CYBERSECURITYTRACKER
TRACKING7,931 stories in this site build1,728 vulnerability news stories in this site build
Vulnerabilities

August 2026 vulnerabilities

Browse this month's returned vendor patches and exploitation signals, with filtering and stable pages for browsing without JavaScript.

Microsoft reports 1 vulnerability with exploitation detected in the wild this month. This defender-focused view covers 6,845 vulnerabilities across 17,509 returned patch records from 5 vendors. Filter the complete month, or browse the static page trail without JavaScript.

17,509all patch recordsClear filters2,377criticalShow these records1Microsoft exploitation detectedShow these records3Microsoft in the Known Exploited Vulnerabilities catalogShow these records14,331tracked hereShow these records
Patch records
Returned Microsoft and cross-vendor release records. One Common Vulnerabilities and Exposures (CVE) identifier can appear in more than one record.
Tracked here
Records joined to a vulnerability record in this tracker.
Defender priority
Sorts Microsoft exploitation status, Cybersecurity and Infrastructure Security Agency (CISA) Known Exploited Vulnerabilities (KEV) catalog status, severity, and tracker coverage first.
More likely
Microsoft's Exploitability Index rating that exploitation is more likely. It is not a claim that exploitation was detected.

Narrow the complete month

Filters use every patch record in this month, including records on later static pages.

Clear all

My Stack only keeps records whose vendor you have pinned. Pins are the vendors you added to My Stack on the home page. Your pin list is saved only in this browser. Shared view and feed requests include the selected vendor names in their URLs. Pins never change what the tracker collects or scores.

Microsoft-only signal filters exclude records without Microsoft signal data as unknown, report them separately, and never count them as absent. “Tracked here” covers both Microsoft and cross-vendor records.

Loading the complete-month filter index…

An Exploit Prediction Scoring System (EPSS) percentage is the global 30-day exploitation probability in the wild, not specific to you. Do not read it as a complete risk score or as evidence about your environment or impact.

Page 81 of 88 · records 16,001 to 16,200 of 17,509

Microsoft Security Response Center

CVEDateProductMSRC severityOut-of-bandEPSSTitle
CVE-2025-21567 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions that are affected are 9.1.0 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized read access to a subset of MySQL Server accessible data. CVSS 3.1 Base Score 4.3 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N).
CVE-2026-15157 ↗azl3 nodejs 24.18.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableundici vulnerable to CRLF Injection via blob-like body 'type' property
CVE-2024-21009 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.36 and prior and 8.3.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2026-64602 ↗azl3 kernel 6.6.143.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableiio: adc: spear: Initialize completion before requesting IRQ
CVE-2024-20994 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailable
CVE-2024-23450 ↗azl3 rubygem-elasticsearch 8.9.0-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailable
CVE-2026-44943 ↗azl3 iscsi-initiator-utils 2.1.9-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailable
CVE-2025-21534 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailable
CVE-2025-21522 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Parser). Supported versions that are affected are 8.0.40 and prior, 8.4.3 and prior and 9.1.0 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 6.5 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).
CVE-2025-21505 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Components Services). Supported versions that are affected are 8.0.40 and prior, 8.4.3 and prior and 9.1.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2024-21204 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVulnerability in the MySQL Server product of Oracle MySQL (component: Server: PS). Supported versions that are affected are 8.4.0 and 9.0.1 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2024-21054 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.36 and prior and 8.3.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2021-21368 ↗azl3 msgpack 3.3.0-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablePrototype poisoning
CVE-2026-19026 ↗azl3 hdf5 1.14.6-4 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableNbit filter NULL/short parameter-array dereference
CVE-2026-19028 ↗azl3 hdf5 1.14.6-4 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableHDF5 integer underflow in Fletcher32 filter leads to massive out-of-bounds read
CVE-2026-19027 ↗azl3 hdf5 1.14.6-4 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableHDF5 out-of-bounds heap read in N-Bit filter decompression
CVE-2010-4052 ↗azl3 smartmontools 7.4-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableStack consumption vulnerability in the regcomp implementation in the GNU C Library (aka glibc or libc6) through 2.11.3, and 2.12.x through 2.12.2, allows context-dependent attackers to cause a denial of service (resource exhaustion) via a regular expression containing adjacent repetition operators, as demonstrated by a {10,}{10,}{10,}{10,} sequence in the proftpd.gnu.c exploit for ProFTPD.
CVE-2026-58040 ↗azl3 nodejs 24.17.0-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailable
CVE-2026-19025 ↗azl3 hdf5 1.14.6-4 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableHDF5 divide-by-zero (SIGFPE) via mismatched chunk-layout dimensionality and dataspace rank on dataset open
CVE-2026-56850 ↗azl3 nodejs 24.17.0-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailable
CVE-2026-13346 ↗azl3 python-virtualenv 20.36.1-5 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailable
CVE-2026-54332 ↗azl3 telegraf 1.31.0-27 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableGoPacket's sFlow ExtendedGatewayFlow decoder: unbounded attacker-controlled allocation (104-byte UDP datagram -> up to 16 GiB make) -> unauthenticated remote DoS
CVE-2026-65624 ↗azl3 rabbitmq-server 3.13.7-8 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableCowboy HTTP/1.1 max_headers Bypass via Duplicate Header Names Enables Memory Exhaustion
CVE-2023-53701 ↗azl3 kernel 6.6.104.2-4 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableRejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2025-38178 ↗azl3 kernel 6.6.96.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableRejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2026-35188 ↗azl3 kata-containers 3.32.0.kata0-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableDouble-free When Checking OCSP Stapled Response
CVE-2026-25800 ↗azl3 kata-containers 3.32.0.kata0-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablequinn-proto has remote memory exhaustion from unbounded out-of-order stream reassembly
CVE-2026-55737 ↗azl3 erlang 26.2.5.21-4 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableHeap pointer corruption via signed/unsigned mismatch in LARGE_TUPLE_EXT decoding in erts external term format decoder
CVE-2025-5054 ↗azl3 systemd 255-21 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableRace Condition in Canonical Apport
CVE-2026-42792 ↗azl3 erlang 26.2.5.21-4 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableepmd permanent DoS via EMFILE on accept(2) in erts
CVE-2026-15003 ↗azl3 gdb 13.2-10 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableBinutils: gnu binutils: heap-buffer-overflow in linker leads to information disclosure and denial of service
CVE-2026-16554 ↗azl3 apparmor 3.1.7-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableInteger Overflow Leading to Heap Buffer Overflow in cJSON
CVE-2024-21062 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.36 and prior and 8.3.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2023-29583 ↗azl3 yasm 1.3.0-16 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableyasm 1.3.0.55.g101bc was discovered to contain a stack overflow via the function parse_expr5 at /nasm/nasm-parse.c. Note: This has been disputed by third parties who argue this is a bug and not a security issue because yasm is a standalone program not designed to run untrusted code.
CVE-2024-20978 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.35 and prior and 8.2.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2026-7260 ↗azl3 php 8.3.31-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailable
CVE-2025-21518 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailable
CVE-2024-20972 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.35 and prior and 8.2.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2022-1804 ↗azl3 kernel 6.6.92.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableAccountsservice incorrectly drops privileges
CVE-2024-21102 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Thread Pooling). Supported versions that are affected are 8.0.36 and prior and 8.3.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2025-21540 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions that are affected are 8.0.40 and prior, 8.4.3 and prior and 9.1.0 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of MySQL Server accessible data as well as unauthorized read access to a subset of MySQL Server accessible data. CVSS 3.1 Base Score 5.4 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N).
CVE-2025-21543 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Packaging). Supported versions that are affected are 8.0.40 and prior, 8.4.3 and prior and 9.1.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2026-25727 ↗azl3 rust-afterburn 5.8.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabletime affected by a stack exhaustion denial of service attack
CVE-2026-56390 ↗azl3 bison 3.8.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableArbitrary Output Location Change in GNU Bison
CVE-2025-21519 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailable
CVE-2026-56389 ↗azl3 bison 3.8.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableArbitrary Command Execution in GNU Bison
CVE-2024-20960 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVulnerability in the MySQL Server product of Oracle MySQL (component: Server: RAPID). Supported versions that are affected are 8.0.35 and prior and 8.2.0 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 6.5 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).
CVE-2023-31438 ↗azl3 systemd-bootstrap 250.3-17 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableAn issue was discovered in systemd 253. An attacker can truncate a sealed log file and then resume log sealing such that checking the integrity shows no error, despite modifications. NOTE: the vendor reportedly sent "a reply denying that any of the finding was a security vulnerability."
CVE-2025-21500 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.40 and prior, 8.4.3 and prior and 9.1.0 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 6.5 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).
CVE-2023-31439 ↗azl3 systemd-bootstrap 250.3-17 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableAn issue was discovered in systemd 253. An attacker can modify the contents of past events in a sealed log file and then adjust the file such that checking the integrity shows no error, despite modifications. NOTE: the vendor reportedly sent "a reply denying that any of the finding was a security vulnerability."
CVE-2025-21536 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2025-21504 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2025-21501 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.40 and prior, 8.4.3 and prior and 9.1.0 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 6.5 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).
CVE-2026-63144 ↗azl3 rubygem-elasticsearch 8.9.0-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailable
CVE-2023-46673 ↗azl3 rubygem-elasticsearch 8.9.0-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailable
CVE-2024-21177 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.37 and prior and 8.4.0 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 6.5 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).
CVE-2023-31419 ↗azl3 rubygem-elasticsearch 8.9.0-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableElasticsearch StackOverflow vulnerability
CVE-2024-20984 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVulnerability in the MySQL Server product of Oracle MySQL (component: Server : Security : Firewall). Supported versions that are affected are 8.0.35 and prior and 8.2.0 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.4 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2026-66337 ↗azl3 libsoup 3.4.4-16 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableLibsoup: libsoup: heap buffer over-read via integer underflow in soup_filter_input_stream_read_until()
CVE-2023-31417 ↗azl3 rubygem-elasticsearch 8.9.0-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableElasticsearch Insertion of sensitive information in audit logs
CVE-2025-21493 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions that are affected are 8.4.3 and prior and 9.1.0 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.4 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2026-66339 ↗azl3 libsoup 3.4.4-16 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableLibsoup: libsoup: proxy credentials leak to destination server via proxy-authorization header in connect tunnels
CVE-2024-21137 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.35 and prior and 8.2.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2026-66338 ↗azl3 libsoup 3.4.4-16 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableLibsoup: libsoup: http request smuggling via permissive chunk-size parsing in soup_body_input_stream_read_chunked()
CVE-2025-21503 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.40 and prior, 8.4.3 and prior and 9.1.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2026-56391 ↗azl3 coreutils 9.4-7 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableOut‑of‑bounds Read in GNU coreutils
CVE-2025-21529 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Information Schema). Supported versions that are affected are 8.0.40 and prior, 8.4.3 and prior and 9.1.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2025-21555 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.40 and prior, 8.4.3 and prior and 9.1.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server as well as unauthorized update, insert or delete access to some of MySQL Server accessible data. CVSS 3.1 Base Score 5.5 (Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:H).
CVE-2026-58023 ↗azl3 thrift 0.15.0-6 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableApache Thrift: c_glib heap out-of-bounds read in transport leftover-bytes path
CVE-2025-46332 ↗azl3 gflags 2.2.2-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableInformation Disclosure via Flags override link
CVE-2024-21060 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Data Dictionary). Supported versions that are affected are 8.0.36 and prior and 8.3.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2022-46174 ↗azl3 erofs-utils 1.8.5-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableRace condition during concurrent TLS mounts in efs-utils
CVE-2024-21008 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.36 and prior and 8.3.0 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.4 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2025-21494 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where MySQL Server executes to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.1 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2020-14312 ↗azl3 dnsmasq 2.90-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableA flaw was found in the default configuration of dnsmasq, as shipped with Fedora versions prior to 31 and in all versions Red Hat Enterprise Linux, where it listens on any interface and accepts queries from addresses outside of its local subnet. In particular, the option `local-service` is not enabled. Running dnsmasq in this manner may inadvertently make it an open resolver accessible from any address on the internet. This flaw allows an attacker to conduct a Distributed Denial of Service (DDoS) against other systems.
CVE-2024-20976 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.35 and prior and 8.2.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2024-33522 ↗azl3 cni-plugins 1.4.0-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablePrivilege escalation in Calico CNI install binary
CVE-2026-64544 ↗azl3 kernel 6.6.144.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablecrypto: asymmetric_keys - fix OOB read in pefile_digest_pe_contents
CVE-2024-21047 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailable
CVE-2025-27789 ↗azl3 babel 2.15.0-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableInefficient RexExp complexity in generated code with .replace when transpiling named capturing groups
CVE-2025-21497 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.40 and prior, 8.4.3 and prior and 9.1.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server as well as unauthorized update, insert or delete access to some of MySQL Server accessible data. CVSS 3.1 Base Score 5.5 (Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:H).
CVE-2024-20998 ↗azl3 mysql 8.0.41-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.36 and prior and 8.3.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2023-39615 ↗azl3 libxml2 2.11.5-5 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableXmlsoft Libxml2 v2.11.0 was discovered to contain an out-of-bounds read via the xmlSAX2StartElement() function at /libxml2/SAX2.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via supplying a crafted XML file. NOTE: the vendor's position is that the product does not support the legacy SAX1 interface with custom callbacks; there is a crash even without crafted input.
CVE-2020-10685 ↗azl3 ansible 2.17.0-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableA flaw was found in Ansible Engine affecting Ansible Engine versions 2.7.x before 2.7.17 and 2.8.x before 2.8.11 and 2.9.x before 2.9.7 as well as Ansible Tower before and including versions 3.4.5 and 3.5.5 and 3.6.3 when using modules which decrypts vault files such as assemble, script, unarchive, win_copy, aws_s3 or copy modules. The temporary directory is created in /tmp leaves the s ts unencrypted. On Operating Systems which /tmp is not a tmpfs but part of the root partition, the directory is only cleared on boot and the decryp emains when the host is switched off. The system will be vulnerable when the system is not running. So decrypted data must be cleared as soon as possible and the data which normally is encrypted ble.

Cross-vendor patches

VendorCVESeverityProductFixed versionPatchAdvisory
Red HatCVE-2026-19079CVSS 4.4Red Hat Hardened Imagespolicycoreutils-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-15788CVSS 6.3Red Hat Hardened Imagesbuildah-0:1.45.0-2.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-15789CVSS 6.5Red Hat Hardened Imagesbuildah-0:1.45.0-2.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-31555CVSS 5.5Red Hat Enterprise Linux AppStream (v. 9)kernel-64k-debug-debuginfo-0:5.14.0-687.36.1.el9_8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-42502CVSS 6.1Red Hat Enterprise Linux AppStream EUS (v.9.6)grafana-0:10.2.6-22.el9_6.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-42502CVSS 6.1Red Hat Satellite 6.18registry.redhat.io/satellite/iop-vmaas-rhel9@sha256:1fdcc43ad509f20876adc6e985a1246950649ee3c3cd1dbd48cef577e0c650a9_amd64Patch ↗Advisory ↗
Red HatCVE-2026-52977CVSS 5.5Red Hat Enterprise Linux AppStream (v. 9)kernel-64k-debug-debuginfo-0:5.14.0-687.36.1.el9_8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-11986CVSS 4.9Red Hat build of Keycloak 26.6.5Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-11986CVSS 4.9Red Hat build of Keycloak 26.6rhbk/keycloak-operator-bundle@sha256:06ee2f18c4218c9a095360efa2023b2080aa81e04a08363dbcb1d14de85a5d0d_amd64Patch ↗Advisory ↗
Red HatCVE-2026-14209CVSS 4.3Red Hat build of Keycloak 26.4.14Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-14209CVSS 4.3Red Hat build of Keycloak 26.4rhbk/keycloak-operator-bundle@sha256:2c25b3107aee4f1fc25530f099fa683ba3077c185d581e7caa777c4410383085_amd64Patch ↗Advisory ↗
Red HatCVE-2026-14209CVSS 4.3Red Hat build of Keycloak 26.6.5Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-14209CVSS 4.3Red Hat build of Keycloak 26.6rhbk/keycloak-operator-bundle@sha256:06ee2f18c4218c9a095360efa2023b2080aa81e04a08363dbcb1d14de85a5d0d_amd64Patch ↗Advisory ↗
Red HatCVE-2026-14614CVSS 5.4Red Hat build of Keycloak 26.4.14Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-14614CVSS 5.4Red Hat build of Keycloak 26.4rhbk/keycloak-operator-bundle@sha256:2c25b3107aee4f1fc25530f099fa683ba3077c185d581e7caa777c4410383085_amd64Patch ↗Advisory ↗
Red HatCVE-2026-14614CVSS 5.4Red Hat build of Keycloak 26.6.5Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-14614CVSS 5.4Red Hat build of Keycloak 26.6rhbk/keycloak-operator-bundle@sha256:06ee2f18c4218c9a095360efa2023b2080aa81e04a08363dbcb1d14de85a5d0d_amd64Patch ↗Advisory ↗
Red HatCVE-2026-14615CVSS 4.3Red Hat build of Keycloak 26.4.14Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-14615CVSS 4.3Red Hat build of Keycloak 26.4rhbk/keycloak-operator-bundle@sha256:2c25b3107aee4f1fc25530f099fa683ba3077c185d581e7caa777c4410383085_amd64Patch ↗Advisory ↗
Red HatCVE-2026-14615CVSS 4.3Red Hat build of Keycloak 26.6.5Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-14615CVSS 4.3Red Hat build of Keycloak 26.6rhbk/keycloak-operator-bundle@sha256:06ee2f18c4218c9a095360efa2023b2080aa81e04a08363dbcb1d14de85a5d0d_amd64Patch ↗Advisory ↗
Red HatCVE-2026-15927CVSS 6.8Red Hat Quay 3.9registry.redhat.io/quay/quay-rhel8@sha256:427604f87ce3221aee9c8c115a7b80a15aa9b3f6baaa139218b5d410a4fb45cb_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-16071CVSS 5.4Red Hat build of Keycloak 26.4.14Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-16071CVSS 5.4Red Hat build of Keycloak 26.4rhbk/keycloak-operator-bundle@sha256:2c25b3107aee4f1fc25530f099fa683ba3077c185d581e7caa777c4410383085_amd64Patch ↗Advisory ↗
Red HatCVE-2026-16071CVSS 5.4Red Hat build of Keycloak 26.6.5Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-16071CVSS 5.4Red Hat build of Keycloak 26.6rhbk/keycloak-operator-bundle@sha256:06ee2f18c4218c9a095360efa2023b2080aa81e04a08363dbcb1d14de85a5d0d_amd64Patch ↗Advisory ↗
Red HatCVE-2026-16100CVSS 6.5Red Hat build of Keycloak 26.6.5Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-16100CVSS 6.5Red Hat build of Keycloak 26.6rhbk/keycloak-operator-bundle@sha256:06ee2f18c4218c9a095360efa2023b2080aa81e04a08363dbcb1d14de85a5d0d_amd64Patch ↗Advisory ↗
Red HatCVE-2026-18508CVSS 4.4Red Hat Hardened Imagestar-0:1.35-9.2.hum1@aarch64Patch ↗Advisory ↗
CiscoCVE-2026-20028CVSS 5.0Cisco Terminal Services AgentTSAgent.1Patch ↗Advisory ↗
CiscoCVE-2026-20198CVSS 4.8Cisco UCS S-Series Storage Servers3.5Patch ↗Advisory ↗
CiscoCVE-2026-20288CVSS 6.5Cisco UCS S-Series Storage Servers3.2Patch ↗Advisory ↗
CiscoCVE-2026-20289CVSS 5.7Cisco Room SeriesRoomOS.10Patch ↗Advisory ↗
CiscoCVE-2026-20294CVSS 6.5Cisco Catalyst SD-WAN17.2Patch ↗Advisory ↗
CiscoCVE-2026-20308CVSS 4.3Not reported16.9Patch ↗Advisory ↗
CiscoCVE-2026-20311CVSS 6.3Not reported17.3Patch ↗Advisory ↗
Red HatCVE-2026-27820CVSS 5.6Red Hat Enterprise Linux AppStream (v. 8)ruby-0:3.3.12-8.module+el8.10.0+24567+c4e5368e.aarch64::ruby:3.3Patch ↗Advisory ↗
Red HatCVE-2026-27820CVSS 5.6Red Hat Enterprise Linux AppStream (v. 10)ruby4.0-0:4.0.6-36.el10_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-27820CVSS 5.6Red Hat Enterprise Linux AppStream (v. 10)ruby-0:3.3.12-14.el10_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-27820CVSS 5.6Red Hat Enterprise Linux AppStream (v. 9)ruby-0:4.0.6-34.module+el9.8.0+24564+e55418dc.aarch64::ruby:4.0Patch ↗Advisory ↗
Red HatCVE-2026-27820CVSS 5.6Red Hat Enterprise Linux AppStream (v. 9)ruby-0:3.3.12-8.module+el9.8.0+24568+2bbebe96.aarch64::ruby:3.3Patch ↗Advisory ↗
Red HatCVE-2026-42256CVSS 6.5Red Hat Enterprise Linux AppStream (v. 8)ruby-0:3.3.12-8.module+el8.10.0+24567+c4e5368e.aarch64::ruby:3.3Patch ↗Advisory ↗
Red HatCVE-2026-42256CVSS 6.5Red Hat Enterprise Linux AppStream (v. 10)ruby4.0-0:4.0.6-36.el10_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-42256CVSS 6.5Red Hat Enterprise Linux AppStream (v. 10)ruby-0:3.3.12-14.el10_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-42256CVSS 6.5Red Hat Enterprise Linux AppStream (v. 9)ruby-0:4.0.6-34.module+el9.8.0+24564+e55418dc.aarch64::ruby:4.0Patch ↗Advisory ↗
Red HatCVE-2026-42256CVSS 6.5Red Hat Enterprise Linux AppStream (v. 9)ruby-0:3.3.12-8.module+el9.8.0+24568+2bbebe96.aarch64::ruby:3.3Patch ↗Advisory ↗
Red HatCVE-2026-42257CVSS 6.1Red Hat Enterprise Linux AppStream (v. 8)ruby-0:3.3.12-8.module+el8.10.0+24567+c4e5368e.aarch64::ruby:3.3Patch ↗Advisory ↗
Red HatCVE-2026-42257CVSS 6.1Red Hat Enterprise Linux AppStream (v. 10)ruby4.0-0:4.0.6-36.el10_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-42257CVSS 6.1Red Hat Enterprise Linux AppStream (v. 10)ruby-0:3.3.12-14.el10_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-42257CVSS 6.1Red Hat Enterprise Linux AppStream (v. 9)ruby-0:4.0.6-34.module+el9.8.0+24564+e55418dc.aarch64::ruby:4.0Patch ↗Advisory ↗
Red HatCVE-2026-42257CVSS 6.1Red Hat Enterprise Linux AppStream (v. 9)ruby-0:3.3.12-8.module+el9.8.0+24568+2bbebe96.aarch64::ruby:3.3Patch ↗Advisory ↗
Red HatCVE-2026-43951CVSS 6.5Red Hat Enterprise Linux AppStream EUS (v. 10.0)mod_http2-0:2.0.29-2.el10_0.2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-43951CVSS 6.5Red Hat Enterprise Linux AppStream EUS (v.9.6)mod_http2-0:2.0.26-4.el9_6.2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-44000CVSS 6.5Red Hat Ansible Automation Platform 2.1registry.redhat.io/ansible-automation-platform/automation-portal@sha256:a85a548cb563a32be76c6e7e015fd57d340e068e321bf34b060d9eb901c33c4d_amd64Patch ↗Advisory ↗
Red HatCVE-2026-44002CVSS 5.8Red Hat Ansible Automation Platform 2.1registry.redhat.io/ansible-automation-platform/automation-portal@sha256:a85a548cb563a32be76c6e7e015fd57d340e068e321bf34b060d9eb901c33c4d_amd64Patch ↗Advisory ↗
Red HatCVE-2026-44003CVSS 5.3Red Hat Ansible Automation Platform 2.1registry.redhat.io/ansible-automation-platform/automation-portal@sha256:a85a548cb563a32be76c6e7e015fd57d340e068e321bf34b060d9eb901c33c4d_amd64Patch ↗Advisory ↗
Red HatCVE-2026-4629CVSS 6.5Red Hat build of Keycloak 26.4.14Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-4629CVSS 6.5Red Hat build of Keycloak 26.4rhbk/keycloak-operator-bundle@sha256:2c25b3107aee4f1fc25530f099fa683ba3077c185d581e7caa777c4410383085_amd64Patch ↗Advisory ↗
Red HatCVE-2026-47240CVSS 6.1Red Hat Enterprise Linux AppStream (v. 8)ruby-0:3.3.12-8.module+el8.10.0+24567+c4e5368e.aarch64::ruby:3.3Patch ↗Advisory ↗
Red HatCVE-2026-47240CVSS 6.1Red Hat Enterprise Linux AppStream (v. 10)ruby4.0-0:4.0.6-36.el10_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-47240CVSS 6.1Red Hat Enterprise Linux AppStream (v. 10)ruby-0:3.3.12-14.el10_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-47240CVSS 6.1Red Hat Enterprise Linux AppStream (v. 9)ruby-0:4.0.6-34.module+el9.8.0+24564+e55418dc.aarch64::ruby:4.0Patch ↗Advisory ↗
Red HatCVE-2026-47240CVSS 6.1Red Hat Enterprise Linux AppStream (v. 9)ruby-0:3.3.12-8.module+el9.8.0+24568+2bbebe96.aarch64::ruby:3.3Patch ↗Advisory ↗
Red HatCVE-2026-47241CVSS 5.9Red Hat Enterprise Linux AppStream (v. 8)ruby-0:3.3.12-8.module+el8.10.0+24567+c4e5368e.aarch64::ruby:3.3Patch ↗Advisory ↗
Red HatCVE-2026-47241CVSS 5.9Red Hat Enterprise Linux AppStream (v. 10)ruby4.0-0:4.0.6-36.el10_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-47241CVSS 5.9Red Hat Enterprise Linux AppStream (v. 10)ruby-0:3.3.12-14.el10_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-47241CVSS 5.9Red Hat Enterprise Linux AppStream (v. 9)ruby-0:4.0.6-34.module+el9.8.0+24564+e55418dc.aarch64::ruby:4.0Patch ↗Advisory ↗
Red HatCVE-2026-47241CVSS 5.9Red Hat Enterprise Linux AppStream (v. 9)ruby-0:3.3.12-8.module+el9.8.0+24568+2bbebe96.aarch64::ruby:3.3Patch ↗Advisory ↗
Red HatCVE-2026-67315CVSS 5.8Red Hat Hardened Imagesgrafana13.1-0:13.1.1-0.5.2.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-67317CVSS 5.3Red Hat Hardened Imagesgrafana13.1-0:13.1.1-0.5.2.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-67318CVSS 5.3Red Hat Hardened Imagesgrafana13.1-0:13.1.1-0.5.2.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-69153CVSS 5.3Red Hat Hardened Imagesgrafana13.1-0:13.1.1-0.5.2.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-69198CVSS 5.3Red Hat Hardened Imagesgrafana13.1-0:13.1.1-0.5.2.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-9689CVSS 4.2Red Hat build of Keycloak 26.4.14Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-9689CVSS 4.2Red Hat build of Keycloak 26.4rhbk/keycloak-operator-bundle@sha256:2c25b3107aee4f1fc25530f099fa683ba3077c185d581e7caa777c4410383085_amd64Patch ↗Advisory ↗
Red HatCVE-2026-9689CVSS 4.2Red Hat build of Keycloak 26.6.5Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-9689CVSS 4.2Red Hat build of Keycloak 26.6rhbk/keycloak-operator-bundle@sha256:06ee2f18c4218c9a095360efa2023b2080aa81e04a08363dbcb1d14de85a5d0d_amd64Patch ↗Advisory ↗
Red HatCVE-2026-9793CVSS 5.9Red Hat build of Keycloak 26.4.14Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-9793CVSS 5.9Red Hat build of Keycloak 26.4rhbk/keycloak-operator-bundle@sha256:2c25b3107aee4f1fc25530f099fa683ba3077c185d581e7caa777c4410383085_amd64Patch ↗Advisory ↗
Red HatCVE-2026-9793CVSS 5.9Red Hat build of Keycloak 26.6.5Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-9793CVSS 5.9Red Hat build of Keycloak 26.6rhbk/keycloak-operator-bundle@sha256:06ee2f18c4218c9a095360efa2023b2080aa81e04a08363dbcb1d14de85a5d0d_amd64Patch ↗Advisory ↗
Red HatCVE-2026-9798CVSS 4.3Red Hat build of Keycloak 26.4.14Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-9798CVSS 4.3Red Hat build of Keycloak 26.4rhbk/keycloak-operator-bundle@sha256:2c25b3107aee4f1fc25530f099fa683ba3077c185d581e7caa777c4410383085_amd64Patch ↗Advisory ↗
Red HatCVE-2026-9798CVSS 4.3Red Hat build of Keycloak 26.6.5Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-9798CVSS 4.3Red Hat build of Keycloak 26.6rhbk/keycloak-operator-bundle@sha256:06ee2f18c4218c9a095360efa2023b2080aa81e04a08363dbcb1d14de85a5d0d_amd64Patch ↗Advisory ↗
Red HatCVE-2025-40909CVSS 5.9Red Hat Enterprise Linux AppStream E4S (v.8.8)perl-4:5.32.1-472.module+el8.8.0+24404+b3ad2701.1.ppc64le::perl:5.32Patch ↗Advisory ↗
Red HatCVE-2025-5278CVSS 4.4Red Hat OpenShift distributed tracing 3.10.2registry.redhat.io/rhosdt/opentelemetry-collector-rhel9@sha256:03fd3e2921ac7557fd5aa6b4d0714f9ee634efd1259b789638d478978fcd4f39_s390xPatch ↗Advisory ↗
Red HatCVE-2025-68214CVSS 5.5Red Hat Enterprise Linux AppStream (v. 9)kernel-64k-debug-debuginfo-0:5.14.0-687.34.1.el9_8.aarch64Patch ↗Advisory ↗
Red HatCVE-2025-68214CVSS 5.5Red Hat Enterprise Linux AppStream (v. 10)kernel-64k-debug-debuginfo-0:6.12.0-211.43.1.el10_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2025-9230CVSS 5.6Red Hat Satellite 6.17 for RHEL 9openvox-agent-0:8.24.1-3.el9sat.srcPatch ↗Advisory ↗
Red HatCVE-2025-9230CVSS 5.6Red Hat Satellite 6.16 for RHEL 8openvox-agent-0:8.24.1-3.el8sat.srcPatch ↗Advisory ↗
Red HatCVE-2025-9230CVSS 5.6Red Hat Satellite 6.18 for RHEL 9openvox-agent-0:8.24.1-3.el9sat.srcPatch ↗Advisory ↗
Red HatCVE-2026-12515CVSS 4.3Red Hat Satellite 6.19 for RHEL 9rubygem-katello-0:4.20.0.7-1.el9sat.noarchPatch ↗Advisory ↗
Red HatCVE-2026-12515CVSS 4.3Red Hat Satellite 6.17 for RHEL 9rubygem-katello-0:4.16.0.18-1.el9sat.noarchPatch ↗Advisory ↗
Red HatCVE-2026-12515CVSS 4.3Red Hat Satellite 6.16 for RHEL 8rubygem-katello-0:4.14.0.21-1.el8sat.noarchPatch ↗Advisory ↗
Red HatCVE-2026-12515CVSS 4.3Red Hat Satellite 6.18 for RHEL 9rubygem-katello-0:4.18.0.15-1.el9sat.noarchPatch ↗Advisory ↗
Red HatCVE-2026-14355CVSS 5.6Red Hat Enterprise Linux AppStream (v. 10)php8.4-0:8.4.23-1.el10_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-23199CVSS 5.5Red Hat Enterprise Linux AppStream (v. 10)kernel-64k-debug-debuginfo-0:6.12.0-211.43.1.el10_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-39823CVSS 5.4Red Hat OpenShift distributed tracing 3.10.2registry.redhat.io/rhosdt/opentelemetry-rhel9-operator@sha256:03af0af704f201e97cc36cb588092366e613a26794d25ec76d805f0de00fbb77_amd64Patch ↗Advisory ↗
Red HatCVE-2026-42507CVSS 5.3Red Hat OpenShift distributed tracing 3.10.2registry.redhat.io/rhosdt/opentelemetry-collector-rhel9@sha256:03fd3e2921ac7557fd5aa6b4d0714f9ee634efd1259b789638d478978fcd4f39_s390xPatch ↗Advisory ↗
Red HatCVE-2026-45536CVSS 4.0Red Hat JBoss Enterprise Application Platform 8.1Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-45673CVSS 6.8Red Hat JBoss Enterprise Application Platform 8.1Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-46917CVSS 5.3Red Hat Hardened Imagesjava-21-openjdk-portable-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-46917CVSS 5.3Red Hat Hardened Imagesjava-21-openjdk-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-46968CVSS 5.9Red Hat Hardened Imagesjava-21-openjdk-portable-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-46968CVSS 5.9Red Hat Hardened Imagesjava-21-openjdk-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-47021CVSS 5.3Red Hat Hardened Imagesjava-21-openjdk-portable-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-47021CVSS 5.3Red Hat Hardened Imagesjava-21-openjdk-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-47027CVSS 5.3Red Hat Hardened Imagesjava-21-openjdk-portable-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-47027CVSS 5.3Red Hat Hardened Imagesjava-21-openjdk-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-47244CVSS 5.3Red Hat JBoss Enterprise Application Platform 8.1Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-48990CVSS 5.3Red Hat Ansible Automation Platform 2.7registry.redhat.io/ansible-automation-platform-27/lightspeed-chatbot-rhel9@sha256:500c52d19ddfb4cd15e4ba0c94268250d5d83442c2c67381b3cb9bb7613c23d4_arm64Patch ↗Advisory ↗
Red HatCVE-2026-48990CVSS 5.3Red Hat Ansible Automation Platform 2.6registry.redhat.io/ansible-automation-platform-26/lightspeed-chatbot-rhel9@sha256:1a440c21e1d882875a73201b3135957387f0d7846678b22b52732e984931099a_s390xPatch ↗Advisory ↗
Red HatCVE-2026-50020CVSS 5.3Red Hat JBoss Enterprise Application Platform 8.1Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-50560CVSS 5.3Red Hat JBoss Enterprise Application Platform 8.1Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-57236CVSS 6.5Red Hat Satellite 6.19 for RHEL 9rubygem-nokogiri-0:1.17.2-3.el9sat.srcPatch ↗Advisory ↗

Glossary