CYBERSECURITYTRACKER
TRACKING7,183 stories in this site build1,510 vulnerability news stories in this site build
Vulnerabilities

April 2026 vulnerabilities

Browse this month's returned vendor patches and exploitation signals, with filtering and stable pages for browsing without JavaScript.

Microsoft reports 2 vulnerabilities with exploitation detected in the wild this month. This defender-focused view covers 1,520 vulnerabilities across 4,656 returned patch records from 4 vendors. Filter the complete month, or browse the static page trail without JavaScript.

4,656all patch recordsClear filters142criticalShow these records2Microsoft exploitation detectedShow these records6Microsoft in the Known Exploited Vulnerabilities catalogShow these records393tracked hereShow these records
Patch records
Returned Microsoft and cross-vendor release records. One Common Vulnerabilities and Exposures (CVE) identifier can appear in more than one record.
Tracked here
Records joined to a vulnerability record in this tracker.
Defender priority
Sorts Microsoft exploitation status, Cybersecurity and Infrastructure Security Agency (CISA) Known Exploited Vulnerabilities (KEV) catalog status, severity, and tracker coverage first.
More likely
Microsoft's Exploitability Index rating that exploitation is more likely. It is not a claim that exploitation was detected.

Narrow the complete month

Filters use every patch record in this month, including records on later static pages.

Clear all

Microsoft-only signal filters exclude records without Microsoft signal data as unknown, report them separately, and never count them as absent. “Tracked here” covers both Microsoft and cross-vendor records.

Loading the complete-month filter index…

An Exploit Prediction Scoring System (EPSS) percentage is the global 30-day exploitation probability in the wild, not specific to you. Do not read it as a complete risk score or as evidence about your environment or impact.

Page 5 of 24 · records 801 to 1,000 of 4,656

Microsoft Security Response Center

CVEDateProductMSRC severityOut-of-bandEPSSTitle
CVE-2026-31656 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailabledrm/i915/gt: fix refcount underflow in intel_engine_park_heartbeat
CVE-2026-31674 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailablenetfilter: ip6t_rt: reject oversized addrnr in rt_mt6_check()
CVE-2026-31578 ↗cbl2 kernel 5.15.202.1-1 on CBL Mariner 2.0ImportantOut-of-bandNot availableMicrosoft rating unavailablemedia: as102: fix to not free memory after the device is registered in as102_usb_probe()
CVE-2026-31586 ↗azl3 kernel 6.6.134.1-2 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailablemm: blk-cgroup: fix use-after-free in cgwb_release_workfn()
CVE-2026-31576 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailablemedia: hackrf: fix to not free memory after the device is registered in hackrf_probe()
CVE-2026-31582 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailablehwmon: (powerz) Fix use-after-free on USB disconnect
CVE-2026-31675 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailablenet/sched: sch_netem: fix out-of-bounds access in packet corruption
CVE-2026-31630 ↗cbl2 kernel 5.15.202.1-1 on CBL Mariner 2.0ImportantOut-of-bandNot availableMicrosoft rating unavailablerxrpc: proc: size address buffers for %pISpc output
CVE-2026-31591 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailableKVM: SEV: Lock all vCPUs when synchronzing VMSAs for SNP launch finish
CVE-2026-41681 ↗azl3 rpm-ostree 2024.4-8 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailablerust-openssl: MdCtxRef::digest_final() writes past caller buffer with no length check
CVE-2026-31616 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailableusb: gadget: f_phonet: fix skb frags[] overflow in pn_rx_complete()
CVE-2026-31662 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailabletipc: fix bc_ackers underflow on duplicate GRP_ACK_MSG
CVE-2026-31609 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailablesmb: client: avoid double-free in smbd_free_send_io() after smbd_send_batch_flush()
CVE-2026-31568 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailables390/mm: Add missing secure storage access fixups for donated memory
CVE-2026-41678 ↗azl3 clamav 1.5.2-1 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailablerust-openssl: Incorrect bounds assertion in aes key wrap
CVE-2026-31613 ↗azl3 kernel 6.6.138.1-1 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailablesmb: client: fix OOB reads parsing symlink error response
CVE-2026-41676 ↗cbl2 rpm-ostree 2022.1-8 on CBL Mariner 2.0ImportantOut-of-bandNot availableMicrosoft rating unavailablerust-openssl: Deriver::derive and PkeyCtxRef::derive can overflow short buffers on OpenSSL 1.1.1
CVE-2026-31608 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailablesmb: server: avoid double-free in smb_direct_free_sendmsg after smb_direct_flush_send_list()
CVE-2026-31537 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailablesmb: server: make use of smbdirect_socket.send_io.bcredits
CVE-2026-41907 ↗azl3 uuid 1.6.2-51 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailableuuid: Missing buffer bounds check in `v3`/`v5`/`v6` when `buf` is provided
CVE-2026-41066 ↗azl3 python-lxml 4.9.3-1 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailablelxml: Default configuration of iterparse() and ETCompatXMLParser() allows XXE to local files
CVE-2026-31663 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailablexfrm: hold dev ref until after transport_finish NF_HOOK
CVE-2026-31581 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailableALSA: 6fire: fix use-after-free on disconnect
CVE-2026-23422 ↗cbl2 kernel 5.15.202.1-1 on CBL Mariner 2.0ImportantOut-of-bandNot availableMicrosoft rating unavailabledpaa2-switch: Fix interrupt storm after receiving bad if_id in IRQ handler
CVE-2026-31570 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailablecan: gw: fix OOB heap access in cgw_csum_crc8_rel()
CVE-2026-31589 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailablemm: call ->free_folio() directly in folio_unmap_invalidate()
CVE-2026-31617 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailableusb: gadget: f_ncm: validate minimum block_len in ncm_unwrap_ntb()
CVE-2026-31667 ↗cbl2 kernel 5.15.202.1-1 on CBL Mariner 2.0ImportantOut-of-bandNot availableMicrosoft rating unavailableInput: uinput - fix circular locking dependency with ff-core
CVE-2026-31593 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailableKVM: SEV: Reject attempts to sync VMSA of an already-launched/encrypted vCPU
CVE-2026-41205 ↗azl3 python-mako 1.2.4-3 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailableMako: Path traversal via double-slash URI prefix in TemplateLookup
CVE-2026-23447 ↗cbl2 kernel 5.15.202.1-1 on CBL Mariner 2.0ImportantOut-of-bandNot availableMicrosoft rating unavailablenet: usb: cdc_ncm: add ndpoffset to NDP32 nframes bounds check
CVE-2026-23428 ↗cbl2 kernel 5.15.202.1-1 on CBL Mariner 2.0ImportantOut-of-bandNot availableMicrosoft rating unavailableksmbd: fix use-after-free of share_conf in compound request
CVE-2026-31532 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailablecan: raw: fix ro->uniq use-after-free in raw_rcv()
CVE-2026-41445 ↗cbl2 tensorflow 2.11.1-2 on CBL Mariner 2.0ImportantOut-of-bandNot availableMicrosoft rating unavailableKissFFT Integer Overflow Heap Buffer Overflow via kiss_fftndr_alloc()
CVE-2026-6409 ↗azl3 mysql 8.0.45-2 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailableDenial of Service (DoS) vulnerability exists in the Protobuf PHP library during the parsing of untrusted input
CVE-2026-28808 ↗azl3 erlang 26.2.5.20-1 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailableScriptAlias CGI targets bypass directory auth in inets httpd (mod_auth vs mod_cgi path mismatch)
CVE-2026-6507 ↗cbl2 dnsmasq 2.90-1 on CBL Mariner 2.0ImportantOut-of-bandNot availableMicrosoft rating unavailableDnsmasq: dnsmasq: denial of service due to out-of-bounds write in dhcp bootreply processing
CVE-2026-31521 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailablemodule: Fix kernel panic when a symbol st_shndx is out of bounds
CVE-2026-31493 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailableRDMA/efa: Fix use of completion ctx after free
CVE-2026-31473 ↗cbl2 kernel 5.15.202.1-1 on CBL Mariner 2.0ImportantOut-of-bandNot availableMicrosoft rating unavailablemedia: mc, v4l2: serialize REINIT and REQBUFS with req_queue_mutex
CVE-2026-31450 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailableext4: publish jinode after initialization
CVE-2026-31494 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailablenet: macb: use the current queue number for stats
CVE-2026-31525 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailablebpf: Fix undefined behavior in interpreter sdiv/smod for INT_MIN
CVE-2026-31453 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailablexfs: avoid dereferencing log items after push callbacks
CVE-2026-31528 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailableperf: Make sure to use pmu_ctx->pmu for groups
CVE-2026-31530 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailablecxl/port: Fix use after free of parent_port in cxl_detach_ep()
CVE-2026-31477 ↗cbl2 kernel 5.15.202.1-1 on CBL Mariner 2.0ImportantOut-of-bandNot availableMicrosoft rating unavailableksmbd: fix memory leaks and NULL deref in smb2_lock()
CVE-2026-31500 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailableBluetooth: btintel: serialize btintel_hw_error() with hci_req_sync_lock
CVE-2026-31507 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailablenet/smc: fix double-free of smc_spd_priv when tee() duplicates splice pipe buffer
CVE-2026-31448 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailableext4: avoid infinite loops caused by residual data
CVE-2026-31483 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailables390/syscalls: Add spectre boundary for syscall dispatch table
CVE-2026-31485 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailablespi: spi-fsl-lpspi: fix teardown order issue (UAF)
CVE-2026-31433 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailableksmbd: fix potencial OOB in get_file_all_info() for compound requests
CVE-2026-31519 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailablebtrfs: set BTRFS_ROOT_ORPHAN_CLEANUP during subvol create
CVE-2026-31432 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailableksmbd: fix OOB write in QUERY_INFO for compound requests
CVE-2026-31502 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailableteam: fix header_ops type confusion with non-Ethernet ports
CVE-2026-31446 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailableext4: fix use-after-free in update_super_work when racing with umount
CVE-2026-31518 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailableesp: fix skb leak with espintcp and async crypto
CVE-2026-31482 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailables390/entry: Scrub r12 register on kernel entry
CVE-2026-31449 ↗azl3 kernel 6.6.134.1-2 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailableext4: validate p_idx bounds in ext4_ext_correct_indexes
CVE-2026-31454 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailablexfs: save ailp before dropping the AIL lock in push callbacks
CVE-2026-31469 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailablevirtio_net: Fix UAF on dst_ops when IFF_XMIT_DST_RELEASE is cleared and napi_tx is false
CVE-2026-31464 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailablescsi: ibmvfc: Fix OOB access in ibmvfc_discover_targets_done()
CVE-2026-31505 ↗azl3 kernel 6.6.134.1-2 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailableiavf: fix out-of-bounds writes in iavf_get_ethtool_stats()
CVE-2026-31523 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailablenvme-pci: ensure we're polling a polled queue
CVE-2026-31504 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailablenet: fix fanout UAF in packet_release() via NETDEV_UP race
CVE-2026-31506 ↗azl3 kernel 6.6.134.1-2 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailablenet: bcmasp: fix double free of WoL irq
CVE-2026-31527 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailabledriver core: platform: use generic driver_override infrastructure
CVE-2026-31516 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailablexfrm: prevent policy_hthresh.work from racing with netns teardown
CVE-2026-31515 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailableaf_key: validate families in pfkey_send_migrate()
CVE-2026-31487 ↗azl3 kernel 6.6.134.1-2 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailablespi: use generic driver_override infrastructure
CVE-2026-40890 ↗cbl2 cri-o 1.22.3-20 on CBL Mariner 2.0ImportantOut-of-bandNot availableMicrosoft rating unavailablegithub.com/gomarkdown/markdown: Out-of-bounds Read in SmartypantsRenderer
CVE-2026-40706 ↗azl3 ntfs-3g 2022.10.3-2 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailableIn NTFS-3G 2022.10.3 before 2026.2.25, a heap buffer overflow exists in ntfs_build_permissions_posix() in acls.c that allows an attacker to corrupt heap memory in the SUID-root ntfs-3g binary by crafting a malicious NTFS image. The overflow is triggered on the READ path (stat, readdir, open) when processing a security descriptor with multiple ACCESS_DENIED ACEs containing WRITE_OWNER from distinct group SIDs.

Cross-vendor patches

VendorCVESeverityProductFixed versionPatchAdvisory
Red HatCVE-2026-6751CVSS 7.5Red Hat Enterprise Linux AppStream (v. 10)firefox-0:140.10.0-1.el10_1.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-6752CVSS 7.5Red Hat Enterprise Linux AppStream (v. 9)firefox-0:140.10.0-1.el9_7.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-6752CVSS 7.5Red Hat Enterprise Linux AppStream (v. 8)firefox-0:140.10.0-1.el8_10.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-6752CVSS 7.5Red Hat Enterprise Linux AppStream (v. 10)firefox-0:140.10.0-1.el10_1.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-6753CVSS 7.5Red Hat Enterprise Linux AppStream (v. 9)firefox-0:140.10.0-1.el9_7.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-6753CVSS 7.5Red Hat Enterprise Linux AppStream (v. 8)firefox-0:140.10.0-1.el8_10.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-6753CVSS 7.5Red Hat Enterprise Linux AppStream (v. 10)firefox-0:140.10.0-1.el10_1.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-6754CVSS 7.5Red Hat Enterprise Linux AppStream (v. 9)firefox-0:140.10.0-1.el9_7.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-6754CVSS 7.5Red Hat Enterprise Linux AppStream (v. 8)firefox-0:140.10.0-1.el8_10.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-6754CVSS 7.5Red Hat Enterprise Linux AppStream (v. 10)firefox-0:140.10.0-1.el10_1.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-6785CVSS 7.5Red Hat Enterprise Linux AppStream (v. 9)firefox-0:140.10.0-1.el9_7.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-6785CVSS 7.5Red Hat Enterprise Linux AppStream (v. 8)firefox-0:140.10.0-1.el8_10.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-6785CVSS 7.5Red Hat Enterprise Linux AppStream (v. 10)firefox-0:140.10.0-1.el10_1.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-6786CVSS 7.5Red Hat Enterprise Linux AppStream (v. 9)firefox-0:140.10.0-1.el9_7.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-6786CVSS 7.5Red Hat Enterprise Linux AppStream (v. 8)firefox-0:140.10.0-1.el8_10.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-6786CVSS 7.5Red Hat Enterprise Linux AppStream (v. 10)firefox-0:140.10.0-1.el10_1.aarch64Patch ↗Advisory ↗
Red HatCVE-2025-61729CVSS 7.5Red Hat OpenShift AI 2.25registry.redhat.io/rhoai/odh-llm-d-inference-scheduler-rhel9@sha256:70712c14b09d38efa09b8bd26980d3e0c68dc3ab14b32e8a553286ef05614d72_amd64Patch ↗Advisory ↗
Red HatCVE-2026-22016CVSS 7.5Red Hat Enterprise Linux AppStream (v. 8)java-1.8.0-openjdk-1:1.8.0.492.b09-1.el8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-22016CVSS 7.5Red Hat Enterprise Linux AppStream (v. 8)java-17-openjdk-1:17.0.19.0.10-1.el8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-22016CVSS 7.5Red Hat Enterprise Linux AppStream EUS (v. 10.0)java-21-openjdk-1:21.0.11.0.10-1.el10_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-26740CVSS 7.5Red Hat Enterprise Linux AppStream (v. 8)java-1.8.0-openjdk-1:1.8.0.492.b09-1.el8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-26740CVSS 7.5Red Hat Enterprise Linux AppStream (v. 8)java-17-openjdk-1:17.0.19.0.10-1.el8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-26740CVSS 7.5Red Hat Enterprise Linux AppStream EUS (v. 10.0)java-21-openjdk-1:21.0.11.0.10-1.el10_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-27143CVSS 8.1Red Hat Enterprise Linux AppStream (v. 9)go-toolset-0:1.25.9-1.el9_7.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-27144CVSS 8.1Red Hat Enterprise Linux AppStream (v. 9)go-toolset-0:1.25.9-1.el9_7.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-27877CVSS 7.5Red Hat Enterprise Linux AppStream (v. 9)grafana-0:10.2.6-20.el9_7.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-32280CVSS 7.5Red Hat Enterprise Linux AppStream (v. 9)go-toolset-0:1.25.9-1.el9_7.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-32282CVSS 7.8Red Hat Enterprise Linux AppStream (v. 9)go-toolset-0:1.25.9-1.el9_7.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-32283CVSS 7.5Red Hat Enterprise Linux AppStream (v. 9)go-toolset-0:1.25.9-1.el9_7.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-32748CVSS 7.5Red Hat Enterprise Linux AppStream EUS (v.9.4)squid-7:5.5-13.el9_4.5.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-33416CVSS 7.5Red Hat Enterprise Linux AppStream (v. 8)java-1.8.0-openjdk-1:1.8.0.492.b09-1.el8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-33416CVSS 7.5Red Hat Enterprise Linux AppStream (v. 8)java-17-openjdk-1:17.0.19.0.10-1.el8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-33416CVSS 7.5Red Hat Enterprise Linux AppStream EUS (v. 10.0)java-21-openjdk-1:21.0.11.0.10-1.el10_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-33526CVSS 7.5Red Hat Enterprise Linux AppStream EUS (v.9.4)squid-7:5.5-13.el9_4.5.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-33636CVSS 7.6Red Hat Enterprise Linux AppStream (v. 8)java-1.8.0-openjdk-1:1.8.0.492.b09-1.el8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-33636CVSS 7.6Red Hat Enterprise Linux AppStream (v. 8)java-17-openjdk-1:17.0.19.0.10-1.el8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-33636CVSS 7.6Red Hat Enterprise Linux AppStream EUS (v. 10.0)java-21-openjdk-1:21.0.11.0.10-1.el10_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-34282CVSS 7.5Red Hat Enterprise Linux AppStream (v. 8)java-17-openjdk-1:17.0.19.0.10-1.el8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-34282CVSS 7.5Red Hat Enterprise Linux AppStream EUS (v. 10.0)java-21-openjdk-1:21.0.11.0.10-1.el10_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-34986CVSS 7.5Red Hat Enterprise Linux AppStream (v. 9)buildah-2:1.41.8-3.el9_7.aarch64Patch ↗Advisory ↗
Red HatCVE-2024-29371CVSS 7.5OpenShift Developer Tools and Services 4.21registry.redhat.io/ocp-tools-4/jenkins-rhel9@sha256:0a28ecee68681bd1cf50af7dfe9e5c4f54243712b02c3fa9871ee53e42782630_amd64Patch ↗Advisory ↗
Red HatCVE-2024-29371CVSS 7.5OpenShift Developer Tools and Services 4.13registry.redhat.io/ocp-tools-4/jenkins-rhel8@sha256:8b5e1f1b924de7b31a2856c84548a1369b433170205175ce65faa0d61aaae0a7_amd64Patch ↗Advisory ↗
Red HatCVE-2024-29371CVSS 7.5OpenShift Developer Tools and Services 4.15registry.redhat.io/ocp-tools-4/jenkins-rhel8@sha256:02c954e1692ff2ce7c85c1505fe48e65b2b21b2f368d514fca86343f4f96cd7c_ppc64lePatch ↗Advisory ↗
Red HatCVE-2024-29371CVSS 7.5OpenShift Developer Tools and Services 4.20registry.redhat.io/ocp-tools-4/jenkins-rhel9@sha256:0a28ecee68681bd1cf50af7dfe9e5c4f54243712b02c3fa9871ee53e42782630_amd64Patch ↗Advisory ↗
Red HatCVE-2024-29371CVSS 7.5OpenShift Developer Tools and Services 4.19registry.redhat.io/ocp-tools-4/jenkins-rhel9@sha256:0a28ecee68681bd1cf50af7dfe9e5c4f54243712b02c3fa9871ee53e42782630_amd64Patch ↗Advisory ↗
Red HatCVE-2024-29371CVSS 7.5OpenShift Developer Tools and Services 4.12registry.redhat.io/ocp-tools-4/jenkins-rhel8@sha256:8b5e1f1b924de7b31a2856c84548a1369b433170205175ce65faa0d61aaae0a7_amd64Patch ↗Advisory ↗
Red HatCVE-2024-29371CVSS 7.5OpenShift Developer Tools and Services 4.14registry.redhat.io/ocp-tools-4/jenkins-rhel8@sha256:02c954e1692ff2ce7c85c1505fe48e65b2b21b2f368d514fca86343f4f96cd7c_ppc64lePatch ↗Advisory ↗
Red HatCVE-2024-29371CVSS 7.5OpenShift Developer Tools and Services 4.17registry.redhat.io/ocp-tools-4/jenkins-rhel9@sha256:0a28ecee68681bd1cf50af7dfe9e5c4f54243712b02c3fa9871ee53e42782630_amd64Patch ↗Advisory ↗
Red HatCVE-2024-29371CVSS 7.5OpenShift Developer Tools and Services 4.16registry.redhat.io/ocp-tools-4/jenkins-rhel9@sha256:0a28ecee68681bd1cf50af7dfe9e5c4f54243712b02c3fa9871ee53e42782630_amd64Patch ↗Advisory ↗
Red HatCVE-2024-29371CVSS 7.5OpenShift Developer Tools and Services 4.18registry.redhat.io/ocp-tools-4/jenkins-rhel9@sha256:0a28ecee68681bd1cf50af7dfe9e5c4f54243712b02c3fa9871ee53e42782630_amd64Patch ↗Advisory ↗
Red HatCVE-2025-11157CVSS 7.8Red Hat OpenShift AI 2.25registry.redhat.io/rhoai/odh-feature-server-rhel9@sha256:0e355f088ca563163bc363f9b64b5ecbcacca919b724aab1cef4f9f218e9e775_arm64Patch ↗Advisory ↗
Red HatCVE-2025-14009CVSS 8.8Red Hat OpenShift AI 2.25registry.redhat.io/rhoai/odh-llama-stack-core-rhel9@sha256:50b543073492a4ffa9b71b8466e4b53cb6baec8d8d1bf72eed5a63bf82ca73bf_arm64Patch ↗Advisory ↗
Red HatCVE-2025-39981CVSS 7.3Red Hat Enterprise Linux AppStream EUS (v.9.4)bpftool-debuginfo-0:7.3.0-427.121.1.el9_4.aarch64Patch ↗Advisory ↗
Red HatCVE-2025-61726CVSS 7.5Red Hat OpenShift AI 2.25registry.redhat.io/rhoai/odh-data-science-pipelines-argo-workflowcontroller-rhel9@sha256:72f4630626f2089823c9a9c413b5bad245e63a7569468581804e34790fd3941e_ppc64lePatch ↗Advisory ↗
Red HatCVE-2025-61726CVSS 7.5Red Hat Web Terminal 1.12registry.redhat.io/web-terminal/web-terminal-exec-rhel9@sha256:0d1d6a7ab4d79ce38526b5cba5b2bf7cfcb4229384115e71770a4f47db5575e2_amd64Patch ↗Advisory ↗
Red HatCVE-2025-61726CVSS 7.5Red Hat Web Terminal 1.11registry.redhat.io/web-terminal/web-terminal-exec-rhel9@sha256:3f023579aeb7ef51b78419eadc9a5336ad13d22d437566f57f134ffe8b195a44_amd64Patch ↗Advisory ↗
Red HatCVE-2025-61728CVSS 7.5Red Hat OpenShift Dev Spaces 3.27registry.redhat.io/devspaces/udi-rhel9@sha256:0c7e182dc31c12b24b589224202b3231e400367dda68fa5b670a60219d1ee0ae_amd64Patch ↗Advisory ↗
Red HatCVE-2025-61728CVSS 7.5Red Hat OpenShift AI 2.25registry.redhat.io/rhoai/odh-data-science-pipelines-argo-argoexec-rhel9@sha256:3c8b56f1d7e2084a93dd6ea951e4328bb969fa3443452790db10a9a01bead27b_ppc64lePatch ↗Advisory ↗
Red HatCVE-2025-61729CVSS 7.5Red Hat OpenShift AI 2.25registry.redhat.io/rhoai/odh-kf-notebook-controller-rhel9@sha256:8a90ede305a9e0efacaf21510c7a81218cf3d2c57c6a12c01be92a409c9f88cb_ppc64lePatch ↗Advisory ↗
Red HatCVE-2025-61729CVSS 7.5Red Hat Web Terminal 1.12registry.redhat.io/web-terminal/web-terminal-exec-rhel9@sha256:0d1d6a7ab4d79ce38526b5cba5b2bf7cfcb4229384115e71770a4f47db5575e2_amd64Patch ↗Advisory ↗
Red HatCVE-2025-61729CVSS 7.5Red Hat Web Terminal 1.11registry.redhat.io/web-terminal/web-terminal-exec-rhel9@sha256:3f023579aeb7ef51b78419eadc9a5336ad13d22d437566f57f134ffe8b195a44_amd64Patch ↗Advisory ↗
Red HatCVE-2025-6242CVSS 7.1Red Hat OpenShift AI 2.25registry.redhat.io/rhoai/odh-vllm-cpu-rhel9@sha256:bd911b7afc4acd32090ae53dd10c86b9266297c001dd6c6adf74fe7d28947959_s390xPatch ↗Advisory ↗
Red HatCVE-2025-62718CVSS 7.0Red Hat OpenShift Dev Spaces 3.27registry.redhat.io/devspaces/code-rhel9@sha256:56cb90d67267ebd08bdfda825c0a00c7ffea666ceab68f50892420c04c393cfd_arm64Patch ↗Advisory ↗
Red HatCVE-2025-66418CVSS 7.5Red Hat OpenShift AI 2.25registry.redhat.io/rhoai/odh-vllm-cpu-rhel9@sha256:bd911b7afc4acd32090ae53dd10c86b9266297c001dd6c6adf74fe7d28947959_s390xPatch ↗Advisory ↗
Red HatCVE-2025-66471CVSS 7.5Red Hat OpenShift AI 2.25registry.redhat.io/rhoai/odh-feature-server-rhel9@sha256:0e355f088ca563163bc363f9b64b5ecbcacca919b724aab1cef4f9f218e9e775_arm64Patch ↗Advisory ↗
Red HatCVE-2025-68121CVSS 7.4Red Hat Trusted Artifact Signer 1.3registry.redhat.io/rhtas/client-server-rhel9@sha256:9607f5c16d8e9d7ee2491ac04db78a52eb13ee0e93eeef79ff8bb6c8f9430c72_amd64Patch ↗Advisory ↗
Red HatCVE-2025-68121CVSS 7.4Red Hat OpenShift Builds 1.7.3registry.redhat.io/openshift-builds/openshift-builds-waiters-rhel9@sha256:153f9e059139e6dbaeb2e5166d21bfeec59a59aa5cd8045e11dbfa091479b4bb_amd64Patch ↗Advisory ↗
Red HatCVE-2025-68121CVSS 7.4Red Hat Web Terminal 1.12registry.redhat.io/web-terminal/web-terminal-exec-rhel9@sha256:0d1d6a7ab4d79ce38526b5cba5b2bf7cfcb4229384115e71770a4f47db5575e2_amd64Patch ↗Advisory ↗
Red HatCVE-2025-68121CVSS 7.4Red Hat Web Terminal 1.11registry.redhat.io/web-terminal/web-terminal-exec-rhel9@sha256:3f023579aeb7ef51b78419eadc9a5336ad13d22d437566f57f134ffe8b195a44_amd64Patch ↗Advisory ↗
Red HatCVE-2025-68800CVSS 7.3Red Hat Enterprise Linux AppStream EUS (v.9.4)bpftool-debuginfo-0:7.3.0-427.121.1.el9_4.aarch64Patch ↗Advisory ↗
Red HatCVE-2025-69223CVSS 7.5Red Hat OpenShift AI 2.25registry.redhat.io/rhoai/odh-feature-server-rhel9@sha256:0e355f088ca563163bc363f9b64b5ecbcacca919b724aab1cef4f9f218e9e775_arm64Patch ↗Advisory ↗
Red HatCVE-2025-69227CVSS 7.5Red Hat OpenShift AI 2.25registry.redhat.io/rhoai/odh-caikit-tgis-serving-rhel9@sha256:7f45c61f9c5cf97867f60ac97a40df84fc76662252ed59c73da9b1f1670e7d72_amd64Patch ↗Advisory ↗
Red HatCVE-2025-69534CVSS 8.2Red Hat OpenShift AI 2.25registry.redhat.io/rhoai/odh-modelmesh-runtime-adapter-rhel9@sha256:5e18f3434927cc1fd3673a57826f5a33fce5b2621f256ca1f960c42b1445ae8b_arm64Patch ↗Advisory ↗
Red HatCVE-2026-0846CVSS 7.5Red Hat OpenShift AI 2.25registry.redhat.io/rhoai/odh-llama-stack-core-rhel9@sha256:50b543073492a4ffa9b71b8466e4b53cb6baec8d8d1bf72eed5a63bf82ca73bf_arm64Patch ↗Advisory ↗
Red HatCVE-2026-0847CVSS 7.5Red Hat OpenShift AI 2.25registry.redhat.io/rhoai/odh-llama-stack-core-rhel9@sha256:50b543073492a4ffa9b71b8466e4b53cb6baec8d8d1bf72eed5a63bf82ca73bf_arm64Patch ↗Advisory ↗
Red HatCVE-2026-21441CVSS 7.5Red Hat OpenShift AI 2.25registry.redhat.io/rhoai/odh-caikit-nlp-rhel9@sha256:13a6eaeb91dfd2d4abefda94c8dbc4f303704879247e2badeed01efe6bb8fc69_arm64Patch ↗Advisory ↗
Red HatCVE-2026-22016CVSS 7.5Red Hat Build of OpenJDK 8u492Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-22016CVSS 7.5Red Hat Build of OpenJDK 8u492Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-22016CVSS 7.5Red Hat Build of OpenJDK 17.0.9Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-22016CVSS 7.5Red Hat Build of OpenJDK 17.0.19Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-22016CVSS 7.5Red Hat Build of OpenJDK 21.0.11Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-22016CVSS 7.5Red Hat Build of OpenJDK 21.0.11Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-22016CVSS 7.5Red Hat Build of OpenJDK 25.0.3Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-22731CVSS 8.2Red Hat OpenShift Dev Spaces 3.27registry.redhat.io/devspaces/openvsx-rhel9@sha256:12650f16ec1d9a079736da2d7e7428c791ae9a105bc0237814b9a2edd9f9a0ae_arm64Patch ↗Advisory ↗
Red HatCVE-2026-22807CVSS 8.8Red Hat OpenShift AI 2.25registry.redhat.io/rhoai/odh-vllm-cpu-rhel9@sha256:bd911b7afc4acd32090ae53dd10c86b9266297c001dd6c6adf74fe7d28947959_s390xPatch ↗Advisory ↗
Red HatCVE-2026-22854CVSS 8.1Red Hat Enterprise Linux AppStream E4S (v.8.8)freerdp-2:2.2.0-12.el8_8.5.ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-22856CVSS 8.1Red Hat Enterprise Linux AppStream E4S (v.8.8)freerdp-2:2.2.0-12.el8_8.5.ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-23066CVSS 7.4Red Hat Enterprise Linux AppStream EUS (v.9.4)bpftool-debuginfo-0:7.3.0-427.121.1.el9_4.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-23097CVSS 7.3Red Hat Enterprise Linux AppStream EUS (v.9.4)bpftool-debuginfo-0:7.3.0-427.121.1.el9_4.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-23111CVSS 7.8Red Hat Enterprise Linux AppStream EUS (v.9.4)bpftool-debuginfo-0:7.3.0-427.121.1.el9_4.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-23144CVSS 7.3Red Hat Enterprise Linux AppStream EUS (v.9.4)bpftool-debuginfo-0:7.3.0-427.121.1.el9_4.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-23171CVSS 7.0Red Hat Enterprise Linux AppStream EUS (v.9.4)bpftool-debuginfo-0:7.3.0-427.121.1.el9_4.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-23193CVSS 7.1Red Hat Enterprise Linux AppStream EUS (v.9.4)bpftool-debuginfo-0:7.3.0-427.121.1.el9_4.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-23204CVSS 7.3Red Hat Enterprise Linux AppStream EUS (v.9.4)bpftool-debuginfo-0:7.3.0-427.121.1.el9_4.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-23231CVSS 7.5Red Hat Enterprise Linux AppStream EUS (v.9.4)bpftool-debuginfo-0:7.3.0-427.121.1.el9_4.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-2332CVSS 7.4Red Hat OpenShift Dev Spaces 3.27registry.redhat.io/devspaces/openvsx-rhel9@sha256:12650f16ec1d9a079736da2d7e7428c791ae9a105bc0237814b9a2edd9f9a0ae_arm64Patch ↗Advisory ↗
Red HatCVE-2026-24049CVSS 7.1Red Hat OpenShift AI 2.25registry.redhat.io/rhoai/odh-feature-server-rhel9@sha256:0e355f088ca563163bc363f9b64b5ecbcacca919b724aab1cef4f9f218e9e775_arm64Patch ↗Advisory ↗
Red HatCVE-2026-24281CVSS 7.4Red Hat OpenShift AI 2.25registry.redhat.io/rhoai/odh-modelmesh-rhel9@sha256:ef9eae46fb64606e5d943c1dbc30eddbad35e50a2e67062f4c1a98bea48da038_amd64Patch ↗Advisory ↗
Red HatCVE-2026-24486CVSS 8.6Red Hat OpenShift AI 2.25registry.redhat.io/rhoai/odh-feature-server-rhel9@sha256:0e355f088ca563163bc363f9b64b5ecbcacca919b724aab1cef4f9f218e9e775_arm64Patch ↗Advisory ↗
Red HatCVE-2026-2472CVSS 8.1Red Hat OpenShift AI 2.25registry.redhat.io/rhoai/odh-llama-stack-core-rhel9@sha256:50b543073492a4ffa9b71b8466e4b53cb6baec8d8d1bf72eed5a63bf82ca73bf_arm64Patch ↗Advisory ↗
Red HatCVE-2026-24779CVSS 7.1Red Hat OpenShift AI 2.25registry.redhat.io/rhoai/odh-vllm-cpu-rhel9@sha256:bd911b7afc4acd32090ae53dd10c86b9266297c001dd6c6adf74fe7d28947959_s390xPatch ↗Advisory ↗
Red HatCVE-2026-2492CVSS 7.8Red Hat OpenShift AI 2.25registry.redhat.io/rhoai/odh-pipeline-runtime-tensorflow-cuda-py312-rhel9@sha256:827670c5a76b198988cbaebd616a9e0fad7dcb4e8728db02e2e910346eda6eac_amd64Patch ↗Advisory ↗
Red HatCVE-2026-25223CVSS 7.5Red Hat OpenShift AI 2.25registry.redhat.io/rhoai/odh-dashboard-rhel9@sha256:0cdaba4d21e61d75112aaa95daaefef790d5c328a8c35209b40c8954d1ee4992_amd64Patch ↗Advisory ↗
Red HatCVE-2026-25639CVSS 7.5Red Hat OpenShift AI 2.25registry.redhat.io/rhoai/odh-dashboard-rhel9@sha256:0cdaba4d21e61d75112aaa95daaefef790d5c328a8c35209b40c8954d1ee4992_amd64Patch ↗Advisory ↗
Red HatCVE-2026-25679CVSS 7.5Red Hat Update Infrastructure 5registry.redhat.io/rhui5/rhua-rhel9@sha256:7eae5b16539484129c6ce169b41a3e1da7d7dd1296d2677acf7e9c3d1bce00ed_amd64Patch ↗Advisory ↗
Red HatCVE-2026-25679CVSS 7.5Red Hat Trusted Artifact Signer 1.3registry.redhat.io/rhtas/client-server-rhel9@sha256:9607f5c16d8e9d7ee2491ac04db78a52eb13ee0e93eeef79ff8bb6c8f9430c72_amd64Patch ↗Advisory ↗
Red HatCVE-2026-25679CVSS 7.5Red Hat Enterprise Linux AppStream EUS (v. 10.0)golang-github-openprinting-ipp-usb-0:0.9.27-3.el10_0.3.srcPatch ↗Advisory ↗
Red HatCVE-2026-25679CVSS 7.5Red Hat Enterprise Linux AI 3.3registry.redhat.io/rhelai3/bootc-aws-cuda-rhel9@sha256:c4e99fdf145fa920e4d91f291010fe0826306112c55f8470c67b060b6235e58f_amd64Patch ↗Advisory ↗
Red HatCVE-2026-25679CVSS 7.5Red Hat Enterprise Linux AI 3.3registry.redhat.io/rhelai3/disk-image-cuda-rhel9@sha256:c60621bae671ef55db3e1f474d78d9ba22109518604dc694d7ef49ef2d240059_amd64Patch ↗Advisory ↗
Red HatCVE-2026-25679CVSS 7.5Red Hat OpenShift Builds 1.7.3registry.redhat.io/openshift-builds/openshift-builds-waiters-rhel9@sha256:153f9e059139e6dbaeb2e5166d21bfeec59a59aa5cd8045e11dbfa091479b4bb_amd64Patch ↗Advisory ↗
Red HatCVE-2026-25679CVSS 7.5Red Hat Enterprise Linux AppStream (v. 10)rhc-worker-playbook-0:0.2.3-4.el10_1.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-25679CVSS 7.5Red Hat OpenShift Dev Spaces 3.27registry.redhat.io/devspaces/udi-rhel9@sha256:0c7e182dc31c12b24b589224202b3231e400367dda68fa5b670a60219d1ee0ae_amd64Patch ↗Advisory ↗
Red HatCVE-2026-25679CVSS 7.5Red Hat OpenShift AI 2.25registry.redhat.io/rhoai/odh-rhel9-operator@sha256:0514042f65cea28a4626ec3809cb78809d1bf372774d9bf6f0c646200a946cab_s390xPatch ↗Advisory ↗
Red HatCVE-2026-25679CVSS 7.5Red Hat Web Terminal 1.12registry.redhat.io/web-terminal/web-terminal-exec-rhel9@sha256:0d1d6a7ab4d79ce38526b5cba5b2bf7cfcb4229384115e71770a4f47db5575e2_amd64Patch ↗Advisory ↗
Red HatCVE-2026-25679CVSS 7.5Red Hat Web Terminal 1.11registry.redhat.io/web-terminal/web-terminal-exec-rhel9@sha256:3f023579aeb7ef51b78419eadc9a5336ad13d22d437566f57f134ffe8b195a44_amd64Patch ↗Advisory ↗
Red HatCVE-2026-25749CVSS 7.3Red Hat Update Infrastructure 5registry.redhat.io/rhui5/cds-rhel9@sha256:8ac1507077086484155f94d2289df0f1d22bfe8f5f15589d6b354f11fe21d930_amd64Patch ↗Advisory ↗
Red HatCVE-2026-25990CVSS 7.3Red Hat OpenShift AI 2.25registry.redhat.io/rhoai/odh-caikit-tgis-serving-rhel9@sha256:7f45c61f9c5cf97867f60ac97a40df84fc76662252ed59c73da9b1f1670e7d72_amd64Patch ↗Advisory ↗
Red HatCVE-2026-26007CVSS 7.4Red Hat OpenShift AI 2.25registry.redhat.io/rhoai/odh-feature-server-rhel9@sha256:0e355f088ca563163bc363f9b64b5ecbcacca919b724aab1cef4f9f218e9e775_arm64Patch ↗Advisory ↗
Red HatCVE-2026-26999CVSS 7.5Red Hat OpenShift Dev Spaces 3.27registry.redhat.io/devspaces/traefik-rhel9@sha256:179efd9379165b0e7992d0cca5e2c94cb25412153ea333e4c01d693bf64ad736_amd64Patch ↗Advisory ↗
Red HatCVE-2026-27135CVSS 7.5Red Hat Update Infrastructure 5registry.redhat.io/rhui5/cds-rhel9@sha256:8ac1507077086484155f94d2289df0f1d22bfe8f5f15589d6b354f11fe21d930_amd64Patch ↗Advisory ↗
Red HatCVE-2026-27137CVSS 7.5Red Hat Trusted Artifact Signer 1.3registry.redhat.io/rhtas/client-server-rhel9@sha256:9607f5c16d8e9d7ee2491ac04db78a52eb13ee0e93eeef79ff8bb6c8f9430c72_amd64Patch ↗Advisory ↗
Red HatCVE-2026-27137CVSS 7.5Red Hat OpenShift Builds 1.7.3registry.redhat.io/openshift-builds/openshift-builds-waiters-rhel9@sha256:153f9e059139e6dbaeb2e5166d21bfeec59a59aa5cd8045e11dbfa091479b4bb_amd64Patch ↗Advisory ↗
Red HatCVE-2026-27137CVSS 7.5Red Hat Enterprise Linux AppStream (v. 10)rhc-worker-playbook-0:0.2.3-4.el10_1.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-27137CVSS 7.5Red Hat OpenShift Dev Spaces 3.27registry.redhat.io/devspaces/udi-rhel9@sha256:0c7e182dc31c12b24b589224202b3231e400367dda68fa5b670a60219d1ee0ae_amd64Patch ↗Advisory ↗
Red HatCVE-2026-27137CVSS 7.5Red Hat OpenShift AI 2.25registry.redhat.io/rhoai/odh-rhel9-operator@sha256:0514042f65cea28a4626ec3809cb78809d1bf372774d9bf6f0c646200a946cab_s390xPatch ↗Advisory ↗
Red HatCVE-2026-27137CVSS 7.5Red Hat Web Terminal 1.12registry.redhat.io/web-terminal/web-terminal-exec-rhel9@sha256:0d1d6a7ab4d79ce38526b5cba5b2bf7cfcb4229384115e71770a4f47db5575e2_amd64Patch ↗Advisory ↗
Red HatCVE-2026-27137CVSS 7.5Red Hat Web Terminal 1.11registry.redhat.io/web-terminal/web-terminal-exec-rhel9@sha256:3f023579aeb7ef51b78419eadc9a5336ad13d22d437566f57f134ffe8b195a44_amd64Patch ↗Advisory ↗

Glossary