CYBERSECURITYTRACKER
TRACKING3,812 stories701 vuln stories
Patch Day month

August 2026 vulnerabilities

A defender-focused view of 1,592 vulnerabilities across 2,157 returned patch records from 4 vendors. Filter the month to date, or browse the static page trail without JavaScript.

Pre-release: out-of-band and Edge updates ahead of August 11

2,157all patch recordsClear filters76criticalShow these records0Microsoft exploitation detectedShow these records1Microsoft in CISA KEVShow these records384tracked hereShow these records

Narrow the complete month

Filters use every patch record in this month, including records on later static pages.

Clear all

Microsoft-only signal filters exclude records without Microsoft signal data as unknown, report them separately, and never count them as “no.” “Tracked here” covers both Microsoft and cross-vendor records.

Loading the complete-month filter index…

An EPSS percentage is the global 30-day exploitation probability in the wild, not specific to you.

Page 1 of 11 · records 1–200 of 2,157

Microsoft Security Response Center

CVEDateProductMSRC severityOut-of-bandEPSSTitle
CVE-2026-31431 ↗2026-04-23azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-band100%CISA KEVVulnCheckENISA5 mentionscrypto: algif_aead - Revert to operating out-of-place
CVE-2024-36048 ↗2026-08-07cbl2 qt5-qtbase 5.12.11-16CriticalOut-of-band1%QAbstractOAuth in Qt Network Authorization in Qt before 5.15.17, 6.x before 6.2.13, 6.3.x through 6.5.x before 6.5.6, and 6.6.x through 6.7.x before 6.7.1 uses only the time to seed the PRNG, which may result in guessable values.
CVE-2024-7804 ↗2026-08-07cbl2 pytorch 2.0.0-9CriticalOut-of-bandRejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2024-36138 ↗2026-08-07cbl2 nodejs18 18.20.3-6CriticalOut-of-band1%Bypass incomplete fix of CVE-2024-27980, that arises from improper handling of batch files with all possible extensions on Windows via child_process.spawn / child_process.spawnSync. A malicious command line argument can inject arbitrary commands and achieve code execution even if the shell option is not enabled.
CVE-2026-48144 ↗2026-08-07azl3 thrift 0.15.0-6 on Azure Linux 3.0CriticalOut-of-band0%Apache Thrift: c_glib TLS Client Missing Hostname Verification
CVE-2026-49163 ↗2026-08-06Application Insights ProfilerCriticalOut-of-band1%Application Insights Profiler Elevation of Privilege Vulnerability
CVE-2026-50481 ↗2026-08-06Azure Active DirectoryCriticalOut-of-band0%Azure Active Directory Elevation of Privilege Vulnerability
CVE-2026-50515 ↗2026-08-06Azure Service BusCriticalOut-of-band1%Azure Service Bus Remote Code Execution Vulnerability
CVE-2026-50516 ↗2026-08-06Azure Kubernetes ServiceCriticalOut-of-bandMicrosoft Azure Kubernetes Service Elevation of Privilege Vulnerability
CVE-2026-56161 ↗2026-08-06Azure Logic AppsCriticalOut-of-band0%Azure Logic Apps Information Disclosure Vulnerability
CVE-2026-56162 ↗2026-08-06Azure SQL DatabaseCriticalOut-of-band0%Azure SQL Database Elevation of Privilege Vulnerability
CVE-2026-59115 ↗2026-08-06Microsoft Entra Provisioning ServiceCriticalOut-of-band1%Microsoft Entra Provisioning Service Elevation of Privilege Vulnerability
CVE-2026-59118 ↗2026-08-06Microsoft Power AppsCriticalOut-of-band0%Microsoft Power Apps Elevation of Privilege Vulnerability
CVE-2026-62830 ↗2026-08-06Azure SRE AgentCriticalOut-of-band0%Azure SRE Agent Elevation of Privilege Vulnerability
CVE-2026-62836 ↗2026-08-06Azure SQL Managed InstanceCriticalOut-of-band0%Azure SQL Managed Instance Elevation of Privilege Vulnerability
CVE-2026-62869 ↗2026-08-06Microsoft Entra IDCriticalOut-of-bandAzure Entra ID Spoofing Vulnerability
CVE-2026-62873 ↗2026-08-06Microsoft 365 Admin CenterCriticalOut-of-band0%Microsoft 365 Admin Center Elevation of Privilege Vulnerability
CVE-2026-62896 ↗2026-08-06Microsoft TeamsCriticalOut-of-band0%Microsoft Teams Elevation of Privilege Vulnerability
CVE-2026-62918 ↗2026-08-06Microsoft TeamsCriticalOut-of-band0%Microsoft Teams Spoofing Vulnerability
CVE-2026-63508 ↗2026-08-06Microsoft Planetary Computer Pro (GeoCatalog)CriticalOut-of-band0%Microsoft Planetary Computer Pro Elevation of Privilege Vulnerability
CVE-2026-63522 ↗2026-08-06Azure SQL DatabaseCriticalOut-of-bandAzure SQL Database Elevation of Privilege Vulnerability
CVE-2026-65667 ↗2026-08-06Microsoft TeamsCriticalOut-of-band0%Microsoft Teams Elevation of Privilege Vulnerability
CVE-2026-65668 ↗2026-08-06Microsoft Purview eDiscoveryCriticalOut-of-band0%Microsoft Purview eDiscovery Elevation of Privilege Vulnerability
CVE-2026-68823 ↗2026-08-06Azure Confidential LedgerCriticalOut-of-band1%Azure Confidential Ledger Remote Code Execution Vulnerability
CVE-2026-70332 ↗2026-08-06Microsoft SharePoint OnlineCriticalOut-of-band0%Microsoft Office SharePoint Spoofing Vulnerability
CVE-2026-64319 ↗2026-07-26azl3 kernel 6.6.144.1-1 on Azure Linux 3.0CriticalOut-of-band1%nvmet-auth: validate reply message payload bounds against transfer length
CVE-2019-10783 ↗2026-08-07azl3 lsof 4.98.0-1 on Azure Linux 3.0CriticalOut-of-band
CVE-2026-64562 ↗2026-08-07azl3 kernel 6.6.145.2-1 on Azure Linux 3.0CriticalOut-of-bandKVM: nVMX: Hide shadow VMCS right after VMCLEAR
CVE-2026-64565 ↗2026-08-07azl3 kernel 6.6.145.2-1 on Azure Linux 3.0CriticalOut-of-bandInput: ims-pcu - fix heap-buffer-overflow in ims_pcu_process_data()
CVE-2026-64564 ↗2026-08-07azl3 kernel 6.6.145.2-1 on Azure Linux 3.0CriticalOut-of-bandsctp: don't free the ASCONF's own transport in DEL-IP processing
CVE-2020-12627 ↗2026-08-07azl3 python-astunparse 1.6.3-10 on Azure Linux 3.0CriticalOut-of-bandCalibre-Web 0.6.6 allows authentication bypass because of the 'A0Zr98j/3yX R~XHH!jmN]LWX/,?RT' hardcoded secret key.
CVE-2021-24028 ↗2026-08-07azl3 thrift 0.15.0-5 on Azure Linux 3.0CriticalOut-of-bandAn invalid free in Thrift's table-based serialization can cause the application to crash or potentially result in code execution or other undesirable effects. This issue affects Facebook Thrift prior to v2021.02.22.00.
CVE-2022-31631 ↗2026-08-07azl3 php 8.3.19-1 on Azure Linux 3.0CriticalOut-of-bandPDO::quote() may return unquoted string
CVE-2023-28115 ↗2026-08-07azl3 snappy 1.1.10-2 on Azure Linux 3.0CriticalOut-of-bandSnappy vulnerable to PHAR deserialization, allowing remote code execution
CVE-2024-48063 ↗2026-08-07azl3 pytorch 2.2.2-7 on Azure Linux 3.0CriticalOut-of-bandIn PyTorch <=2.4.1, the RemoteModule has Deserialization RCE. NOTE: this is disputed by multiple parties because this is intended behavior in PyTorch distributed computing.
CVE-2026-34182 ↗2026-06-13azl3 cloud-hypervisor 51.1.56-1 on Azure Linux 3.0CriticalOut-of-bandCMS AuthEnvelopedData Processing May Accept Forged Messages
CVE-2026-39824 ↗2026-05-27azl3 application-gateway-kubernetes-ingress 1.7.7-3 on Azure Linux 3.0CriticalOut-of-bandInvoking integer overflow in NewNTUnicodeString in golang.org/x/sys/windows
CVE-2025-71074 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0CriticalOut-of-bandfunctionfs: fix the open/removal races
CVE-2025-71072 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0CriticalOut-of-bandshmem: fix recovery on rename failures
CVE-2025-71073 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0CriticalOut-of-bandInput: lkkbd - disable pending work before freeing device
CVE-2025-68822 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0CriticalOut-of-bandInput: alps - fix use-after-free bugs caused by dev3_register_work
CVE-2026-22184 ↗2026-01-09azl3 ceph 18.2.2-12 on Azure Linux 3.0CriticalOut-of-bandzlib <= 1.3.1.2 untgz Global Buffer Overflow in TGZfname()
CVE-2025-40251 ↗2025-12-06azl3 kernel 6.6.112.1-2 on Azure Linux 3.0CriticalOut-of-banddevlink: rate: Unset parent pointer in devl_rate_nodes_destroy
CVE-2024-30896 ↗2025-09-03cbl2 influxdb 2.6.1-22 on CBL Mariner 2.0CriticalOut-of-bandInfluxDB OSS 2.x through 2.7.11 stores the administrative operator token under the default organization which allows authorized users with read access to the authorization resource of the default organization to retrieve the operator token. InfluxDB OSS 1.x, Enterprise, Cloud, Cloud Dedicated and Clustered are not affected. NOTE: The researcher states that InfluxDB allows allAccess administrators to retrieve all raw tokens via an "influx auth ls" command. The supplier indicates that the organizations feature is operating as intended and that users may choose to add users to non-default organizations. A future release of InfluxDB 2.x will remove the ability to retrieve tokens from the API.
CVE-2024-5991 ↗2024-12-07cbl2 mariadb 10.6.9-4 on CBL Mariner 2.0CriticalOut-of-bandBuffer overread in domain name matching
CVE-2026-54876 ↗2026-08-09azl3 kata-containers 3.32.0.kata0-2 on Azure Linux 3.0ImportantOut-of-band0%Client-Side Memory Leak in OCSP Response Checking
CVE-2026-48586 ↗2026-08-07azl3 thrift 0.15.0-6 on Azure Linux 3.0ImportantOut-of-band1%Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift: TZlibTransport Decompression Size Limit
CVE-2026-58389 ↗2026-08-07azl3 thrift 0.15.0-6 on Azure Linux 3.0ImportantOut-of-band1%Apache Thrift: Rust binary protocol non-strict path missing string size limit
CVE-2026-43871 ↗2026-08-07azl3 thrift 0.15.0-6 on Azure Linux 3.0ImportantOut-of-band1%Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift: TCompactProtocol varint byte-count limit
CVE-2026-55969 ↗2026-08-07azl3 thrift 0.15.0-6 on Azure Linux 3.0ImportantOut-of-band1%Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift: integer overflow in TProtocol::checkReadBytesAvailable()
CVE-2026-14257 ↗2026-08-07azl3 python-tensorboard 2.16.2-6 on Azure Linux 3.0ImportantOut-of-band0%brace-expansion DoS via unbounded expansion length causing an out-of-memory process crash
CVE-2026-69152 ↗2026-08-07azl3 python-tensorboard 2.16.2-6 on Azure Linux 3.0ImportantOut-of-band0%brace-expansion: DoS via unbounded intermediate arrays, bypassing the CVE-2026-14257 mitigation
CVE-2026-69249 ↗2026-08-07azl3 python-cryptography 42.0.5-4 on Azure Linux 3.0ImportantOut-of-band0%python-cryptography: Duplicate self-signed intermediates can cause exponential path-building
CVE-2026-55968 ↗2026-08-07azl3 thrift 0.15.0-6 on Azure Linux 3.0ImportantOut-of-band1%Apache Thrift: Node.js quadratic-time DoS in server receive transports
CVE-2026-58662 ↗2026-08-07azl3 thrift 0.15.0-6 on Azure Linux 3.0ImportantOut-of-band1%Apache Thrift: C++ THeaderTransport::readString() info-header length bounds bypass
CVE-2026-64584 ↗2026-08-07azl3 kernel 6.6.145.2-1 on Azure Linux 3.0ImportantOut-of-band0%usb: gadget: f_midi: cancel pending IN work before freeing the midi object
CVE-2026-55995 ↗2026-08-07azl3 isns-utils 0.102-1 on Azure Linux 3.0ImportantOut-of-band0%Double-free in the iSNS attribute decoder in open-iscsi
CVE-2026-44944 ↗2026-08-07azl3 iscsi-initiator-utils 2.1.9-1 on Azure Linux 3.0ImportantOut-of-band0%
CVE-2026-18220 ↗2026-08-07azl3 binutils 2.41-13 on Azure Linux 3.0ImportantOut-of-band0%Binutils: binutils: out-of-bounds write in bfd dlx elf backend relocation processing
CVE-2026-64597 ↗2026-08-07azl3 kernel 6.6.143.1-1 on Azure Linux 3.0ImportantOut-of-band0%smb: client: fix double-free in SMB2_close() replay
CVE-2026-67215 ↗2026-08-07azl3 libglvnd 1.7.0-3 on Azure Linux 3.0ImportantOut-of-band0%cJSON JSON Patch copy/add Uncontrolled Recursion Stack Exhaustion
CVE-2026-19024 ↗2026-08-07azl3 hdf5 1.14.6-4 on Azure Linux 3.0ImportantOut-of-band0%HDF5 H5Pget_fill_value NULL Pointer Dereference via Malformed Fill Value Message
CVE-2024-42147 ↗2026-08-07cbl2 kernel 5.15.180.1-1ImportantOut-of-band0%crypto: hisilicon/debugfs - Fix debugfs uninit process issue
CVE-2026-58043 ↗2026-08-07azl3 nodejs 24.17.0-1 on Azure Linux 3.0ImportantOut-of-band0%
CVE-2025-40776 ↗2026-08-07cbl2 bind 9.16.50-1ImportantOut-of-band0%Birthday Attack against Resolvers supporting ECS
CVE-2023-3676 ↗2026-08-07cbl2 cri-o 1.22.3-14ImportantOut-of-band12%Kubernetes - Windows nodes - Insufficient input sanitization leads to privilege escalation
CVE-2023-3955 ↗2026-08-07cbl2 cri-o 1.22.3-14ImportantOut-of-band3%Kubernetes - Windows nodes - Insufficient input sanitization leads to privilege escalation
CVE-2024-46700 ↗2026-08-07cbl2 kernel 5.15.180.1-1ImportantOut-of-bandRejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2024-0793 ↗2026-08-07cbl2 kubernetes 1.28.4-17ImportantOut-of-band1%Kube-controller-manager: malformed hpa v1 manifest causes crash
CVE-2024-44941 ↗2026-08-07cbl2 kernel 5.15.180.1-1ImportantOut-of-band0%f2fs: fix to cover read extent cache access with lock
CVE-2026-58227 ↗2026-08-07azl3 erlang 26.2.5.21-4 on Azure Linux 3.0ImportantOut-of-band0%TLS/DTLS denial of service via unbounded recursion on cross-signed peer certificate chain
CVE-2024-56609 ↗2026-08-07cbl2 kernel 5.15.186.1-1ImportantOut-of-band0%wifi: rtw88: use ieee80211_purge_tx_queue() to purge TX skb
CVE-2026-55953 ↗2026-08-07azl3 erlang 26.2.5.21-4 on Azure Linux 3.0ImportantOut-of-band0%TLS 1.2 and DTLS client accepts unoffered anonymous cipher suite, bypassing server authentication
CVE-2026-17527 ↗2026-08-07azl3 containerized-data-importer 1.62.0-7 on Azure Linux 3.0ImportantOut-of-band0%Virt-cdi-operator: containerized-data-importer: cdi.kubevirt.io:view aggregated clusterrole grants create on datavolumes/source, allowing unauthorized pvc clone
CVE-2024-43402 ↗2026-08-07cbl2 rust 1.72.0-10ImportantOut-of-band1%Rust OS Command Injection/Argument Injection vulnerability
CVE-2026-17543 ↗2026-08-07azl3 php 8.3.31-1 on Azure Linux 3.0ImportantOut-of-band0%
CVE-2026-64560 ↗2026-08-07azl3 kernel 6.6.145.2-1 on Azure Linux 3.0ImportantOut-of-band0%posix-cpu-timers: Prevent UAF caused by non-leader exec() race
CVE-2024-50106 ↗2026-08-07cbl2 kernel 5.15.180.1-1ImportantOut-of-band0%nfsd: fix race between laundromat and free_stateid
CVE-2024-35788 ↗2026-08-07cbl2 kernel 5.15.182.1-1ImportantOut-of-bandRejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2024-26842 ↗2026-08-07cbl2 kernel 5.15.182.1-1ImportantOut-of-band0%scsi: ufs: core: Fix shift issue in ufshcd_clear_cmd()
CVE-2026-45623 ↗2026-08-07azl3 python-tensorboard 2.16.2-6 on Azure Linux 3.0ImportantOut-of-band1%
CVE-2026-49158 ↗2026-08-07azl3 thrift 0.15.0-6 on Azure Linux 3.0ImportantOut-of-band1%Apache Thrift: Ruby THeaderTransport ZLIB Decompression Bomb

Cross-vendor patches

VendorCVESeverityProductFixed versionPatchAdvisory
Red HatCVE-2026-54058trackedCVSS 9.1Red Hat Enterprise Linux AppStream AUS (v.8.4)python-pillow-0:5.1.1-15.el8_4.2.srcPatch ↗Advisory ↗
Red HatCVE-2026-16242trackedCVSS 9.4Red Hat OpenShift Container Platform 4.17registry.redhat.io/openshift4/ose-hypershift-rhel9@sha256:115545daffa4d25ff157704b33998aa27148361dc2c4f4319bb2693b5c6c498a_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-16242trackedCVSS 9.4Red Hat OpenShift Container Platform 4.19registry.redhat.io/openshift4/ose-hypershift-rhel9@sha256:87dbd8347ba1c620ed3f6c66efa1f9ee33070aef52413d82faab4e83f8c8785d_arm64Patch ↗Advisory ↗
Red HatCVE-2026-16242trackedCVSS 9.4Red Hat OpenShift Container Platform 4.18registry.redhat.io/openshift4/ose-hypershift-rhel9@sha256:0d1c736eb20d065e6c48a12902c87396f8babdea65207a838301dad0937c7e2e_s390xPatch ↗Advisory ↗
CiscoCVE-2026-20267trackedCVSS 9.03.2SGPatch ↗Advisory ↗
CiscoCVE-2026-20272trackedCVSS 9.83.2SGPatch ↗Advisory ↗
CiscoCVE-2026-20303trackedCVSS 9.917.2Patch ↗Advisory ↗
CiscoCVE-2026-20304trackedCVSS 9.917.2Patch ↗Advisory ↗
CiscoCVE-2026-20310trackedCVSS 9.117.2Patch ↗Advisory ↗
Red HatCVE-2026-54058trackedCVSS 9.1Red Hat Quay 3.9registry.redhat.io/quay/quay-rhel8@sha256:427604f87ce3221aee9c8c115a7b80a15aa9b3f6baaa139218b5d410a4fb45cb_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-16242trackedCVSS 9.4Red Hat OpenShift Container Platform 4.21registry.redhat.io/openshift4/ose-hypershift-rhel9@sha256:b5d066f7a26e324fa48e243def80f3e3f37129370bbf0e95ff332401de354067_s390xPatch ↗Advisory ↗
Red HatCVE-2026-16242trackedCVSS 9.4Red Hat OpenShift Container Platform 4.20registry.redhat.io/openshift4/ose-hypershift-rhel9@sha256:23bde3d60344afdc58ae00cfe32e25c8470e9059d1bbbb0483544583725ed00d_s390xPatch ↗Advisory ↗
Red HatCVE-2026-16242trackedCVSS 9.4Red Hat OpenShift Container Platform 4.22registry.redhat.io/openshift4/ose-hypershift-rhel9@sha256:05229d0305bfe1b295038daf4b283884af79d72e0fc3f013dd52e0d6fae2adc4_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-54058trackedCVSS 9.1Red Hat Ansible Automation Platform 2.7registry.redhat.io/ansible-automation-platform-27/lightspeed-chatbot-rhel9@sha256:500c52d19ddfb4cd15e4ba0c94268250d5d83442c2c67381b3cb9bb7613c23d4_arm64Patch ↗Advisory ↗
Red HatCVE-2026-54058trackedCVSS 9.1Red Hat Ansible Automation Platform 2.6registry.redhat.io/ansible-automation-platform-26/lightspeed-chatbot-rhel9@sha256:1a440c21e1d882875a73201b3135957387f0d7846678b22b52732e984931099a_s390xPatch ↗Advisory ↗
Red HatCVE-2026-49261CVSS 9.0Red Hat Enterprise Linux AppStream E4S (v.9.4)galera-0:26.4.16-1.module+el9.4.0+21205+b026b850.aarch64::mariadb:10.11Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat OpenShift Container Platform 4.17registry.redhat.io/openshift4/azure-kms-encryption-provider-rhel9@sha256:ab716442d8691c7f5cfd33e27ac541d8a19acd35ae0c6e161bed366e2827dbf7_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1OpenShift API for Data Protection 1.3registry.redhat.io/oadp/oadp-kubevirt-velero-plugin-rhel9@sha256:4d763201b2daa4fe2e7f74fb42671e9752b9c301272b357d9e810420a617aff2_amd64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Red Hat OpenShift Container Platform 4.18registry.redhat.io/openshift4/ose-cloud-credential-rhel9-operator@sha256:481789c068fba9b6bd657a2e193b33d6c4fb5c6cff0d0f63a7e55986e56d0eba_amd64Patch ↗Advisory ↗
Red HatCVE-2026-33186CVSS 9.1Logging for Red Hat OpenShift 6.0registry.redhat.io/openshift-logging/loki-rhel9-operator@sha256:1a930ff4b2a73ac06a7fd42f83eabd937cf11357e7ff9d6d2ae7a6dfe8561f71_arm64Patch ↗Advisory ↗
Red HatCVE-2026-43997CVSS 10.0Red Hat Ansible Automation Platform 2.1registry.redhat.io/ansible-automation-platform/automation-portal@sha256:a85a548cb563a32be76c6e7e015fd57d340e068e321bf34b060d9eb901c33c4d_amd64Patch ↗Advisory ↗
Red HatCVE-2026-43999CVSS 9.9Red Hat Ansible Automation Platform 2.1registry.redhat.io/ansible-automation-platform/automation-portal@sha256:a85a548cb563a32be76c6e7e015fd57d340e068e321bf34b060d9eb901c33c4d_amd64Patch ↗Advisory ↗
Red HatCVE-2026-44005CVSS 9.8Red Hat Ansible Automation Platform 2.1registry.redhat.io/ansible-automation-platform/automation-portal@sha256:a85a548cb563a32be76c6e7e015fd57d340e068e321bf34b060d9eb901c33c4d_amd64Patch ↗Advisory ↗
Red HatCVE-2026-44006CVSS 10.0Red Hat Ansible Automation Platform 2.1registry.redhat.io/ansible-automation-platform/automation-portal@sha256:a85a548cb563a32be76c6e7e015fd57d340e068e321bf34b060d9eb901c33c4d_amd64Patch ↗Advisory ↗
Red HatCVE-2026-44007CVSS 9.9Red Hat Ansible Automation Platform 2.1registry.redhat.io/ansible-automation-platform/automation-portal@sha256:a85a548cb563a32be76c6e7e015fd57d340e068e321bf34b060d9eb901c33c4d_amd64Patch ↗Advisory ↗
Red HatCVE-2026-44008CVSS 9.8Red Hat Ansible Automation Platform 2.1registry.redhat.io/ansible-automation-platform/automation-portal@sha256:a85a548cb563a32be76c6e7e015fd57d340e068e321bf34b060d9eb901c33c4d_amd64Patch ↗Advisory ↗
Red HatCVE-2026-44009CVSS 9.8Red Hat Ansible Automation Platform 2.1registry.redhat.io/ansible-automation-platform/automation-portal@sha256:a85a548cb563a32be76c6e7e015fd57d340e068e321bf34b060d9eb901c33c4d_amd64Patch ↗Advisory ↗
Red HatCVE-2026-45411CVSS 9.8Red Hat Ansible Automation Platform 2.1registry.redhat.io/ansible-automation-platform/automation-portal@sha256:a85a548cb563a32be76c6e7e015fd57d340e068e321bf34b060d9eb901c33c4d_amd64Patch ↗Advisory ↗
Red HatCVE-2026-44170CVSS 9.9Red Hat Enterprise Linux AppStream EUS (v. 10.0)mariadb-3:10.11.18-1.el10_0.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-48163CVSS 9.1Red Hat Enterprise Linux AppStream EUS (v. 10.0)mariadb-3:10.11.18-1.el10_0.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-48165CVSS 9.1Red Hat Enterprise Linux AppStream EUS (v. 10.0)mariadb-3:10.11.18-1.el10_0.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-49261CVSS 9.0Red Hat Enterprise Linux AppStream EUS (v. 10.0)mariadb-3:10.11.18-1.el10_0.aarch64Patch ↗Advisory ↗
Red HatCVE-2025-10263trackedCVSS 8.4Red Hat Enterprise Linux BaseOS E4S (v.8.8)bpftool-0:4.18.0-477.158.1.el8_8.ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-13149trackedCVSS 7.5Red Hat Enterprise Linux AppStream EUS (v. 10.0)nodejs-nodemon-0:3.1.14-2.el10_0.noarchPatch ↗Advisory ↗
Red HatCVE-2026-13149trackedCVSS 7.5Red Hat Enterprise Linux AppStream EUS (v.9.6)nodejs-1:22.23.1-2.module+el9.6.0+24604+449f851b.aarch64::nodejs:22Patch ↗Advisory ↗
Red HatCVE-2026-13149trackedCVSS 7.5Red Hat Developer Hub 1.9registry.redhat.io/rhdh/rhdh-hub-rhel9@sha256:bb8c0beabdebee8c0bebdab9af6931f6ff2d3a7e063c6c76841463ec9fb66491_amd64Patch ↗Advisory ↗
Red HatCVE-2026-14739trackedCVSS 8.1Red Hat Enterprise Linux AppStream (v. 8)perl-DBI-0:1.641-8.module+el8.10.0+24620+2953b6e4.aarch64::perl-DBI:1.641Patch ↗Advisory ↗
Red HatCVE-2026-54059trackedCVSS 7.5Red Hat Enterprise Linux AppStream AUS (v.8.4)python-pillow-0:5.1.1-15.el8_4.2.srcPatch ↗Advisory ↗
Red HatCVE-2026-54060trackedCVSS 7.5Red Hat Enterprise Linux AppStream AUS (v.8.4)python-pillow-0:5.1.1-15.el8_4.2.srcPatch ↗Advisory ↗
Red HatCVE-2026-55379trackedCVSS 7.5Red Hat Enterprise Linux AppStream AUS (v.8.4)python-pillow-0:5.1.1-15.el8_4.2.srcPatch ↗Advisory ↗
Red HatCVE-2026-55380trackedCVSS 7.5Red Hat Enterprise Linux AppStream AUS (v.8.4)python-pillow-0:5.1.1-15.el8_4.2.srcPatch ↗Advisory ↗
Red HatCVE-2026-55999trackedCVSS 7.5Red Hat Enterprise Linux AppStream E4S (v.8.8)xorg-x11-server-Xwayland-0:21.1.3-13.el8_8.2.ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-55999trackedCVSS 7.5Red Hat Enterprise Linux AppStream E4S (v.9.2)xorg-x11-server-Xwayland-0:21.1.3-10.el9_2.2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-55999trackedCVSS 7.5Red Hat Enterprise Linux AppStream E4S (v.9.4)xorg-x11-server-Xwayland-0:22.1.9-8.el9_4.3.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-59197trackedCVSS 8.2Red Hat Enterprise Linux AppStream AUS (v.8.4)python-pillow-0:5.1.1-15.el8_4.2.srcPatch ↗Advisory ↗
Red HatCVE-2026-59869trackedCVSS 7.5Red Hat Developer Hub 1.9registry.redhat.io/rhdh/rhdh-hub-rhel9@sha256:bb8c0beabdebee8c0bebdab9af6931f6ff2d3a7e063c6c76841463ec9fb66491_amd64Patch ↗Advisory ↗
Red HatCVE-2026-59873trackedCVSS 7.5Red Hat Enterprise Linux AppStream EUS (v.9.6)nodejs-1:22.23.1-2.module+el9.6.0+24604+449f851b.aarch64::nodejs:22Patch ↗Advisory ↗
Red HatCVE-2026-59874trackedCVSS 7.5Red Hat Enterprise Linux AppStream EUS (v.9.6)nodejs-1:22.23.1-2.module+el9.6.0+24604+449f851b.aarch64::nodejs:22Patch ↗Advisory ↗
Red HatCVE-2026-59892trackedCVSS 7.5Red Hat Developer Hub 1.9registry.redhat.io/rhdh/rhdh-hub-rhel9@sha256:bb8c0beabdebee8c0bebdab9af6931f6ff2d3a7e063c6c76841463ec9fb66491_amd64Patch ↗Advisory ↗
Red HatCVE-2026-64835trackedCVSS 8.8Red Hat Enterprise Linux AI 3.0 for RHEL 9ffmpeg-0:6.1.6-3.el9ai.srcPatch ↗Advisory ↗
Red HatCVE-2026-64835trackedCVSS 8.8Red Hat Enterprise Linux AI 3.2 for RHEL 9ffmpeg-0:6.1.6-3.el9ai.srcPatch ↗Advisory ↗
Red HatCVE-2025-10263trackedCVSS 8.4Red Hat Enterprise Linux AppStream E4S (v.9.2)bpftool-debuginfo-0:7.0.0-284.186.1.el9_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2025-10263trackedCVSS 8.4Red Hat Enterprise Linux Real Time for NFV E4S (v.9.2)kernel-rt-0:5.14.0-284.186.1.rt14.471.el9_2.srcPatch ↗Advisory ↗
Red HatCVE-2025-10263trackedCVSS 8.4Red Hat Enterprise Linux AppStream E4S (v.9.4)bpftool-debuginfo-0:7.3.0-427.143.1.el9_4.aarch64Patch ↗Advisory ↗
CiscoCVE-2026-20337trackedCVSS 7.5Apple macOS1.12Patch ↗Advisory ↗
CiscoCVE-2026-20338trackedCVSS 7.5Apple macOS1.12Patch ↗Advisory ↗
CiscoCVE-2026-20339trackedCVSS 7.5Apple macOS1.12Patch ↗Advisory ↗
CiscoCVE-2026-20345trackedCVSS 7.5Apple macOS1.12Patch ↗Advisory ↗
CiscoCVE-2026-20346trackedCVSS 7.5Apple macOS1.12Patch ↗Advisory ↗
CiscoCVE-2026-20347trackedCVSS 7.5Apple macOS1.12Patch ↗Advisory ↗
CiscoCVE-2026-20348trackedCVSS 7.5Apple macOS1.12Patch ↗Advisory ↗
Red HatCVE-2026-64531trackedCVSS 7.8Red Hat Enterprise Linux AppStream E4S (v.9.2)bpftool-debuginfo-0:7.0.0-284.186.1.el9_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-64531trackedCVSS 7.8Red Hat Enterprise Linux Real Time for NFV E4S (v.9.2)kernel-rt-0:5.14.0-284.186.1.rt14.471.el9_2.srcPatch ↗Advisory ↗
Red HatCVE-2026-64531trackedCVSS 7.8Red Hat Enterprise Linux AppStream E4S (v.9.4)bpftool-debuginfo-0:7.3.0-427.143.1.el9_4.aarch64Patch ↗Advisory ↗
Red HatCVE-2025-54518trackedCVSS 7.0Red Hat Enterprise Linux BaseOS (v. 8)bpftool-0:4.18.0-553.153.1.el8_10.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-13149trackedCVSS 7.5Red Hat Ansible Automation Platform 2.2registry.redhat.io/ansible-automation-platform/bootc-automation-portal-rhel9@sha256:53d3067ffe63c784ee1c8b22b4acb0eb50b71814ca4c13e14edfce31b5feabbe_amd64Patch ↗Advisory ↗
Red HatCVE-2026-13149trackedCVSS 7.5Red Hat Satellite 6.19registry.redhat.io/satellite/iop-host-inventory-frontend-rhel9@sha256:425cf2df1abd0c2eddd0539b394fe5e72b97c6f1e3dce13817046a5b8d09c171_amd64Patch ↗Advisory ↗
Red HatCVE-2026-13149trackedCVSS 7.5Red Hat Satellite 6.19registry.redhat.io/satellite/iop-vulnerability-frontend-rhel9@sha256:260835b97f39228acf263df37df4808e30844fdf02078f6c1e204a75e826a49f_amd64Patch ↗Advisory ↗
Red HatCVE-2026-13149trackedCVSS 7.5Red Hat Satellite 6.19registry.redhat.io/satellite/iop-advisor-frontend-rhel9@sha256:e5055af2d8b1a0cdcf8a46e6db84495889bcfd104149828be3e815cb636fff20_amd64Patch ↗Advisory ↗
Red HatCVE-2026-13149trackedCVSS 7.5Red Hat Satellite 6.18registry.redhat.io/satellite/iop-advisor-frontend-rhel9@sha256:651e258b90232998259df9280aa286c5394d5b1f859df75ef69b168cd9ccbea3_amd64Patch ↗Advisory ↗
Red HatCVE-2026-13149trackedCVSS 7.5Red Hat Satellite 6.18registry.redhat.io/satellite/iop-vulnerability-frontend-rhel9@sha256:8c394a8b4021570c1420c1bec34061741603ff95b8b2a4378bab902396c32954_amd64Patch ↗Advisory ↗
Red HatCVE-2026-13149trackedCVSS 7.5Red Hat Satellite 6.18registry.redhat.io/satellite/iop-host-inventory-frontend-rhel9@sha256:a1d343700722a13d9c7ff7b23e8e770fdbe4fdd7c55bbf4d7f4cb4bf28cafc0d_amd64Patch ↗Advisory ↗
Red HatCVE-2026-13676trackedCVSS 7.5Red Hat OpenShift Container Platform 4.17registry.redhat.io/openshift4/ose-monitoring-plugin-rhel9@sha256:0db4724d84c8da8372f93b266c7b5897f98061326ede7825fa119aa9082ea850_amd64Patch ↗Advisory ↗
Red HatCVE-2026-13676trackedCVSS 7.5Red Hat Satellite 6.19registry.redhat.io/satellite/iop-host-inventory-frontend-rhel9@sha256:425cf2df1abd0c2eddd0539b394fe5e72b97c6f1e3dce13817046a5b8d09c171_amd64Patch ↗Advisory ↗
Red HatCVE-2026-13676trackedCVSS 7.5Red Hat Satellite 6.19registry.redhat.io/satellite/iop-vulnerability-frontend-rhel9@sha256:260835b97f39228acf263df37df4808e30844fdf02078f6c1e204a75e826a49f_amd64Patch ↗Advisory ↗
Red HatCVE-2026-13676trackedCVSS 7.5Red Hat Satellite 6.18registry.redhat.io/satellite/iop-advisor-frontend-rhel9@sha256:651e258b90232998259df9280aa286c5394d5b1f859df75ef69b168cd9ccbea3_amd64Patch ↗Advisory ↗
Red HatCVE-2026-13676trackedCVSS 7.5Red Hat Satellite 6.18registry.redhat.io/satellite/iop-vulnerability-frontend-rhel9@sha256:8c394a8b4021570c1420c1bec34061741603ff95b8b2a4378bab902396c32954_amd64Patch ↗Advisory ↗
Red HatCVE-2026-13676trackedCVSS 7.5Red Hat Satellite 6.18registry.redhat.io/satellite/iop-host-inventory-frontend-rhel9@sha256:a1d343700722a13d9c7ff7b23e8e770fdbe4fdd7c55bbf4d7f4cb4bf28cafc0d_amd64Patch ↗Advisory ↗
Red HatCVE-2026-59869trackedCVSS 7.5Red Hat Container Native Virtualization 4.22registry.redhat.io/container-native-virtualization/kubevirt-console-plugin-rhel9@sha256:037ae22a3274a0674ebc9d9ea29cc24403ea20c2e21e2cd4d43f7acf4e769cb0_arm64Patch ↗Advisory ↗
Red HatCVE-2026-59873trackedCVSS 7.5Red Hat Ansible Automation Platform 2.2registry.redhat.io/ansible-automation-platform/bootc-automation-portal-rhel9@sha256:53d3067ffe63c784ee1c8b22b4acb0eb50b71814ca4c13e14edfce31b5feabbe_amd64Patch ↗Advisory ↗
Red HatCVE-2026-59873trackedCVSS 7.5Red Hat Satellite 6.19registry.redhat.io/satellite/iop-remediations-rhel9@sha256:6d3ace96df28bfd4de714fa7345cfac8da2431a56eb18f99c4a9b7388902c5e1_amd64Patch ↗Advisory ↗
Red HatCVE-2026-59874trackedCVSS 7.5Red Hat Satellite 6.19registry.redhat.io/satellite/iop-remediations-rhel9@sha256:6d3ace96df28bfd4de714fa7345cfac8da2431a56eb18f99c4a9b7388902c5e1_amd64Patch ↗Advisory ↗
Red HatCVE-2026-64835trackedCVSS 8.8Red Hat Enterprise Linux AI 3.3 for RHEL 9ffmpeg-0:6.1.6-3.el9ai.srcPatch ↗Advisory ↗
Red HatCVE-2026-69192trackedCVSS 8.6Red Hat Hardened Imagesgrafana13-1-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-69192trackedCVSS 8.6Red Hat Hardened Imagesgrafana12-4-main@aarch64Patch ↗Advisory ↗
AndroidCVE-2026-0163trackedHigh (Android rating)no patch linkAdvisory ↗
Red HatCVE-2026-13149trackedCVSS 7.5Red Hat Quay 3.9registry.redhat.io/quay/quay-rhel8@sha256:427604f87ce3221aee9c8c115a7b80a15aa9b3f6baaa139218b5d410a4fb45cb_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-15308trackedCVSS 7.5Red Hat Enterprise Linux AppStream E4S (v.9.4)python3.12-0:3.12.1-4.el9_4.14.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-15308trackedCVSS 7.5Red Hat Enterprise Linux AppStream AUS (v.8.4)platform-python-0:3.6.8-39.el8_4.12.i686Patch ↗Advisory ↗
Red HatCVE-2026-15573trackedCVSS 8.1Red Hat build of Keycloak 26.4.14Patch ↗Advisory ↗
Red HatCVE-2026-15573trackedCVSS 8.1Red Hat build of Keycloak 26.4rhbk/keycloak-operator-bundle@sha256:2c25b3107aee4f1fc25530f099fa683ba3077c185d581e7caa777c4410383085_amd64Patch ↗Advisory ↗
Red HatCVE-2026-16102trackedCVSS 8.1Red Hat build of Keycloak 26.4.14Patch ↗Advisory ↗
Red HatCVE-2026-16102trackedCVSS 8.1Red Hat build of Keycloak 26.4rhbk/keycloak-operator-bundle@sha256:2c25b3107aee4f1fc25530f099fa683ba3077c185d581e7caa777c4410383085_amd64Patch ↗Advisory ↗
Red HatCVE-2026-16308trackedCVSS 7.5Red Hat build of Keycloak 26.4.14Patch ↗Advisory ↗
Red HatCVE-2026-16308trackedCVSS 7.5Red Hat build of Keycloak 26.4rhbk/keycloak-operator-bundle@sha256:2c25b3107aee4f1fc25530f099fa683ba3077c185d581e7caa777c4410383085_amd64Patch ↗Advisory ↗
Red HatCVE-2026-16443trackedCVSS 7.4Red Hat build of Keycloak 26.4.14Patch ↗Advisory ↗
Red HatCVE-2026-16443trackedCVSS 7.4Red Hat build of Keycloak 26.4rhbk/keycloak-operator-bundle@sha256:2c25b3107aee4f1fc25530f099fa683ba3077c185d581e7caa777c4410383085_amd64Patch ↗Advisory ↗
CiscoCVE-2026-20124trackedCVSS 7.716.6Patch ↗Advisory ↗
CiscoCVE-2026-20200trackedCVSS 8.8Cisco UCS S-Series Storage Servers4.3Patch ↗Advisory ↗
CiscoCVE-2026-20263trackedCVSS 8.616.6Patch ↗Advisory ↗
CiscoCVE-2026-20268trackedCVSS 8.63.2SGPatch ↗Advisory ↗
CiscoCVE-2026-20269trackedCVSS 8.63.2SGPatch ↗Advisory ↗
CiscoCVE-2026-20270trackedCVSS 8.63.2SGPatch ↗Advisory ↗
CiscoCVE-2026-20271trackedCVSS 8.63.2SGPatch ↗Advisory ↗
CiscoCVE-2026-20273trackedCVSS 8.63.2SGPatch ↗Advisory ↗
CiscoCVE-2026-20301trackedCVSS 8.615.3SPatch ↗Advisory ↗
CiscoCVE-2026-20312trackedCVSS 8.817.2Patch ↗Advisory ↗
CiscoCVE-2026-20313trackedCVSS 7.717.2Patch ↗Advisory ↗
Red HatCVE-2026-39822trackedCVSS 7.8Red Hat Quay 3.9registry.redhat.io/quay/quay-rhel8@sha256:427604f87ce3221aee9c8c115a7b80a15aa9b3f6baaa139218b5d410a4fb45cb_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-54060trackedCVSS 7.5Red Hat Quay 3.9registry.redhat.io/quay/quay-rhel8@sha256:427604f87ce3221aee9c8c115a7b80a15aa9b3f6baaa139218b5d410a4fb45cb_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-55379trackedCVSS 7.5Red Hat Quay 3.9registry.redhat.io/quay/quay-rhel8@sha256:427604f87ce3221aee9c8c115a7b80a15aa9b3f6baaa139218b5d410a4fb45cb_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-55380trackedCVSS 7.5Red Hat Quay 3.9registry.redhat.io/quay/quay-rhel8@sha256:427604f87ce3221aee9c8c115a7b80a15aa9b3f6baaa139218b5d410a4fb45cb_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-55999trackedCVSS 7.5Red Hat Enterprise Linux AppStream EUS (v.9.6)xorg-x11-server-Xwayland-0:23.2.7-6.el9_6.3.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-59197trackedCVSS 8.2Red Hat Quay 3.9registry.redhat.io/quay/quay-rhel8@sha256:427604f87ce3221aee9c8c115a7b80a15aa9b3f6baaa139218b5d410a4fb45cb_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-59199trackedCVSS 7.5Red Hat Quay 3.9registry.redhat.io/quay/quay-rhel8@sha256:427604f87ce3221aee9c8c115a7b80a15aa9b3f6baaa139218b5d410a4fb45cb_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-59200trackedCVSS 7.5Red Hat Quay 3.9registry.redhat.io/quay/quay-rhel8@sha256:427604f87ce3221aee9c8c115a7b80a15aa9b3f6baaa139218b5d410a4fb45cb_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-59204trackedCVSS 7.5Red Hat Quay 3.9registry.redhat.io/quay/quay-rhel8@sha256:427604f87ce3221aee9c8c115a7b80a15aa9b3f6baaa139218b5d410a4fb45cb_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-59205trackedCVSS 7.5Red Hat Quay 3.9registry.redhat.io/quay/quay-rhel8@sha256:427604f87ce3221aee9c8c115a7b80a15aa9b3f6baaa139218b5d410a4fb45cb_ppc64lePatch ↗Advisory ↗