Swift Range crash in skip()
CVE-2026-41603 ↗2026-04-30azl3 thrift 0.15.0-5 on Azure Linux 3.0ImportantOut-of-band—Apache Thrift: Java TSSLTransportFactory hostname verification
CVE-2026-41602 ↗2026-04-30azl3 thrift 0.15.0-5 on Azure Linux 3.0ImportantOut-of-band—Apache Thrift: Go TFramedTransport uint32 overflow
CVE-2025-48431 ↗2026-04-30azl3 thrift 0.15.0-5 on Azure Linux 3.0ModerateOut-of-band—Apache Thrift: Specially crafted input can crash a c_glib Thrift server with invalid pointer error.
CVE-2026-6357 ↗2026-04-30azl3 python-pip 24.2-6 on Azure Linux 3.0ModerateOut-of-band—pip self-update functionality can import newly installed modules after wheel installation
CVE-2026-31499 ↗2026-04-30azl3 kernel 6.6.134.1-2 on Azure Linux 3.0ModerateOut-of-band—Bluetooth: L2CAP: Fix deadlock in l2cap_conn_del()
CVE-2026-6238 ↗2026-04-30azl3 glibc 2.38-19 on Azure Linux 3.0ModerateOut-of-band—Buffer overread in ns_printrrf with corrupted RDATA field
CVE-2026-31546 ↗2026-04-30cbl2 kernel 5.15.202.1-1 on CBL Mariner 2.0ModerateOut-of-band—net: bonding: fix NULL deref in bond_debug_rlb_hash_show
CVE-2026-31545 ↗2026-04-30cbl2 kernel 5.15.202.1-1 on CBL Mariner 2.0ModerateOut-of-band—NFC: nxp-nci: allow GPIOs to sleep
CVE-2026-31540 ↗2026-04-30cbl2 kernel 5.15.202.1-1 on CBL Mariner 2.0ModerateOut-of-band—drm/i915/gt: Check set_default_submission() before deferencing
CVE-2026-31508 ↗2026-04-30cbl2 kernel 5.15.202.1-1 on CBL Mariner 2.0ImportantOut-of-band—net: openvswitch: Avoid releasing netdev before teardown completes
CVE-2026-34003 ↗2026-04-29cbl2 xorg-x11-server 1.20.10-16 on CBL Mariner 2.0ModerateOut-of-band—Xorg: xwayland: x.org x server: information exposure and denial of service via out-of-bounds memory access
CVE-2026-34001 ↗2026-04-29cbl2 xorg-x11-server 1.20.10-16 on CBL Mariner 2.0ImportantOut-of-band—Xorg: xwayland: x.org x server: use-after-free vulnerability leads to server crash and potential memory corruption
CVE-2026-33999 ↗2026-04-29cbl2 xorg-x11-server 1.20.10-16 on CBL Mariner 2.0ModerateOut-of-band—Xorg: xwayland: x.org x server: denial of service via integer underflow in xkb compatibility map handling
CVE-2026-6019 ↗2026-04-29cbl2 python3 3.9.19-19 on CBL Mariner 2.0LowOut-of-band—BaseCookie.js_output() does not neutralize embedded characters
CVE-2026-41898 ↗2026-04-29cbl2 rpm-ostree 2022.1-8 on CBL Mariner 2.0ImportantOut-of-band—rust-openssl: Unchecked callback-returned length in PSK and cookie generate trampolines can cause OpenSSL to leak adjacent memory to the network peer
CVE-2026-6732 ↗2026-04-29cbl2 libxml2 2.10.4-11 on CBL Mariner 2.0ModerateOut-of-band—Libxml2: libxml2: denial of service via crafted xsd-validated document
CVE-2026-2708 ↗2026-04-29cbl2 libsoup 3.0.4-13 on CBL Mariner 2.0LowOut-of-band—Libsoup: libsoup: http request smuggling via duplicate content-length headers
CVE-2026-6861 ↗2026-04-29azl3 emacs 29.4-3 on Azure Linux 3.0ModerateOut-of-band—Emacs: emacs: memory corruption vulnerability when processing svg css
CVE-2026-40556 ↗2026-04-29azl3 nano 6.4-2 on Azure Linux 3.0N/AOut-of-band—Insecure Directory Permissions in GNU nano Leading to Privilege Abuse
CVE-2026-5435 ↗2026-04-29azl3 glibc 2.38-19 on Azure Linux 3.0ImportantOut-of-band—Potential buffer overflow in ns_sprintrrf TSIG handling path
CVE-2026-31648 ↗2026-04-29azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-band—mm: filemap: fix nr_pages calculation overflow in filemap_map_pages()
CVE-2026-31563 ↗2026-04-29azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-band—net: macb: Use dev_consume_skb_any() to free TX SKBs
CVE-2026-31661 ↗2026-04-29cbl2 kernel 5.15.202.1-1 on CBL Mariner 2.0ModerateOut-of-band—wifi: brcmsmac: Fix dma_free_coherent() size
CVE-2026-31584 ↗2026-04-29cbl2 kernel 5.15.202.1-1 on CBL Mariner 2.0ImportantOut-of-band—media: mediatek: vcodec: fix use-after-free in encoder release path
CVE-2026-31552 ↗2026-04-29cbl2 kernel 5.15.202.1-1 on CBL Mariner 2.0ImportantOut-of-band—wifi: wlcore: Return -ENOMEM instead of -EAGAIN if there is not enough headroom
CVE-2026-31551 ↗2026-04-29cbl2 kernel 5.15.202.1-1 on CBL Mariner 2.0ModerateOut-of-band—wifi: mac80211: Fix static_branch_dec() underflow for aql_disable.
CVE-2026-31550 ↗2026-04-29cbl2 kernel 5.15.202.1-1 on CBL Mariner 2.0ModerateOut-of-band—pmdomain: bcm: bcm2835-power: Increase ASB control timeout
CVE-2026-31549 ↗2026-04-29cbl2 kernel 5.15.202.1-1 on CBL Mariner 2.0ModerateOut-of-band—i2c: cp2615: fix serial string NULL-deref at probe
CVE-2026-31548 ↗2026-04-29cbl2 kernel 5.15.202.1-1 on CBL Mariner 2.0ImportantOut-of-band—wifi: cfg80211: cancel pmsr_free_wk in cfg80211_pmsr_wdev_down
CVE-2026-31688 ↗2026-04-29azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-band—driver core: enforce device_lock for driver_match_device()
CVE-2026-31686 ↗2026-04-29azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-band—mm/kasan: fix double free for kasan pXds
CVE-2026-31689 ↗2026-04-29azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-band—EDAC/mc: Fix error path ordering in edac_mc_alloc()
CVE-2026-6920 ↗2026-04-28Microsoft Edge (Chromium-based)N/AOut-of-band0%Chromium: CVE-2026-6920 Out of bounds read in GPU
Cross-vendor patches
VendorCVESeverityProductFixed versionPatchAdvisory
Red HatCVE-2025-47913CVSS 7.5Red Hat Enterprise Linux AppStream EUS (v.9.4)buildah-2:1.33.13-3.el9_4.1.aarch64Patch ↗Advisory ↗
Red HatCVE-2025-58183CVSS 7.5Red Hat Openshift Data Foundation 4.19registry.redhat.io/odf4/cephcsi-rhel9-operator@sha256:225ba1747733c974fd4a3c9b49f657b180b83486d1c35a473e8e5a2b96abcc53_arm64Patch ↗Advisory ↗
Red HatCVE-2025-61726CVSS 7.5Red Hat OpenShift Container Platform 4.16containernetworking-plugins-1:1.4.0-8.rhaos4.16.el8.aarch64Patch ↗Advisory ↗
Red HatCVE-2025-61726CVSS 7.5Red Hat OpenShift Container Platform 4.16registry.redhat.io/openshift4/aws-kms-encryption-provider-rhel9@sha256:4b0358e16d845b50b56a29ddbdc0ef6f1ba6861f14f49976a8dd4306e003195b_amd64Patch ↗Advisory ↗
Red HatCVE-2025-61726CVSS 7.5Red Hat Enterprise Linux AppStream EUS (v.9.4)podman-4:4.9.4-20.el9_4.2.aarch64Patch ↗Advisory ↗
Red HatCVE-2025-61726CVSS 7.5Red Hat Enterprise Linux AppStream EUS (v.9.4)skopeo-2:1.14.5-2.el9_4.4.aarch64Patch ↗Advisory ↗
Red HatCVE-2025-61726CVSS 7.5Red Hat Enterprise Linux AppStream EUS (v.9.4)buildah-2:1.33.13-3.el9_4.1.aarch64Patch ↗Advisory ↗
Red HatCVE-2025-61726CVSS 7.5Red Hat Enterprise Linux AppStream EUS (v.9.4)runc-4:1.2.9-1.el9_4.1.aarch64Patch ↗Advisory ↗
Red HatCVE-2025-61726CVSS 7.5Red Hat Enterprise Linux AppStream EUS (v.9.4)containernetworking-plugins-1:1.4.0-6.el9_4.3.aarch64Patch ↗Advisory ↗
Red HatCVE-2025-61726CVSS 7.5Red Hat Enterprise Linux AppStream EUS (v.9.4)gvisor-tap-vsock-6:0.7.3-5.el9_4.3.aarch64Patch ↗Advisory ↗
Red HatCVE-2025-61726CVSS 7.5Red Hat Openshift Data Foundation 4.19registry.redhat.io/odf4/cephcsi-rhel9-operator@sha256:225ba1747733c974fd4a3c9b49f657b180b83486d1c35a473e8e5a2b96abcc53_arm64Patch ↗Advisory ↗
Red HatCVE-2025-61728CVSS 7.5Red Hat OpenShift Container Platform 4.16registry.redhat.io/openshift4/aws-kms-encryption-provider-rhel9@sha256:4b0358e16d845b50b56a29ddbdc0ef6f1ba6861f14f49976a8dd4306e003195b_amd64Patch ↗Advisory ↗
Red HatCVE-2025-61728CVSS 7.5Red Hat Enterprise Linux AppStream EUS (v.9.4)podman-4:4.9.4-20.el9_4.2.aarch64Patch ↗Advisory ↗
Red HatCVE-2025-61729CVSS 7.5Red Hat Enterprise Linux AppStream EUS (v.9.4)podman-4:4.9.4-20.el9_4.2.aarch64Patch ↗Advisory ↗
Red HatCVE-2025-61729CVSS 7.5Red Hat Enterprise Linux AppStream EUS (v.9.4)skopeo-2:1.14.5-2.el9_4.4.aarch64Patch ↗Advisory ↗
Red HatCVE-2025-61729CVSS 7.5Red Hat Enterprise Linux AppStream EUS (v.9.4)buildah-2:1.33.13-3.el9_4.1.aarch64Patch ↗Advisory ↗
Red HatCVE-2025-61729CVSS 7.5Red Hat Enterprise Linux AppStream EUS (v.9.4)runc-4:1.2.9-1.el9_4.1.aarch64Patch ↗Advisory ↗
Red HatCVE-2025-61729CVSS 7.5Red Hat Enterprise Linux AppStream EUS (v.9.4)containernetworking-plugins-1:1.4.0-6.el9_4.3.aarch64Patch ↗Advisory ↗
Red HatCVE-2025-61729CVSS 7.5Red Hat Enterprise Linux AppStream EUS (v.9.4)gvisor-tap-vsock-6:0.7.3-5.el9_4.3.aarch64Patch ↗Advisory ↗
Red HatCVE-2025-61729CVSS 7.5Red Hat Openshift Data Foundation 4.19registry.redhat.io/odf4/cephcsi-rhel9-operator@sha256:225ba1747733c974fd4a3c9b49f657b180b83486d1c35a473e8e5a2b96abcc53_arm64Patch ↗Advisory ↗
Red HatCVE-2025-61732CVSS 7.4Red Hat OpenShift Container Platform 4.16registry.redhat.io/openshift4/aws-kms-encryption-provider-rhel9@sha256:4b0358e16d845b50b56a29ddbdc0ef6f1ba6861f14f49976a8dd4306e003195b_amd64Patch ↗Advisory ↗
Red HatCVE-2025-66614CVSS 5.3Red Hat JBoss Web Server 6.2 on RHEL 10jws6-tomcat-0:10.1.49-10.redhat_00008.1.el10jws.noarchPatch ↗Advisory ↗
Red HatCVE-2025-68121CVSS 7.4Red Hat Enterprise Linux AppStream EUS (v.9.4)podman-4:4.9.4-20.el9_4.2.aarch64Patch ↗Advisory ↗
Red HatCVE-2025-68121CVSS 7.4Red Hat Enterprise Linux AppStream EUS (v.9.4)skopeo-2:1.14.5-2.el9_4.4.aarch64Patch ↗Advisory ↗
Red HatCVE-2025-68121CVSS 7.4Red Hat Enterprise Linux AppStream EUS (v.9.4)buildah-2:1.33.13-3.el9_4.1.aarch64Patch ↗Advisory ↗
Red HatCVE-2025-68121CVSS 7.4Red Hat Enterprise Linux AppStream EUS (v.9.4)runc-4:1.2.9-1.el9_4.1.aarch64Patch ↗Advisory ↗
Red HatCVE-2025-68121CVSS 7.4Red Hat Enterprise Linux AppStream EUS (v.9.4)containernetworking-plugins-1:1.4.0-6.el9_4.3.aarch64Patch ↗Advisory ↗
Red HatCVE-2025-68121CVSS 7.4Red Hat Enterprise Linux AppStream EUS (v.9.4)gvisor-tap-vsock-6:0.7.3-5.el9_4.3.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-24733CVSS 5.3Red Hat JBoss Web Server 6.2 on RHEL 10jws6-tomcat-0:10.1.49-10.redhat_00008.1.el10jws.noarchPatch ↗Advisory ↗
Red HatCVE-2026-25679CVSS 7.5Red Hat Quay 3.9registry.redhat.io/quay/quay-rhel8@sha256:2c3c6f149c673cfd68cb5cc62f75bb75480a8d4f4470a7de93191bca1cc0f253_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-25679CVSS 7.5Red Hat Enterprise Linux AppStream EUS (v.9.4)podman-4:4.9.4-20.el9_4.2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-25679CVSS 7.5Red Hat Enterprise Linux AppStream EUS (v.9.4)skopeo-2:1.14.5-2.el9_4.4.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-25679CVSS 7.5Red Hat Enterprise Linux AppStream EUS (v.9.4)buildah-2:1.33.13-3.el9_4.1.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-25679CVSS 7.5Red Hat Enterprise Linux AppStream EUS (v.9.4)runc-4:1.2.9-1.el9_4.1.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-25679CVSS 7.5Red Hat Enterprise Linux AppStream EUS (v.9.4)containernetworking-plugins-1:1.4.0-6.el9_4.3.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-25679CVSS 7.5Red Hat Enterprise Linux AppStream EUS (v.9.4)gvisor-tap-vsock-6:0.7.3-5.el9_4.3.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-27459CVSS 8.1Red Hat Quay 3.9registry.redhat.io/quay/quay-rhel8@sha256:2c3c6f149c673cfd68cb5cc62f75bb75480a8d4f4470a7de93191bca1cc0f253_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-27942CVSS 7.5Red Hat Openshift Data Foundation 4.2registry.redhat.io/odf4/cephcsi-rhel9-operator@sha256:2cebd0dc24a731f2c2d33a7b1930d9bf65845ab83817775d378c07630a1e55c1_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-32286CVSS 7.5Red Hat Quay 3.9registry.redhat.io/quay/quay-rhel8@sha256:2c3c6f149c673cfd68cb5cc62f75bb75480a8d4f4470a7de93191bca1cc0f253_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-32990CVSS 7.3Red Hat JBoss Web Server 6.2 on RHEL 10jws6-tomcat-0:10.1.49-10.redhat_00008.1.el10jws.noarchPatch ↗Advisory ↗
Red HatCVE-2026-33036CVSS 7.5Red Hat Openshift Data Foundation 4.2registry.redhat.io/odf4/cephcsi-rhel9-operator@sha256:2cebd0dc24a731f2c2d33a7b1930d9bf65845ab83817775d378c07630a1e55c1_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-33036CVSS 7.5Red Hat Openshift Data Foundation 4.19registry.redhat.io/odf4/cephcsi-rhel9-operator@sha256:225ba1747733c974fd4a3c9b49f657b180b83486d1c35a473e8e5a2b96abcc53_arm64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat OpenShift Container Platform 4.16registry.redhat.io/openshift4/ose-sriov-network-device-plugin-rhel9@sha256:3f36c9fe97e7a51fe5690f19c604c3713527981c9367b8b7686882e36aaf93ea_arm64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat Quay 3.9registry.redhat.io/quay/quay-rhel8@sha256:2c3c6f149c673cfd68cb5cc62f75bb75480a8d4f4470a7de93191bca1cc0f253_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1multicluster engine for Kubernetes 2.1registry.redhat.io/multicluster-engine/assisted-installer-controller-rhel9@sha256:085d4698e4eb08202f1f9f1e6a85a3b0251a5d185ca9c9f4b77612640dd4fb54_arm64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat Openshift Data Foundation 4.2registry.redhat.io/odf4/cephcsi-rhel9-operator@sha256:2cebd0dc24a731f2c2d33a7b1930d9bf65845ab83817775d378c07630a1e55c1_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat Openshift Data Foundation 4.19registry.redhat.io/odf4/cephcsi-rhel9-operator@sha256:225ba1747733c974fd4a3c9b49f657b180b83486d1c35a473e8e5a2b96abcc53_arm64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1multicluster engine for Kubernetes 2.11.0registry.redhat.io/multicluster-engine/assisted-installer-agent-rhel9@sha256:49c62e8ac4762849f1596729a752cd88a0d6aefb40a7a459e9b22493c1e275fd_arm64Patch ↗Advisory ↗
Red HatCVE-2026-34986CVSS 7.5Red Hat Quay 3.9registry.redhat.io/quay/quay-rhel8@sha256:2c3c6f149c673cfd68cb5cc62f75bb75480a8d4f4470a7de93191bca1cc0f253_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-34986CVSS 7.5multicluster engine for Kubernetes 2.1registry.redhat.io/multicluster-engine/assisted-installer-agent-rhel9@sha256:2015da323dfa9350f4192cce4d835c6a156041ebb8f13e3974e86cd8a0ac1114_arm64Patch ↗Advisory ↗
Red HatCVE-2026-34986CVSS 7.5Red Hat Openshift Data Foundation 4.2registry.redhat.io/odf4/cephcsi-rhel9-operator@sha256:2cebd0dc24a731f2c2d33a7b1930d9bf65845ab83817775d378c07630a1e55c1_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-34986CVSS 7.5Red Hat Openshift Data Foundation 4.19registry.redhat.io/odf4/cephcsi-rhel9-operator@sha256:225ba1747733c974fd4a3c9b49f657b180b83486d1c35a473e8e5a2b96abcc53_arm64Patch ↗Advisory ↗
Red HatCVE-2026-40175CVSS 9.0Red Hat OpenShift Container Platform 4.16registry.redhat.io/openshift4/ose-console-rhel9@sha256:1e9687a24bd05a1982161d2f6fdfa250d169afbbbbeccada226dfc170d542b95_arm64Patch ↗Advisory ↗
Red HatCVE-2026-4427Important (Red Hat rating)Red Hat Quay 3.9registry.redhat.io/quay/quay-rhel8@sha256:2c3c6f149c673cfd68cb5cc62f75bb75480a8d4f4470a7de93191bca1cc0f253_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-4800CVSS 8.1Red Hat Openshift Data Foundation 4.2registry.redhat.io/odf4/cephcsi-rhel9-operator@sha256:2cebd0dc24a731f2c2d33a7b1930d9bf65845ab83817775d378c07630a1e55c1_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-4800CVSS 8.1Red Hat Openshift Data Foundation 4.19registry.redhat.io/odf4/cephcsi-rhel9-operator@sha256:225ba1747733c974fd4a3c9b49f657b180b83486d1c35a473e8e5a2b96abcc53_arm64Patch ↗Advisory ↗
Red HatCVE-2026-4878CVSS 6.7Red Hat Enterprise Linux AppStream (v. 10)libcap-debuginfo-0:2.69-7.el10_1.1.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-4878CVSS 6.7Red Hat Enterprise Linux AppStream (v. 9)libcap-debuginfo-0:2.48-10.el9_7.1.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-7163CVSS 6.1multicluster engine for Kubernetes 2.1registry.redhat.io/multicluster-engine/assisted-service-9-rhel9@sha256:07ff3070b9860ada744508a2a1710014c23f7f44a1ac8547c8885368d79baee3_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-7163CVSS 6.1multicluster engine for Kubernetes 2.11.0registry.redhat.io/multicluster-engine/assisted-service-9-rhel9@sha256:1133ab36a25af5c4c813b104d26502705be4932c334641243a6fb390637a6e17_ppc64lePatch ↗Advisory ↗
Red HatCVE-2025-47913CVSS 7.5Red Hat Enterprise Linux AppStream EUS (v.9.6)buildah-2:1.39.6-2.el9_6.aarch64Patch ↗Advisory ↗
Red HatCVE-2025-61726CVSS 7.5Red Hat OpenStack Services on OpenShift 18.0registry.redhat.io/rhoso-operators/barbican-rhel9-operator@sha256:93cca70ca2d64dff06450c3e39f6b69c5287e57b3a4465fc31a45ce6247e4aae_amd64Patch ↗Advisory ↗
Red HatCVE-2025-61726CVSS 7.5Red Hat Enterprise Linux AppStream EUS (v.9.6)buildah-2:1.39.6-2.el9_6.aarch64Patch ↗Advisory ↗
Red HatCVE-2025-61729CVSS 7.5Red Hat Enterprise Linux AppStream EUS (v.9.6)buildah-2:1.39.6-2.el9_6.aarch64Patch ↗Advisory ↗
Red HatCVE-2025-65637CVSS 7.5Red Hat Enterprise Linux AppStream E4S (v.9.2)oci-seccomp-bpf-hook-0:1.2.10-1.el9_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2025-65637CVSS 7.5Red Hat OpenStack Services on OpenShift 18.0golang-github-openstack-k8s-operators-os-diff-0:0.1.1-18.0.20260225161428.32d52e7.el9ost.srcPatch ↗Advisory ↗
Red HatCVE-2025-68121CVSS 7.4Red Hat OpenStack Services on OpenShift 18.0registry.redhat.io/rhoso-operators/sg-core-rhel9@sha256:3e5385acf99bd1cd98161c5ebbfcd492110416495931846ab416ada808ce88a8_amd64Patch ↗Advisory ↗
Red HatCVE-2025-68121CVSS 7.4Red Hat Enterprise Linux AppStream EUS (v.9.6)buildah-2:1.39.6-2.el9_6.aarch64Patch ↗Advisory ↗
Red HatCVE-2025-68121CVSS 7.4Red Hat OpenStack Services on OpenShift 18.0golang-github-openstack-k8s-operators-os-diff-0:0.1.1-18.0.20260225161428.32d52e7.el9ost.srcPatch ↗Advisory ↗
Red HatCVE-2025-69873CVSS 7.5Red Hat OpenShift Container Platform 4.19registry.redhat.io/openshift4/ose-monitoring-plugin-rhel9@sha256:013f0b271dc70347bae313209781261c76127a19b3a2f8bd074d170a84e49047_amd64Patch ↗Advisory ↗
Red HatCVE-2026-25679CVSS 7.5Red Hat OpenShift Service Mesh 2.6registry.redhat.io/openshift-service-mesh/istio-cni-rhel8@sha256:55eff6f4571c6f9ac79071da166328cff43afe999364cf3a1b6428896ea65f01_s390xPatch ↗Advisory ↗
Red HatCVE-2026-25679CVSS 7.5Red Hat OpenStack Services on OpenShift 18.0registry.redhat.io/rhoso-operators/sg-core-rhel9@sha256:3e5385acf99bd1cd98161c5ebbfcd492110416495931846ab416ada808ce88a8_amd64Patch ↗Advisory ↗
Red HatCVE-2026-25679CVSS 7.5Red Hat Enterprise Linux AppStream EUS (v.9.6)buildah-2:1.39.6-2.el9_6.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-25679CVSS 7.5Red Hat Quay 3.12registry.redhat.io/quay/quay-rhel8@sha256:3c87ef209deb488a3c37626273123280364972c155ae53d986fbc784bf219892_amd64Patch ↗Advisory ↗
Red HatCVE-2026-25679CVSS 7.5Red Hat Quay 3.1registry.redhat.io/quay/quay-rhel8@sha256:1f42a9088fd931804a16d6170c2d65a1a49b2433e906d3e3ac59f5169793ae8d_s390xPatch ↗Advisory ↗
Red HatCVE-2026-27143CVSS 8.1Red Hat OpenShift Service Mesh 2.6registry.redhat.io/openshift-service-mesh/istio-cni-rhel8@sha256:55eff6f4571c6f9ac79071da166328cff43afe999364cf3a1b6428896ea65f01_s390xPatch ↗Advisory ↗
Red HatCVE-2026-27144CVSS 8.1Red Hat OpenShift Service Mesh 2.6registry.redhat.io/openshift-service-mesh/istio-cni-rhel8@sha256:55eff6f4571c6f9ac79071da166328cff43afe999364cf3a1b6428896ea65f01_s390xPatch ↗Advisory ↗
Red HatCVE-2026-27459CVSS 8.1Red Hat Quay 3.12registry.redhat.io/quay/quay-rhel8@sha256:3c87ef209deb488a3c37626273123280364972c155ae53d986fbc784bf219892_amd64Patch ↗Advisory ↗
Red HatCVE-2026-27459CVSS 8.1Red Hat Quay 3.1registry.redhat.io/quay/quay-rhel8@sha256:1f42a9088fd931804a16d6170c2d65a1a49b2433e906d3e3ac59f5169793ae8d_s390xPatch ↗Advisory ↗
Red HatCVE-2026-29063CVSS 8.8multicluster engine for Kubernetes 2.7registry.redhat.io/multicluster-engine/console-mce-rhel9@sha256:0151ddbcc857a22209eea1e787956f902348743b705a614d01dc1d8164f86092_arm64Patch ↗Advisory ↗
Red HatCVE-2026-29063CVSS 8.8Red Hat Quay 3.1registry.redhat.io/quay/quay-rhel8@sha256:1f42a9088fd931804a16d6170c2d65a1a49b2433e906d3e3ac59f5169793ae8d_s390xPatch ↗Advisory ↗
Red HatCVE-2026-29074CVSS 7.5Red Hat Quay 3.12registry.redhat.io/quay/quay-rhel8@sha256:3c87ef209deb488a3c37626273123280364972c155ae53d986fbc784bf219892_amd64Patch ↗Advisory ↗
Red HatCVE-2026-29074CVSS 7.5Red Hat Quay 3.1registry.redhat.io/quay/quay-rhel8@sha256:1f42a9088fd931804a16d6170c2d65a1a49b2433e906d3e3ac59f5169793ae8d_s390xPatch ↗Advisory ↗
Red HatCVE-2026-32280CVSS 7.5Red Hat Enterprise Linux AppStream (v. 8)grafana-0:9.2.10-30.el8_10.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-32280CVSS 7.5Red Hat Enterprise Linux AppStream (v. 8)grafana-pcp-0:5.1.1-14.el8_10.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-32280CVSS 7.5Red Hat OpenShift Service Mesh 2.6registry.redhat.io/openshift-service-mesh/istio-cni-rhel8@sha256:55eff6f4571c6f9ac79071da166328cff43afe999364cf3a1b6428896ea65f01_s390xPatch ↗Advisory ↗
Red HatCVE-2026-32282CVSS 7.8Red Hat Enterprise Linux AppStream (v. 8)grafana-0:9.2.10-30.el8_10.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-32282CVSS 7.8Red Hat Enterprise Linux AppStream (v. 8)grafana-pcp-0:5.1.1-14.el8_10.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-32282CVSS 7.8Red Hat Enterprise Linux AppStream (v. 9)grafana-pcp-0:5.1.1-14.el9_7.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-32282CVSS 7.8Red Hat Enterprise Linux AppStream (v. 9)grafana-0:10.2.6-21.el9_7.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-32282CVSS 7.8Red Hat Enterprise Linux AppStream (v. 10)grafana-0:10.2.6-25.el10_1.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-32282CVSS 7.8Red Hat Advanced Cluster Management for Kubernetes 2.16registry.redhat.io/rhacm2/volsync-rhel9@sha256:035aff4df7d0f68580d1592dc48b44af82df171b12de09b5bb7df9842877edcb_arm64Patch ↗Advisory ↗
Red HatCVE-2026-32282CVSS 7.8Red Hat Enterprise Linux AppStream (v. 10)rhc-worker-playbook-0:0.2.3-5.el10_1.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-32283CVSS 7.5Red Hat Enterprise Linux AppStream (v. 8)grafana-0:9.2.10-30.el8_10.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-32283CVSS 7.5Red Hat Enterprise Linux AppStream (v. 8)grafana-pcp-0:5.1.1-14.el8_10.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-32283CVSS 7.5Red Hat Enterprise Linux AppStream (v. 9)grafana-pcp-0:5.1.1-14.el9_7.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-32283CVSS 7.5Red Hat Enterprise Linux AppStream (v. 9)grafana-0:10.2.6-21.el9_7.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-32283CVSS 7.5Red Hat Enterprise Linux AppStream (v. 10)grafana-0:10.2.6-25.el10_1.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-32283CVSS 7.5Red Hat Enterprise Linux AppStream (v. 10)rhc-worker-playbook-0:0.2.3-5.el10_1.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-32283CVSS 7.5Red Hat Enterprise Linux AppStream (v. 10)grafana-pcp-0:5.3.0-4.el10_1.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-32286CVSS 7.5Red Hat Quay 3.12registry.redhat.io/quay/quay-rhel8@sha256:3c87ef209deb488a3c37626273123280364972c155ae53d986fbc784bf219892_amd64Patch ↗Advisory ↗
Red HatCVE-2026-32286CVSS 7.5Red Hat Quay 3.1registry.redhat.io/quay/quay-rhel8@sha256:1f42a9088fd931804a16d6170c2d65a1a49b2433e906d3e3ac59f5169793ae8d_s390xPatch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat OpenShift Container Platform 4.19registry.redhat.io/openshift4/ose-powervs-block-csi-driver-rhel9-operator@sha256:1d5caff7082d26409e72c3d18b018f01178321f3922a0868af8058f839261d3b_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat OpenShift Container Platform 4.19registry.redhat.io/openshift4/ose-sriov-network-device-plugin-rhel9@sha256:8be03eb8cddd01ebdb98180c67dd640848a997e7ddf8b6e7f22a7559499869ea_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat Advanced Cluster Management for Kubernetes 2.16registry.redhat.io/rhacm2/volsync-rhel9@sha256:035aff4df7d0f68580d1592dc48b44af82df171b12de09b5bb7df9842877edcb_arm64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat Quay 3.12registry.redhat.io/quay/quay-rhel8@sha256:3c87ef209deb488a3c37626273123280364972c155ae53d986fbc784bf219892_amd64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat Quay 3.1registry.redhat.io/quay/quay-rhel8@sha256:1f42a9088fd931804a16d6170c2d65a1a49b2433e906d3e3ac59f5169793ae8d_s390xPatch ↗Advisory ↗
Red HatCVE-2026-34986CVSS 7.5multicluster engine for Kubernetes 2.7registry.redhat.io/multicluster-engine/assisted-installer-agent-rhel9@sha256:10522a9c015a3851fb92dc3c11096cce8d425dbb9737559a2a2bdf96c0bc8c90_amd64Patch ↗Advisory ↗
Red HatCVE-2026-34986CVSS 7.5Red Hat OpenShift Service Mesh 2.6registry.redhat.io/openshift-service-mesh/istio-cni-rhel8@sha256:55eff6f4571c6f9ac79071da166328cff43afe999364cf3a1b6428896ea65f01_s390xPatch ↗Advisory ↗
Red HatCVE-2026-34986CVSS 7.5Red Hat Quay 3.12registry.redhat.io/quay/quay-rhel8@sha256:3c87ef209deb488a3c37626273123280364972c155ae53d986fbc784bf219892_amd64Patch ↗Advisory ↗
Red HatCVE-2026-34986CVSS 7.5Red Hat Quay 3.1registry.redhat.io/quay/quay-rhel8@sha256:1f42a9088fd931804a16d6170c2d65a1a49b2433e906d3e3ac59f5169793ae8d_s390xPatch ↗Advisory ↗
Red HatCVE-2026-4427Important (Red Hat rating)Red Hat Quay 3.12registry.redhat.io/quay/quay-rhel8@sha256:3c87ef209deb488a3c37626273123280364972c155ae53d986fbc784bf219892_amd64Patch ↗Advisory ↗
Red HatCVE-2026-4427Important (Red Hat rating)Red Hat Quay 3.1registry.redhat.io/quay/quay-rhel8@sha256:1f42a9088fd931804a16d6170c2d65a1a49b2433e906d3e3ac59f5169793ae8d_s390xPatch ↗Advisory ↗
Red HatCVE-2026-7163CVSS 6.1multicluster engine for Kubernetes 2.7registry.redhat.io/multicluster-engine/assisted-service-9-rhel9@sha256:09d51fc2ad83b60575616be21d8c728856689d718f1faddf2377e6127adb7de6_s390xPatch ↗Advisory ↗
Red HatCVE-2025-13465CVSS 8.2multicluster engine for Kubernetes 2.9registry.redhat.io/multicluster-engine/console-mce-rhel9@sha256:071331b4f2052e9a039942a79e224ff0cb41bc7763b1240ab83169a10c9eb34e_ppc64lePatch ↗Advisory ↗
Red HatCVE-2025-61726CVSS 7.5Red Hat Advanced Cluster Management for Kubernetes 2.15registry.redhat.io/rhacm2/volsync-rhel9@sha256:15a198e39cc0d139796a6cc9fa3bc0e6607776b0020f044452265e0868e44598_ppc64lePatch ↗Advisory ↗
The next page could not be added in place. The ordinary page link remains available; try it again to navigate normally.