CYBERSECURITYTRACKER
TRACKING3,763 stories692 vuln stories
Patch Day month

June 2026 vulnerabilities

A defender-focused view of 1,890 vulnerabilities across 3,098 returned patch records from 4 vendors. Filter the complete month, or browse the static page trail without JavaScript.

3,098all patch recordsClear filters209criticalShow these records0Microsoft exploitation detectedShow these records1Microsoft in CISA KEVShow these records817tracked hereShow these records

Narrow the complete month

Filters use every patch record in this month, including records on later static pages.

Clear all

Microsoft-only signal filters exclude records without Microsoft signal data as unknown, report them separately, and never count them as “no.” “Tracked here” covers both Microsoft and cross-vendor records.

Loading the complete-month filter index…

Page 1 of 16 · records 1–200 of 3,098

Microsoft Security Response Center

CVEDateProductMSRC severityOut-of-bandEPSSTitle
CVE-2026-11645 ↗2026-06-15Microsoft Edge (Chromium-based)N/AOut-of-band2%CISA KEVVulnCheckENISAChromium: CVE-2026-11645 Out of bounds memory access in V8
CVE-2026-32174 ↗2026-06-18Azure AI Bot ServiceCriticalOut-of-band0%Azure Bot Service Elevation of Privilege Vulnerability
CVE-2026-32208 ↗2026-06-18Microsoft Edge (Chromium-based)CriticalOut-of-band1%Microsoft Entra ID Spoofing Vulnerability
CVE-2026-42895 ↗2026-06-18Microsoft 365 CopilotCriticalOut-of-band0%Microsoft Copilot Tampering Vulnerability
CVE-2026-45480 ↗2026-06-18Azure Active DirectoryCriticalOut-of-band1%Azure Active Directory Elevation of Privilege Vulnerability
CVE-2026-47633 ↗2026-06-18Microsoft Cost ManagementCriticalOut-of-band1%Microsoft Cost Management Information Disclosure Vulnerability
CVE-2026-47645 ↗2026-06-18Microsoft 365 CopilotCriticalOut-of-band1%Microsoft 365 Copilot's Business Chat Elevation of Privilege Vulnerability
CVE-2026-47646 ↗2026-06-18Dynamics 365 Customer VoiceCriticalOut-of-band0%Dynamics 365 Customer Voice Spoofing Vulnerability
CVE-2026-47647 ↗2026-06-18Microsoft Dynamics 365CriticalOut-of-band1%Dynamics 365 Elevation of Privilege Vulnerability
CVE-2026-48582 ↗2026-06-18Microsoft Exchange OnlineCriticalOut-of-band1%Microsoft Exchange Online Elevation of Privilege Vulnerability
CVE-2026-48584 ↗2026-06-18Azure SynapseCriticalOut-of-band1%Microsoft Azure Synapse Elevation of Privilege Vulnerability
CVE-2026-54130 ↗2026-06-18Microsoft 365 CopilotCriticalOut-of-band1%M365 Copilot Information Disclosure Vulnerability
CVE-2025-10263 ↗2026-06-09Windows 11 Version 26H1 for ARM64-based SystemsCritical1%KB5093998KB5094126
and 2 moreKB5094127KB5095051
ARM: CVE-2025-10263 Completion of affected memory accesses might not be guaranteed by completion of a TLBI [kernel]
CVE-2026-26142 ↗2026-06-09Nuance PowerScribe 360 version 4.0.5Critical2%Nuance PowerScribe Remote Code Execution Vulnerability
CVE-2026-32193 ↗2026-06-09Azure Kubernetes ServiceCritical0%Azure Kubernetes Service (AKS) Remote Code Execution Vulnerability
CVE-2026-33828 ↗2026-06-09Windows 10 Version 1809 for 32-bit SystemsCritical0%KB5093998KB5094122
and 6 moreKB5094123KB5094125KB5094126KB5094127KB5094128KB5095051
Windows Device Health Attestation (DHA) Elevation of Privilege Vulnerability
CVE-2026-42985 ↗2026-06-09Windows App Client for Windows DesktopCritical1%More likelyKB5093998KB5094041
and 8 moreKB5094042KB5094122KB5094123KB5094125KB5094126KB5094127KB5094128KB5095051
Remote Desktop Client Remote Code Execution Vulnerability
CVE-2026-42987 ↗2026-06-09Windows Server 2019Critical1%KB5094041KB5094042
and 4 moreKB5094122KB5094123KB5094125KB5094128
Windows Deployment Services (WDS) Remote Code Execution
CVE-2026-42992 ↗2026-06-09Windows 10 Version 1809 for 32-bit SystemsCritical0%KB5093998KB5094122
and 6 moreKB5094123KB5094125KB5094126KB5094127KB5094128KB5095051
Remote Desktop Client Remote Code Execution Vulnerability
CVE-2026-44799 ↗2026-06-09Windows 10 Version 1809 for 32-bit SystemsCritical0%KB5093998KB5094041
and 8 moreKB5094042KB5094122KB5094123KB5094125KB5094126KB5094127KB5094128KB5095051
Remote Desktop Client Remote Code Execution Vulnerability
CVE-2026-44801 ↗2026-06-09Windows 10 Version 1809 for 32-bit SystemsCritical0%KB5093998KB5094041
and 8 moreKB5094042KB5094122KB5094123KB5094125KB5094126KB5094127KB5094128KB5095051
Remote Desktop Client Remote Code Execution Vulnerability
CVE-2026-44803 ↗2026-06-09Windows 10 Version 1809 for 32-bit SystemsCritical1%More likelyKB5093998KB5094041
and 8 moreKB5094042KB5094122KB5094123KB5094125KB5094126KB5094127KB5094128KB5095051
Windows Graphics Component Remote Code Execution Vulnerability
CVE-2026-44810 ↗2026-06-09Windows Server 2022Critical0%KB5093998KB5094125
and 3 moreKB5094126KB5094128KB5095051
Microsoft Cryptographic Services Elevation of Privilege Vulnerability
CVE-2026-44812 ↗2026-06-09Windows 10 Version 1809 for 32-bit SystemsCritical1%More likelyKB5093998KB5094041
and 8 moreKB5094042KB5094122KB5094123KB5094125KB5094126KB5094127KB5094128KB5095051
Windows Graphics Component Remote Code Execution Vulnerability
CVE-2026-44815 ↗2026-06-09Windows 10 Version 1809 for 32-bit SystemsCritical1%KB5093998KB5094041
and 8 moreKB5094042KB5094122KB5094123KB5094125KB5094126KB5094127KB5094128KB5095051
DHCP Client Service Remote Code Execution Vulnerability
CVE-2026-45456 ↗2026-06-09Microsoft Office 365 for MacCritical0%KB5002873KB5002874
and 4 moreKB5002876KB5002879KB5002880KB5002881
Microsoft Outlook and Word Remote Code Execution Vulnerability
CVE-2026-45458 ↗2026-06-09Microsoft Office 365 for MacCritical0%KB5002873KB5002874
and 4 moreKB5002876KB5002879KB5002880KB5002881
Microsoft Outlook and Word Remote Code Execution Vulnerability
CVE-2026-45460 ↗2026-06-09Microsoft Office for AndroidCritical0%Microsoft Office Information Disclosure Vulnerability
CVE-2026-45461 ↗2026-06-09Microsoft Office for AndroidCritical0%KB5002878Microsoft Office Remote Code Execution Vulnerability
CVE-2026-45463 ↗2026-06-09Microsoft Office 365 for MacCritical0%KB5002878Microsoft Office Remote Code Execution Vulnerability
CVE-2026-45472 ↗2026-06-09Microsoft Office 2019 for 32-bit editionsCritical0%KB5002878Microsoft Office Remote Code Execution Vulnerability
CVE-2026-45474 ↗2026-06-09Microsoft Office 365 for MacCritical0%KB5002878Microsoft Office Remote Code Execution Vulnerability
CVE-2026-45476 ↗2026-06-09Linux kernel - Microsoft MANA Network DriverCritical0%Microsoft Azure Network Adapter Elevation of Privilege Vulnerability
CVE-2026-45607 ↗2026-06-09Windows 10 Version 1809 for x64-based SystemsCritical0%KB5093998KB5094122
and 6 moreKB5094123KB5094125KB5094126KB5094127KB5094128KB5095051
Windows Hyper-V Remote Code Execution Vulnerability
CVE-2026-45641 ↗2026-06-09Windows Server 2022Critical0%KB5093998KB5094125
and 4 moreKB5094126KB5094127KB5094128KB5095051
Windows Hyper-V Remote Code Execution Vulnerability
CVE-2026-45648 ↗2026-06-09Windows Server 2022Critical1%KB5094125KB5094128Windows Active Directory Domain Services Remote Code Execution Vulnerability
CVE-2026-45657 ↗2026-06-09Windows Server 2022Critical15%KB5093998KB5094125
and 3 moreKB5094126KB5094128KB5095051
Windows Kernel Remote Code Execution Vulnerability
CVE-2026-47288 ↗2026-06-09Windows Server 2019Critical0%KB5094041KB5094042
and 4 moreKB5094122KB5094123KB5094125KB5094128
Windows Kerberos Key Distribution Center (KDC) Remote Code Execution
CVE-2026-47289 ↗2026-06-09Windows 10 Version 1809 for 32-bit SystemsCritical1%KB5093998KB5094041
and 8 moreKB5094042KB5094122KB5094123KB5094125KB5094126KB5094127KB5094128KB5095051
Remote Desktop Client Remote Code Execution Vulnerability
CVE-2026-47291 ↗2026-06-09Windows 10 Version 1809 for 32-bit SystemsCritical23%More likelyKB5093998KB5094041
and 8 moreKB5094042KB5094122KB5094123KB5094125KB5094126KB5094127KB5094128KB5095051
1 mentionsHTTP.sys Remote Code Execution Vulnerability
CVE-2026-47635 ↗2026-06-09Microsoft Office LTSC 2024 for 32-bit editionsCritical0%Microsoft Outlook and Word Remote Code Execution Vulnerability
CVE-2026-47652 ↗2026-06-09Windows Server 2022Critical0%KB5093998KB5094125
and 3 moreKB5094126KB5094128KB5095051
Windows Hyper-V Remote Code Execution Vulnerability
CVE-2026-47654 ↗2026-06-09Windows Server 2019Critical1%KB5094122KB5094123
and 2 moreKB5094125KB5094128
Remote Desktop Client Remote Code Execution Vulnerability
CVE-2026-48563 ↗2026-06-09Windows 10 Version 1809 for 32-bit SystemsCritical1%KB5093998KB5094123
and 5 moreKB5094125KB5094126KB5094127KB5094128KB5095051
Remote Desktop Client Remote Code Execution Vulnerability
CVE-2026-48574 ↗2026-06-09Windows 10 Version 1809 for 32-bit SystemsCritical0%KB5093998KB5094041
and 8 moreKB5094042KB5094122KB5094123KB5094125KB5094126KB5094127KB5094128KB5095051
Windows Media Remote Code Execution Vulnerability
CVE-2026-42824 ↗2026-06-04Microsoft 365 CopilotCriticalOut-of-band8%M365 Copilot Information Disclosure Vulnerability
CVE-2026-45497 ↗2026-06-04Microsoft 365 CopilotCriticalOut-of-band0%Microsoft M365 Copilot Remote Code Execution Vulnerability
CVE-2026-47644 ↗2026-06-04Copilot Chat (Microsoft Edge)CriticalOut-of-band1%Copilot Chat (Microsoft Edge) Information Disclosure Vulnerability
CVE-2026-47655 ↗2026-06-04Microsoft GraphCriticalOut-of-band1%Microsoft Graph Information Disclosure Vulnerability
CVE-2026-48567 ↗2026-06-04Azure HorizonDBCriticalOut-of-band1%Azure HorizonDB Elevation of Privilege Vulnerability
CVE-2026-48579 ↗2026-06-04Microsoft Exchange OnlineCriticalOut-of-band1%Microsoft Exchange Online Information Disclosure Vulnerability
CVE-2026-53309 ↗2026-06-28azl3 kernel 6.6.139.1-1 on Azure Linux 3.0CriticalOut-of-bandocfs2/dlm: fix off-by-one in dlm_match_regions() region comparison
CVE-2026-52991 ↗2026-06-27azl3 kernel 6.6.144.1-1 on Azure Linux 3.0CriticalOut-of-bandsched/psi: fix race between file release and pressure write
CVE-2026-52947 ↗2026-06-27azl3 kernel 6.6.141.1-1 on Azure Linux 3.0CriticalOut-of-bandnet: qrtr: fix refcount saturation and potential UAF in qrtr_port_remove
CVE-2026-52944 ↗2026-06-27azl3 kernel 6.6.141.1-1 on Azure Linux 3.0CriticalOut-of-bandksmbd: fix FSCTL permission bypass by adding a permission check for FSCTL_SET_SPARSE
CVE-2026-53025 ↗2026-06-27azl3 kernel 6.6.143.1-1 on Azure Linux 3.0CriticalOut-of-bandgreybus: raw: fix use-after-free on cdev close
CVE-2026-52962 ↗2026-06-27azl3 kernel 6.6.141.1-1 on Azure Linux 3.0CriticalOut-of-bandceph: fix a buffer leak in __ceph_setxattr()
CVE-2026-53036 ↗2026-06-27azl3 kernel 6.6.139.1-1 on Azure Linux 3.0CriticalOut-of-bandbpf, arm64: Fix off-by-one in check_imm signed range check
CVE-2026-53108 ↗2026-06-27azl3 kernel 6.6.143.1-1 on Azure Linux 3.0CriticalOut-of-bandpowerpc/64s: Fix unmap race with PMD migration entries
CVE-2026-56123 ↗2026-06-27azl3 socat 1.7.4.4-2 on Azure Linux 3.0CriticalOut-of-bandsocat 1.8.0.0 - 1.8.1.1 Heap Buffer Overflow via SOCKS5 Reply Parser
CVE-2026-53053 ↗2026-06-27azl3 kernel 6.6.141.1-1 on Azure Linux 3.0CriticalOut-of-bandiommu/amd: Fix clone_alias() to use the original device's devid
CVE-2026-53130 ↗2026-06-27azl3 kernel 6.6.139.1-1 on Azure Linux 3.0CriticalOut-of-bandfs/omfs: reject s_sys_blocksize smaller than OMFS_DIR_START
CVE-2026-53002 ↗2026-06-27azl3 kernel 6.6.139.1-1 on Azure Linux 3.0CriticalOut-of-bandnetfilter: conntrack: remove sprintf usage
CVE-2026-53075 ↗2026-06-27azl3 kernel 6.6.139.1-1 on Azure Linux 3.0CriticalOut-of-bandppp: require CAP_NET_ADMIN in target netns for unattached ioctls
CVE-2026-53010 ↗2026-06-27azl3 kernel 6.6.141.1-1 on Azure Linux 3.0CriticalOut-of-bandksmbd: fix use-after-free in smb2_open during durable reconnect
CVE-2026-53077 ↗2026-06-27azl3 kernel 6.6.139.1-1 on Azure Linux 3.0CriticalOut-of-bandnet/rds: Restrict use of RDS/IB to the initial network namespace
CVE-2026-52989 ↗2026-06-27azl3 kernel 6.6.139.1-1 on Azure Linux 3.0CriticalOut-of-bandnvmet-tcp: propagate nvmet_tcp_build_pdu_iovec() errors to its callers
CVE-2026-53107 ↗2026-06-27azl3 kernel 6.6.141.1-1 on Azure Linux 3.0CriticalOut-of-bandwifi: libertas: don't kill URBs in interrupt context
CVE-2026-53000 ↗2026-06-27azl3 kernel 6.6.144.1-1 on Azure Linux 3.0CriticalOut-of-bandnetfilter: nat: use kfree_rcu to release ops
CVE-2026-53045 ↗2026-06-27azl3 kernel 6.6.139.1-1 on Azure Linux 3.0CriticalOut-of-bandmemory: tegra124-emc: Fix dll_change check
CVE-2026-52922 ↗2026-06-27azl3 kernel 6.6.141.1-1 on Azure Linux 3.0CriticalOut-of-bandbatman-adv: dat: handle forward allocation error
CVE-2026-53049 ↗2026-06-27azl3 kernel 6.6.139.1-1 on Azure Linux 3.0CriticalOut-of-bandgfs2: add some missing log locking
CVE-2026-53009 ↗2026-06-27azl3 kernel 6.6.143.1-1 on Azure Linux 3.0CriticalOut-of-bandice: fix double-free of tx_buf skb
CVE-2026-52919 ↗2026-06-27azl3 kernel 6.6.141.1-1 on Azure Linux 3.0CriticalOut-of-bandbatman-adv: fix tp_meter counter underflow during shutdown
CVE-2026-53062 ↗2026-06-27azl3 kernel 6.6.139.1-1 on Azure Linux 3.0CriticalOut-of-banddm cache policy smq: fix missing locks in invalidating cache blocks
CVE-2026-52934 ↗2026-06-27azl3 kernel 6.6.141.1-1 on Azure Linux 3.0CriticalOut-of-bandbatman-adv: tvlv: reject oversized TVLV packets
CVE-2026-53052 ↗2026-06-27azl3 kernel 6.6.139.1-1 on Azure Linux 3.0CriticalOut-of-bandASoC: qcom: qdsp6: topology: check widget type before accessing data
CVE-2026-53089 ↗2026-06-27azl3 kernel 6.6.143.1-1 on Azure Linux 3.0CriticalOut-of-bandbpf: Fix use-after-free in offloaded map/prog info fill
CVE-2026-53017 ↗2026-06-27azl3 kernel 6.6.141.1-1 on Azure Linux 3.0CriticalOut-of-bandf2fs: fix data loss caused by incorrect use of nat_entry flag
CVE-2026-53018 ↗2026-06-27azl3 kernel 6.6.143.1-1 on Azure Linux 3.0CriticalOut-of-bandf2fs: avoid reading already updated pages during GC
CVE-2026-55200 ↗2026-06-27azl3 libssh2 1.11.1-3 on Azure Linux 3.0CriticalOut-of-bandlibssh2 - Out-of-Bounds Write via Unchecked packet_length in transport.c
CVE-2026-53086 ↗2026-06-27azl3 kernel 6.6.139.1-1 on Azure Linux 3.0CriticalOut-of-bandnet: bcmgenet: fix racing timeout handler
CVE-2026-52956 ↗2026-06-27azl3 kernel 6.6.141.1-1 on Azure Linux 3.0CriticalOut-of-bandlibceph: Fix potential out-of-bounds access in __ceph_x_decrypt()
CVE-2026-53043 ↗2026-06-27azl3 kernel 6.6.139.1-1 on Azure Linux 3.0CriticalOut-of-bandocfs2/dlm: validate qr_numregions in dlm_match_regions()
CVE-2026-52993 ↗2026-06-27azl3 kernel 6.6.139.1-1 on Azure Linux 3.0CriticalOut-of-bandtipc: fix double-free in tipc_buf_append()
CVE-2026-52913 ↗2026-06-27azl3 kernel 6.6.141.1-1 on Azure Linux 3.0CriticalOut-of-bandbatman-adv: v: stop OGMv2 on disabled interface
CVE-2026-52931 ↗2026-06-27azl3 kernel 6.6.141.1-1 on Azure Linux 3.0CriticalOut-of-bandbatman-adv: tp_meter: avoid use of uninit sender vars
CVE-2026-53027 ↗2026-06-27azl3 kernel 6.6.141.1-1 on Azure Linux 3.0CriticalOut-of-bandfs/ntfs3: fix missing run load for vcn0 in attr_data_get_block_locked()
CVE-2026-52953 ↗2026-06-27azl3 kernel 6.6.143.1-1 on Azure Linux 3.0CriticalOut-of-bandiommu/vt-d: Fix oops due to out of scope access
CVE-2026-34182 ↗2026-06-13azl3 cloud-hypervisor 51.1.56-1 on Azure Linux 3.0CriticalOut-of-bandCMS AuthEnvelopedData Processing May Accept Forged Messages

Cross-vendor patches

VendorCVESeverityProductFixed versionPatchAdvisory
AndroidCVE-2025-64720trackedCritical (Android rating)platform/external/libpngPatch ↗Advisory ↗
AndroidCVE-2025-65018trackedCritical (Android rating)platform/external/libpngPatch ↗Advisory ↗
Red HatCVE-2025-12543CVSS 9.6Red Hat JBoss Enterprise Application Platform 7.3 EUS for RHEL 7 Servereap7-undertow-0:2.0.41-8.SP9_redhat_00001.1.el7eap.noarchPatch ↗Advisory ↗
Red HatCVE-2025-12543CVSS 9.6Red Hat JBoss Enterprise Application Platform 7.1 EUS for RHEL 7 Servereap7-undertow-0:1.4.18-21.SP19_redhat_00001.1.ep7.el7.noarchPatch ↗Advisory ↗
Red HatCVE-2026-22778CVSS 9.8Red Hat AI Inference Server 3.3registry.redhat.io/rhaiis/vllm-spyre-rhel9@sha256:681d191e22994e4da2d4844219e2401ee363d4b3524cd19bb00076dce685a36a_s390xPatch ↗Advisory ↗
Red HatCVE-2026-22778CVSS 9.8Red Hat AI Inference Server 3.3registry.redhat.io/rhaiis/vllm-rocm-rhel9@sha256:993e84c73225a7c5e2df63756643a26b054b665eb6c15599d9decbbce91b6863_amd64Patch ↗Advisory ↗
Red HatCVE-2026-22778CVSS 9.8Red Hat AI Inference Server 3.3registry.redhat.io/rhaiis/vllm-cuda-rhel9@sha256:9165ca6c4f41ed4f5cdf5c590bfad74e22abe23737adfdc40a4c4b340b10e309_arm64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1OpenShift API for Data Protection 1.4registry.redhat.io/oadp/oadp-kubevirt-velero-plugin-rhel9@sha256:17af493f7fee34d568b9d5619adfd7e087c28a8038e511d254a3999c37c58ef8_s390xPatch ↗Advisory ↗
Red HatCVE-2026-44172CVSS 9.1Red Hat Hardened Imagesmariadb-connector-c-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-48746CVSS 9.1Red Hat AI Inference Server 3.3registry.redhat.io/rhaiis/vllm-rocm-rhel9@sha256:993e84c73225a7c5e2df63756643a26b054b665eb6c15599d9decbbce91b6863_amd64Patch ↗Advisory ↗
Red HatCVE-2026-48746CVSS 9.1Red Hat AI Inference Server 3.3registry.redhat.io/rhaiis/vllm-cuda-rhel9@sha256:9165ca6c4f41ed4f5cdf5c590bfad74e22abe23737adfdc40a4c4b340b10e309_arm64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat OpenShift Container Platform 4.18ose-azure-acr-image-credential-provider-0:4.18.0-202606160919.p2.g9795abd.assembly.stream.el8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat OpenShift Container Platform 4.19ose-azure-acr-image-credential-provider-0:4.19.0-202606111920.p2.g6282230.assembly.stream.el9.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat OpenShift Container Platform 4.18registry.redhat.io/openshift4/ose-azure-cloud-controller-manager-rhel9@sha256:22b3c41c310e9da6521776253a5587d4aad9531f7de13544ffe132051549ce06_arm64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat OpenShift Container Platform 4.19registry.redhat.io/openshift4/ose-azure-cloud-controller-manager-rhel9@sha256:11546f4ffec090eb9e2d8f9016f968762741db7317c8573797a5ead885968f15_arm64Patch ↗Advisory ↗
Red HatCVE-2026-45445CVSS 9.1Red Hat Discovery 2registry.redhat.io/discovery/discovery-server-rhel9@sha256:6a26bc89c61e7fad594399ceda8e170d66fa241d818eada7a12d9fec6bb08ecc_amd64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat OpenShift Container Platform 4.20registry.redhat.io/openshift4/azure-kms-encryption-provider-rhel9@sha256:3bbdf23c749d068f766d18fccd5e5ae23ff90a5565d8f5101b551113cfb6c123_amd64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat Enterprise Linux AppStream EUS (v.9.6)osbuild-composer-0:132.2-9.el9_6.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat Enterprise Linux AppStream EUS (v. 10.0)osbuild-composer-0:134.1-9.el10_0.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat Container Native Virtualization 4.21registry.redhat.io/container-native-virtualization/hostpath-csi-driver-rhel9@sha256:503da66fe09453f2227ee7e0945ce50eafdbca05b6fb70177f716d5076ae85d1_s390xPatch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat Container Native Virtualization 4.18registry.redhat.io/container-native-virtualization/hostpath-csi-driver-rhel9@sha256:0b946e36b1480c68b9016b7ad6ee785c68bab137595ee44ce20471cd4b9b132b_s390xPatch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat Container Native Virtualization 4.19registry.redhat.io/container-native-virtualization/hostpath-csi-driver-rhel9@sha256:000bc72922c1cde56c5a31da18e816dc1fcaef66e8788166172ef3cf67c00f59_amd64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat Container Native Virtualization 4.2registry.redhat.io/container-native-virtualization/hostpath-csi-driver-rhel9@sha256:11b6c74ac8775309613003f1f580f80b63c82fc650a261d8808236548476ca49_s390xPatch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat OpenStack Platform 17.1etcd-0:3.4.26-9.5.el9ost.srcPatch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat Satellite 6.16 for RHEL 8yggdrasil-worker-forwarder-0:0.0.3-5.el8sat.srcPatch ↗Advisory ↗
CiscoCVE-2026-20181CVSS 9.1Cisco Identity Services Engine3.1Patch ↗Advisory ↗
Red HatCVE-2026-27140CVSS 9.0Red Hat OpenShift Container Platform 4.18registry.redhat.io/openshift4/ose-docker-builder-rhel9@sha256:4721dbc57a2f80297a8947d3023c99cd667264026b9a0b399ae24e47c9052f9f_arm64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat OpenShift Container Platform 4.14registry.redhat.io/openshift4/ose-sriov-network-config-daemon@sha256:041d72bac1ff9895f91c83b21a4f92499b948c13354fd074393bb7b9294d46c0_amd64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat OpenShift Container Platform 4.16registry.redhat.io/openshift4/kube-metrics-server-rhel9@sha256:27c89e9bf4a8a45a82ea5f912e2fcba5b5b9459a4dad3cd335bf6ef32fae28f6_amd64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat OpenShift Container Platform 4.18registry.redhat.io/openshift4/azure-service-rhel9-operator@sha256:40b58541fbe13d43c355406ebd8a094b87b0e64738bf545b7398383dd0c3ea90_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat OpenShift Container Platform 4.18registry.redhat.io/openshift4/ose-gcp-filestore-csi-driver-rhel9@sha256:0d3bad3a2fdf0065c684f5230d70dcc8e409e8eac77c05ae3c96a2f0ef7691af_amd64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat OpenShift Container Platform 4.19registry.redhat.io/openshift4/ose-machine-api-provider-gcp-rhel9@sha256:7c6370e5e97471e0749a7d0bb9555e8eaff2417c2601ab8d2996d4680d714175_amd64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat OpenShift Pipelines 1.21registry.redhat.io/openshift-pipelines/pipelines-resolvers-rhel9@sha256:34af5e7e166ea2ac902d3d0414adfb8442859396e60b4992de59d7ee130b3fef_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1OpenShift API for Data Protection 1.5registry.redhat.io/oadp/oadp-hypershift-velero-plugin-rhel9@sha256:04cd0a20d0f47d97111301293bdded1eb3c4b303c9276e39f00b61af649ef77e_arm64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat OpenShift Container Platform 4.21registry.redhat.io/openshift4/ose-azure-cloud-controller-manager-rhel9@sha256:8a6b8370d50f2b7847e74869aa9ea2fea008fb7dc11d310fb61e587eb2b964c9_amd64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat OpenShift Container Platform 4.20registry.redhat.io/openshift4/ose-gcp-pd-csi-driver-operator-rhel9@sha256:1679058a5b9f75a328452a5a8ac7da0f783efd228b0458ac9b41b471763d43f1_arm64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat OpenShift Container Platform 4.20registry.redhat.io/openshift4/ose-gcp-filestore-csi-driver-rhel9@sha256:15a7e0076980f322a7272c25a00f0bf6ce6fdb31e34f687318844f90a9cc8f79_arm64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat Openshift Data Foundation 4.2registry.redhat.io/odf4/cephcsi-rhel9-operator@sha256:1b7055b6a566413234c28bd08ef5b671ce661fc4ae2bc47d6c0522c803753ee6_arm64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat Openshift Data Foundation 4.19registry.redhat.io/odf4/cephcsi-rhel9-operator@sha256:00d4622c0e21f50569ea61d2deaf5b9c2cd8d859fab70c979241df06227a844b_amd64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat Openshift Data Foundation 4.16registry.redhat.io/odf4/cephcsi-rhel9@sha256:4c908b6426368804cb7694daa9f2be625cc45867748d12e657667a8f3188d7d3_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat Openshift Data Foundation 4.18registry.redhat.io/odf4/cephcsi-rhel9-operator@sha256:255ed925fd638caf248ca62723e4a77db96981a39d549a6bd0d415ca10a72354_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-45445CVSS 9.1Red Hat Update Infrastructure 5registry.redhat.io/rhui5/cds-rhel9@sha256:5c18f8336186fb1c9dbc1e710e91420ca3f5eca92b081cace3325585789f4825_amd64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat OpenShift Container Platform 4.15registry.redhat.io/openshift4/ose-cluster-olm-operator-rhel8@sha256:5312a85de44c74315a88be5a4fe0dc37c1420eec36d9572987bfd46aaa9b4ed1_s390xPatch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat OpenShift Container Platform 4.15registry.redhat.io/openshift4/ose-sriov-network-config-daemon-rhel9@sha256:30e24d9f744be4d729bc3e443a31a945eb952531b29b1b4057dbf41fc4d1849f_amd64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat OpenShift Container Platform 4.21registry.redhat.io/openshift4/ose-cluster-ingress-rhel9-operator@sha256:1f9f09fe690a6b7b62723641cc568bd4aca26efd265a5f9ac63403cc24f91d05_amd64Patch ↗Advisory ↗
Red HatCVE-2026-45445CVSS 9.1Red Hat Enterprise Linux AppStream (v. 10)openssl-debuginfo-1:3.5.5-4.el10_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-45445CVSS 9.1Red Hat Enterprise Linux AppStream (v. 9)openssl-debuginfo-1:3.5.5-4.el9_8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-27140CVSS 9.0Red Hat OpenShift Container Platform 4.19registry.redhat.io/openshift4/aws-karpenter-provider-aws-rhel9@sha256:45c594587b6df1aba8687382b9416a77a7ac931326d6a7e00e00403104339bba_arm64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat OpenShift Container Platform 4.19registry.redhat.io/openshift4/aws-kms-encryption-provider-rhel9@sha256:3c023c8e8391e3fb1515179fd048a803526da0ca106c18aec9d8099f15ef3b9e_s390xPatch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat OpenShift Container Platform 4.19registry.redhat.io/openshift4/ose-cluster-nfd-rhel9-operator@sha256:784c641e82a3990801f6d3b46c8809607b882f8d8df155a3caf79f28556eb3e7_amd64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat OpenShift AI 2.25registry.redhat.io/rhoai/odh-llm-d-inference-scheduler-rhel9@sha256:e55820d26dabfc14b70947d317f85ff0ac19aeaf41a025ac95b3749c31a7e6e2_amd64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat Advanced Cluster Management for Kubernetes 2.14registry.redhat.io/rhacm2/lighthouse-coredns-rhel9@sha256:84ea010ee8369be60c67bb28c831897583c5d23055c902c5e68be70729d80b73_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-44170CVSS 9.9Red Hat Hardened Imagesmariadb11-8-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-44170CVSS 9.9Red Hat Hardened Imagesmariadb10-11-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-48163CVSS 9.1Red Hat Hardened Imagesmariadb11-8-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-48163CVSS 9.1Red Hat Hardened Imagesmariadb10-11-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-48165CVSS 9.1Red Hat Hardened Imagesmariadb11-8-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-48165CVSS 9.1Red Hat Hardened Imagesmariadb10-11-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-49261CVSS 9.0Red Hat Hardened Imagesmariadb11-8-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-49261CVSS 9.0Red Hat Hardened Imagesmariadb10-11-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-27962CVSS 9.1Red Hat Quay 3.15registry.redhat.io/quay/quay-rhel8@sha256:5b1b98cd31ba150aecd6ef44c2bd8d79ae64380c8e974a4c8c1bb66fb4a38ce9_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat OpenShift Container Platform 4.20registry.redhat.io/openshift4/topology-aware-lifecycle-manager-rhel9-operator@sha256:5748ae075ffdca0e11bf4f522c308e46554fc5f55d7758d7d1b12e9156e35105_amd64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat Quay 3.15registry.redhat.io/quay/quay-rhel8@sha256:5b1b98cd31ba150aecd6ef44c2bd8d79ae64380c8e974a4c8c1bb66fb4a38ce9_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-40175CVSS 9.0Red Hat Ansible Automation Platform 2.6 for RHEL 9automation-platform-ui-0:2.6.9-1.el9ap.noarchPatch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat OpenShift Pipelines 1.21serve-tkn-cli-1-21-serve-tkn-cli@amd64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat OpenShift Container Platform 4.21registry.redhat.io/openshift4/lifecycle-agent-rhel9-operator@sha256:628d2c96d02f8c4a883184d1b1a52f37be6ac8e77070d91f73dc9f288d2e117f_amd64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat OpenShift Container Platform 4.20registry.redhat.io/openshift4/lifecycle-agent-rhel9-operator@sha256:0c2894cb04a5cd4fbb0f944c946278a3921b1b9b88e6f82cfcf9d26594b595d1_arm64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1multicluster engine for Kubernetes 2.1registry.redhat.io/multicluster-engine/addon-manager-rhel9@sha256:02108938c522fd0b64621faecb7b789902bcdfa18095ac6f262db5287425722a_arm64Patch ↗Advisory ↗
Red HatCVE-2026-33211CVSS 9.6Red Hat OpenShift Pipelines 1.21serve-tkn-cli-1-21-serve-tkn-cli@amd64Patch ↗Advisory ↗
AndroidCVE-2026-0126Critical (Android rating)no patch linkAdvisory ↗
AndroidCVE-2026-0132Critical (Android rating)no patch linkAdvisory ↗
AndroidCVE-2026-0135Critical (Android rating)no patch linkAdvisory ↗
AndroidCVE-2026-0139Critical (Android rating)no patch linkAdvisory ↗
AndroidCVE-2026-0149Critical (Android rating)no patch linkAdvisory ↗
AndroidCVE-2026-0153Critical (Android rating)no patch linkAdvisory ↗
AndroidCVE-2026-0154Critical (Android rating)no patch linkAdvisory ↗
AndroidCVE-2026-0160Critical (Android rating)no patch linkAdvisory ↗
AndroidCVE-2026-0161Critical (Android rating)no patch linkAdvisory ↗
AndroidCVE-2026-0162Critical (Android rating)no patch linkAdvisory ↗
AndroidCVE-2026-0164Critical (Android rating)no patch linkAdvisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat OpenShift Container Platform 4.13registry.redhat.io/openshift4/ose-csi-driver-nfs-rhel8@sha256:b642626ba0b4e141f350d2f5b3c4c730a9b004dcd899cd25465108b7b5873264_amd64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat OpenShift Container Platform 4.13registry.redhat.io/openshift4/ose-sriov-network-config-daemon@sha256:40a90e313ae3a865320b981979e3785b81e6b18cfd0775e4adb74e50672ef624_amd64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat OpenShift Container Platform 4.12registry.redhat.io/openshift4/ose-csi-driver-nfs-rhel8@sha256:68d01a85aa5e0b8e41db8c4c8ac2cb61effe964250dc0b5255b7231ce26b2e11_amd64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat OpenShift Container Platform 4.12registry.redhat.io/openshift4/ose-sriov-network-config-daemon@sha256:2a03ad6a571f8743a61e5340e8488ac5008c574d2477ebf8129739b098c5b1b6_amd64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat Enterprise Linux AppStream (v. 9)image-builder-0:52.1-1.el9_8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat multicluster global hub 1.6.0registry.redhat.io/multicluster-globalhub/multicluster-globalhub-agent-rhel9@sha256:51353652e207a04ede5c7f0f11ddc82150f2ca79a110a5e85d8c6e13ccdfa8f5_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-41607CVSS 9.1Red Hat multicluster global hub 1.6.0registry.redhat.io/multicluster-globalhub/multicluster-globalhub-grafana-rhel9@sha256:05f069047e37620fa1ea72f0c0cbea205f27a4a4594c674b59d6dfa2a18f9f26_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat OpenShift Container Platform 4.18registry.redhat.io/openshift4/aws-kms-encryption-provider-rhel9@sha256:00dbbd309cec902c4d16c80fc0ca3e903a43aefd0e0e9455169682fef52153c3_amd64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat OpenShift Container Platform 4.18registry.redhat.io/openshift4/ose-aws-efs-csi-driver-container-rhel9@sha256:fad7c9ea2f199e6c443affa23a6857b1d6ef23fddb1c15d6e95e9e3820db5d49_amd64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat OpenShift Container Platform 4.20registry.redhat.io/openshift4/aws-kms-encryption-provider-rhel9@sha256:0e687f3dd4f7b74cbae872115c03d448a50f684f2dbb611c6ddcd0456b8cc93a_amd64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat OpenShift Container Platform 4.20registry.redhat.io/openshift4/ose-aws-efs-csi-driver-container-rhel9@sha256:4b0f48a9a905debb43b9eb748f2acca25aaae8a0bfa4f25f8bead75e59e54983_amd64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat Enterprise Linux AppStream (v. 9)osbuild-composer-0:165.1-2.el9_8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat OpenShift Container Platform 4.21registry.redhat.io/openshift4/topology-aware-lifecycle-manager-rhel9-operator@sha256:9aee6301248bbbfba3858f4d16bc5084c59c299926f35df58a1c97658b828e44_amd64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat Enterprise Linux AppStream (v. 10)image-builder-0:52.1-1.el10_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat Web Terminal 1.14registry.redhat.io/web-terminal/web-terminal-tooling-rhel9@sha256:7c5797371cb33199e0a9494bd82da2c4bf05ce045598640af33097fbee2ce90a_amd64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat Web Terminal 1.15registry.redhat.io/web-terminal/web-terminal-tooling-rhel9@sha256:0cd46a662d9a8ced0bd3145d49c7b02465acb6c3a985d0857f7592a6ee7a95e8_amd64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat OpenShift Container Platform 4.21registry.redhat.io/openshift4/azure-kms-encryption-provider-rhel9@sha256:0039d5aa7a97404185e81107bbddb330b1b94ea0c2548f96148d280b3cfc58df_arm64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat OpenShift Container Platform 4.21registry.redhat.io/openshift4/ose-gcp-filestore-csi-driver-rhel9@sha256:90dac4a9f8524990f46eb05ef42de0aff635c4db107c96f839927234c2c31bf3_amd64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Multicluster Global Hub 1.3.4registry.redhat.io/multicluster-globalhub/multicluster-globalhub-agent-rhel9@sha256:031c9b259f062e07131ae61ad1b354b9362e768fe14bdd1794754e83424f4a20_amd64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat Enterprise Linux AppStream (v. 10)osbuild-composer-0:165.1-2.el10_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat Quay 3.17registry.redhat.io/quay/quay-rhel9@sha256:65c631d107c264bef8a74336077b413609da4cfc37c8c9488afdcaa0df07dad5_s390xPatch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat Lightspeed (formerly Insights) for Runtimes 1registry.redhat.io/rh-lightspeed-runtimes/runtimes-inventory-rhel9-operator@sha256:77f1e202337d716cd2fe7a6701efdeed9cae719f3dfdadf7a0fd4574a11b6ed8_amd64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat Advanced Cluster Management for Kubernetes 2.13registry.redhat.io/rhacm2/multicluster-operators-subscription-rhel9@sha256:0ba64b14aa1f49603b6e0ad6966694fbbc91ffb586a46f87662ea1a07f8903c9_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1multicluster engine for Kubernetes 2.8registry.redhat.io/multicluster-engine/cluster-proxy-addon-rhel9@sha256:42602795e2249ad279ec0d93ae80cb03f40a21969c3e1ca6350efc77b1da32ce_amd64Patch ↗Advisory ↗
Red HatCVE-2026-41607CVSS 9.1Multicluster Global Hub 1.3.4registry.redhat.io/multicluster-globalhub/multicluster-globalhub-grafana-rhel9@sha256:1128dffb3133bd5dc86dd3e4d74d807aa3567acf7d9eaf8c94cb522efb2c39ec_arm64Patch ↗Advisory ↗
AndroidCVE-2025-64505Critical (Android rating)platform/external/libpngPatch ↗Advisory ↗
AndroidCVE-2026-0039Critical (Android rating)platform/external/dng_sdkPatch ↗Advisory ↗
AndroidCVE-2026-0040Critical (Android rating)platform/external/dng_sdkPatch ↗Advisory ↗
AndroidCVE-2026-0041Critical (Android rating)platform/external/dng_sdkPatch ↗Advisory ↗
AndroidCVE-2026-0042Critical (Android rating)platform/external/dng_sdkPatch ↗Advisory ↗