Patch Day month
April 2026 vulnerabilities
A server-rendered hunting trail for April 2026: 1,904 returned patch records across 4 vendors. Browse page by page, or use “Load next” to keep adding rows without losing your place.
1,904all patches
140critical
2exploitation detected
5in CISA KEV
322tracked here
Red Hat 1,131Microsoft 737Cisco 31Android 5
Page 6 of 10 · records 1,001–1,200 of 1,904
Microsoft Security Response Center
CVEDateProductMSRC severityOut-of-bandEPSSTitle
CVE-2026-27909 ↗2026-04-14Windows 10 Version 1809 for 32-bit SystemsImportant2%More likelyKB5082052KB5082060Windows Search Service Elevation of Privilege Vulnerability
CVE-2026-27910 ↗2026-04-14Windows 10 Version 1809 for 32-bit SystemsImportant0%KB5082052KB5082060Windows Installer Elevation of Privilege Vulnerability
CVE-2026-27911 ↗2026-04-14Windows 10 Version 1809 for 32-bit SystemsImportant0%KB5082052KB5082060Windows User Interface Core Elevation of Privilege Vulnerability
CVE-2026-27912 ↗2026-04-14Windows Server 2019Important0%KB5082060KB5082063Windows Kerberos Elevation of Privilege Vulnerability
CVE-2026-27913 ↗2026-04-14Windows Server 2019Important0%More likelyKB5082060KB5082123Windows BitLocker Security Feature Bypass Vulnerability
CVE-2026-27914 ↗2026-04-14Windows 10 Version 1809 for 32-bit SystemsImportant3%More likelyKB5082052KB5082060Microsoft Management Console Elevation of Privilege Vulnerability
CVE-2026-27915 ↗2026-04-14Windows 10 Version 1809 for 32-bit SystemsImportant0%KB5082052KB5082060Windows UPnP Device Host Elevation of Privilege Vulnerability
CVE-2026-27916 ↗2026-04-14Windows 10 Version 1809 for 32-bit SystemsImportant0%KB5082052KB5082060Windows UPnP Device Host Elevation of Privilege Vulnerability
CVE-2026-27917 ↗2026-04-14Windows 10 Version 1809 for 32-bit SystemsImportant0%KB5082052KB5082060Windows WFP NDIS Lightweight Filter Driver (wfplwfs.sys) Elevation of Privilege Vulnerability
CVE-2026-27918 ↗2026-04-14Windows 11 Version 26H1 for ARM64-based SystemsImportant0%KB5082052KB5082060Windows Shell Elevation of Privilege Vulnerability
CVE-2026-27919 ↗2026-04-14Windows 10 Version 1809 for 32-bit SystemsImportant0%KB5082052KB5082060Windows UPnP Device Host Elevation of Privilege Vulnerability
CVE-2026-27920 ↗2026-04-14Windows 11 Version 26H1 for ARM64-based SystemsImportant0%KB5082052KB5082060Windows UPnP Device Host Elevation of Privilege Vulnerability
CVE-2026-27921 ↗2026-04-14Windows 11 Version 26H1 for ARM64-based SystemsImportant1%More likelyKB5082052KB5082060Windows TDI Translation Driver (tdx.sys) Elevation of Privilege Vulnerability
CVE-2026-27922 ↗2026-04-14Windows 11 Version 26H1 for ARM64-based SystemsImportant0%KB5082052KB5082060Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
CVE-2026-27923 ↗2026-04-14Windows 11 Version 26H1 for ARM64-based SystemsImportant0%KB5082052KB5082060Desktop Window Manager Elevation of Privilege Vulnerability
CVE-2026-27924 ↗2026-04-14Windows Server 2022Important0%KB5082052KB5082060Desktop Window Manager Elevation of Privilege Vulnerability
CVE-2026-27925 ↗2026-04-14Windows 11 Version 26H1 for ARM64-based SystemsImportant0%KB5082052KB5082060Windows UPnP Device Host Information Disclosure Vulnerability
CVE-2026-27926 ↗2026-04-14Windows 11 Version 26H1 for ARM64-based SystemsImportant0%KB5082052KB5082060Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
CVE-2026-27927 ↗2026-04-14Windows Server 2022 (Server Core installation)Important0%KB5082052KB5082060Windows Projected File System Elevation of Privilege Vulnerability
CVE-2026-27928 ↗2026-04-14Windows Server 2019Important0%KB5082060KB5082063Windows Hello Security Feature Bypass Vulnerability
CVE-2026-27929 ↗2026-04-14Windows 10 Version 1809 for 32-bit SystemsImportant0%KB5082052KB5082060Windows LUA File Virtualization Filter Driver Elevation of Privilege Vulnerability
CVE-2026-27930 ↗2026-04-14Windows 10 Version 1809 for 32-bit SystemsImportant0%KB5082052KB5082060Windows GDI Information Disclosure Vulnerability
CVE-2026-27931 ↗2026-04-14Windows Server 2022Important0%KB5082052KB5082060Windows GDI Information Disclosure Vulnerability
CVE-2026-32068 ↗2026-04-14Windows 11 Version 26H1 for ARM64-based SystemsImportant0%KB5082052KB5082060Windows Simple Search and Discovery Protocol (SSDP) Service Elevation of Privilege Vulnerability
CVE-2026-32069 ↗2026-04-14Windows Server 2022 (Server Core installation)Important0%KB5082052KB5082060Windows Projected File System Elevation of Privilege Vulnerability
CVE-2026-32070 ↗2026-04-14Windows 11 Version 26H1 for ARM64-based SystemsImportant0%More likelyKB5082052KB5082060Windows Common Log File System Driver Elevation of Privilege Vulnerability
CVE-2026-32071 ↗2026-04-14Windows 11 Version 26H1 for ARM64-based SystemsImportant1%KB5082052KB5082060Windows Local Security Authority Subsystem Service (LSASS) Denial of Service Vulnerability
CVE-2026-32072 ↗2026-04-14Windows 10 Version 1809 for 32-bit SystemsImportant0%KB5082052KB5082060Active Directory Spoofing Vulnerability
CVE-2026-32073 ↗2026-04-14Windows 10 Version 1809 for 32-bit SystemsImportant0%KB5082052KB5082060Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
CVE-2026-32074 ↗2026-04-14Windows 11 Version 26H1 for ARM64-based SystemsImportant0%KB5082052KB5082060Windows Projected File System Elevation of Privilege Vulnerability
CVE-2026-32075 ↗2026-04-14Windows 10 Version 1809 for 32-bit SystemsImportant0%More likelyKB5082052KB5082060Windows UPnP Device Host Elevation of Privilege Vulnerability
CVE-2026-32076 ↗2026-04-14Windows Server 2025 (Server Core installation)Important0%KB5082052KB5082060Windows Storage Spaces Controller Elevation of Privilege Vulnerability
CVE-2026-32077 ↗2026-04-14Windows 11 Version 26H1 for ARM64-based SystemsImportant0%KB5082052KB5082060Windows UPnP Device Host Elevation of Privilege Vulnerability
and 10 more
KB5082063KB5082123KB5082126KB5082127KB5082142KB5082198KB5082200KB5082806KB5083768KB5083769CVE-2026-32078 ↗2026-04-14Windows Server 2022 (Server Core installation)Important0%KB5082052KB5082060Windows Projected File System Elevation of Privilege Vulnerability
CVE-2026-32079 ↗2026-04-14Windows 10 Version 1809 for 32-bit SystemsImportant0%KB5082052KB5082060Web Account Manager Information Disclosure Vulnerability
CVE-2026-32080 ↗2026-04-14Windows Server 2019Important0%KB5082060KB5082063Windows WalletService Elevation of Privilege Vulnerability
CVE-2026-32081 ↗2026-04-14Windows 11 Version 26H1 for ARM64-based SystemsImportant0%KB5082052KB5082060Package Catalog Information Disclosure Vulnerability
CVE-2026-32082 ↗2026-04-14Windows 11 Version 26H1 for ARM64-based SystemsImportant0%KB5082052KB5082060Windows Simple Search and Discovery Protocol (SSDP) Service Elevation of Privilege Vulnerability
CVE-2026-32083 ↗2026-04-14Windows 11 Version 26H1 for ARM64-based SystemsImportant0%KB5082052KB5082060Windows Simple Search and Discovery Protocol (SSDP) Service Elevation of Privilege Vulnerability
CVE-2026-32084 ↗2026-04-14Windows 10 Version 1809 for 32-bit SystemsImportant0%KB5082052KB5082060Windows Print Spooler Information Disclosure Vulnerability
CVE-2026-32085 ↗2026-04-14Windows 11 Version 26H1 for ARM64-based SystemsImportant0%KB5082052KB5082060Remote Procedure Call Information Disclosure Vulnerability
CVE-2026-32086 ↗2026-04-14Windows 11 Version 26H1 for ARM64-based SystemsImportant0%KB5082052KB5082060Windows Function Discovery Service (fdwsd.dll) Elevation of Privilege Vulnerability
CVE-2026-32087 ↗2026-04-14Windows 11 Version 26H1 for ARM64-based SystemsImportant0%KB5082052KB5082060Windows Function Discovery Service (fdwsd.dll) Elevation of Privilege Vulnerability
CVE-2026-32088 ↗2026-04-14Windows 11 Version 26H1 for ARM64-based SystemsImportant0%KB5082052KB5082060Windows Biometric Service Security Feature Bypass Vulnerability
CVE-2026-32089 ↗2026-04-14Windows 10 Version 1809 for 32-bit SystemsImportant0%KB5082052KB5082060Windows Speech Brokered Api Elevation of Privilege Vulnerability
CVE-2026-32090 ↗2026-04-14Windows 11 Version 26H1 for ARM64-based SystemsImportant0%KB5082052KB5082060Windows Speech Brokered Api Elevation of Privilege Vulnerability
CVE-2026-32091 ↗2026-04-14Windows 10 Version 1809 for 32-bit SystemsImportant0%KB5082052KB5082060Microsoft Brokering File System Elevation of Privilege Vulnerability
CVE-2026-32093 ↗2026-04-14Windows 11 Version 26H1 for ARM64-based SystemsImportant1%More likelyKB5082052KB5082060Windows Function Discovery Service (fdwsd.dll) Elevation of Privilege Vulnerability
CVE-2026-32149 ↗2026-04-14Windows 11 Version 26H1 for ARM64-based SystemsImportant0%KB5082052KB5082060Windows Hyper-V Remote Code Execution Vulnerability
CVE-2026-32150 ↗2026-04-14Windows 10 Version 1809 for 32-bit SystemsImportant0%KB5082052KB5082060Windows Function Discovery Service (fdwsd.dll) Elevation of Privilege Vulnerability
CVE-2026-32151 ↗2026-04-14Windows 10 Version 1809 for 32-bit SystemsImportant1%KB5082052KB5082060Windows Shell Information Disclosure Vulnerability
CVE-2026-32152 ↗2026-04-14Windows Server 2022Important0%More likelyKB5082052KB5082060Desktop Window Manager Elevation of Privilege Vulnerability
CVE-2026-32153 ↗2026-04-14Windows 10 Version 1809 for 32-bit SystemsImportant0%KB5082052KB5082123Windows Speech Runtime Elevation of Privilege Vulnerability
CVE-2026-32154 ↗2026-04-14Windows 10 Version 1809 for 32-bit SystemsImportant0%More likelyKB5082052KB5082060Desktop Window Manager Elevation of Privilege Vulnerability
CVE-2026-32155 ↗2026-04-14Windows Server 2022Important0%KB5082052KB5082060Desktop Window Manager Elevation of Privilege Vulnerability
CVE-2026-32156 ↗2026-04-14Windows 10 Version 1809 for 32-bit SystemsImportant0%KB5082052KB5082060Windows UPnP Device Host Remote Code Execution Vulnerability
CVE-2026-32157 ↗2026-04-14Windows 11 Version 26H1 for ARM64-based SystemsCritical1%KB5082052KB5082060Remote Desktop Client Remote Code Execution Vulnerability
CVE-2026-32158 ↗2026-04-14Windows 11 Version 26H1 for ARM64-based SystemsImportant0%KB5082052KB5082060Windows Push Notifications Elevation of Privilege Vulnerability
CVE-2026-32159 ↗2026-04-14Windows 10 Version 1809 for 32-bit SystemsImportant0%KB5082052KB5082060Windows Push Notifications Elevation of Privilege Vulnerability
CVE-2026-32160 ↗2026-04-14Windows 10 Version 1809 for 32-bit SystemsImportant0%KB5082052KB5082060Windows Push Notifications Elevation of Privilege Vulnerability
CVE-2026-32162 ↗2026-04-14Windows 10 Version 1809 for 32-bit SystemsImportant2%More likelyKB5082052KB5082060Windows COM Elevation of Privilege Vulnerability
CVE-2026-32163 ↗2026-04-14Windows 10 Version 1809 for 32-bit SystemsImportant0%KB5082052KB5082060Windows User Interface Core Elevation of Privilege Vulnerability
CVE-2026-32164 ↗2026-04-14Windows 11 Version 26H1 for ARM64-based SystemsImportant0%KB5082052KB5082060Windows User Interface Core Elevation of Privilege Vulnerability
CVE-2026-32165 ↗2026-04-14Windows 10 Version 1809 for 32-bit SystemsImportant0%KB5082052KB5082060Windows User Interface Core Elevation of Privilege Vulnerability
CVE-2026-32167 ↗2026-04-14Microsoft SQL Server 2025 for x64-based Systems (CU3)Important0%KB5083245KB5083252SQL Server Elevation of Privilege Vulnerability
CVE-2026-32168 ↗2026-04-14Azure Monitor AgentImportant0%Azure Monitor Agent Elevation of Privilege Vulnerability
CVE-2026-32171 ↗2026-04-14Azure Logic AppsImportant0%Azure Logic Apps Elevation of Privilege Vulnerability
CVE-2026-32176 ↗2026-04-14Microsoft SQL Server 2025 for x64-based Systems (CU3)Important0%KB5083245KB5083252SQL Server Elevation of Privilege Vulnerability
CVE-2026-32178 ↗2026-04-14Microsoft Visual Studio 2022 version 17.12Important2%KB5086095KB5086096.NET Spoofing Vulnerability
and 1 more
KB5086097CVE-2026-32181 ↗2026-04-14Windows 11 Version 26H1 for ARM64-based SystemsImportant0%KB5082052KB5082060Connected User Experiences and Telemetry Service Denial of Service Vulnerability
CVE-2026-32183 ↗2026-04-14Windows 11 Version 26H1 for ARM64-based SystemsImportant1%KB5082052KB5082060Windows Snipping Tool Remote Code Execution Vulnerability
CVE-2026-32184 ↗2026-04-14Microsoft HPC Pack 2019Important2%Microsoft High Performance Compute (HPC) Pack Elevation of Privilege Vulnerability
CVE-2026-32188 ↗2026-04-14Office Online ServerImportant0%KB5002855KB5002860Microsoft Excel Information Disclosure Vulnerability
CVE-2026-32189 ↗2026-04-14Office Online ServerImportant0%KB5002855KB5002860Microsoft Excel Remote Code Execution Vulnerability
CVE-2026-32190 ↗2026-04-14Microsoft Office 2019 for 32-bit editionsCritical0%KB5002859Microsoft Office Remote Code Execution Vulnerability
CVE-2026-32192 ↗2026-04-14Azure Monitor AgentImportant2%Azure Monitor Agent Elevation of Privilege Vulnerability
CVE-2026-32195 ↗2026-04-14Windows 11 Version 26H1 for ARM64-based SystemsImportant0%KB5083768Windows Kernel Elevation of Privilege Vulnerability
CVE-2026-32196 ↗2026-04-14Windows Admin CenterImportant0%Windows Admin Center Spoofing Vulnerability
CVE-2026-32197 ↗2026-04-14Office Online ServerImportant0%KB5002855KB5002860Microsoft Excel Remote Code Execution Vulnerability
CVE-2026-32198 ↗2026-04-14Office Online ServerImportant0%KB5002855KB5002860Microsoft Excel Remote Code Execution Vulnerability
CVE-2026-32199 ↗2026-04-14Office Online ServerImportant0%KB5002855KB5002860Microsoft Excel Remote Code Execution Vulnerability
CVE-2026-32200 ↗2026-04-14Microsoft Office 2019 for 32-bit editionsImportant0%KB5002808Microsoft PowerPoint Remote Code Execution Vulnerability
CVE-2026-32201 ↗2026-04-14Microsoft SharePoint Enterprise Server 2016Important21%Exploitation detectedCISA KEVVulnCheckENISAKB5002853KB50028542 mentionsMicrosoft SharePoint Server Spoofing Vulnerability
and 1 more
KB5002861CVE-2026-32202 ↗2026-04-14Windows 10 Version 1809 for 32-bit SystemsImportant64%Exploitation detectedCISA KEVVulnCheckENISAKB5099414KB5099444Windows Shell Spoofing Vulnerability
CVE-2026-32203 ↗2026-04-14Microsoft Visual Studio 2026 version 18.4Important2%KB5086095KB5086096.NET and Visual Studio Denial of Service Vulnerability
and 1 more
KB5086097CVE-2026-32212 ↗2026-04-14Windows 11 Version 26H1 for ARM64-based SystemsImportant0%KB5082052KB5082060Universal Plug and Play (upnp.dll) Information Disclosure Vulnerability
CVE-2026-32214 ↗2026-04-14Windows 11 Version 26H1 for ARM64-based SystemsImportant0%KB5082052KB5082060Universal Plug and Play (upnp.dll) Information Disclosure Vulnerability
CVE-2026-32215 ↗2026-04-14Windows 11 Version 26H1 for ARM64-based SystemsImportant0%KB5082052KB5082060Windows Kernel Information Disclosure Vulnerability
CVE-2026-32216 ↗2026-04-14Windows 11 Version 26H1 for ARM64-based SystemsImportant0%KB5083768Windows Redirected Drive Buffering System Denial of Service Vulnerability
CVE-2026-32217 ↗2026-04-14Windows 11 Version 26H1 for ARM64-based SystemsImportant0%KB5082052KB5082060Windows Kernel Information Disclosure Vulnerability
CVE-2026-32218 ↗2026-04-14Windows Server 2022Important0%KB5082052KB5082060Windows Kernel Information Disclosure Vulnerability
CVE-2026-32219 ↗2026-04-14Windows Server 2025 (Server Core installation)Important0%KB5082063KB5083768Microsoft Brokering File System Elevation of Privilege Vulnerability
and 1 more
KB5083769CVE-2026-32220 ↗2026-04-14Windows 11 Version 26H1 for ARM64-based SystemsImportant0%KB5082063KB5083768UEFI Secure Boot Security Feature Bypass Vulnerability
and 1 more
KB5083769CVE-2026-32221 ↗2026-04-14Windows Server 2025 (Server Core installation)Important0%KB5082063KB5083768Windows Graphics Component Remote Code Execution Vulnerability
and 1 more
KB5083769CVE-2026-32222 ↗2026-04-14Windows 11 Version 26H1 for ARM64-based SystemsImportant0%KB5082063KB5083768Windows Win32k Elevation of Privilege Vulnerability
and 1 more
KB5083769CVE-2026-32223 ↗2026-04-14Windows Server 2025 (Server Core installation)Important1%KB5082063KB5083768Windows USB Printing Stack (usbprint.sys) Elevation of Privilege Vulnerability
and 1 more
KB5083769CVE-2026-32224 ↗2026-04-14Windows 11 Version 26H1 for ARM64-based SystemsImportant0%KB5083768Windows Server Update Service (WSUS) Elevation of Privilege Vulnerability
CVE-2026-32225 ↗2026-04-14Windows 10 Version 1809 for 32-bit SystemsImportant1%More likelyKB5082052KB5082060Windows Shell Security Feature Bypass Vulnerability
CVE-2026-32226 ↗2026-04-14Microsoft .NET Framework 4.8 on Windows 10 Version 22H2 for x64-based SystemsImportant1%KB5082398KB5082400.NET Framework Denial of Service Vulnerability
and 16 more
KB5082402KB5082403KB5082404KB5082406KB5082411KB5082413KB5082414KB5082417KB5082418KB5082419KB5082420KB5082421KB5082424KB5082425KB5082426KB5082427CVE-2026-32631 ↗2026-04-14Microsoft Visual Studio 2019 version 16.4 (includes 16.0 - 16.3)Important0%GitHub: CVE-2026-32631 'git clone' from manipulated repositories can leak NTLM hashes
CVE-2026-33095 ↗2026-04-14Microsoft 365 Apps for Enterprise for 32-bit SystemsImportant0%Microsoft Word Remote Code Execution Vulnerability
CVE-2026-33096 ↗2026-04-14Windows 11 Version 26H1 for ARM64-based SystemsImportant1%KB5082052KB5082060HTTP.sys Denial of Service Vulnerability
CVE-2026-33098 ↗2026-04-14Windows Server 2019 (Server Core installation)Important0%KB5082052KB5082060Windows Container Isolation FS Filter Driver Elevation of Privilege Vulnerability
CVE-2026-33099 ↗2026-04-14Windows 10 Version 1809 for 32-bit SystemsImportant0%KB5082052KB5082060Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
CVE-2026-33100 ↗2026-04-14Windows 11 Version 26H1 for ARM64-based SystemsImportant0%KB5082052KB5082060Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
CVE-2026-33101 ↗2026-04-14Windows Server 2025 (Server Core installation)Important0%KB5082060KB5082063Windows Print Spooler Elevation of Privilege Vulnerability
CVE-2026-33103 ↗2026-04-14Microsoft Dynamics 365 (on-premises) version 9.0Important0%KB5078943Microsoft Dynamics 365 (On-Premises) Information Disclosure Vulnerability
CVE-2026-33104 ↗2026-04-14Windows 10 Version 1809 for 32-bit SystemsImportant0%KB5082052KB5082060Win32k Elevation of Privilege Vulnerability
CVE-2026-33114 ↗2026-04-14Microsoft 365 Apps for Enterprise for 32-bit SystemsCritical0%Microsoft Word Remote Code Execution Vulnerability
CVE-2026-33115 ↗2026-04-14Microsoft 365 Apps for Enterprise for 32-bit SystemsCritical0%Microsoft Word Remote Code Execution Vulnerability
CVE-2026-33116 ↗2026-04-14.NET 10.0 installed on Mac OSImportant2%KB5082398KB5082400.NET, .NET Framework, and Visual Studio Denial of Service Vulnerability
and 17 more
KB5082402KB5082403KB5082411KB5082413KB5082414KB5082417KB5082418KB5082419KB5082420KB5082421KB5082424KB5082425KB5082426KB5082427KB5086095KB5086096KB5086097CVE-2026-33120 ↗2026-04-14Microsoft SQL Server 2022 for x64-based Systems (GDR)Important1%KB5084815Microsoft SQL Server Remote Code Execution Vulnerability
CVE-2026-33822 ↗2026-04-14Microsoft 365 Apps for Enterprise for 32-bit SystemsImportant0%Microsoft Word Information Disclosure Vulnerability
CVE-2026-33824 ↗2026-04-14Windows 10 Version 1809 for 32-bit SystemsCritical56%VulnCheckKB5082052KB50820601 mentionsWindows Internet Key Exchange (IKE) Service Extensions Remote Code Execution Vulnerability
CVE-2026-33825 ↗2026-04-14Microsoft Defender Antimalware PlatformImportant7%More likelyCISA KEVVulnCheckENISAMicrosoft Defender Elevation of Privilege Vulnerability
CVE-2026-33826 ↗2026-04-14Windows Server 2019Critical1%More likelyKB5082060KB5082063Windows Active Directory Remote Code Execution Vulnerability
CVE-2026-33827 ↗2026-04-14Windows 10 Version 1809 for 32-bit SystemsCritical1%KB5082052KB5082060Windows TCP/IP Remote Code Execution Vulnerability
CVE-2026-33829 ↗2026-04-14Windows 10 Version 1809 for 32-bit SystemsModerate3%KB5082052KB5082060Windows Snipping Tool Spoofing Vulnerability
CVE-2026-31418 ↗2026-04-14azl3 kernel 6.6.130.1-3 on Azure Linux 3.0Important—netfilter: ipset: drop logically empty buckets in mtype_del
CVE-2026-31428 ↗2026-04-14azl3 kernel 6.6.130.1-3 on Azure Linux 3.0Moderate—netfilter: nfnetlink_log: fix uninitialized padding leak in NFULA_PAYLOAD
CVE-2026-31421 ↗2026-04-14azl3 kernel 6.6.130.1-3 on Azure Linux 3.0Moderate—net/sched: cls_fw: fix NULL pointer dereference on shared blocks
CVE-2026-31420 ↗2026-04-14azl3 kernel 6.6.130.1-3 on Azure Linux 3.0Moderate—bridge: mrp: reject zero test interval to avoid OOM panic
CVE-2026-31419 ↗2026-04-14azl3 kernel 6.6.134.1-2 on Azure Linux 3.0Important—net: bonding: fix use-after-free in bond_xmit_broadcast()
CVE-2026-31426 ↗2026-04-14azl3 kernel 6.6.130.1-3 on Azure Linux 3.0Moderate—ACPI: EC: clean up handlers on probe failure in acpi_ec_setup()
CVE-2026-31427 ↗2026-04-14azl3 kernel 6.6.130.1-3 on Azure Linux 3.0Important—netfilter: nf_conntrack_sip: fix use of uninitialized rtp_addr in process_sdp
CVE-2026-31414 ↗2026-04-14azl3 kernel 6.6.130.1-3 on Azure Linux 3.0Important—netfilter: nf_conntrack_expect: use expect->helper
CVE-2026-31422 ↗2026-04-14azl3 kernel 6.6.130.1-3 on Azure Linux 3.0Moderate—net/sched: cls_flow: fix NULL pointer dereference on shared blocks
CVE-2026-31417 ↗2026-04-14azl3 kernel 6.6.130.1-3 on Azure Linux 3.0Important—net/x25: Fix overflow when accumulating packets
CVE-2026-31424 ↗2026-04-14azl3 kernel 6.6.130.1-3 on Azure Linux 3.0Moderate—netfilter: x_tables: restrict xt_check_match/xt_check_target extensions for NFPROTO_ARP
CVE-2026-31423 ↗2026-04-14azl3 kernel 6.6.130.1-3 on Azure Linux 3.0Moderate—net/sched: sch_hfsc: fix divide-by-zero in rtsc_min()
CVE-2026-31416 ↗2026-04-14azl3 kernel 6.6.130.1-3 on Azure Linux 3.0Important—netfilter: nfnetlink_log: account for netlink header size
CVE-2026-34477 ↗2026-04-13azl3 javapackages-bootstrap 1.14.0-4 on Azure Linux 3.0ModerateOut-of-band—Apache Log4j Core: verifyHostName attribute silently ignored in TLS configuration, allowing hostname verification bypass
CVE-2026-39856 ↗2026-04-12cbl2 osslsigncode 2.7-1 on CBL Mariner 2.0ModerateOut-of-band—osslsigncode has an Out-of-Bounds Read via Unvalidated Section Bounds in PE Page Hash Calculation
CVE-2026-39855 ↗2026-04-12cbl2 osslsigncode 2.7-1 on CBL Mariner 2.0ModerateOut-of-band—osslsigncode has an Integer Underflow in PE Page Hash Calculation Can Cause Out-of-Bounds Read
CVE-2026-39853 ↗2026-04-12cbl2 osslsigncode 2.7-1 on CBL Mariner 2.0ImportantOut-of-band—osslsigncode has a Stack Buffer Overflow via Unbounded Digest Copy During Signature Verification
CVE-2026-34757 ↗2026-04-12azl3 libpng 1.6.56-1 on Azure Linux 3.0ModerateOut-of-band—LIBPNG has a yse-after-free in png_set_PLTE, png_set_tRNS and png_set_hIST leading to corrupted chunk data and potential heap information disclosure
CVE-2026-35206 ↗2026-04-12cbl2 helm 3.14.2-10 on CBL Mariner 2.0ModerateOut-of-band—Helm Chart extraction output directory collapse via `Chart.yaml` name dot-segment
CVE-2026-4878 ↗2026-04-11cbl2 libcap 2.60-7 on CBL Mariner 2.0ModerateOut-of-band—Libcap: libcap: privilege escalation via toctou race condition in cap_set_file()
CVE-2026-33810 ↗2026-04-11azl3 golang 1.25.8-1 on Azure Linux 3.0ModerateOut-of-band—Case-sensitive excludedSubtrees name constraints cause Auth Bypass in crypto/x509
CVE-2026-27140 ↗2026-04-11azl3 golang 1.26.2-1 on Azure Linux 3.0CriticalOut-of-band—Code execution vulnerability in SWIG code generation in cmd/go
CVE-2026-27143 ↗2026-04-11cbl2 golang 1.18.8-10 on CBL Mariner 2.0CriticalOut-of-band—Missing bound checks can lead to memory corruption in safe Go in cmd/compile
CVE-2026-32282 ↗2026-04-11azl3 golang 1.25.9-1 on Azure Linux 3.0CriticalOut-of-band—TOCTOU permits root escape on Linux via Root.Chmod in os in internal/syscall/unix
CVE-2026-27144 ↗2026-04-11cbl2 golang 1.18.8-10 on CBL Mariner 2.0ImportantOut-of-band—Miscompilation allows memory corruption via CONVNOP-wrapped array copy in cmd/compile
CVE-2026-32280 ↗2026-04-11cbl2 gcc 11.2.0-9 on CBL Mariner 2.0ImportantOut-of-band—Unexpected work during chain building in crypto/x509
CVE-2026-32283 ↗2026-04-11cbl2 gcc 11.2.0-9 on CBL Mariner 2.0ImportantOut-of-band—Unauthenticated TLS 1.3 KeyUpdate record can cause persistent connection retention and DoS in crypto/tls
CVE-2026-32289 ↗2026-04-11cbl2 gcc 11.2.0-9 on CBL Mariner 2.0ModerateOut-of-band—JsBraceDepth Context Tracking Bugs (XSS) in html/template
CVE-2026-32281 ↗2026-04-11cbl2 gcc 11.2.0-9 on CBL Mariner 2.0ImportantOut-of-band—Inefficient policy validation in crypto/x509
CVE-2026-32288 ↗2026-04-11azl3 containerized-data-importer 1.62.0-3 on Azure Linux 3.0ImportantOut-of-band—Unbounded allocation for old GNU sparse in archive/tar
CVE-2026-29181 ↗2026-04-11azl3 containerd2 2.1.6-1 on Azure Linux 3.0ModerateOut-of-band—OpenTelemetry-Go multi-value `baggage` header extraction causes excessive allocations (remote dos amplification)
CVE-2026-39882 ↗2026-04-11azl3 containerd2 2.1.6-1 on Azure Linux 3.0ModerateOut-of-band—OpenTelemetry-Go OTLP HTTP exporters read unbounded HTTP response bodies
CVE-2026-28390 ↗2026-04-11azl3 edk2 20240524git3e722403cd16-16 on Azure Linux 3.0ImportantOut-of-band—Possible NULL Dereference When Processing CMS KeyTransportRecipientInfo
CVE-2026-28389 ↗2026-04-11azl3 qemu 9.1.0-5 on Azure Linux 3.0ModerateOut-of-band—Possible NULL Dereference When Processing CMS KeyAgreeRecipientInfo
CVE-2026-35611 ↗2026-04-11azl3 rubygem-addressable 2.8.5-2 on Azure Linux 3.0ImportantOut-of-band—Addressable has a Regular Expression Denial of Service in Addressable templates
CVE-2026-28810 ↗2026-04-11cbl2 kernel 5.15.202.1-1 on CBL Mariner 2.0ModerateOut-of-band—Predictable DNS Transaction IDs Enable Cache Poisoning in Built-in Resolver
Cross-vendor patches
VendorCVESeverityProductFixed versionPatchAdvisory
Red HatCVE-2025-40909CVSS 5.9Red Hat Enterprise Linux AppStream (v. 8)perl-4:5.32.1-474.module+el8.10.0+24099+8aa2f756.aarch64::perl:5.32Patch ↗Advisory ↗
Red HatCVE-2025-61726CVSS 7.5Red Hat Advanced Cluster Management for Kubernetes 2.15registry.redhat.io/rhacm2/lighthouse-agent-rhel9@sha256:3a7d7ad6a28416cd4479b5cf1508067e10ce342f01c7bb4aa3676abbd9f43a4a_ppc64lePatch ↗Advisory ↗
Red HatCVE-2025-61726CVSS 7.5Red Hat Web Terminal 1.15registry.redhat.io/web-terminal/web-terminal-exec-rhel9@sha256:1a4e4ddfdd6f353c67172dec6b6d5e3c07d3f67410d537066e2b0321b044698a_amd64Patch ↗Advisory ↗
Red HatCVE-2025-61728CVSS 7.5Red Hat Advanced Cluster Management for Kubernetes 2.15registry.redhat.io/rhacm2/lighthouse-coredns-rhel9@sha256:251df7bb1820fed1c75e7b5dd14ed2d12a9bf2f3b74c87f6a0027ebf0641d4e5_ppc64lePatch ↗Advisory ↗
Red HatCVE-2025-61729CVSS 7.5Red Hat Advanced Cluster Management for Kubernetes 2.15registry.redhat.io/rhacm2/subctl-rhel9@sha256:613ec029444a86d5510c67551d9b346379413f79064b4a406f8e4ad10b71f5a0_amd64Patch ↗Advisory ↗
Red HatCVE-2025-61729CVSS 7.5Red Hat Web Terminal 1.15registry.redhat.io/web-terminal/web-terminal-exec-rhel9@sha256:1a4e4ddfdd6f353c67172dec6b6d5e3c07d3f67410d537066e2b0321b044698a_amd64Patch ↗Advisory ↗
Red HatCVE-2025-68121CVSS 7.4Red Hat Advanced Cluster Management for Kubernetes 2.15registry.redhat.io/rhacm2/subctl-rhel9@sha256:613ec029444a86d5510c67551d9b346379413f79064b4a406f8e4ad10b71f5a0_amd64Patch ↗Advisory ↗
Red HatCVE-2025-68121CVSS 7.4Red Hat Web Terminal 1.15registry.redhat.io/web-terminal/web-terminal-exec-rhel9@sha256:1a4e4ddfdd6f353c67172dec6b6d5e3c07d3f67410d537066e2b0321b044698a_amd64Patch ↗Advisory ↗
Red HatCVE-2025-68151CVSS 5.3Red Hat Advanced Cluster Management for Kubernetes 2.15registry.redhat.io/rhacm2/lighthouse-coredns-rhel9@sha256:251df7bb1820fed1c75e7b5dd14ed2d12a9bf2f3b74c87f6a0027ebf0641d4e5_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-21441CVSS 7.5Red Hat Advanced Cluster Management for Kubernetes 2.15registry.redhat.io/rhacm2/lighthouse-agent-rhel9@sha256:3a7d7ad6a28416cd4479b5cf1508067e10ce342f01c7bb4aa3676abbd9f43a4a_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-25679CVSS 7.5Red Hat Advanced Cluster Management for Kubernetes 2.15registry.redhat.io/rhacm2/subctl-rhel9@sha256:613ec029444a86d5510c67551d9b346379413f79064b4a406f8e4ad10b71f5a0_amd64Patch ↗Advisory ↗
Red HatCVE-2026-25679CVSS 7.5Red Hat Web Terminal 1.15registry.redhat.io/web-terminal/web-terminal-exec-rhel9@sha256:1a4e4ddfdd6f353c67172dec6b6d5e3c07d3f67410d537066e2b0321b044698a_amd64Patch ↗Advisory ↗
Red HatCVE-2026-26017CVSS 7.7Red Hat Advanced Cluster Management for Kubernetes 2.15registry.redhat.io/rhacm2/lighthouse-coredns-rhel9@sha256:251df7bb1820fed1c75e7b5dd14ed2d12a9bf2f3b74c87f6a0027ebf0641d4e5_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-26018CVSS 7.5Red Hat Advanced Cluster Management for Kubernetes 2.15registry.redhat.io/rhacm2/lighthouse-coredns-rhel9@sha256:251df7bb1820fed1c75e7b5dd14ed2d12a9bf2f3b74c87f6a0027ebf0641d4e5_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-27137CVSS 7.5Red Hat Advanced Cluster Management for Kubernetes 2.15registry.redhat.io/rhacm2/subctl-rhel9@sha256:613ec029444a86d5510c67551d9b346379413f79064b4a406f8e4ad10b71f5a0_amd64Patch ↗Advisory ↗
Red HatCVE-2026-27137CVSS 7.5Red Hat Web Terminal 1.15registry.redhat.io/web-terminal/web-terminal-exec-rhel9@sha256:1a4e4ddfdd6f353c67172dec6b6d5e3c07d3f67410d537066e2b0321b044698a_amd64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat Advanced Cluster Management for Kubernetes 2.15registry.redhat.io/rhacm2/lighthouse-coredns-rhel9@sha256:251df7bb1820fed1c75e7b5dd14ed2d12a9bf2f3b74c87f6a0027ebf0641d4e5_ppc64lePatch ↗Advisory ↗
Red HatCVE-2025-61726CVSS 7.5Red Hat Enterprise Linux Server (v. 7 ELS)rhc-1:0.2.4-3.el7_9.ppc64lePatch ↗Advisory ↗
Red HatCVE-2025-61726CVSS 7.5Red Hat Enterprise Linux AppStream EUS (v.9.6)podman-5:5.4.0-20.el9_6.2.aarch64Patch ↗Advisory ↗
Red HatCVE-2025-61728CVSS 7.5Red Hat Enterprise Linux AppStream EUS (v.9.6)podman-5:5.4.0-20.el9_6.2.aarch64Patch ↗Advisory ↗
Red HatCVE-2025-61729CVSS 7.5Red Hat Enterprise Linux Server (v. 7 ELS)rhc-1:0.2.4-3.el7_9.ppc64lePatch ↗Advisory ↗
Red HatCVE-2025-61729CVSS 7.5Red Hat Enterprise Linux AppStream EUS (v.9.6)podman-5:5.4.0-20.el9_6.2.aarch64Patch ↗Advisory ↗
Red HatCVE-2025-61731CVSS 8.6Red Hat Enterprise Linux AppStream AUS (v.8.6)delve-0:1.7.2-1.module+el8.6.0+12972+ebab5911.src::go-toolset:rhel8Patch ↗Advisory ↗
Red HatCVE-2025-68121CVSS 7.4Red Hat Enterprise Linux AppStream EUS (v.9.6)podman-5:5.4.0-20.el9_6.2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-25679CVSS 7.5Red Hat Enterprise Linux AppStream AUS (v.8.6)delve-0:1.7.2-1.module+el8.6.0+12972+ebab5911.src::go-toolset:rhel8Patch ↗Advisory ↗
The next page could not be added in place. The ordinary page link remains available; try it again to navigate normally.