CYBERSECURITYTRACKER
TRACKING3,967 stories737 vuln stories
Patch Day month

August 2026 vulnerabilities

A defender-focused view of 2,459 vulnerabilities across 3,874 returned patch records from 4 vendors. Filter the month to date, or browse the static page trail without JavaScript.

3,874all patch recordsClear filters183criticalShow these records1Microsoft exploitation detectedShow these records2Microsoft in CISA KEVShow these records1,062tracked hereShow these records

Narrow the complete month

Filters use every patch record in this month, including records on later static pages.

Clear all

Microsoft-only signal filters exclude records without Microsoft signal data as unknown, report them separately, and never count them as “no.” “Tracked here” covers both Microsoft and cross-vendor records.

Loading the complete-month filter index…

An EPSS percentage is the global 30-day exploitation probability in the wild, not specific to you.

Page 15 of 20 · records 2,801–3,000 of 3,874

Microsoft Security Response Center

CVEDateProductMSRC severityOut-of-bandEPSSTitle
CVE-2025-5054 ↗azl3 systemd 255-21 on Azure Linux 3.0ModerateOut-of-bandRace Condition in Canonical Apport
CVE-2026-42792 ↗azl3 erlang 26.2.5.21-4 on Azure Linux 3.0ModerateOut-of-bandepmd permanent DoS via EMFILE on accept(2) in erts
CVE-2026-15003 ↗azl3 gdb 13.2-10 on Azure Linux 3.0ModerateOut-of-bandBinutils: gnu binutils: heap-buffer-overflow in linker leads to information disclosure and denial of service
CVE-2026-16554 ↗azl3 apparmor 3.1.7-1 on Azure Linux 3.0ModerateOut-of-bandInteger Overflow Leading to Heap Buffer Overflow in cJSON
CVE-2024-21062 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.36 and prior and 8.3.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2023-29583 ↗azl3 yasm 1.3.0-16 on Azure Linux 3.0ModerateOut-of-bandyasm 1.3.0.55.g101bc was discovered to contain a stack overflow via the function parse_expr5 at /nasm/nasm-parse.c. Note: This has been disputed by third parties who argue this is a bug and not a security issue because yasm is a standalone program not designed to run untrusted code.
CVE-2024-20978 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.35 and prior and 8.2.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2026-7260 ↗azl3 php 8.3.31-1 on Azure Linux 3.0ModerateOut-of-band
CVE-2025-21518 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-band
CVE-2024-20972 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.35 and prior and 8.2.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2022-1804 ↗azl3 kernel 6.6.92.2-1 on Azure Linux 3.0ModerateOut-of-bandAccountsservice incorrectly drops privileges
CVE-2024-21102 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Thread Pooling). Supported versions that are affected are 8.0.36 and prior and 8.3.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2026-64557 ↗azl3 kernel 6.6.144.1-1 on Azure Linux 3.0ModerateOut-of-bandBluetooth: L2CAP: Fix use-after-free in l2cap_sock_new_connection_cb()
CVE-2025-21540 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions that are affected are 8.0.40 and prior, 8.4.3 and prior and 9.1.0 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of MySQL Server accessible data as well as unauthorized read access to a subset of MySQL Server accessible data. CVSS 3.1 Base Score 5.4 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N).
CVE-2025-21543 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Packaging). Supported versions that are affected are 8.0.40 and prior, 8.4.3 and prior and 9.1.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2026-25727 ↗azl3 rust-afterburn 5.8.2-1 on Azure Linux 3.0ModerateOut-of-bandtime affected by a stack exhaustion denial of service attack
CVE-2026-56390 ↗azl3 bison 3.8.2-1 on Azure Linux 3.0ModerateOut-of-bandArbitrary Output Location Change in GNU Bison
CVE-2025-21519 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-band
CVE-2026-56389 ↗azl3 bison 3.8.2-1 on Azure Linux 3.0ModerateOut-of-bandArbitrary Command Execution in GNU Bison
CVE-2024-20960 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandVulnerability in the MySQL Server product of Oracle MySQL (component: Server: RAPID). Supported versions that are affected are 8.0.35 and prior and 8.2.0 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 6.5 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).
CVE-2023-31438 ↗azl3 systemd-bootstrap 250.3-17 on Azure Linux 3.0ModerateOut-of-bandAn issue was discovered in systemd 253. An attacker can truncate a sealed log file and then resume log sealing such that checking the integrity shows no error, despite modifications. NOTE: the vendor reportedly sent "a reply denying that any of the finding was a security vulnerability."
CVE-2025-21500 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.40 and prior, 8.4.3 and prior and 9.1.0 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 6.5 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).
CVE-2023-31439 ↗azl3 systemd-bootstrap 250.3-17 on Azure Linux 3.0ModerateOut-of-bandAn issue was discovered in systemd 253. An attacker can modify the contents of past events in a sealed log file and then adjust the file such that checking the integrity shows no error, despite modifications. NOTE: the vendor reportedly sent "a reply denying that any of the finding was a security vulnerability."
CVE-2025-21536 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2025-21504 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2025-21501 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.40 and prior, 8.4.3 and prior and 9.1.0 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 6.5 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).
CVE-2026-63144 ↗azl3 rubygem-elasticsearch 8.9.0-1 on Azure Linux 3.0ModerateOut-of-band
CVE-2023-46673 ↗azl3 rubygem-elasticsearch 8.9.0-1 on Azure Linux 3.0ModerateOut-of-band
CVE-2024-21177 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.37 and prior and 8.4.0 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 6.5 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).
CVE-2023-31419 ↗azl3 rubygem-elasticsearch 8.9.0-1 on Azure Linux 3.0ModerateOut-of-bandElasticsearch StackOverflow vulnerability
CVE-2024-20984 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandVulnerability in the MySQL Server product of Oracle MySQL (component: Server : Security : Firewall). Supported versions that are affected are 8.0.35 and prior and 8.2.0 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.4 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2026-66337 ↗azl3 libsoup 3.4.4-16 on Azure Linux 3.0ModerateOut-of-bandLibsoup: libsoup: heap buffer over-read via integer underflow in soup_filter_input_stream_read_until()
CVE-2023-31417 ↗azl3 rubygem-elasticsearch 8.9.0-1 on Azure Linux 3.0ModerateOut-of-bandElasticsearch Insertion of sensitive information in audit logs
CVE-2025-21493 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions that are affected are 8.4.3 and prior and 9.1.0 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.4 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2026-66339 ↗azl3 libsoup 3.4.4-16 on Azure Linux 3.0ModerateOut-of-bandLibsoup: libsoup: proxy credentials leak to destination server via proxy-authorization header in connect tunnels
CVE-2024-21137 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.35 and prior and 8.2.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2026-66338 ↗azl3 libsoup 3.4.4-16 on Azure Linux 3.0ModerateOut-of-bandLibsoup: libsoup: http request smuggling via permissive chunk-size parsing in soup_body_input_stream_read_chunked()
CVE-2025-21503 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandVulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.40 and prior, 8.4.3 and prior and 9.1.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2026-56391 ↗azl3 coreutils 9.4-7 on Azure Linux 3.0ModerateOut-of-bandOut‑of‑bounds Read in GNU coreutils
CVE-2025-21529 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Information Schema). Supported versions that are affected are 8.0.40 and prior, 8.4.3 and prior and 9.1.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2025-21555 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandVulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.40 and prior, 8.4.3 and prior and 9.1.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server as well as unauthorized update, insert or delete access to some of MySQL Server accessible data. CVSS 3.1 Base Score 5.5 (Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:H).
CVE-2026-58023 ↗azl3 thrift 0.15.0-6 on Azure Linux 3.0ModerateOut-of-bandApache Thrift: c_glib heap out-of-bounds read in transport leftover-bytes path
CVE-2025-46332 ↗azl3 gflags 2.2.2-3 on Azure Linux 3.0ModerateOut-of-bandInformation Disclosure via Flags override link
CVE-2024-21060 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Data Dictionary). Supported versions that are affected are 8.0.36 and prior and 8.3.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2022-46174 ↗azl3 erofs-utils 1.8.5-3 on Azure Linux 3.0ModerateOut-of-bandRace condition during concurrent TLS mounts in efs-utils
CVE-2024-21008 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.36 and prior and 8.3.0 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.4 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2025-21494 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where MySQL Server executes to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.1 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2020-14312 ↗azl3 dnsmasq 2.90-1 on Azure Linux 3.0ModerateOut-of-bandA flaw was found in the default configuration of dnsmasq, as shipped with Fedora versions prior to 31 and in all versions Red Hat Enterprise Linux, where it listens on any interface and accepts queries from addresses outside of its local subnet. In particular, the option `local-service` is not enabled. Running dnsmasq in this manner may inadvertently make it an open resolver accessible from any address on the internet. This flaw allows an attacker to conduct a Distributed Denial of Service (DDoS) against other systems.
CVE-2024-20976 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.35 and prior and 8.2.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2024-33522 ↗azl3 cni-plugins 1.4.0-3 on Azure Linux 3.0ModerateOut-of-bandPrivilege escalation in Calico CNI install binary
CVE-2026-64544 ↗azl3 kernel 6.6.144.1-1 on Azure Linux 3.0ModerateOut-of-bandcrypto: asymmetric_keys - fix OOB read in pefile_digest_pe_contents
CVE-2024-21047 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-band
CVE-2025-27789 ↗azl3 babel 2.15.0-1 on Azure Linux 3.0ModerateOut-of-bandInefficient RexExp complexity in generated code with .replace when transpiling named capturing groups
CVE-2025-21497 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandVulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.40 and prior, 8.4.3 and prior and 9.1.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server as well as unauthorized update, insert or delete access to some of MySQL Server accessible data. CVSS 3.1 Base Score 5.5 (Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:H).
CVE-2024-20998 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.36 and prior and 8.3.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2023-39615 ↗azl3 libxml2 2.11.5-5 on Azure Linux 3.0ModerateOut-of-bandXmlsoft Libxml2 v2.11.0 was discovered to contain an out-of-bounds read via the xmlSAX2StartElement() function at /libxml2/SAX2.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via supplying a crafted XML file. NOTE: the vendor's position is that the product does not support the legacy SAX1 interface with custom callbacks; there is a crash even without crafted input.
CVE-2026-64547 ↗azl3 kernel 6.6.144.1-1 on Azure Linux 3.0ModerateOut-of-bandnet: usb: net1080: validate packet_len before pad-byte access in rx_fixup
CVE-2020-10685 ↗azl3 ansible 2.17.0-1 on Azure Linux 3.0ModerateOut-of-bandA flaw was found in Ansible Engine affecting Ansible Engine versions 2.7.x before 2.7.17 and 2.8.x before 2.8.11 and 2.9.x before 2.9.7 as well as Ansible Tower before and including versions 3.4.5 and 3.5.5 and 3.6.3 when using modules which decrypts vault files such as assemble, script, unarchive, win_copy, aws_s3 or copy modules. The temporary directory is created in /tmp leaves the s ts unencrypted. On Operating Systems which /tmp is not a tmpfs but part of the root partition, the directory is only cleared on boot and the decryp emains when the host is switched off. The system will be vulnerable when the system is not running. So decrypted data must be cleared as soon as possible and the data which normally is encrypted ble.

Cross-vendor patches

VendorCVESeverityProductFixed versionPatchAdvisory
Red HatCVE-2025-40026CVSS 5.5Red Hat Enterprise Linux AppStream E4S (v.9.2)bpftool-debuginfo-0:7.0.0-284.186.1.el9_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2025-40026CVSS 5.5Red Hat Enterprise Linux Real Time for NFV E4S (v.9.2)kernel-rt-0:5.14.0-284.186.1.rt14.471.el9_2.srcPatch ↗Advisory ↗
Red HatCVE-2026-19079CVSS 4.4Red Hat Hardened Imagespolicycoreutils-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-52923CVSS 5.8Red Hat Enterprise Linux AppStream E4S (v.9.2)bpftool-debuginfo-0:7.0.0-284.186.1.el9_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-52923CVSS 5.8Red Hat Enterprise Linux Real Time for NFV E4S (v.9.2)kernel-rt-0:5.14.0-284.186.1.rt14.471.el9_2.srcPatch ↗Advisory ↗
Red HatCVE-2026-15788CVSS 6.3Red Hat Hardened Imagesbuildah-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-23415CVSS 5.7Red Hat Enterprise Linux AppStream (v. 9)kernel-64k-debug-debuginfo-0:5.14.0-687.36.1.el9_8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-25128CVSS 5.3Red Hat Satellite 6.18registry.redhat.io/satellite/iop-host-inventory-frontend-rhel9@sha256:a1d343700722a13d9c7ff7b23e8e770fdbe4fdd7c55bbf4d7f4cb4bf28cafc0d_amd64Patch ↗Advisory ↗
Red HatCVE-2026-26996CVSS 6.5Red Hat OpenShift Container Platform 4.17registry.redhat.io/openshift4/ose-console-rhel9@sha256:2c8a6071f9c69c7d4897f6ced463b84bda7cbdc3c64c656f5eec790d87dee462_arm64Patch ↗Advisory ↗
Red HatCVE-2026-26996CVSS 6.5Red Hat Satellite 6.18registry.redhat.io/satellite/iop-host-inventory-frontend-rhel9@sha256:a1d343700722a13d9c7ff7b23e8e770fdbe4fdd7c55bbf4d7f4cb4bf28cafc0d_amd64Patch ↗Advisory ↗
Red HatCVE-2026-27904CVSS 6.5Red Hat Satellite 6.18registry.redhat.io/satellite/iop-host-inventory-frontend-rhel9@sha256:a1d343700722a13d9c7ff7b23e8e770fdbe4fdd7c55bbf4d7f4cb4bf28cafc0d_amd64Patch ↗Advisory ↗
Red HatCVE-2026-32281CVSS 5.9OpenShift API for Data Protection 1.3registry.redhat.io/oadp/oadp-velero-rhel9@sha256:391767c3af8ae4acb6d1b0fa94e194def61452ba95e3a1e6cd73ef725cf651ca_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-32281CVSS 5.9Red Hat Enterprise Linux AppStream AUS (v.8.6)aardvark-dns-2:1.0.1-40.module+el8.6.0+24209+25a14987.x86_64::container-tools:rhel8Patch ↗Advisory ↗
Red HatCVE-2026-33748CVSS 6.5OpenShift API for Data Protection 1.3registry.redhat.io/oadp/oadp-mustgather-rhel9@sha256:93d8ce09a06af1c287ebe7616ebc38f6cf0acb52e11f96dbfbcca583c5e0540f_arm64Patch ↗Advisory ↗
Red HatCVE-2026-35469CVSS 6.5Red Hat OpenShift Container Platform 4.17registry.redhat.io/openshift4/ose-aws-ebs-csi-driver-rhel9@sha256:733a580d556417ed65ba2a9581a9c627ba2f52e50319f31963bc0953f47e6df6_amd64Patch ↗Advisory ↗
Red HatCVE-2026-35469CVSS 6.5Red Hat OpenShift Container Platform 4.17registry.redhat.io/openshift4/ose-csi-external-provisioner-rhel9@sha256:1b43c4e6653de0b6d9a0e994a890af14a64b9297445f47ab2a531fa73340f9db_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-42502CVSS 6.1Red Hat Satellite 6.18registry.redhat.io/satellite/iop-vmaas-rhel9@sha256:1fdcc43ad509f20876adc6e985a1246950649ee3c3cd1dbd48cef577e0c650a9_amd64Patch ↗Advisory ↗
Red HatCVE-2026-44431CVSS 5.9Red Hat Enterprise Linux AppStream E4S (v.8.8)fence-agents-0:4.2.1-112.el8_8.20.srcPatch ↗Advisory ↗
Red HatCVE-2026-44431CVSS 5.9Red Hat Enterprise Linux AppStream AUS (v.8.4)fence-agents-0:4.2.1-65.el8_4.31.srcPatch ↗Advisory ↗
Red HatCVE-2026-44431CVSS 5.9Red Hat Enterprise Linux AppStream AUS (v.8.6)fence-agents-0:4.2.1-89.el8_6.25.srcPatch ↗Advisory ↗
Red HatCVE-2026-44431CVSS 5.9Red Hat Satellite 6.19registry.redhat.io/satellite/iop-advisor-backend-rhel9@sha256:5ea1978e2dbe0d44d9046f212d5bfd9714f667057392c559b26fff8758d624c7_amd64Patch ↗Advisory ↗
Red HatCVE-2026-44431CVSS 5.9Red Hat Satellite 6.18registry.redhat.io/satellite/iop-advisor-backend-rhel9@sha256:e75db1547443a8c4dc4de97ad063bee086b30fa825d813a14807bfe1e52bde1c_amd64Patch ↗Advisory ↗
Red HatCVE-2026-44431CVSS 5.9Red Hat Satellite 6.18registry.redhat.io/satellite/iop-vulnerability-engine-rhel9@sha256:e3ff62ed7083a6090e6ef023661c022e1665bbbf598eec929b5a67d80506e415_amd64Patch ↗Advisory ↗
Red HatCVE-2026-48710CVSS 6.5Red Hat Satellite 6.18registry.redhat.io/satellite/iop-vulnerability-engine-rhel9@sha256:e3ff62ed7083a6090e6ef023661c022e1665bbbf598eec929b5a67d80506e415_amd64Patch ↗Advisory ↗
Red HatCVE-2025-53020CVSS 5.3Red Hat Enterprise Linux AppStream EUS (v. 10.0)mod_http2-0:2.0.29-2.el10_0.2.aarch64Patch ↗Advisory ↗
Red HatCVE-2025-53020CVSS 5.3Red Hat Enterprise Linux AppStream EUS (v.9.6)mod_http2-0:2.0.26-4.el9_6.2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-11986CVSS 4.9Red Hat build of Keycloak 26.6.5Patch ↗Advisory ↗
Red HatCVE-2026-11986CVSS 4.9Red Hat build of Keycloak 26.6rhbk/keycloak-operator-bundle@sha256:06ee2f18c4218c9a095360efa2023b2080aa81e04a08363dbcb1d14de85a5d0d_amd64Patch ↗Advisory ↗
Red HatCVE-2026-14209CVSS 4.3Red Hat build of Keycloak 26.4.14Patch ↗Advisory ↗
Red HatCVE-2026-14209CVSS 4.3Red Hat build of Keycloak 26.4rhbk/keycloak-operator-bundle@sha256:2c25b3107aee4f1fc25530f099fa683ba3077c185d581e7caa777c4410383085_amd64Patch ↗Advisory ↗
Red HatCVE-2026-14209CVSS 4.3Red Hat build of Keycloak 26.6.5Patch ↗Advisory ↗
Red HatCVE-2026-14209CVSS 4.3Red Hat build of Keycloak 26.6rhbk/keycloak-operator-bundle@sha256:06ee2f18c4218c9a095360efa2023b2080aa81e04a08363dbcb1d14de85a5d0d_amd64Patch ↗Advisory ↗
Red HatCVE-2026-14614CVSS 5.4Red Hat build of Keycloak 26.4.14Patch ↗Advisory ↗
Red HatCVE-2026-14614CVSS 5.4Red Hat build of Keycloak 26.4rhbk/keycloak-operator-bundle@sha256:2c25b3107aee4f1fc25530f099fa683ba3077c185d581e7caa777c4410383085_amd64Patch ↗Advisory ↗
Red HatCVE-2026-14614CVSS 5.4Red Hat build of Keycloak 26.6.5Patch ↗Advisory ↗
Red HatCVE-2026-14614CVSS 5.4Red Hat build of Keycloak 26.6rhbk/keycloak-operator-bundle@sha256:06ee2f18c4218c9a095360efa2023b2080aa81e04a08363dbcb1d14de85a5d0d_amd64Patch ↗Advisory ↗
Red HatCVE-2026-14615CVSS 4.3Red Hat build of Keycloak 26.4.14Patch ↗Advisory ↗
Red HatCVE-2026-14615CVSS 4.3Red Hat build of Keycloak 26.4rhbk/keycloak-operator-bundle@sha256:2c25b3107aee4f1fc25530f099fa683ba3077c185d581e7caa777c4410383085_amd64Patch ↗Advisory ↗
Red HatCVE-2026-14615CVSS 4.3Red Hat build of Keycloak 26.6.5Patch ↗Advisory ↗
Red HatCVE-2026-14615CVSS 4.3Red Hat build of Keycloak 26.6rhbk/keycloak-operator-bundle@sha256:06ee2f18c4218c9a095360efa2023b2080aa81e04a08363dbcb1d14de85a5d0d_amd64Patch ↗Advisory ↗
Red HatCVE-2026-15927CVSS 6.8Red Hat Quay 3.9registry.redhat.io/quay/quay-rhel8@sha256:427604f87ce3221aee9c8c115a7b80a15aa9b3f6baaa139218b5d410a4fb45cb_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-16071CVSS 5.4Red Hat build of Keycloak 26.4.14Patch ↗Advisory ↗
Red HatCVE-2026-16071CVSS 5.4Red Hat build of Keycloak 26.4rhbk/keycloak-operator-bundle@sha256:2c25b3107aee4f1fc25530f099fa683ba3077c185d581e7caa777c4410383085_amd64Patch ↗Advisory ↗
Red HatCVE-2026-16071CVSS 5.4Red Hat build of Keycloak 26.6.5Patch ↗Advisory ↗
Red HatCVE-2026-16071CVSS 5.4Red Hat build of Keycloak 26.6rhbk/keycloak-operator-bundle@sha256:06ee2f18c4218c9a095360efa2023b2080aa81e04a08363dbcb1d14de85a5d0d_amd64Patch ↗Advisory ↗
Red HatCVE-2026-16100CVSS 6.5Red Hat build of Keycloak 26.6.5Patch ↗Advisory ↗
Red HatCVE-2026-16100CVSS 6.5Red Hat build of Keycloak 26.6rhbk/keycloak-operator-bundle@sha256:06ee2f18c4218c9a095360efa2023b2080aa81e04a08363dbcb1d14de85a5d0d_amd64Patch ↗Advisory ↗
Red HatCVE-2026-18508CVSS 4.4Red Hat Hardened Imagestar-main@aarch64Patch ↗Advisory ↗
CiscoCVE-2026-20028CVSS 5.0Cisco Terminal Services AgentTSAgent.1Patch ↗Advisory ↗
CiscoCVE-2026-20198CVSS 4.8Cisco UCS S-Series Storage Servers3.2Patch ↗Advisory ↗
CiscoCVE-2026-20288CVSS 6.5Cisco UCS S-Series Storage Servers3.2Patch ↗Advisory ↗
CiscoCVE-2026-20289CVSS 5.7Cisco Room SeriesRoomOS.10Patch ↗Advisory ↗
CiscoCVE-2026-20294CVSS 6.5Cisco Catalyst SD-WAN17.2Patch ↗Advisory ↗
Red HatCVE-2026-39833CVSS 5.5Red Hat Trusted Artifact Signer 1.4conforma-cli-stack-v1-4@amd64Patch ↗Advisory ↗
Red HatCVE-2026-43951CVSS 6.5Red Hat Enterprise Linux AppStream EUS (v. 10.0)mod_http2-0:2.0.29-2.el10_0.2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-43951CVSS 6.5Red Hat Enterprise Linux AppStream EUS (v.9.6)mod_http2-0:2.0.26-4.el9_6.2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-44000CVSS 6.5Red Hat Ansible Automation Platform 2.1registry.redhat.io/ansible-automation-platform/automation-portal@sha256:a85a548cb563a32be76c6e7e015fd57d340e068e321bf34b060d9eb901c33c4d_amd64Patch ↗Advisory ↗
Red HatCVE-2026-44002CVSS 5.8Red Hat Ansible Automation Platform 2.1registry.redhat.io/ansible-automation-platform/automation-portal@sha256:a85a548cb563a32be76c6e7e015fd57d340e068e321bf34b060d9eb901c33c4d_amd64Patch ↗Advisory ↗
Red HatCVE-2026-44003CVSS 5.3Red Hat Ansible Automation Platform 2.1registry.redhat.io/ansible-automation-platform/automation-portal@sha256:a85a548cb563a32be76c6e7e015fd57d340e068e321bf34b060d9eb901c33c4d_amd64Patch ↗Advisory ↗
Red HatCVE-2026-4629CVSS 6.5Red Hat build of Keycloak 26.4.14Patch ↗Advisory ↗
Red HatCVE-2026-4629CVSS 6.5Red Hat build of Keycloak 26.4rhbk/keycloak-operator-bundle@sha256:2c25b3107aee4f1fc25530f099fa683ba3077c185d581e7caa777c4410383085_amd64Patch ↗Advisory ↗
Red HatCVE-2026-47131CVSS 4.1Red Hat Ansible Automation Platform 2.1registry.redhat.io/ansible-automation-platform/automation-portal@sha256:a85a548cb563a32be76c6e7e015fd57d340e068e321bf34b060d9eb901c33c4d_amd64Patch ↗Advisory ↗
Red HatCVE-2026-47137CVSS 4.1Red Hat Ansible Automation Platform 2.1registry.redhat.io/ansible-automation-platform/automation-portal@sha256:a85a548cb563a32be76c6e7e015fd57d340e068e321bf34b060d9eb901c33c4d_amd64Patch ↗Advisory ↗
Red HatCVE-2026-47140CVSS 4.1Red Hat Ansible Automation Platform 2.1registry.redhat.io/ansible-automation-platform/automation-portal@sha256:a85a548cb563a32be76c6e7e015fd57d340e068e321bf34b060d9eb901c33c4d_amd64Patch ↗Advisory ↗
Red HatCVE-2026-53404CVSS 6.5Red Hat JBoss Web Server 7.0 on RHEL 10jws7-tomcat-0:11.0.21-6.redhat_00005.1.el10jws.noarchPatch ↗Advisory ↗
Red HatCVE-2026-53404CVSS 6.5Red Hat JBoss Web Server 7.0.1Patch ↗Advisory ↗
Red HatCVE-2026-67315CVSS 5.8Red Hat Hardened Imagesgrafana13-1-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-67317CVSS 5.3Red Hat Hardened Imagesgrafana13-1-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-67318CVSS 5.3Red Hat Hardened Imagesgrafana13-1-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-69198CVSS 5.3Red Hat Hardened Imagesgrafana13-1-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-9689CVSS 4.2Red Hat build of Keycloak 26.4.14Patch ↗Advisory ↗
Red HatCVE-2026-9689CVSS 4.2Red Hat build of Keycloak 26.4rhbk/keycloak-operator-bundle@sha256:2c25b3107aee4f1fc25530f099fa683ba3077c185d581e7caa777c4410383085_amd64Patch ↗Advisory ↗
Red HatCVE-2026-9689CVSS 4.2Red Hat build of Keycloak 26.6.5Patch ↗Advisory ↗
Red HatCVE-2026-9689CVSS 4.2Red Hat build of Keycloak 26.6rhbk/keycloak-operator-bundle@sha256:06ee2f18c4218c9a095360efa2023b2080aa81e04a08363dbcb1d14de85a5d0d_amd64Patch ↗Advisory ↗
Red HatCVE-2026-9793CVSS 5.9Red Hat build of Keycloak 26.4.14Patch ↗Advisory ↗
Red HatCVE-2026-9793CVSS 5.9Red Hat build of Keycloak 26.4rhbk/keycloak-operator-bundle@sha256:2c25b3107aee4f1fc25530f099fa683ba3077c185d581e7caa777c4410383085_amd64Patch ↗Advisory ↗
Red HatCVE-2026-9793CVSS 5.9Red Hat build of Keycloak 26.6.5Patch ↗Advisory ↗
Red HatCVE-2026-9793CVSS 5.9Red Hat build of Keycloak 26.6rhbk/keycloak-operator-bundle@sha256:06ee2f18c4218c9a095360efa2023b2080aa81e04a08363dbcb1d14de85a5d0d_amd64Patch ↗Advisory ↗
Red HatCVE-2026-9798CVSS 4.3Red Hat build of Keycloak 26.4.14Patch ↗Advisory ↗
Red HatCVE-2026-9798CVSS 4.3Red Hat build of Keycloak 26.4rhbk/keycloak-operator-bundle@sha256:2c25b3107aee4f1fc25530f099fa683ba3077c185d581e7caa777c4410383085_amd64Patch ↗Advisory ↗
Red HatCVE-2026-9798CVSS 4.3Red Hat build of Keycloak 26.6.5Patch ↗Advisory ↗
Red HatCVE-2026-9798CVSS 4.3Red Hat build of Keycloak 26.6rhbk/keycloak-operator-bundle@sha256:06ee2f18c4218c9a095360efa2023b2080aa81e04a08363dbcb1d14de85a5d0d_amd64Patch ↗Advisory ↗
Red HatCVE-2025-40909CVSS 5.9Red Hat Enterprise Linux AppStream E4S (v.8.8)perl-4:5.32.1-472.module+el8.8.0+24404+b3ad2701.1.ppc64le::perl:5.32Patch ↗Advisory ↗
Red HatCVE-2025-5278CVSS 4.4Red Hat OpenShift distributed tracing 3.10.2registry.redhat.io/rhosdt/opentelemetry-collector-rhel9@sha256:03fd3e2921ac7557fd5aa6b4d0714f9ee634efd1259b789638d478978fcd4f39_s390xPatch ↗Advisory ↗
Red HatCVE-2025-68214CVSS 5.5Red Hat Enterprise Linux AppStream (v. 9)kernel-64k-debug-debuginfo-0:5.14.0-687.34.1.el9_8.aarch64Patch ↗Advisory ↗
Red HatCVE-2025-68214CVSS 5.5Red Hat Enterprise Linux AppStream (v. 10)kernel-64k-debug-debuginfo-0:6.12.0-211.43.1.el10_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2025-9230CVSS 5.6Red Hat Satellite 6.17 for RHEL 9openvox-agent-0:8.24.1-3.el9sat.srcPatch ↗Advisory ↗
Red HatCVE-2025-9230CVSS 5.6Red Hat Satellite 6.16 for RHEL 8openvox-agent-0:8.24.1-3.el8sat.srcPatch ↗Advisory ↗
Red HatCVE-2025-9230CVSS 5.6Red Hat Satellite 6.18 for RHEL 9openvox-agent-0:8.24.1-3.el9sat.srcPatch ↗Advisory ↗
Red HatCVE-2026-12515CVSS 4.3Red Hat Satellite 6.19 for RHEL 9rubygem-katello-0:4.20.0.7-1.el9sat.noarchPatch ↗Advisory ↗
Red HatCVE-2026-12515CVSS 4.3Red Hat Satellite 6.17 for RHEL 9rubygem-katello-0:4.16.0.18-1.el9sat.noarchPatch ↗Advisory ↗
Red HatCVE-2026-12515CVSS 4.3Red Hat Satellite 6.16 for RHEL 8rubygem-katello-0:4.14.0.21-1.el8sat.noarchPatch ↗Advisory ↗
Red HatCVE-2026-12515CVSS 4.3Red Hat Satellite 6.18 for RHEL 9rubygem-katello-0:4.18.0.15-1.el9sat.noarchPatch ↗Advisory ↗
Red HatCVE-2026-14899CVSS 6.1Red Hat Enterprise Linux AppStream (v. 9)thunderbird-0:140.13.0-1.el9_8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-14899CVSS 6.1Red Hat Enterprise Linux AppStream (v. 8)thunderbird-0:140.13.0-1.el8_10.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-16358CVSS 6.1Red Hat Enterprise Linux AppStream (v. 9)thunderbird-0:140.13.0-1.el9_8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-16358CVSS 6.1Red Hat Enterprise Linux AppStream (v. 8)thunderbird-0:140.13.0-1.el8_10.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-16371CVSS 6.1Red Hat Enterprise Linux AppStream (v. 9)thunderbird-0:140.13.0-1.el9_8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-16371CVSS 6.1Red Hat Enterprise Linux AppStream (v. 8)thunderbird-0:140.13.0-1.el8_10.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-16374CVSS 6.1Red Hat Enterprise Linux AppStream (v. 9)thunderbird-0:140.13.0-1.el9_8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-16374CVSS 6.1Red Hat Enterprise Linux AppStream (v. 8)thunderbird-0:140.13.0-1.el8_10.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-16375CVSS 6.1Red Hat Enterprise Linux AppStream (v. 9)thunderbird-0:140.13.0-1.el9_8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-16375CVSS 6.1Red Hat Enterprise Linux AppStream (v. 8)thunderbird-0:140.13.0-1.el8_10.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-16377CVSS 6.1Red Hat Enterprise Linux AppStream (v. 9)thunderbird-0:140.13.0-1.el9_8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-16377CVSS 6.1Red Hat Enterprise Linux AppStream (v. 8)thunderbird-0:140.13.0-1.el8_10.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-16379CVSS 6.1Red Hat Enterprise Linux AppStream (v. 9)thunderbird-0:140.13.0-1.el9_8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-16379CVSS 6.1Red Hat Enterprise Linux AppStream (v. 8)thunderbird-0:140.13.0-1.el8_10.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-16381CVSS 6.1Red Hat Enterprise Linux AppStream (v. 9)thunderbird-0:140.13.0-1.el9_8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-16381CVSS 6.1Red Hat Enterprise Linux AppStream (v. 8)thunderbird-0:140.13.0-1.el8_10.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-16383CVSS 6.1Red Hat Enterprise Linux AppStream (v. 9)thunderbird-0:140.13.0-1.el9_8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-16383CVSS 6.1Red Hat Enterprise Linux AppStream (v. 8)thunderbird-0:140.13.0-1.el8_10.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-16387CVSS 6.1Red Hat Enterprise Linux AppStream (v. 9)thunderbird-0:140.13.0-1.el9_8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-16387CVSS 6.1Red Hat Enterprise Linux AppStream (v. 8)thunderbird-0:140.13.0-1.el8_10.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-16390CVSS 6.1Red Hat Enterprise Linux AppStream (v. 9)thunderbird-0:140.13.0-1.el9_8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-16390CVSS 6.1Red Hat Enterprise Linux AppStream (v. 8)thunderbird-0:140.13.0-1.el8_10.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-16391CVSS 6.1Red Hat Enterprise Linux AppStream (v. 9)thunderbird-0:140.13.0-1.el9_8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-16391CVSS 6.1Red Hat Enterprise Linux AppStream (v. 8)thunderbird-0:140.13.0-1.el8_10.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-16396CVSS 6.1Red Hat Enterprise Linux AppStream (v. 9)thunderbird-0:140.13.0-1.el9_8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-16396CVSS 6.1Red Hat Enterprise Linux AppStream (v. 8)thunderbird-0:140.13.0-1.el8_10.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-23199CVSS 5.5Red Hat Enterprise Linux AppStream (v. 10)kernel-64k-debug-debuginfo-0:6.12.0-211.43.1.el10_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-26996CVSS 6.5Red Hat Migration Toolkit for Applications 8.1registry.redhat.io/mta/mta-ui-rhel9@sha256:32b552436a7fe57fafdeb1c2383b3a98a91123e7c1f38511b8c47eb76a8b2b29_amd64Patch ↗Advisory ↗
Red HatCVE-2026-27904CVSS 6.5Red Hat Migration Toolkit for Applications 8.1registry.redhat.io/mta/mta-ui-rhel9@sha256:32b552436a7fe57fafdeb1c2383b3a98a91123e7c1f38511b8c47eb76a8b2b29_amd64Patch ↗Advisory ↗
Red HatCVE-2026-32281CVSS 5.9Red Hat Enterprise Linux AppStream (v. 9)osbuild-composer-0:165.1-4.el9_8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-32281CVSS 5.9Red Hat Enterprise Linux AppStream E4S (v.8.8)aardvark-dns-2:1.5.0-2.module+el8.8.0+23884+2031fc78.ppc64le::container-tools:rhel8Patch ↗Advisory ↗
Red HatCVE-2026-39823CVSS 5.4Red Hat OpenShift distributed tracing 3.10.2registry.redhat.io/rhosdt/opentelemetry-rhel9-operator@sha256:03af0af704f201e97cc36cb588092366e613a26794d25ec76d805f0de00fbb77_amd64Patch ↗Advisory ↗
Red HatCVE-2026-42342CVSS 6.5Red Hat Migration Toolkit for Applications 8.1registry.redhat.io/mta/mta-ui-rhel9@sha256:32b552436a7fe57fafdeb1c2383b3a98a91123e7c1f38511b8c47eb76a8b2b29_amd64Patch ↗Advisory ↗
Red HatCVE-2026-42507CVSS 5.3Red Hat OpenShift distributed tracing 3.10.2registry.redhat.io/rhosdt/opentelemetry-collector-rhel9@sha256:03fd3e2921ac7557fd5aa6b4d0714f9ee634efd1259b789638d478978fcd4f39_s390xPatch ↗Advisory ↗
Red HatCVE-2026-44431CVSS 5.9Red Hat Enterprise Linux AppStream (v. 8)fence-agents-0:4.2.1-129.el8_10.28.srcPatch ↗Advisory ↗
Red HatCVE-2026-45536CVSS 4.0Red Hat JBoss Enterprise Application Platform 8.1Patch ↗Advisory ↗
Red HatCVE-2026-45673CVSS 6.8Red Hat JBoss Enterprise Application Platform 8.1Patch ↗Advisory ↗
Red HatCVE-2026-46917CVSS 5.3Red Hat Hardened Imagesjava-21-openjdk-portable-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-46917CVSS 5.3Red Hat Hardened Imagesjava-21-openjdk-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-46968CVSS 5.9Red Hat Hardened Imagesjava-21-openjdk-portable-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-46968CVSS 5.9Red Hat Hardened Imagesjava-21-openjdk-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-47021CVSS 5.3Red Hat Hardened Imagesjava-21-openjdk-portable-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-47021CVSS 5.3Red Hat Hardened Imagesjava-21-openjdk-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-47027CVSS 5.3Red Hat Hardened Imagesjava-21-openjdk-portable-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-47027CVSS 5.3Red Hat Hardened Imagesjava-21-openjdk-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-47244CVSS 5.3Red Hat JBoss Enterprise Application Platform 8.1Patch ↗Advisory ↗
Red HatCVE-2026-48990CVSS 5.3Red Hat Ansible Automation Platform 2.7registry.redhat.io/ansible-automation-platform-27/lightspeed-chatbot-rhel9@sha256:500c52d19ddfb4cd15e4ba0c94268250d5d83442c2c67381b3cb9bb7613c23d4_arm64Patch ↗Advisory ↗