CYBERSECURITYTRACKER
TRACKING7,811 stories in this site build1,697 vulnerability news stories in this site build
Vulnerabilities

April 2026 vulnerabilities

Browse this month's returned vendor patches and exploitation signals, with filtering and stable pages for browsing without JavaScript.

Microsoft reports 2 vulnerabilities with exploitation detected in the wild this month. This defender-focused view covers 1,521 vulnerabilities across 4,657 returned patch records from 4 vendors. Filter the complete month, or browse the static page trail without JavaScript.

4,657all patch recordsClear filters141criticalShow these records2Microsoft exploitation detectedShow these records6Microsoft in the Known Exploited Vulnerabilities catalogShow these records969tracked hereShow these records
Patch records
Returned Microsoft and cross-vendor release records. One Common Vulnerabilities and Exposures (CVE) identifier can appear in more than one record.
Tracked here
Records joined to a vulnerability record in this tracker.
Defender priority
Sorts Microsoft exploitation status, Cybersecurity and Infrastructure Security Agency (CISA) Known Exploited Vulnerabilities (KEV) catalog status, severity, and tracker coverage first.
More likely
Microsoft's Exploitability Index rating that exploitation is more likely. It is not a claim that exploitation was detected.

Narrow the complete month

Filters use every patch record in this month, including records on later static pages.

Clear all

My Stack only keeps records whose vendor you have pinned. Pins are the vendors you added to My Stack on the home page. Your pin list is saved only in this browser. Shared view and feed requests include the selected vendor names in their URLs. Pins never change what the tracker collects or scores.

Microsoft-only signal filters exclude records without Microsoft signal data as unknown, report them separately, and never count them as absent. “Tracked here” covers both Microsoft and cross-vendor records.

Loading the complete-month filter index…

An Exploit Prediction Scoring System (EPSS) percentage is the global 30-day exploitation probability in the wild, not specific to you. Do not read it as a complete risk score or as evidence about your environment or impact.

Page 17 of 24 · records 3,201 to 3,400 of 4,657

Microsoft Security Response Center

CVEDateProductMSRC severityOut-of-bandEPSSTitle
CVE-2026-31655 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablepmdomain: imx8mp-blk-ctrl: Keep the NOC_HDCP clock enabled
CVE-2026-31628 ↗cbl2 kernel 5.15.202.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailablex86/CPU: Fix FPDSS on Zen1
CVE-2026-31579 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablewireguard: device: use exit_rtnl callback instead of manual rtnl_lock in pre_exit
CVE-2026-31629 ↗azl3 kernel 6.6.134.1-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenfc: llcp: add missing return after LLCP_CLOSED checks
CVE-2026-31639 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablerxrpc: Fix key reference count leak from call->key
CVE-2026-31601 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablevfio/xe: Reorganize the init to decouple migration from reset
CVE-2026-31580 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablebcache: fix cached_dev.sb_bio use-after-free and crash
CVE-2026-31587 ↗azl3 kernel 6.6.134.1-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableASoC: qcom: q6apm: move component registration to unmanaged version
CVE-2026-31575 ↗cbl2 kernel 5.15.202.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailablemm/userfaultfd: fix hugetlb fault mutex hash calculation
CVE-2026-31612 ↗azl3 kernel 6.6.134.1-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableksmbd: validate EaNameLength in smb2_get_ea()
CVE-2026-31623 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenet: usb: cdc-phonet: fix skb frags[] overflow in rx_complete()
CVE-2026-31594 ↗azl3 kernel 6.6.134.1-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablePCI: endpoint: pci-epf-vntb: Remove duplicate resource teardown
CVE-2026-31560 ↗cbl2 kernel 5.15.202.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailablespi: spi-dw-dma: fix print error log when wait finish transaction
CVE-2026-31671 ↗azl3 kernel 6.6.134.1-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablexfrm_user: fix info leak in build_report()
CVE-2026-31627 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablei2c: s3c24xx: check the size of the SMBUS message before using it
CVE-2026-31600 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablearm64: mm: Handle invalid large leaf mappings correctly
CVE-2026-32147 ↗azl3 erlang 26.2.5.18-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableSFTP chroot bypass via path traversal in SSH_FXP_FSETSTAT
CVE-2026-31642 ↗cbl2 kernel 5.15.202.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailablerxrpc: Fix call removal to use RCU safe deletion
CVE-2026-31611 ↗azl3 kernel 6.6.134.1-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableksmbd: require 3 sub-authorities before reading sub_auth[2]
CVE-2026-23414 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabletls: Purge async_hold in tls_decrypt_async_wait()
CVE-2026-31603 ↗azl3 kernel 6.6.134.1-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablestaging: sm750fb: fix division by zero in ps_to_hz()
CVE-2026-31670 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenet: rfkill: prevent unlimited numbers of rfkill events from being created
CVE-2026-31598 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableocfs2: fix possible deadlock between unlink and dio_end_io_write
CVE-2026-41411 ↗cbl2 vim 9.2.0240-1 on CBL-Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVim: Command injection via backtick expansion in tag filenames
CVE-2026-31645 ↗azl3 kernel 6.6.134.1-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenet: lan966x: fix page pool leak in error paths
CVE-2026-31610 ↗azl3 kernel 6.6.134.1-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableksmbd: fix mechToken leak when SPNEGO decode fails after token alloc
CVE-2026-31615 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableusb: gadget: renesas_usb3: validate endpoint index in standard request handlers
CVE-2026-31665 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenetfilter: nft_ct: fix use-after-free in timeout object destroy
CVE-2026-31577 ↗cbl2 kernel 5.15.202.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenilfs2: fix NULL i_assoc_inode dereference in nilfs_mdt_save_to_shadow_map
CVE-2026-31585 ↗azl3 kernel 6.6.134.1-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablemedia: vidtv: fix nfeeds state corruption on start_streaming failure
CVE-2026-31604 ↗azl3 kernel 6.6.134.1-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablewifi: rtw88: fix device leak on probe failure
CVE-2026-31626 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablestaging: rtl8723bs: initialize le_tmp64 in rtw_BIP_verify()
CVE-2026-31621 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablebnge: return after auxiliary_device_uninit() in error path
CVE-2026-31565 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableRDMA/irdma: Fix deadlock during netdev reset with active connections
CVE-2026-31672 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablewifi: rt2x00usb: fix devres lifetime
CVE-2026-23420 ↗cbl2 kernel 5.15.202.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailablewifi: wlcore: Fix a locking bug
CVE-2026-31651 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablemmc: vub300: fix NULL-deref on disconnect
CVE-2026-31624 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableHID: core: clamp report_size in s32ton() to avoid undefined shift
CVE-2026-31602 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableALSA: ctxfi: Limit PTP to a single page
CVE-2026-31599 ↗azl3 kernel 6.6.134.1-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablemedia: vidtv: fix NULL pointer dereference in vidtv_channel_pmt_match_sections
CVE-2026-31566 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledrm/amdgpu: Fix fence put before wait in amdgpu_amdkfd_submit_ib
CVE-2026-31605 ↗azl3 kernel 6.6.134.1-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablefbdev: udlfb: avoid divide-by-zero on FBIOPUT_VSCREENINFO
CVE-2026-31596 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableocfs2: handle invalid dinode in ocfs2_group_extend
CVE-2026-31660 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenfc: pn533: allocate rx skb before consuming bytes
CVE-2026-31574 ↗cbl2 kernel 5.15.202.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableclockevents: Add missing resets of the next_event_forced flag
CVE-2026-31638 ↗azl3 kernel 6.6.134.1-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablerxrpc: Only put the call ref if one was acquired
CVE-2026-31583 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablemedia: em28xx: fix use-after-free in em28xx_v4l2_open()
CVE-2026-31618 ↗azl3 kernel 6.6.134.1-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablefbdev: tdfxfb: avoid divide-by-zero on FBIOPUT_VSCREENINFO
CVE-2026-31590 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableKVM: SEV: Drop WARN on large size for KVM_MEMORY_ENCRYPT_REG_REGION
CVE-2026-31620 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableALSA: usx2y: us144mkii: fix NULL deref on missing interface 0
CVE-2026-31646 ↗azl3 kernel 6.6.134.1-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenet: lan966x: fix page_pool error handling in lan966x_fdma_rx_alloc_page_pool()
CVE-2026-31606 ↗azl3 kernel 6.6.134.1-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableusb: gadget: f_hid: don't call cdev_init while cdev in use
CVE-2026-31555 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablefutex: Clear stale exiting pointer in futex_lock_pi() retry path
CVE-2026-31557 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenvmet: move async event work off nvmet-wq
CVE-2026-31619 ↗azl3 kernel 6.6.134.1-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableALSA: fireworks: bound device-supplied status before string array lookup
CVE-2026-41079 ↗cbl2 cups 2.3.3op2-11 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableOpenPrinting CUPS: Heap out-of-bounds read in SNMP supply-level polling leaks stack memory to authenticated users
CVE-2025-13763 ↗azl3 opensc 0.26.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableLibopensc: opensc: multiple uses of uninitialized variable
CVE-2026-23446 ↗cbl2 kernel 5.15.202.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenet: usb: aqc111: Do not perform PM inside suspend callback
CVE-2026-23439 ↗cbl2 kernel 5.15.202.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableudp_tunnel: fix NULL deref caused by udp_sock_create6 when CONFIG_IPV6=n
CVE-2026-23438 ↗cbl2 kernel 5.15.202.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenet: mvpp2: guard flow control update with global_tx_fc in buffer switching
CVE-2026-23434 ↗cbl2 kernel 5.15.202.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailablemtd: rawnand: serialize lock/unlock against other NAND operations
CVE-2026-41989 ↗azl3 libgcrypt 1.10.3-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableLibgcrypt before 1.12.2 sometimes allows a heap-based buffer overflow and denial of service via crafted ECDH ciphertext to gcry_pk_decrypt.
CVE-2026-31531 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableipv4: nexthop: allocate skb dynamically in rtm_get_nexthop()
CVE-2026-31512 ↗cbl2 kernel 5.15.202.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableBluetooth: L2CAP: Validate PDU length before reading SDU length in l2cap_ecred_data_rcv()
CVE-2026-31492 ↗cbl2 kernel 5.15.202.1-1 on CBL-Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableRDMA/irdma: Initialize free_qp completion before using it
CVE-2026-31467 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableerofs: add GFP_NOIO in the bio completion if needed
CVE-2026-31498 ↗cbl2 kernel 5.15.202.1-1 on CBL-Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableBluetooth: L2CAP: Fix ERTM re-init and zero pdu_len infinite loop
CVE-2026-31503 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableudp: Fix wildcard bind conflict check when using hash2
CVE-2026-31480 ↗cbl2 kernel 5.15.202.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailabletracing: Fix potential deadlock in cpu hotplug with osnoise
CVE-2026-31451 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableext4: replace BUG_ON with proper error handling in ext4_read_inline_folio
CVE-2026-31509 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenfc: nci: fix circular locking dependency in nci_close_device
CVE-2026-31522 ↗cbl2 kernel 5.15.202.1-1 on CBL-Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableHID: magicmouse: avoid memory leak in magicmouse_report_fixup()
CVE-2026-31447 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableext4: reject mount if bigalloc with s_first_data_block != 0
CVE-2026-31439 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledmaengine: xilinx: xdma: Fix regmap init error handling
CVE-2026-31495 ↗cbl2 kernel 5.15.202.1-1 on CBL-Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenetfilter: ctnetlink: use netlink policy range checks
CVE-2026-31520 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableHID: apple: avoid memory leak in apple_report_fixup()
CVE-2026-31510 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableBluetooth: L2CAP: Fix null-ptr-deref on l2cap_sock_ready_cb
CVE-2026-31441 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledmaengine: idxd: Fix memory leak when a wq is reset
CVE-2026-31489 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablespi: meson-spicc: Fix double-put in remove path
CVE-2026-31461 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledrm/amd/display: Fix drm_edid leak in amdgpu_dm
CVE-2026-31440 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledmaengine: idxd: Fix leaking event log memory
CVE-2026-31497 ↗cbl2 kernel 5.15.202.1-1 on CBL-Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableBluetooth: btusb: clamp SCO altsetting table indices
CVE-2026-31462 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledrm/amdgpu: prevent immediate PASID reuse case
CVE-2026-31458 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablemm/damon/sysfs: check contexts->nr before accessing contexts_arr[0]
CVE-2026-31474 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablecan: isotp: fix tx.buf use-after-free in isotp_sendmsg()
CVE-2026-31488 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledrm/amd/display: Do not skip unrelated mode changes in DSC validation
CVE-2026-31476 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableksmbd: do not expire session on binding failure
CVE-2026-31455 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablexfs: stop reclaim before pushing AIL during unmount
CVE-2026-31452 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableext4: convert inline data to extents when truncate exceeds inline size
CVE-2026-31496 ↗cbl2 kernel 5.15.202.1-1 on CBL-Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenetfilter: nf_conntrack_expect: skip expectations in other netns via proc
CVE-2026-31486 ↗azl3 kernel 6.6.134.1-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablehwmon: (pmbus/core) Protect regulator operations with mutex
CVE-2026-31524 ↗cbl2 kernel 5.15.202.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableHID: asus: avoid memory leak in asus_report_fixup()
CVE-2026-3219 ↗azl3 python-pip 24.2-6 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablepip doesn't reject concatenated ZIP and tar archives
CVE-2026-22015 ↗azl3 mysql 8.0.45-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Information Schema). Supported versions that are affected are 8.0.0-8.0.45, 8.4.0-8.4.8 and 9.0.0-9.6.0. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized read access to a subset of MySQL Server accessible data. CVSS 3.1 Base Score 4.3 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N).
CVE-2026-35236 ↗cbl2 mysql 8.0.45-3 on CBL-Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.0-8.0.45, 8.4.0-8.4.8 and 9.0.0-9.6.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2026-35240 ↗cbl2 mysql 8.0.45-3 on CBL-Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.0-8.0.45, 8.4.0-8.4.8 and 9.0.0-9.6.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2026-22005 ↗azl3 mysql 8.0.45-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.0-8.0.45, 8.4.0-8.4.8 and 9.0.0-9.6.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2026-22004 ↗cbl2 mysql 8.0.45-3 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.0-8.0.45, 8.4.0-8.4.8 and 9.0.0-9.6.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2026-34276 ↗azl3 mysql 8.0.45-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Group Replication Plugin). Supported versions that are affected are 8.0.0-8.0.45, 8.4.0-8.4.8 and 9.0.0-9.6.0. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 6.5 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).
CVE-2026-34304 ↗azl3 mysql 8.0.45-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.0-8.0.45, 8.4.0-8.4.8 and 9.0.0-9.6.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2026-34308 ↗cbl2 mysql 8.0.45-3 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVulnerability in the MySQL Server product of Oracle MySQL (component: Server: JSON). Supported versions that are affected are 8.0.0-8.0.45, 8.4.0-8.4.8 and 9.0.0-9.6.0. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 6.5 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).
CVE-2026-34303 ↗azl3 mysql 8.0.45-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.0-8.0.45, 8.4.0-8.4.8 and 9.0.0-9.6.0. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 6.5 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).
CVE-2026-34267 ↗azl3 mysql 8.0.45-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.0-8.0.45. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2026-35238 ↗cbl2 mysql 8.0.45-3 on CBL-Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.0-8.0.45, 8.4.0-8.4.8 and 9.0.0-9.6.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2026-22017 ↗azl3 mysql 8.0.45-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.0-8.0.45, 8.4.0-8.4.8 and 9.0.0-9.6.0. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 6.5 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).
CVE-2026-22002 ↗cbl2 mysql 8.0.45-3 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.0-8.0.45, 8.4.0-8.4.8 and 9.0.0-9.6.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2026-34271 ↗azl3 mysql 8.0.45-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Group Replication Plugin). Supported versions that are affected are 8.0.0-8.0.45, 8.4.0-8.4.8 and 9.0.0-9.6.0. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 6.5 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).
CVE-2026-34293 ↗cbl2 mysql 8.0.45-3 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.0-8.0.45. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2026-34270 ↗azl3 mysql 8.0.45-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Group Replication Plugin). Supported versions that are affected are 8.0.0-8.0.45, 8.4.0-8.4.8 and 9.0.0-9.6.0. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 6.5 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).
CVE-2026-22009 ↗cbl2 mysql 8.0.45-3 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.0-8.0.45, 8.4.0-8.4.8 and 9.0.0-9.6.0. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 6.5 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).
CVE-2026-35237 ↗cbl2 mysql 8.0.45-3 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.0-8.0.45, 8.4.0-8.4.8 and 9.0.0-9.6.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2026-21998 ↗cbl2 mysql 8.0.45-3 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.0-8.0.45, 8.4.0-8.4.8 and 9.0.0-9.6.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2026-35239 ↗cbl2 mysql 8.0.45-3 on CBL-Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.0-8.0.45, 8.4.0-8.4.8 and 9.0.0-9.6.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2026-34278 ↗cbl2 mysql 8.0.45-3 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.0-8.0.45. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2026-31429 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenet: skb: fix cross-cache free of KFENCE-allocated skb head

Cross-vendor patches

VendorCVESeverityProductFixed versionPatchAdvisory
Red HatCVE-2026-22013CVSS 5.3Red Hat Enterprise Linux AppStream (v. 8)java-1.8.0-openjdk-1:1.8.0.492.b09-1.el8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-22013CVSS 5.3Red Hat Enterprise Linux AppStream (v. 8)java-17-openjdk-1:17.0.19.0.10-1.el8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-22013CVSS 5.3Red Hat Enterprise Linux AppStream EUS (v. 10.0)java-21-openjdk-1:21.0.11.0.10-1.el10_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-22021CVSS 5.3Red Hat Enterprise Linux AppStream (v. 8)java-1.8.0-openjdk-1:1.8.0.492.b09-1.el8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-22021CVSS 5.3Red Hat Enterprise Linux AppStream (v. 8)java-17-openjdk-1:17.0.19.0.10-1.el8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-22021CVSS 5.3Red Hat Enterprise Linux AppStream EUS (v. 10.0)java-21-openjdk-1:21.0.11.0.10-1.el10_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-22695CVSS 6.1Red Hat Enterprise Linux AppStream (v. 8)java-1.8.0-openjdk-1:1.8.0.492.b09-1.el8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-22695CVSS 6.1Red Hat Enterprise Linux AppStream (v. 8)java-17-openjdk-1:17.0.19.0.10-1.el8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-22695CVSS 6.1Red Hat Enterprise Linux AppStream EUS (v. 10.0)java-21-openjdk-1:21.0.11.0.10-1.el10_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-22801CVSS 6.6Red Hat Enterprise Linux AppStream (v. 8)java-1.8.0-openjdk-1:1.8.0.492.b09-1.el8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-22801CVSS 6.6Red Hat Enterprise Linux AppStream (v. 8)java-17-openjdk-1:17.0.19.0.10-1.el8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-22801CVSS 6.6Red Hat Enterprise Linux AppStream EUS (v. 10.0)java-21-openjdk-1:21.0.11.0.10-1.el10_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-23865CVSS 5.3Red Hat Enterprise Linux AppStream (v. 8)java-1.8.0-openjdk-1:1.8.0.492.b09-1.el8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-23865CVSS 5.3Red Hat Enterprise Linux AppStream (v. 8)java-17-openjdk-1:17.0.19.0.10-1.el8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-23865CVSS 5.3Red Hat Enterprise Linux AppStream EUS (v. 10.0)java-21-openjdk-1:21.0.11.0.10-1.el10_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-32281CVSS 5.9Red Hat Enterprise Linux AppStream (v. 9)go-toolset-0:1.25.9-1.el9_7.aarch64Patch ↗Advisory ↗
Red HatCVE-2023-40403CVSS 6.5Red Hat Update Infrastructure 5registry.redhat.io/rhui5/rhua-rhel9@sha256:7eae5b16539484129c6ce169b41a3e1da7d7dd1296d2677acf7e9c3d1bce00ed_amd64Patch ↗Advisory ↗
Red HatCVE-2025-12103CVSS 5.0Red Hat OpenShift AI 2.25registry.redhat.io/rhoai/odh-ta-lmes-driver-rhel9@sha256:6503aa2b0c29d01b947b6fde383850d03dcb2b9f9d70cf417b9e90d5e99d1740_arm64Patch ↗Advisory ↗
Red HatCVE-2025-68131CVSS 5.3Red Hat OpenShift AI 2.25registry.redhat.io/rhoai/odh-vllm-cpu-rhel9@sha256:bd911b7afc4acd32090ae53dd10c86b9266297c001dd6c6adf74fe7d28947959_s390xPatch ↗Advisory ↗
Red HatCVE-2025-69228CVSS 6.8Red Hat OpenShift AI 2.25registry.redhat.io/rhoai/odh-caikit-tgis-serving-rhel9@sha256:7f45c61f9c5cf97867f60ac97a40df84fc76662252ed59c73da9b1f1670e7d72_amd64Patch ↗Advisory ↗
Red HatCVE-2026-1002CVSS 5.3Red Hat OpenShift AI 2.25registry.redhat.io/rhoai/odh-trustyai-service-rhel9@sha256:03e6c08035193b34155d1a5bfa925ea5b86ffa082154907b55d29d82e64edce1_amd64Patch ↗Advisory ↗
Red HatCVE-2026-1502CVSS 4.5Red Hat Hardened Imagespython3-13-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-1642CVSS 5.9Red Hat Update Infrastructure 5registry.redhat.io/rhui5/rhua-rhel9@sha256:7eae5b16539484129c6ce169b41a3e1da7d7dd1296d2677acf7e9c3d1bce00ed_amd64Patch ↗Advisory ↗
Red HatCVE-2026-22013CVSS 5.3Red Hat Build of OpenJDK 8u492Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-22013CVSS 5.3Red Hat Build of OpenJDK 8u492Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-22013CVSS 5.3Red Hat Build of OpenJDK 17.0.9Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-22013CVSS 5.3Red Hat Build of OpenJDK 17.0.19Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-22013CVSS 5.3Red Hat Build of OpenJDK 21.0.11Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-22013CVSS 5.3Red Hat Build of OpenJDK 21.0.11Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-22013CVSS 5.3Red Hat Build of OpenJDK 25.0.3Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-22021CVSS 5.3Red Hat Build of OpenJDK 8u492Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-22021CVSS 5.3Red Hat Build of OpenJDK 8u492Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-22021CVSS 5.3Red Hat Build of OpenJDK 17.0.9Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-22021CVSS 5.3Red Hat Build of OpenJDK 17.0.19Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-22021CVSS 5.3Red Hat Build of OpenJDK 21.0.11Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-22021CVSS 5.3Red Hat Build of OpenJDK 21.0.11Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-22021CVSS 5.3Red Hat Build of OpenJDK 25.0.3Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-22773CVSS 6.5Red Hat OpenShift AI 2.25registry.redhat.io/rhoai/odh-vllm-cpu-rhel9@sha256:bd911b7afc4acd32090ae53dd10c86b9266297c001dd6c6adf74fe7d28947959_s390xPatch ↗Advisory ↗
Red HatCVE-2026-22852CVSS 5.6Red Hat Enterprise Linux AppStream E4S (v.8.8)freerdp-2:2.2.0-12.el8_8.5.ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-23732CVSS 6.5Red Hat Enterprise Linux AppStream E4S (v.8.8)freerdp-2:2.2.0-12.el8_8.5.ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-23865CVSS 5.3Red Hat Build of OpenJDK 8u492Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-23865CVSS 5.3Red Hat Build of OpenJDK 8u492Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-23865CVSS 5.3Red Hat Build of OpenJDK 17.0.9Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-23865CVSS 5.3Red Hat Build of OpenJDK 17.0.19Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-23865CVSS 5.3Red Hat Build of OpenJDK 21.0.11Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-23865CVSS 5.3Red Hat Build of OpenJDK 21.0.11Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-23865CVSS 5.3Red Hat Build of OpenJDK 25.0.3Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-23948CVSS 5.3Red Hat Enterprise Linux AppStream E4S (v.8.8)freerdp-2:2.2.0-12.el8_8.5.ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-24491CVSS 5.3Red Hat Enterprise Linux AppStream E4S (v.8.8)freerdp-2:2.2.0-12.el8_8.5.ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-24675CVSS 5.3Red Hat Enterprise Linux AppStream E4S (v.8.8)freerdp-2:2.2.0-12.el8_8.5.ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-24676CVSS 5.3Red Hat Enterprise Linux AppStream E4S (v.8.8)freerdp-2:2.2.0-12.el8_8.5.ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-24679CVSS 5.3Red Hat Enterprise Linux AppStream E4S (v.8.8)freerdp-2:2.2.0-12.el8_8.5.ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-24684CVSS 5.3Red Hat Enterprise Linux AppStream E4S (v.8.8)freerdp-2:2.2.0-12.el8_8.5.ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-26996CVSS 6.5Red Hat OpenShift AI 2.25registry.redhat.io/rhoai/odh-pipeline-runtime-datascience-cpu-py312-rhel9@sha256:23b0b8e64dbd45ee08586a145e5f615fdf91f963840561e26efac37c743e6d97_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-27099CVSS 4.6OpenShift Developer Tools and Services 4.21registry.redhat.io/ocp-tools-4/jenkins-rhel9@sha256:0a28ecee68681bd1cf50af7dfe9e5c4f54243712b02c3fa9871ee53e42782630_amd64Patch ↗Advisory ↗
Red HatCVE-2026-27099CVSS 4.6OpenShift Developer Tools and Services 4.13registry.redhat.io/ocp-tools-4/jenkins-rhel8@sha256:8b5e1f1b924de7b31a2856c84548a1369b433170205175ce65faa0d61aaae0a7_amd64Patch ↗Advisory ↗
Red HatCVE-2026-27099CVSS 4.6OpenShift Developer Tools and Services 4.15registry.redhat.io/ocp-tools-4/jenkins-rhel8@sha256:02c954e1692ff2ce7c85c1505fe48e65b2b21b2f368d514fca86343f4f96cd7c_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-27099CVSS 4.6OpenShift Developer Tools and Services 4.20registry.redhat.io/ocp-tools-4/jenkins-rhel9@sha256:0a28ecee68681bd1cf50af7dfe9e5c4f54243712b02c3fa9871ee53e42782630_amd64Patch ↗Advisory ↗
Red HatCVE-2026-27099CVSS 4.6OpenShift Developer Tools and Services 4.19registry.redhat.io/ocp-tools-4/jenkins-rhel9@sha256:0a28ecee68681bd1cf50af7dfe9e5c4f54243712b02c3fa9871ee53e42782630_amd64Patch ↗Advisory ↗
Red HatCVE-2026-27099CVSS 4.6OpenShift Developer Tools and Services 4.12registry.redhat.io/ocp-tools-4/jenkins-rhel8@sha256:8b5e1f1b924de7b31a2856c84548a1369b433170205175ce65faa0d61aaae0a7_amd64Patch ↗Advisory ↗
Red HatCVE-2026-27099CVSS 4.6OpenShift Developer Tools and Services 4.14registry.redhat.io/ocp-tools-4/jenkins-rhel8@sha256:02c954e1692ff2ce7c85c1505fe48e65b2b21b2f368d514fca86343f4f96cd7c_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-27099CVSS 4.6OpenShift Developer Tools and Services 4.17registry.redhat.io/ocp-tools-4/jenkins-rhel9@sha256:0a28ecee68681bd1cf50af7dfe9e5c4f54243712b02c3fa9871ee53e42782630_amd64Patch ↗Advisory ↗
Red HatCVE-2026-27099CVSS 4.6OpenShift Developer Tools and Services 4.16registry.redhat.io/ocp-tools-4/jenkins-rhel9@sha256:0a28ecee68681bd1cf50af7dfe9e5c4f54243712b02c3fa9871ee53e42782630_amd64Patch ↗Advisory ↗
Red HatCVE-2026-27099CVSS 4.6OpenShift Developer Tools and Services 4.18registry.redhat.io/ocp-tools-4/jenkins-rhel9@sha256:0a28ecee68681bd1cf50af7dfe9e5c4f54243712b02c3fa9871ee53e42782630_amd64Patch ↗Advisory ↗
Red HatCVE-2026-27100CVSS 4.3OpenShift Developer Tools and Services 4.21registry.redhat.io/ocp-tools-4/jenkins-rhel9@sha256:0a28ecee68681bd1cf50af7dfe9e5c4f54243712b02c3fa9871ee53e42782630_amd64Patch ↗Advisory ↗
Red HatCVE-2026-27100CVSS 4.3OpenShift Developer Tools and Services 4.13registry.redhat.io/ocp-tools-4/jenkins-rhel8@sha256:8b5e1f1b924de7b31a2856c84548a1369b433170205175ce65faa0d61aaae0a7_amd64Patch ↗Advisory ↗
Red HatCVE-2026-27100CVSS 4.3OpenShift Developer Tools and Services 4.15registry.redhat.io/ocp-tools-4/jenkins-rhel8@sha256:02c954e1692ff2ce7c85c1505fe48e65b2b21b2f368d514fca86343f4f96cd7c_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-27100CVSS 4.3OpenShift Developer Tools and Services 4.20registry.redhat.io/ocp-tools-4/jenkins-rhel9@sha256:0a28ecee68681bd1cf50af7dfe9e5c4f54243712b02c3fa9871ee53e42782630_amd64Patch ↗Advisory ↗
Red HatCVE-2026-27100CVSS 4.3OpenShift Developer Tools and Services 4.19registry.redhat.io/ocp-tools-4/jenkins-rhel9@sha256:0a28ecee68681bd1cf50af7dfe9e5c4f54243712b02c3fa9871ee53e42782630_amd64Patch ↗Advisory ↗
Red HatCVE-2026-27100CVSS 4.3OpenShift Developer Tools and Services 4.12registry.redhat.io/ocp-tools-4/jenkins-rhel8@sha256:8b5e1f1b924de7b31a2856c84548a1369b433170205175ce65faa0d61aaae0a7_amd64Patch ↗Advisory ↗
Red HatCVE-2026-27100CVSS 4.3OpenShift Developer Tools and Services 4.14registry.redhat.io/ocp-tools-4/jenkins-rhel8@sha256:02c954e1692ff2ce7c85c1505fe48e65b2b21b2f368d514fca86343f4f96cd7c_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-27100CVSS 4.3OpenShift Developer Tools and Services 4.17registry.redhat.io/ocp-tools-4/jenkins-rhel9@sha256:0a28ecee68681bd1cf50af7dfe9e5c4f54243712b02c3fa9871ee53e42782630_amd64Patch ↗Advisory ↗
Red HatCVE-2026-27100CVSS 4.3OpenShift Developer Tools and Services 4.16registry.redhat.io/ocp-tools-4/jenkins-rhel9@sha256:0a28ecee68681bd1cf50af7dfe9e5c4f54243712b02c3fa9871ee53e42782630_amd64Patch ↗Advisory ↗
Red HatCVE-2026-27100CVSS 4.3OpenShift Developer Tools and Services 4.18registry.redhat.io/ocp-tools-4/jenkins-rhel9@sha256:0a28ecee68681bd1cf50af7dfe9e5c4f54243712b02c3fa9871ee53e42782630_amd64Patch ↗Advisory ↗
Red HatCVE-2026-27888CVSS 5.3Red Hat OpenShift AI 2.25registry.redhat.io/rhoai/odh-llama-stack-core-rhel9@sha256:50b543073492a4ffa9b71b8466e4b53cb6baec8d8d1bf72eed5a63bf82ca73bf_arm64Patch ↗Advisory ↗
Red HatCVE-2026-27904CVSS 6.5Red Hat OpenShift AI 2.25registry.redhat.io/rhoai/odh-pipeline-runtime-datascience-cpu-py312-rhel9@sha256:23b0b8e64dbd45ee08586a145e5f615fdf91f963840561e26efac37c743e6d97_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-28417CVSS 4.4Red Hat Update Infrastructure 5registry.redhat.io/rhui5/cds-rhel9@sha256:8ac1507077086484155f94d2289df0f1d22bfe8f5f15589d6b354f11fe21d930_amd64Patch ↗Advisory ↗
Red HatCVE-2026-28421CVSS 5.3Red Hat Update Infrastructure 5registry.redhat.io/rhui5/cds-rhel9@sha256:8ac1507077086484155f94d2289df0f1d22bfe8f5f15589d6b354f11fe21d930_amd64Patch ↗Advisory ↗
Red HatCVE-2026-31958CVSS 5.3Red Hat OpenShift AI 2.25registry.redhat.io/rhoai/odh-llama-stack-core-rhel9@sha256:50b543073492a4ffa9b71b8466e4b53cb6baec8d8d1bf72eed5a63bf82ca73bf_arm64Patch ↗Advisory ↗
Red HatCVE-2026-32281CVSS 5.9Red Hat Enterprise Linux AppStream (v. 10)go-toolset-0:1.25.9-3.el10_1.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-33022CVSS 6.5Red Hat OpenShift Pipelines 1.2registry.redhat.io/openshift-pipelines/pipelines-controller-rhel9@sha256:05efa0704e5927d7126a0bd97075716efce2b6fccfd803ee32deb626a5c91ed1_arm64Patch ↗Advisory ↗
Red HatCVE-2026-33022CVSS 6.5Red Hat OpenShift Pipelines 1.2registry.redhat.io/openshift-pipelines/pipelines-operator-bundle@sha256:8cadde0c138f382b9da827165ddcc141e81f864d389dcb17d270e420c33d1085_amd64Patch ↗Advisory ↗
Red HatCVE-2026-33748CVSS 6.5Red Hat Trusted Artifact Signer 1.3registry.redhat.io/rhtas/client-server-rhel9@sha256:9607f5c16d8e9d7ee2491ac04db78a52eb13ee0e93eeef79ff8bb6c8f9430c72_amd64Patch ↗Advisory ↗
Red HatCVE-2026-3446CVSS 5.3Red Hat Hardened Imagespython3-12-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2023-53539CVSS 5.5Red Hat Enterprise Linux Server (v. 7 ELS)bpftool-0:3.10.0-1160.148.1.el7.ppc64Patch ↗Advisory ↗

Glossary