CYBERSECURITYTRACKER
TRACKING7,811 stories in this site build1,697 vulnerability news stories in this site build
Vulnerabilities

June 2026 vulnerabilities

Browse this month's returned vendor patches and exploitation signals, with filtering and stable pages for browsing without JavaScript.

Microsoft reports 0 vulnerabilities with exploitation detected in the wild this month. This defender-focused view covers 2,291 vulnerabilities across 5,850 returned patch records from 4 vendors. Filter the complete month, or browse the static page trail without JavaScript.

5,850all patch recordsClear filters263criticalShow these records0Microsoft exploitation detectedShow these records2Microsoft in the Known Exploited Vulnerabilities catalogShow these records1,488tracked hereShow these records
Patch records
Returned Microsoft and cross-vendor release records. One Common Vulnerabilities and Exposures (CVE) identifier can appear in more than one record.
Tracked here
Records joined to a vulnerability record in this tracker.
Defender priority
Sorts Microsoft exploitation status, Cybersecurity and Infrastructure Security Agency (CISA) Known Exploited Vulnerabilities (KEV) catalog status, severity, and tracker coverage first.
More likely
Microsoft's Exploitability Index rating that exploitation is more likely. It is not a claim that exploitation was detected.

Narrow the complete month

Filters use every patch record in this month, including records on later static pages.

Clear all

My Stack only keeps records whose vendor you have pinned. Pins are the vendors you added to My Stack on the home page. Your pin list is saved only in this browser. Shared view and feed requests include the selected vendor names in their URLs. Pins never change what the tracker collects or scores.

Microsoft-only signal filters exclude records without Microsoft signal data as unknown, report them separately, and never count them as absent. “Tracked here” covers both Microsoft and cross-vendor records.

Loading the complete-month filter index…

An Exploit Prediction Scoring System (EPSS) percentage is the global 30-day exploitation probability in the wild, not specific to you. Do not read it as a complete risk score or as evidence about your environment or impact.

Page 26 of 30 · records 5,001 to 5,200 of 5,850

Microsoft Security Response Center

CVEDateProductMSRC severityOut-of-bandEPSSTitle
CVE-2026-42770 ↗azl3 openssl 3.3.7-3 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailableFFC-DH Peer Validation Uses Attacker-Supplied q
CVE-2026-4360 ↗azl3 python3 3.12.9-14 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailableTarfile.extract() doesn't fully respect filter parameter
CVE-2026-7531 ↗azl3 mariadb 10.11.18-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailableUse-after-free in PQC hybrid key-share handling
CVE-2026-6412 ↗azl3 mariadb 10.11.18-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailableContinued acceptance of SHA-1/MD5 digests in certificate processing
CVE-2026-6092 ↗azl3 mariadb 10.11.18-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailableEncrypt-then-MAC could fall back to MAC-then-Encrypt when HAVE_ENCRYPT_THEN_MAC is configured
CVE-2026-10512 ↗azl3 mariadb 10.11.18-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailableX25519 x86_64 assembly final reduction leaves non-canonical field element
CVE-2026-6325 ↗azl3 mariadb 10.11.18-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailableOut-of-bounds write in SetSuitesHashSigAlgo on oversized signature algorithms list
CVE-2026-6331 ↗azl3 mariadb 10.11.18-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailableHMAC zero-length tag forgery in EVP_DigestVerifyFinal
CVE-2026-6678 ↗azl3 mariadb 10.11.18-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailableInteger underflow in wc_PKCS7_DecryptOri handling crafted Other Recipient Info
CVE-2026-55967 ↗azl3 mariadb 10.11.18-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailableAES-GCM streaming APIs do not reject >64 GiB cumulative single messages, enabling counter wrap and keystream reuse
CVE-2026-6450 ↗azl3 mariadb 10.11.18-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailableCRL critical extension bypass in ParseCRL_Extensions
CVE-2026-13322 ↗azl3 kubevirt 1.7.1-8 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailableKubevirt: virt-handler-rhel9: kubevirt: unbounded virtio-serial readline in virt-handler causes oom denial of service
CVE-2026-11979 ↗azl3 libxml2 2.11.5-10 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailableStack-Based Buffer Overflow in libxml2
CVE-2026-41991 ↗azl3 gzip 1.13-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailablePredictable Temporary File in GNU gzip
CVE-2026-57234 ↗azl3 rubygem-nokogiri 1.15.4-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailableNokogiri: XML::Schema on JRuby allows network requests when NONET is set, bypassing CVE-2020-26247
CVE-2026-54905 ↗azl3 rubygem-concurrent-ruby 1.2.2-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailableconcurrent-ruby: `ReentrantReadWriteLock` read-count overflow grants a write lock without exclusivity
CVE-2026-53089 ↗azl3 kernel 6.6.143.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailablebpf: Fix use-after-free in offloaded map/prog info fill
CVE-2026-54906 ↗azl3 rubygem-concurrent-ruby 1.2.2-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailableconcurrent-ruby: ReadWriteLock allows wrong-thread write release and stray read-release counter corruption
CVE-2026-47241 ↗azl3 ruby 3.3.5-8 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailableNet::IMAP: Denial of Service via incomplete raw argument validation
CVE-2026-11525 ↗azl3 nodejs 24.17.0-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailableundici vulnerable to Set-Cookie SameSite attribute downgrade via permissive substring matching
CVE-2026-57062 ↗azl3 gnupg2 2.4.9-2 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailableCMS (Cryptographic Message Syntax) parsing in gpgsm in GnuPG through 2.5.20 mishandles the CMS format for AES-GCM because aes-ICVlen is supposed to be 12 bytes but 4 bytes is accepted. NOTE: this is related to CVE-2026-34182.
CVE-2026-49356 ↗azl3 babel 2.15.0-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailableBabel: Arbitrary File Read via sourceMappingURL Comment in @babel/core
CVE-2026-11623 ↗azl3 tmux 3.4-2 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailabletmux image.c image_free use after free
CVE-2026-43966 ↗azl3 rabbitmq-server 3.13.7-5 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailableHTTP Response Splitting via Non-VCHAR Bytes in cow_http_struct_hd:escape_string/2
CVE-2026-48855 ↗azl3 erlang 26.2.5.20-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailableSFTP READLINK Leaks Absolute Backend Filesystem Path When Root Is Configured

Cross-vendor patches

VendorCVESeverityProductFixed versionPatchAdvisory
Red HatCVE-2026-2377CVSS 6.5Red Hat Quay 3.10registry.redhat.io/quay/quay-rhel8@sha256:5fda9676baf87c3bbcbf4cc37588b4d0f2c24f1be36fec0d90afe044f673c5dc_amd64Patch ↗Advisory ↗
Red HatCVE-2026-26996CVSS 6.5Red Hat OpenShift Container Platform 4.20registry.redhat.io/openshift4/ose-console-rhel9@sha256:05a8e44c65cf2f57eaf5bab572ae135b929cb3b28687d7a3c44f32a16a10fa87_arm64Patch ↗Advisory ↗
Red HatCVE-2026-31812CVSS 5.3Logging Subsystem for Red Hat OpenShift 6.4registry.redhat.io/openshift-logging/vector-rhel9@sha256:3176f479ec53def3156169e601b336dc27e1e9684969f793a5b672d8954db9a7_arm64Patch ↗Advisory ↗
Red HatCVE-2026-32281CVSS 5.9Red Hat Enterprise Linux AppStream EUS (v. 10.0)rhc-1:0.3.2-4.el10_0.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-32281CVSS 5.9Red Hat Quay 3.10registry.redhat.io/quay/quay-rhel8@sha256:5fda9676baf87c3bbcbf4cc37588b4d0f2c24f1be36fec0d90afe044f673c5dc_amd64Patch ↗Advisory ↗
Red HatCVE-2026-32281CVSS 5.9Logging Subsystem for Red Hat OpenShift 6.4registry.redhat.io/openshift-logging/logging-loki-rhel9@sha256:587c7963571af01291ea01563c426a93d77a77ef22b79641fddbc9833791bff7_arm64Patch ↗Advisory ↗
Red HatCVE-2026-35177CVSS 4.1Red Hat Enterprise Linux AppStream (v. 10)vim-common-2:9.1.083-9.el10_2.3.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-35177CVSS 4.1Red Hat Enterprise Linux AppStream (v. 9)vim-common-2:8.2.2637-26.el9_8.5.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-35177CVSS 4.1Red Hat Enterprise Linux AppStream (v. 8)vim-common-2:8.0.1763-23.el8_10.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-35414CVSS 4.8Red Hat Enterprise Linux AppStream EUS (v.9.4)openssh-askpass-0:8.7p1-38.el9_4.8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-35469CVSS 6.5Red Hat OpenShift Container Platform 4.18registry.redhat.io/openshift4/ose-sriov-network-config-daemon-rhel9@sha256:77d17449b209ba86a5baa6e7d1001bfa351950ef4076be6656690ac054b01418_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-40385CVSS 4.0Red Hat Enterprise Linux AppStream (v. 9)libexif-0:0.6.22-6.el9_8.1.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-40386CVSS 4.0Red Hat Enterprise Linux AppStream (v. 10)libexif-0:0.6.24-9.el10_2.1.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-40386CVSS 4.0Red Hat Enterprise Linux AppStream (v. 9)libexif-0:0.6.22-6.el9_8.1.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-43163CVSS 4.7Red Hat Enterprise Linux Real Time for NFV E4S (v.9.2)kernel-rt-0:5.14.0-284.174.1.rt14.459.el9_2.srcPatch ↗Advisory ↗
Red HatCVE-2026-43163CVSS 4.7Red Hat Enterprise Linux AppStream E4S (v.9.2)bpftool-debuginfo-0:7.0.0-284.174.1.el9_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-45149CVSS 6.5Red Hat Hardened Imagescargo-0:1.96.0-1.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-4878CVSS 6.7Red Hat Enterprise Linux BaseOS E4S (v.8.8)libcap-0:2.48-5.el8_8.1.i686Patch ↗Advisory ↗
Red HatCVE-2026-5119CVSS 5.9Red Hat Enterprise Linux AppStream E4S (v.8.8)libsoup-debuginfo-0:2.62.3-3.el8_8.9.i686Patch ↗Advisory ↗
Red HatCVE-2026-5119CVSS 5.9Red Hat Enterprise Linux AppStream AUS (v.8.4)libsoup-debuginfo-0:2.62.3-2.el8_4.9.i686Patch ↗Advisory ↗
Red HatCVE-2026-6019CVSS 6.8Red Hat Hardened Imagespython3-14-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-6472CVSS 5.4Red Hat Hardened Imagespostgresql18-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-6474CVSS 4.3Red Hat Hardened Imagespostgresql18-main@srcPatch ↗Advisory ↗
Red HatCVE-2026-6475CVSS 6.7Red Hat Hardened Imagespostgresql18-main@srcPatch ↗Advisory ↗
Red HatCVE-2026-6575CVSS 4.3Red Hat Hardened Imagespostgresql18-main@srcPatch ↗Advisory ↗
Red HatCVE-2026-8954CVSS 6.1Red Hat Enterprise Linux AppStream (v. 8)thunderbird-0:140.11.0-1.el8_10.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-8955CVSS 6.1Red Hat Enterprise Linux AppStream (v. 8)thunderbird-0:140.11.0-1.el8_10.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-8957CVSS 6.1Red Hat Enterprise Linux AppStream (v. 8)thunderbird-0:140.11.0-1.el8_10.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-8958CVSS 6.1Red Hat Enterprise Linux AppStream (v. 8)thunderbird-0:140.11.0-1.el8_10.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-9358CVSS 4.3Red Hat Hardened Imagescargo-0:1.96.0-1.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-9675CVSS 5.9Red Hat Hardened Imagescargo-0:1.96.0-1.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2025-14087CVSS 5.6Red Hat Insights proxy 1.5registry.redhat.io/insights-proxy/insights-proxy-container-rhel9@sha256:35a26e08219c8608fd6be94ab0e16947c6d8dd68752b7c7747b65f23f1679492_amd64Patch ↗Advisory ↗
Red HatCVE-2025-14512CVSS 6.5Red Hat Insights proxy 1.5registry.redhat.io/insights-proxy/insights-proxy-container-rhel9@sha256:35a26e08219c8608fd6be94ab0e16947c6d8dd68752b7c7747b65f23f1679492_amd64Patch ↗Advisory ↗
Red HatCVE-2025-9714CVSS 6.2Red Hat Enterprise Linux Server (v. 7 ELS)libxml2-0:2.9.1-6.el7_9.14.i686Patch ↗Advisory ↗
Red HatCVE-2026-2100CVSS 5.3Red Hat Insights proxy 1.5registry.redhat.io/insights-proxy/insights-proxy-container-rhel9@sha256:35a26e08219c8608fd6be94ab0e16947c6d8dd68752b7c7747b65f23f1679492_amd64Patch ↗Advisory ↗
Red HatCVE-2026-2377CVSS 6.5Red Hat Quay 3.12registry.redhat.io/quay/quay-rhel8@sha256:6e84443d520fc3f75352783c17e4262db596b6a7b194970f0cb276e52aa7cb26_arm64Patch ↗Advisory ↗
Red HatCVE-2026-26996CVSS 6.5Red Hat OpenShift Container Platform 4.21registry.redhat.io/openshift4/ose-console-rhel9@sha256:2154126f421770d5bda37e9900740c778969b6aa570165083b39b6d467203e5f_arm64Patch ↗Advisory ↗
Red HatCVE-2026-31790CVSS 5.9Red Hat Insights proxy 1.5registry.redhat.io/insights-proxy/insights-proxy-container-rhel9@sha256:35a26e08219c8608fd6be94ab0e16947c6d8dd68752b7c7747b65f23f1679492_amd64Patch ↗Advisory ↗
Red HatCVE-2026-32281CVSS 5.9Red Hat Quay 3.17registry.redhat.io/quay/quay-rhel9@sha256:65c631d107c264bef8a74336077b413609da4cfc37c8c9488afdcaa0df07dad5_s390xPatch ↗Advisory ↗
Red HatCVE-2026-32281CVSS 5.9Red Hat Lightspeed (formerly Insights) for Runtimes 1.0registry.redhat.io/rh-lightspeed-runtimes/runtimes-inventory-rhel9-operator@sha256:77f1e202337d716cd2fe7a6701efdeed9cae719f3dfdadf7a0fd4574a11b6ed8_amd64Patch ↗Advisory ↗
Red HatCVE-2026-32281CVSS 5.9Red Hat Quay 3.12registry.redhat.io/quay/quay-rhel8@sha256:6e84443d520fc3f75352783c17e4262db596b6a7b194970f0cb276e52aa7cb26_arm64Patch ↗Advisory ↗
Red HatCVE-2026-32286CVSS 5.9Multicluster Global Hub 1.3.4registry.redhat.io/multicluster-globalhub/multicluster-globalhub-agent-rhel9@sha256:031c9b259f062e07131ae61ad1b354b9362e768fe14bdd1794754e83424f4a20_amd64Patch ↗Advisory ↗
Red HatCVE-2026-34000CVSS 6.1Red Hat Enterprise Linux AppStream EUS (v.9.6)tigervnc-0:1.14.1-10.el9_6.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-34000CVSS 6.1Red Hat Enterprise Linux Server (v. 7 ELS)tigervnc-0:1.8.0-36.el7_9.4.ppc64Patch ↗Advisory ↗
Red HatCVE-2026-34002CVSS 6.1Red Hat Enterprise Linux AppStream EUS (v.9.6)tigervnc-0:1.14.1-10.el9_6.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-34002CVSS 6.1Red Hat Enterprise Linux Server (v. 7 ELS)tigervnc-0:1.8.0-36.el7_9.4.ppc64Patch ↗Advisory ↗
Red HatCVE-2026-34352CVSS 6.3Red Hat Enterprise Linux AppStream EUS (v.9.6)tigervnc-0:1.14.1-10.el9_6.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-34352CVSS 6.3Red Hat Enterprise Linux Server (v. 7 ELS)tigervnc-0:1.8.0-36.el7_9.4.ppc64Patch ↗Advisory ↗
Red HatCVE-2026-34478CVSS 5.8Red Hat Data Grid 8.6.1Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-34480CVSS 5.3Red Hat Data Grid 8.6.1Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-34481CVSS 6.5Red Hat Data Grid 8.6.1Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-35414CVSS 4.8Red Hat Enterprise Linux AppStream E4S (v.9.2)openssh-askpass-0:8.7p1-30.el9_2.11.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-40355CVSS 5.9Red Hat Insights proxy 1.5registry.redhat.io/insights-proxy/insights-proxy-container-rhel9@sha256:35a26e08219c8608fd6be94ab0e16947c6d8dd68752b7c7747b65f23f1679492_amd64Patch ↗Advisory ↗
Red HatCVE-2026-40356CVSS 5.9Red Hat Insights proxy 1.5registry.redhat.io/insights-proxy/insights-proxy-container-rhel9@sha256:35a26e08219c8608fd6be94ab0e16947c6d8dd68752b7c7747b65f23f1679492_amd64Patch ↗Advisory ↗
Red HatCVE-2026-4046CVSS 5.3Red Hat Insights proxy 1.5registry.redhat.io/insights-proxy/insights-proxy-container-rhel9@sha256:35a26e08219c8608fd6be94ab0e16947c6d8dd68752b7c7747b65f23f1679492_amd64Patch ↗Advisory ↗
Red HatCVE-2026-4437CVSS 6.5Red Hat Insights proxy 1.5registry.redhat.io/insights-proxy/insights-proxy-container-rhel9@sha256:35a26e08219c8608fd6be94ab0e16947c6d8dd68752b7c7747b65f23f1679492_amd64Patch ↗Advisory ↗
Red HatCVE-2026-4438CVSS 4.0Red Hat Insights proxy 1.5registry.redhat.io/insights-proxy/insights-proxy-container-rhel9@sha256:35a26e08219c8608fd6be94ab0e16947c6d8dd68752b7c7747b65f23f1679492_amd64Patch ↗Advisory ↗
Red HatCVE-2026-45149CVSS 6.5Red Hat Hardened Imagesnodejs26-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-4878CVSS 6.7Red Hat Insights proxy 1.5registry.redhat.io/insights-proxy/insights-proxy-container-rhel9@sha256:35a26e08219c8608fd6be94ab0e16947c6d8dd68752b7c7747b65f23f1679492_amd64Patch ↗Advisory ↗
Red HatCVE-2026-6735CVSS 5.4Red Hat Enterprise Linux AppStream (v. 10)php8.4-0:8.4.21-1.el10_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-7258CVSS 5.9Red Hat Enterprise Linux AppStream (v. 10)php8.4-0:8.4.21-1.el10_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-7261CVSS 5.6Red Hat Enterprise Linux AppStream (v. 10)php8.4-0:8.4.21-1.el10_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-9675CVSS 5.9Red Hat Hardened Imagesnodejs26-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-9678CVSS 5.9Red Hat Hardened Imagesnodejs26-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2023-51385CVSS 6.5Red Hat Enterprise Linux BaseOS AUS (v.8.4)openssh-0:8.0p1-7.el8_4.2.srcPatch ↗Advisory ↗
Red HatCVE-2025-46299CVSS 6.5Red Hat Enterprise Linux Server (v. 7 ELS)webkitgtk4-0:2.52.3-1.el7_9.ppc64lePatch ↗Advisory ↗
Red HatCVE-2025-53020CVSS 5.3Red Hat Enterprise Linux AppStream (v. 8)httpd-0:2.4.37-65.module+el8.10.0+24281+ea10630c.8.aarch64::httpd:2.4Patch ↗Advisory ↗
Red HatCVE-2026-20643CVSS 5.4Red Hat Enterprise Linux Server (v. 7 ELS)webkitgtk4-0:2.52.3-1.el7_9.ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-20665CVSS 5.4Red Hat Enterprise Linux Server (v. 7 ELS)webkitgtk4-0:2.52.3-1.el7_9.ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-20676CVSS 4.3Red Hat Enterprise Linux Server (v. 7 ELS)webkitgtk4-0:2.52.3-1.el7_9.ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-20691CVSS 4.3Red Hat Enterprise Linux Server (v. 7 ELS)webkitgtk4-0:2.52.3-1.el7_9.ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-22013CVSS 5.3Red Hat Enterprise Linux Supplementary (v. 8)java-1.8.0-ibm-1:1.8.0.8.65-1.el8_10.ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-22013CVSS 5.3Red Hat Enterprise Linux Supplementary EUS (v. 10.0)java-21-ibm-semeru-certified-jdk-1:21.0.11.0.10-1.el10_0.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-22021CVSS 5.3Red Hat Enterprise Linux Supplementary (v. 8)java-1.8.0-ibm-1:1.8.0.8.65-1.el8_10.ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-22021CVSS 5.3Red Hat Enterprise Linux Supplementary EUS (v. 10.0)java-21-ibm-semeru-certified-jdk-1:21.0.11.0.10-1.el10_0.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-23865CVSS 5.3Red Hat Enterprise Linux Supplementary EUS (v. 10.0)java-21-ibm-semeru-certified-jdk-1:21.0.11.0.10-1.el10_0.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-2673CVSS 6.5Red Hat Enterprise Linux AppStream (v. 9)openssl-debuginfo-1:3.5.5-3.el9_8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-28871CVSS 4.3Red Hat Enterprise Linux Server (v. 7 ELS)webkitgtk4-0:2.52.3-1.el7_9.ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-32281CVSS 5.9Red Hat Enterprise Linux AppStream (v. 10)go-fdo-client-0:1.0.0-4.el10_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-32281CVSS 5.9OpenShift Developer Tools and Services 1.6.4registry.redhat.io/source-to-image/source-to-image-rhel8@sha256:365451b37b74743f123684976d01bee50f3342feed9a538eb1f64d630e99325f_amd64Patch ↗Advisory ↗
Red HatCVE-2026-32281CVSS 5.9Red Hat Enterprise Linux AppStream (v. 9)rhc-1:0.2.7-7.el9_8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-32281CVSS 5.9Multicluster Global Hub 1.4.9registry.redhat.io/multicluster-globalhub/multicluster-globalhub-grafana-rhel9@sha256:0465ebb0af8b850f3266a5e3400b269d420a6280cb6b883a606f9b588c102acc_amd64Patch ↗Advisory ↗
Red HatCVE-2026-33007CVSS 5.3Red Hat Enterprise Linux AppStream (v. 8)httpd-0:2.4.37-65.module+el8.10.0+24281+ea10630c.8.aarch64::httpd:2.4Patch ↗Advisory ↗
Red HatCVE-2026-33215CVSS 6.5Multicluster Global Hub 1.4.9registry.redhat.io/multicluster-globalhub/multicluster-globalhub-grafana-rhel9@sha256:0465ebb0af8b850f3266a5e3400b269d420a6280cb6b883a606f9b588c102acc_amd64Patch ↗Advisory ↗
Red HatCVE-2026-33813CVSS 6.5Multicluster Global Hub 1.4.9registry.redhat.io/multicluster-globalhub/multicluster-globalhub-grafana-rhel9@sha256:0465ebb0af8b850f3266a5e3400b269d420a6280cb6b883a606f9b588c102acc_amd64Patch ↗Advisory ↗
Red HatCVE-2026-35414CVSS 4.8Red Hat Enterprise Linux BaseOS AUS (v.8.4)openssh-0:8.0p1-7.el8_4.2.srcPatch ↗Advisory ↗
Red HatCVE-2026-39817CVSS 5.9Red Hat Enterprise Linux AppStream (v. 8)delve-0:1.25.2-1.module+el8.10.0+23746+9db33b5e.aarch64::go-toolset:rhel8Patch ↗Advisory ↗
Red HatCVE-2026-39817CVSS 5.9Red Hat Enterprise Linux AppStream (v. 10)go-toolset-0:1.26.3-4.el10_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-39817CVSS 5.9Red Hat Enterprise Linux AppStream (v. 9)go-toolset-0:1.26.3-1.el9_8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-39819CVSS 4.4Red Hat Enterprise Linux AppStream (v. 8)delve-0:1.25.2-1.module+el8.10.0+23746+9db33b5e.aarch64::go-toolset:rhel8Patch ↗Advisory ↗
Red HatCVE-2026-39819CVSS 4.4Red Hat Enterprise Linux AppStream (v. 10)go-toolset-0:1.26.3-4.el10_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-39819CVSS 4.4Red Hat Enterprise Linux AppStream (v. 9)go-toolset-0:1.26.3-1.el9_8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-39823CVSS 5.4Red Hat Enterprise Linux AppStream (v. 8)delve-0:1.25.2-1.module+el8.10.0+23746+9db33b5e.aarch64::go-toolset:rhel8Patch ↗Advisory ↗
Red HatCVE-2026-39823CVSS 5.4Red Hat Enterprise Linux AppStream (v. 10)go-toolset-0:1.26.3-4.el10_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-39823CVSS 5.4Red Hat Enterprise Linux AppStream (v. 9)go-toolset-0:1.26.3-1.el9_8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-39825CVSS 6.5Red Hat Enterprise Linux AppStream (v. 8)delve-0:1.25.2-1.module+el8.10.0+23746+9db33b5e.aarch64::go-toolset:rhel8Patch ↗Advisory ↗
Red HatCVE-2026-39825CVSS 6.5Red Hat Enterprise Linux AppStream (v. 10)go-toolset-0:1.26.3-4.el10_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-39825CVSS 6.5Red Hat Enterprise Linux AppStream (v. 9)go-toolset-0:1.26.3-1.el9_8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-39826CVSS 5.4Red Hat Enterprise Linux AppStream (v. 8)delve-0:1.25.2-1.module+el8.10.0+23746+9db33b5e.aarch64::go-toolset:rhel8Patch ↗Advisory ↗
Red HatCVE-2026-39826CVSS 5.4Red Hat Enterprise Linux AppStream (v. 10)go-toolset-0:1.26.3-4.el10_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-39826CVSS 5.4Red Hat Enterprise Linux AppStream (v. 9)go-toolset-0:1.26.3-1.el9_8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-42501CVSS 5.3Red Hat Enterprise Linux AppStream (v. 8)delve-0:1.25.2-1.module+el8.10.0+23746+9db33b5e.aarch64::go-toolset:rhel8Patch ↗Advisory ↗
Red HatCVE-2026-42501CVSS 5.3Red Hat Enterprise Linux AppStream (v. 10)go-toolset-0:1.26.3-4.el10_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-42501CVSS 5.3Red Hat Enterprise Linux AppStream (v. 9)go-toolset-0:1.26.3-1.el9_8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-43163CVSS 4.7Red Hat Enterprise Linux AppStream EUS (v. 10.0)kernel-64k-debug-debuginfo-0:6.12.0-55.76.1.el10_0.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-4324CVSS 5.4Red Hat Satellite 6.19 for RHEL 9rubygem-katello-0:4.20.0.4-1.el9sat.noarchPatch ↗Advisory ↗
Red HatCVE-2026-5119CVSS 5.9Red Hat Enterprise Linux AppStream E4S (v.9.2)libsoup-0:2.72.0-8.el9_2.11.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-5119CVSS 5.9Red Hat Enterprise Linux AppStream EUS (v.9.6)libsoup-0:2.72.0-10.el9_6.7.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-5119CVSS 5.9Red Hat Enterprise Linux AppStream E4S (v.9.4)libsoup-0:2.72.0-8.el9_4.10.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-5265CVSS 6.5Fast Datapath for Red Hat Enterprise Linux 10ovn25.03-0:25.03.2-100.el10fdp.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-5265CVSS 6.5Fast Datapath for Red Hat Enterprise Linux 10ovn25.09-0:25.09.2-103.el10fdp.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-6735CVSS 5.4Red Hat Enterprise Linux AppStream (v. 9)apcu-panel-0:5.1.23-1.module+el9.6.0+22647+1741ae35.noarch::php:8.3Patch ↗Advisory ↗
Red HatCVE-2026-6735CVSS 5.4Red Hat Enterprise Linux AppStream (v. 9)apcu-panel-0:5.1.23-1.module+el9.7.0+24111+199d2cc4.noarch::php:8.2Patch ↗Advisory ↗
Red HatCVE-2026-6735CVSS 5.4Red Hat Enterprise Linux AppStream (v. 8)apcu-panel-0:5.1.23-1.module+el8.10.0+20770+a5eca186.noarch::php:8.2Patch ↗Advisory ↗
Red HatCVE-2026-7258CVSS 5.9Red Hat Enterprise Linux AppStream (v. 9)apcu-panel-0:5.1.23-1.module+el9.6.0+22647+1741ae35.noarch::php:8.3Patch ↗Advisory ↗
Red HatCVE-2026-7258CVSS 5.9Red Hat Enterprise Linux AppStream (v. 9)apcu-panel-0:5.1.23-1.module+el9.7.0+24111+199d2cc4.noarch::php:8.2Patch ↗Advisory ↗
Red HatCVE-2026-7258CVSS 5.9Red Hat Enterprise Linux AppStream (v. 8)apcu-panel-0:5.1.23-1.module+el8.10.0+20770+a5eca186.noarch::php:8.2Patch ↗Advisory ↗
Red HatCVE-2026-7261CVSS 5.6Red Hat Enterprise Linux AppStream (v. 9)apcu-panel-0:5.1.23-1.module+el9.6.0+22647+1741ae35.noarch::php:8.3Patch ↗Advisory ↗
Red HatCVE-2026-7261CVSS 5.6Red Hat Enterprise Linux AppStream (v. 9)apcu-panel-0:5.1.23-1.module+el9.7.0+24111+199d2cc4.noarch::php:8.2Patch ↗Advisory ↗
Red HatCVE-2026-7261CVSS 5.6Red Hat Enterprise Linux AppStream (v. 8)apcu-panel-0:5.1.23-1.module+el8.10.0+20770+a5eca186.noarch::php:8.2Patch ↗Advisory ↗
Red HatCVE-2026-8954CVSS 6.1Red Hat Enterprise Linux AppStream (v. 10)thunderbird-0:140.11.0-1.el10_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-8955CVSS 6.1Red Hat Enterprise Linux AppStream (v. 10)thunderbird-0:140.11.0-1.el10_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-8957CVSS 6.1Red Hat Enterprise Linux AppStream (v. 10)thunderbird-0:140.11.0-1.el10_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-8958CVSS 6.1Red Hat Enterprise Linux AppStream (v. 10)thunderbird-0:140.11.0-1.el10_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-53434trackedCVSS 3.7Red Hat Hardened Imagestomcat11-0:11.0.23-0.1.hum1@noarchPatch ↗Advisory ↗
Red HatCVE-2026-55276trackedCVSS 2.3Red Hat Hardened Imagestomcat11-0:11.0.23-0.1.hum1@noarchPatch ↗Advisory ↗
Red HatCVE-2026-53434trackedCVSS 3.7Red Hat Hardened Imagestomcat10-0:10.1.56-1.hum1@noarchPatch ↗Advisory ↗
Red HatCVE-2026-55276trackedCVSS 2.3Red Hat Hardened Imagestomcat10-0:10.1.56-1.hum1@noarchPatch ↗Advisory ↗
Red HatCVE-2025-23184CVSS 3.7Red Hat JBoss Enterprise Application Platform 7.3 EUS for RHEL 7 Servereap7-apache-cxf-0:3.4.10-4.SP2_redhat_00004.1.el7eap.noarchPatch ↗Advisory ↗
Red HatCVE-2025-23184CVSS 3.7Red Hat JBoss Enterprise Application Platform 7.1 EUS for RHEL 7 Servereap7-apache-cxf-0:3.1.16-7.redhat_00007.1.ep7.el7.noarchPatch ↗Advisory ↗
Red HatCVE-2026-12324CVSS 3.4Red Hat Enterprise Linux AppStream (v. 8)thunderbird-0:140.12.0-1.el8_10.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-12325CVSS 3.4Red Hat Enterprise Linux AppStream (v. 8)thunderbird-0:140.12.0-1.el8_10.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-48935CVSS 3.3Red Hat Hardened Imagesnodejs26-0:26.4.0-1.3.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-48936CVSS 3.3Red Hat Hardened Imagesnodejs26-0:26.4.0-1.3.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2025-5889CVSS 3.1Red Hat Ceph Storage 7.1registry.redhat.io/rhceph/rhceph-7-rhel9@sha256:57eaf98ed402584fca1e6b804ad97fbf2287219ad617f69c96b0cd48279e7a98_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-12324CVSS 3.4Red Hat Enterprise Linux AppStream (v. 10)thunderbird-0:140.12.0-1.el10_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-12325CVSS 3.4Red Hat Enterprise Linux AppStream (v. 10)thunderbird-0:140.12.0-1.el10_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-5419CVSS 3.7Red Hat Enterprise Linux AppStream E4S (v.9.4)gnutls-c++-0:3.8.3-4.el9_4.6.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-12324CVSS 3.4Red Hat Enterprise Linux AppStream (v. 9)thunderbird-0:140.12.0-1.el9_8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-12325CVSS 3.4Red Hat Enterprise Linux AppStream (v. 9)thunderbird-0:140.12.0-1.el9_8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-37977CVSS 3.7Red Hat build of Keycloak 26.4.13Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-37977CVSS 3.7Red Hat build of Keycloak 26.4rhbk/keycloak-operator-bundle@sha256:dc6f5cde01bde313152b99cbead708160e43be14804f0ff768123fa9f54b4a4b_amd64Patch ↗Advisory ↗
Red HatCVE-2026-4874CVSS 3.1Red Hat build of Keycloak 26.4.13Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-4874CVSS 3.1Red Hat build of Keycloak 26.4rhbk/keycloak-operator-bundle@sha256:dc6f5cde01bde313152b99cbead708160e43be14804f0ff768123fa9f54b4a4b_amd64Patch ↗Advisory ↗
Red HatCVE-2026-5419CVSS 3.7Red Hat Enterprise Linux AppStream EUS (v.9.6)gnutls-c++-0:3.8.3-6.el9_6.4.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-9088CVSS 2.7Red Hat build of Keycloak 26.4.13Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-9088CVSS 2.7Red Hat build of Keycloak 26.4rhbk/keycloak-operator-bundle@sha256:dc6f5cde01bde313152b99cbead708160e43be14804f0ff768123fa9f54b4a4b_amd64Patch ↗Advisory ↗
Red HatCVE-2026-3832CVSS 3.7Red Hat Discovery 2registry.redhat.io/discovery/discovery-server-rhel9@sha256:6a26bc89c61e7fad594399ceda8e170d66fa241d818eada7a12d9fec6bb08ecc_amd64Patch ↗Advisory ↗
Red HatCVE-2026-45446CVSS 3.7Red Hat Discovery 2registry.redhat.io/discovery/discovery-server-rhel9@sha256:6a26bc89c61e7fad594399ceda8e170d66fa241d818eada7a12d9fec6bb08ecc_amd64Patch ↗Advisory ↗
Red HatCVE-2026-5419CVSS 3.7Red Hat Discovery 2registry.redhat.io/discovery/discovery-server-rhel9@sha256:6a26bc89c61e7fad594399ceda8e170d66fa241d818eada7a12d9fec6bb08ecc_amd64Patch ↗Advisory ↗
Red HatCVE-2026-6638CVSS 3.7Red Hat Enterprise Linux AppStream (v. 8)pg_repack-0:1.5.1-1.module+el8.10.0+22551+c0330dc9.aarch64::postgresql:16Patch ↗Advisory ↗
Red HatCVE-2026-12324CVSS 3.4Red Hat Enterprise Linux AppStream (v. 8)firefox-0:140.12.0-1.el8_10.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-12324CVSS 3.4Red Hat Enterprise Linux AppStream (v. 10)firefox-0:140.12.0-1.el10_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-12324CVSS 3.4Red Hat Enterprise Linux AppStream (v. 9)firefox-0:140.12.0-1.el9_8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-12325CVSS 3.4Red Hat Enterprise Linux AppStream (v. 8)firefox-0:140.12.0-1.el8_10.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-12325CVSS 3.4Red Hat Enterprise Linux AppStream (v. 10)firefox-0:140.12.0-1.el10_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-12325CVSS 3.4Red Hat Enterprise Linux AppStream (v. 9)firefox-0:140.12.0-1.el9_8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-33551CVSS 3.5Red Hat OpenStack Platform 17.1openstack-keystone-1:19.0.2-17.1.20260529190847.54dd95d.el9ost.noarchPatch ↗Advisory ↗
Red HatCVE-2026-6638CVSS 3.7Red Hat Enterprise Linux AppStream EUS (v. 10.0)postgresql-0:16.14-1.el10_0.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-6638CVSS 3.7Red Hat Enterprise Linux AppStream (v. 10)postgresql18-0:18.4-1.el10_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-6638CVSS 3.7Red Hat Enterprise Linux AppStream (v. 10)postgresql-0:16.14-1.el10_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-8961CVSS 3.4Red Hat Enterprise Linux AppStream EUS (v. 10.0)firefox-0:140.11.0-1.el10_0.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-8962CVSS 3.4Red Hat Enterprise Linux AppStream EUS (v. 10.0)firefox-0:140.11.0-1.el10_0.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-8968CVSS 3.4Red Hat Enterprise Linux AppStream EUS (v. 10.0)firefox-0:140.11.0-1.el10_0.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-8970CVSS 3.4Red Hat Enterprise Linux AppStream EUS (v. 10.0)firefox-0:140.11.0-1.el10_0.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-14683CVSS 3.3Red Hat Hardened Imagesnetavark-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-14685CVSS 3.3Red Hat Hardened Imagesnetavark-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-14686CVSS 3.3Red Hat Hardened Imagesnetavark-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-6638CVSS 3.7Red Hat Enterprise Linux AppStream E4S (v.9.4)pg_repack-0:1.4.8-1.module+el9.4.0+20427+07482b8c.aarch64::postgresql:16Patch ↗Advisory ↗
Red HatCVE-2026-6638CVSS 3.7Red Hat Enterprise Linux AppStream EUS (v.9.6)pg_repack-0:1.5.1-1.module+el9.6.0+22880+6b241eec.aarch64::postgresql:16Patch ↗Advisory ↗
Red HatCVE-2026-8961CVSS 3.4Red Hat Enterprise Linux AppStream E4S (v.9.2)firefox-0:140.11.0-1.el9_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-8961CVSS 3.4Red Hat Enterprise Linux AppStream EUS (v.9.6)firefox-0:140.11.0-1.el9_6.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-8961CVSS 3.4Red Hat Enterprise Linux AppStream E4S (v.9.4)firefox-0:140.11.0-1.el9_4.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-8961CVSS 3.4Red Hat Enterprise Linux AppStream EUS (v.9.6)thunderbird-0:140.11.0-1.el9_6.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-8961CVSS 3.4Red Hat Enterprise Linux AppStream AUS (v.8.6)thunderbird-0:140.11.0-1.el8_6.srcPatch ↗Advisory ↗

Glossary