CYBERSECURITYTRACKER
TRACKING7,931 stories in this site build1,728 vulnerability news stories in this site build
Vulnerabilities

August 2026 vulnerabilities

Browse this month's returned vendor patches and exploitation signals, with filtering and stable pages for browsing without JavaScript.

Microsoft reports 1 vulnerability with exploitation detected in the wild this month. This defender-focused view covers 6,845 vulnerabilities across 17,509 returned patch records from 5 vendors. Filter the complete month, or browse the static page trail without JavaScript.

17,509all patch recordsClear filters2,377criticalShow these records1Microsoft exploitation detectedShow these records3Microsoft in the Known Exploited Vulnerabilities catalogShow these records14,331tracked hereShow these records
Patch records
Returned Microsoft and cross-vendor release records. One Common Vulnerabilities and Exposures (CVE) identifier can appear in more than one record.
Tracked here
Records joined to a vulnerability record in this tracker.
Defender priority
Sorts Microsoft exploitation status, Cybersecurity and Infrastructure Security Agency (CISA) Known Exploited Vulnerabilities (KEV) catalog status, severity, and tracker coverage first.
More likely
Microsoft's Exploitability Index rating that exploitation is more likely. It is not a claim that exploitation was detected.

Narrow the complete month

Filters use every patch record in this month, including records on later static pages.

Clear all

My Stack only keeps records whose vendor you have pinned. Pins are the vendors you added to My Stack on the home page. Your pin list is saved only in this browser. Shared view and feed requests include the selected vendor names in their URLs. Pins never change what the tracker collects or scores.

Microsoft-only signal filters exclude records without Microsoft signal data as unknown, report them separately, and never count them as absent. “Tracked here” covers both Microsoft and cross-vendor records.

Loading the complete-month filter index…

An Exploit Prediction Scoring System (EPSS) percentage is the global 30-day exploitation probability in the wild, not specific to you. Do not read it as a complete risk score or as evidence about your environment or impact.

Page 82 of 88 · records 16,201 to 16,400 of 17,509

Microsoft Security Response Center

CVEDateProductMSRC severityOut-of-bandEPSSTitle
CVE-2026-64297 ↗azl3 kernel 6.6.144.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablemodule: decompress: check return value of module_extend_max_pages()
CVE-2026-64486 ↗azl3 kernel 6.6.144.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableALSA: cmipci: check snd_ctl_new1() return value
CVE-2026-64331 ↗azl3 kernel 6.6.144.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableusbip: vudc: fix NULL deref in vep_dequeue()
CVE-2026-64493 ↗azl3 kernel 6.6.144.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableiio: pressure: mpl115: fix runtime PM leak on read error
CVE-2026-64465 ↗azl3 kernel 6.6.144.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableusb: xhci: Fix sleep in atomic context in xhci_free_streams()
CVE-2026-64458 ↗azl3 kernel 6.6.144.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablemm/damon/ops-common: handle extreme intervals in damon_hot_score()
CVE-2026-64511 ↗azl3 kernel 6.6.144.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableACPI: NFIT: core: Fix possible NULL pointer dereference
CVE-2026-64275 ↗azl3 kernel 6.6.144.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableInput: elan_i2c - prevent division by zero and arithmetic underflow
CVE-2026-64332 ↗azl3 kernel 6.6.144.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableUSB: ulpi: fix memory leak on registration failure
CVE-2026-64370 ↗azl3 kernel 6.6.144.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableposix-cpu-timers: Fix pid refcount leak in do_cpu_nanosleep() error path
CVE-2026-64373 ↗azl3 kernel 6.6.144.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablecpufreq: Fix hotplug-suspend race during reboot
CVE-2026-64371 ↗azl3 kernel 6.6.144.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableproc: protect ptrace_may_access() with exec_update_lock (part 1)
CVE-2026-64487 ↗azl3 kernel 6.6.144.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableALSA: caiaq: fix out-of-bounds read in the Traktor Kontrol S4 input parser
CVE-2026-64345 ↗azl3 kernel 6.6.144.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableusb: gadget: f_printer: take kref only for successful open
CVE-2026-64409 ↗azl3 kernel 6.6.144.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableBluetooth: btmtksdio: fix infinite loop in btmtksdio_txrx_work()
CVE-2026-64306 ↗azl3 kernel 6.6.144.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablecrypto: drbg - Fix returning success on failure in CTR_DRBG
CVE-2026-64338 ↗azl3 kernel 6.6.144.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableUSB: misc: uss720: unregister parport on probe failure
CVE-2026-64507 ↗azl3 kernel 6.6.144.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablex86/bugs: Enable IBPB flush on BPF JIT allocation
CVE-2026-64525 ↗azl3 kernel 6.6.144.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablexfrm: move policy_bydst RCU sync from per-netns .exit to .pre_exit
CVE-2026-64425 ↗azl3 kernel 6.6.144.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableio_uring/io-wq: re-check IO_WQ_BIT_EXIT for each linked work item
CVE-2026-64360 ↗azl3 kernel 6.6.144.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablehfs/hfsplus: zero-initialize buffer in hfs_bnode_read
CVE-2026-64462 ↗azl3 kernel 6.6.144.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablePCI: altera: Fix resource leaks on probe failure
CVE-2026-64489 ↗azl3 kernel 6.6.144.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableALSA: ymfpci: check snd_ctl_new1() return value
CVE-2026-64474 ↗azl3 kernel 6.6.144.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablevfio: prevent infinite loop in vfio_mig_get_next_state() on blocked arc
CVE-2026-64326 ↗azl3 kernel 6.6.144.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableblock: skip sync_blockdev() on surprise removal in bdev_mark_dead()
CVE-2026-64482 ↗azl3 kernel 6.6.144.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableALSA: gus: check snd_ctl_new1() return value
CVE-2026-64350 ↗azl3 kernel 6.6.144.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableusb: cdnsp: fix stream context array leak in cdnsp_alloc_stream_info()
CVE-2026-64488 ↗azl3 kernel 6.6.144.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableALSA: aoa: check snd_ctl_new1() return value
CVE-2026-64351 ↗azl3 kernel 6.6.144.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenet: usb: kalmia: bound RX frame length in kalmia_rx_fixup()
CVE-2026-64429 ↗azl3 kernel 6.6.144.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablegpio: eic-sprd: use raw_spinlock_t in the irq startup path
CVE-2026-64250 ↗azl3 kernel 6.6.144.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableLoongArch: Report dying CPU to RCU in stop_this_cpu()
CVE-2026-64241 ↗azl3 kernel 6.6.144.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablegpio: rockchip: teardown bugs and resource leaks
CVE-2026-64248 ↗azl3 kernel 6.6.144.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableMIPS: smp: report dying CPU to RCU in stop_this_cpu()
CVE-2026-64480 ↗azl3 kernel 6.6.144.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableALSA: ice1712: check snd_ctl_new1() return value
CVE-2026-47143 ↗azl3 rust 1.90.0-9 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableCapstone has a NULL Pointer Dereference with 3DNow! opcodes
CVE-2026-16615 ↗azl3 rest 0.9.0-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableLibrest: weak random number generation in pkce implementation
CVE-2026-46917 ↗azl3 python-tensorboard 2.16.2-6 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JSSE). Supported versions that are affected are Oracle Java SE: 11.0.31, 17.0.19, 21.0.11, 25.0.3, 26.0.1; Oracle GraalVM for JDK: 17.0.19 and 21.0.11; Oracle GraalVM Enterprise Edition: 21.3.18. Easily exploitable vulnerability allows unauthenticated attacker with network access via TLS to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition. Note: This vulnerability can only be exploited by supplying data to APIs in the specified Component without using Untrusted Java Web Start applications or Untrusted Java applets, such as through a web service. CVSS 3.1 Base Score 5.3 (Availability impacts). CVSS Vector: (CVSS:3.1
CVE-2026-60147 ↗azl3 python-tensorboard 2.16.2-6 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableVulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Security). Supported versions that are affected are Oracle Java SE: 8u491, 8u491-perf, 11.0.31, 17.0.19, 21.0.11, 25.0.3, 26.0.1; Oracle GraalVM for JDK: 17.0.19 and 21.0.11; Oracle GraalVM Enterprise Edition: 21.3.18. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data as well as unauthorized read access to a subset of Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability can be exploited by using APIs in the specified Component, e.g., through a web
CVE-2026-59850 ↗azl3 libssh 0.10.6-8 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableLibssh: libssh: use-after-free via data callbacks on closed channels
CVE-2026-59844 ↗azl3 libssh 0.10.6-8 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableLibssh: libssh: denial of service via oversized sftp read length
CVE-2026-59845 ↗azl3 libssh 0.10.6-8 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableLibssh: libssh: denial of service via unchecked proxycommand fork() failure
CVE-2026-59847 ↗azl3 libssh 0.10.6-8 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableLibssh: libssh: integrity downgrade via openssl aes-gcm tag verification
CVE-2026-59843 ↗azl3 libssh 0.10.6-8 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableLibssh: libssh: denial of service via zero advertised channel packet size
CVE-2026-59848 ↗azl3 libssh 0.10.6-8 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableLibssh: libssh: denial of service via sftp responses with unknown request ids
CVE-2026-10723 ↗azl3 bind 9.20.23-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableIncorrect acceptance of NSEC3 records
CVE-2026-10822 ↗azl3 bind 9.20.23-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableKey Record using PRIVATEDNS algorithm may lead to unexpected exit
CVE-2026-44210 ↗azl3 kata-containers-cc 3.15.0.aks0-15 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableKata Containers have VM Escape via virtiofsd Argument Injection through Default-Enabled Pod Annotations
CVE-2025-5278 ↗azl3 coreutils 9.4-6 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableCoreutils: heap buffer under-read in gnu coreutils sort via key specification
CVE-2026-59677 ↗azl3 checkpolicy 3.6-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableProcess Kill Attack Vector in killall() in seunshare
CVE-2026-59676 ↗azl3 checkpolicy 3.6-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableLocal File Deletion Attack Vector in rm_rf() in seunshare
CVE-2026-48525 ↗azl3 python-jwt 2.8.0-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablePyJWT: Unauthenticated DoS via unbounded Base64URL decoding of unused payload segment in b64=false detached JWS
CVE-2026-48522 ↗azl3 python-jwt 2.8.0-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablePyJWKClient: missing scheme allowlist enables SSRF + token forgery via file://, ftp://, data: schemes
CVE-2026-42769 ↗azl3 nodejs 24.14.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableTrust-Anchor Substitution via cert/issuer Typo in CMP rootCaKeyUpdate
CVE-2026-42767 ↗azl3 kata-containers 3.32.0.kata0-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableNULL Pointer Dereference in CRMF EncryptedValue Decryption
CVE-2026-42766 ↗azl3 kata-containers 3.32.0.kata0-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablePossible NULL Dereference in Password-Based CMS Decryption
CVE-2026-45446 ↗azl3 kata-containers 3.32.0.kata0-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableIncorrect Tag Processing for Empty Messages in AES-GCM-SIV and AES-SIV modes
CVE-2026-44839 ↗azl3 rabbitmq-server 3.13.7-6 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableRabbitMQ: Unsanitized vhost names allow for XSS in management UI
CVE-2026-46147 ↗azl3 kernel 6.6.145.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableKVM: arm64: Fix pin leak and publication ordering in __pkvm_init_vcpu()
CVE-2026-46153 ↗azl3 kernel 6.6.139.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailable8021q: delete cleared egress QoS mappings
CVE-2026-46171 ↗azl3 kernel 6.6.139.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableriscv: kvm: fix vector context allocation leak
CVE-2026-46200 ↗azl3 kernel 6.6.139.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablespi: mpc52xx: fix controller deregistration
CVE-2026-45963 ↗azl3 kernel 6.6.143.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableASoC: nau8821: Cancel delayed work on component remove
CVE-2026-45934 ↗azl3 kernel 6.6.143.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablebtrfs: fix EEXIST abort due to non-consecutive gaps in chunk allocation
CVE-2026-46014 ↗azl3 kernel 6.6.139.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableKVM: SVM: Add missing save/restore handling of LBR MSRs
CVE-2026-45949 ↗azl3 kernel 6.6.139.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablehwrng: core - use RCU and work_struct to fix race condition
CVE-2026-46032 ↗azl3 kernel 6.6.144.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableKVM: nSVM: Triple fault if restore host CR3 fails on nested #VMEXIT
CVE-2026-46017 ↗azl3 kernel 6.6.139.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablemm: fix deferred split queue races during migration
CVE-2026-45897 ↗azl3 kernel 6.6.139.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenetfilter: nft_counter: serialize reset with spinlock
CVE-2026-45940 ↗azl3 kernel 6.6.139.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenet: stmmac: fix oops when split header is enabled
CVE-2026-45961 ↗azl3 kernel 6.6.143.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablegfs2: fix memory leaks in gfs2_fill_super error path
CVE-2026-45855 ↗azl3 kernel 6.6.144.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableata: libata-scsi: avoid Non-NCQ command starvation
CVE-2026-46066 ↗azl3 kernel 6.6.139.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableceph: fix num_ops off-by-one when crypto allocation fails
CVE-2026-45901 ↗azl3 kernel 6.6.139.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenetfilter: nf_tables: revert commit_mutex usage in reset path
CVE-2026-46059 ↗azl3 kernel 6.6.143.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableKVM: nSVM: Always use NextRIP as vmcb02's NextRIP after first L2 VMRUN
CVE-2026-46071 ↗azl3 kernel 6.6.143.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableKVM: nSVM: Avoid clearing VMCB_LBR in vmcb12
CVE-2026-45973 ↗azl3 kernel 6.6.139.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableRDMA/mlx5: Fix UMR hang in LAG error state unload
CVE-2026-45917 ↗azl3 kernel 6.6.139.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableipvs: do not keep dest_dst if dev is going down
CVE-2026-45877 ↗azl3 kernel 6.6.145.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableHID: intel-ish-hid: fix NULL-ptr-deref in ishtp_bus_remove_all_clients
CVE-2025-68251 ↗azl3 kernel 6.6.143.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableerofs: avoid infinite loops due to corrupted subpage compact indexes
CVE-2025-38675 ↗azl3 kernel 6.6.139.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablexfrm: state: initialize state_ptrs earlier in xfrm_state_find
CVE-2026-31767 ↗azl3 kernel 6.6.138.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledrm/i915/dsi: Don't do DSC horizontal timing adjustments in command mode
CVE-2026-43308 ↗azl3 kernel 6.6.137.1-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablebtrfs: don't BUG() on unexpected delayed ref type in run_one_delayed_ref()
CVE-2026-43294 ↗azl3 kernel 6.6.137.1-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledrm: renesas: rz-du: mipi_dsi: fix kernel panic when rebooting for some panels
CVE-2026-43299 ↗azl3 kernel 6.6.137.1-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablebtrfs: do not ASSERT() when the fs flips RO inside btrfs_repair_io_failure()
CVE-2026-43344 ↗azl3 kernel 6.6.143.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableperf/x86/intel/uncore: Fix die ID init and look up bugs
CVE-2026-43416 ↗azl3 kernel 6.6.144.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablepowerpc, perf: Check that current->mm is alive before getting user callchain
CVE-2026-43309 ↗azl3 kernel 6.6.137.1-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablemd raid: fix hang when stopping arrays with metadata through dm-raid
CVE-2026-43338 ↗azl3 kernel 6.6.137.1-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablebtrfs: reserve enough transaction items for qgroup ioctls
CVE-2026-6383 ↗cbl2 kubevirt 0.59.0-38 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableKubevirt: kubevirt: unauthorized subresource access due to improper rbac evaluation
CVE-2026-33857 ↗cbl2 httpd 2.4.66-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableApache HTTP Server: Off-by-one OOB reads in AJP getter functions
CVE-2026-33007 ↗cbl2 httpd 2.4.66-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableApache HTTP Server: mod_authn_socache crash
CVE-2026-33006 ↗cbl2 httpd 2.4.66-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableApache HTTP Server: mod_auth_digest timing attack
CVE-2026-34032 ↗azl3 httpd 2.4.66-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableApache HTTP Server: mod_proxy_ajp: Heap Buffer Over-Read Due to Missing Null-Termination Check (ajp_msg_get_string)
CVE-2026-33523 ↗cbl2 httpd 2.4.66-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableApache HTTP Server: multiple modules: HTTP response splitting forwarding malicious status line
CVE-2026-3833 ↗cbl2 gnutls 3.7.11-6 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableGnutls: gnutls: policy bypass due to case-sensitive nameconstraints comparison
CVE-2026-43119 ↗azl3 kernel 6.6.137.1-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableBluetooth: hci_sync: annotate data-races around hdev->req_status
CVE-2026-43216 ↗azl3 kernel 6.6.137.1-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenet: Drop the lock in skb_may_tx_timestamp()
CVE-2026-43107 ↗azl3 kernel 6.6.141.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablexfrm: account XFRMA_IF_ID in aevent size calculation
CVE-2025-71289 ↗azl3 kernel 6.6.137.1-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablefs/ntfs3: handle attr_set_size() errors when truncating files
CVE-2026-43244 ↗azl3 kernel 6.6.137.1-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablekcm: fix zero-frag skb in frag_list on partial sendmsg error
CVE-2026-43118 ↗azl3 kernel 6.6.144.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablebtrfs: fix zero size inode with non-zero size after log replay
CVE-2025-71273 ↗azl3 kernel 6.6.137.1-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablewifi: rtw88: Use devm_kmemdup() in rtw_set_supported_band()
CVE-2025-71285 ↗azl3 kernel 6.6.144.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenet: qrtr: Drop the MHI auto_queue feature for IPCR DL channels
CVE-2026-43234 ↗azl3 kernel 6.6.143.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableteam: avoid NETDEV_CHANGEMTU event when unregistering slave
CVE-2026-43161 ↗azl3 kernel 6.6.143.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableiommu/vt-d: Skip dev-iotlb flush for inaccessible PCIe device without scalable mode
CVE-2026-43127 ↗azl3 kernel 6.6.137.1-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablentfs3: fix circular locking dependency in run_unpack_ex
CVE-2026-43131 ↗azl3 kernel 6.6.137.1-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledrm/amd/pm: Fix null pointer dereference issue
CVE-2026-6845 ↗cbl2 binutils 2.37-20 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableBinutils: binutils: denial of service via crafted elf file
CVE-2026-43036 ↗azl3 kernel 6.6.134.1-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenet: use skb_header_pointer() for TCPv4 GSO frag_off check
CVE-2026-43053 ↗azl3 kernel 6.6.134.1-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablexfs: close crash window in attr dabtree inactivation
CVE-2026-4948 ↗cbl2 firewalld 1.0.3-2 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableFirewalld: firewalld: local unprivileged user can modify firewall state due to d-bus setter mis-authorization
CVE-2026-31692 ↗azl3 kernel 6.6.134.1-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablertnetlink: add missing netlink_ns_capable() check for peer netns
CVE-2026-41607 ↗cbl2 ceph 16.2.10-11 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableApache Thrift: C++ JSON OOB read
CVE-2026-41606 ↗azl3 thrift 0.15.0-6 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableApache Thrift: c_glib dispatch stack overflow
CVE-2026-31499 ↗azl3 kernel 6.6.134.1-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableBluetooth: L2CAP: Fix deadlock in l2cap_conn_del()
CVE-2026-6238 ↗azl3 glibc 2.38-19 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableBuffer overread in ns_printrrf with corrupted RDATA field
CVE-2018-5407 ↗cbl2 shim-unsigned-aarch64 15-5 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableSimultaneous Multi-threading (SMT) in processors can enable local users to exploit software vulnerable to timing attacks via a side-channel timing attack on 'port contention'.
CVE-2026-31592 ↗azl3 kernel 6.6.134.1-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableKVM: SEV: Protect *all* of sev_mem_enc_register_region() with kvm->lock
CVE-2026-31677 ↗azl3 kernel 6.6.138.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablecrypto: af_alg - limit RX SG extraction by receive buffer budget
CVE-2026-31579 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablewireguard: device: use exit_rtnl callback instead of manual rtnl_lock in pre_exit
CVE-2026-31575 ↗cbl2 kernel 5.15.202.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailablemm/userfaultfd: fix hugetlb fault mutex hash calculation
CVE-2026-40255 ↗azl3 httpd 2.4.66-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailable@adonisjs/http-server has an Open Redirect vulnerability
CVE-2026-34446 ↗azl3 pytorch 2.2.2-12 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableONNX: Arbitrary File Read via ExternalData Hardlink Bypass in ONNX load
CVE-2026-23472 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableserial: core: fix infinite loop in handle_tx() for PORT_UNKNOWN
CVE-2026-23473 ↗azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableio_uring/poll: fix multishot recv missing EOF on wakeup race
CVE-2026-35549 ↗azl3 mariadb 10.11.16-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableAn issue was discovered in MariaDB Server before 11.4.10, 11.5.x through 11.8.x before 11.8.6, and 12.x before 12.2.2. If the caching_sha2_password authentication plugin is installed, and some user accounts are configured to use it, a large packet can crash the server because sha256_crypt_r uses alloca.
CVE-2026-35414 ↗azl3 openssh 9.8p1-5 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableOpenSSH before 10.3 mishandles the authorized_keys principals option in uncommon scenarios involving a principals list in conjunction with a Certificate Authority that makes certain use of comma characters.
CVE-2026-21717 ↗azl3 nodejs 20.14.0-15 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableA flaw in V8's string hashing mechanism causes integer-like strings to be hashed to their numeric value, making hash collisions trivially predictable. By crafting a request that causes many such collisions in V8's internal string table, an attacker can significantly degrade performance of the Node.js process. The most common trigger is any endpoint that calls `JSON.parse()` on attacker-controlled input, as JSON parsing automatically internalizes short strings into the affected hash table. This vulnerability affects **20.x, 22.x, 24.x, and 25.x**.
CVE-2026-4833 ↗azl3 rubygem-rdiscount 2.2.7.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableOrc discount Markdown markdown.c compile recursion
CVE-2026-4647 ↗cbl2 binutils 2.37-20 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableBinutils: out-of-bounds read in xcoff relocation processing in gnu binutils bfd library

Cross-vendor patches

VendorCVESeverityProductFixed versionPatchAdvisory
Red HatCVE-2026-57236CVSS 6.5Red Hat Satellite 6.17 for RHEL 9rubygem-nokogiri-0:1.15.7-3.el9sat.srcPatch ↗Advisory ↗
Red HatCVE-2026-57236CVSS 6.5Red Hat Satellite 6.16 for RHEL 8rubygem-nokogiri-0:1.15.7-3.el8sat.srcPatch ↗Advisory ↗
Red HatCVE-2026-57236CVSS 6.5Red Hat Satellite 6.18 for RHEL 9rubygem-nokogiri-0:1.15.7-3.el9sat.srcPatch ↗Advisory ↗
Red HatCVE-2026-60147CVSS 6.5Red Hat Hardened Imagesjava-21-openjdk-portable-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-60147CVSS 6.5Red Hat Hardened Imagesjava-21-openjdk-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-69153CVSS 5.3Red Hat Hardened Imagesprometheus3.5-0:3.5.5-0.7.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-69153CVSS 5.3Red Hat Hardened Imagesgrafana13.1-0:13.1.1-0.5.1.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-69153CVSS 5.3Red Hat Hardened Imagesprometheus3.13-0:3.13.2-0.2.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-69153CVSS 5.3Red Hat Hardened Imagesgrafana12.4-0:12.4.6-0.4.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-72815CVSS 6.5Red Hat Hardened Imagesprometheus3.13-0:3.13.2-0.2.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2023-52969CVSS 4.9Red Hat Enterprise Linux AppStream EUS (v. 10.0)mariadb-3:10.11.18-1.el10_0.aarch64Patch ↗Advisory ↗
Red HatCVE-2023-52970CVSS 4.9Red Hat Enterprise Linux AppStream EUS (v. 10.0)mariadb-3:10.11.18-1.el10_0.aarch64Patch ↗Advisory ↗
Red HatCVE-2023-52971CVSS 4.9Red Hat Enterprise Linux AppStream EUS (v. 10.0)mariadb-3:10.11.18-1.el10_0.aarch64Patch ↗Advisory ↗
Red HatCVE-2025-14087CVSS 5.6Red Hat Enterprise Linux CRB (v. 8)mingw-glib2-0:2.70.1-9.el8_10.srcPatch ↗Advisory ↗
Red HatCVE-2025-30693CVSS 5.5Red Hat Enterprise Linux AppStream EUS (v. 10.0)mariadb-3:10.11.18-1.el10_0.aarch64Patch ↗Advisory ↗
Red HatCVE-2025-30722CVSS 5.9Red Hat Enterprise Linux AppStream EUS (v. 10.0)mariadb-3:10.11.18-1.el10_0.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-13757CVSS 6.2Red Hat Enterprise Linux AppStream (v. 9)p11-kit-client-debuginfo-0:0.26.4-1.el9_8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-13757CVSS 6.2Red Hat Enterprise Linux AppStream (v. 10)p11-kit-client-debuginfo-0:0.26.4-1.el10_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-39817CVSS 5.9Red Hat Enterprise Linux AppStream EUS (v. 10.0)go-toolset-0:1.26.5-1.el10_0.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-39817CVSS 5.9Red Hat Enterprise Linux AppStream EUS (v.9.6)go-toolset-0:1.26.5-1.el9_6.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-39819CVSS 4.4Red Hat Enterprise Linux AppStream EUS (v. 10.0)go-toolset-0:1.26.5-1.el10_0.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-39819CVSS 4.4Red Hat Enterprise Linux AppStream EUS (v.9.6)go-toolset-0:1.26.5-1.el9_6.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-39823CVSS 5.4Red Hat Enterprise Linux AppStream EUS (v. 10.0)go-toolset-0:1.26.5-1.el10_0.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-39823CVSS 5.4Red Hat Enterprise Linux AppStream EUS (v.9.6)go-toolset-0:1.26.5-1.el9_6.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-39825CVSS 6.5Red Hat Enterprise Linux AppStream EUS (v. 10.0)go-toolset-0:1.26.5-1.el10_0.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-39825CVSS 6.5Red Hat Enterprise Linux AppStream EUS (v.9.6)go-toolset-0:1.26.5-1.el9_6.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-39826CVSS 5.4Red Hat Enterprise Linux AppStream EUS (v. 10.0)go-toolset-0:1.26.5-1.el10_0.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-39826CVSS 5.4Red Hat Enterprise Linux AppStream EUS (v.9.6)go-toolset-0:1.26.5-1.el9_6.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-40467CVSS 4.0Red Hat Hardened Imagesgawk-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-40468CVSS 4.4Red Hat Hardened Imagesgawk-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-40553CVSS 6.2Red Hat Hardened Imagesgawk-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-42507CVSS 5.3Red Hat Enterprise Linux AppStream EUS (v. 10.0)go-toolset-0:1.26.5-1.el10_0.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-42507CVSS 5.3Red Hat Enterprise Linux AppStream EUS (v.9.6)go-toolset-0:1.26.5-1.el9_6.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-42585CVSS 6.5Red Hat JBoss EAP 8.1 for RHEL 10eap8-eap-product-conf-parent-0:801.7.1-1.GA_redhat_00001.1.el10eap.noarchPatch ↗Advisory ↗
Red HatCVE-2026-42585CVSS 6.5Red Hat JBoss Enterprise Application Platform 8.1.7.GAio.netty.netty-codec-http-4.1.135.Final-redhat-00001.jarPatch ↗Advisory ↗
Red HatCVE-2026-44171CVSS 5.8Red Hat Enterprise Linux AppStream EUS (v. 10.0)mariadb-3:10.11.18-1.el10_0.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-47204CVSS 6.5Red Hat OpenShift Service Mesh 3.0registry.redhat.io/openshift-service-mesh/istio-proxyv2-rhel9@sha256:59fa6f408b345a25d7e9dd12cf79c5e56cae7a7c2d814ef32512346021485060_amd64Patch ↗Advisory ↗
Red HatCVE-2026-47204CVSS 6.5Red Hat OpenShift Service Mesh 3.1registry.redhat.io/openshift-service-mesh/istio-proxyv2-rhel9@sha256:94921265f210e84d79eeba8821c4527e81c36bfc7ce98f0cc8d64b44cbeef7a0_amd64Patch ↗Advisory ↗
Red HatCVE-2026-47204CVSS 6.5Red Hat OpenShift Service Mesh 3.2registry.redhat.io/openshift-service-mesh/istio-proxyv2-rhel9@sha256:a9893f3cced5ab9bafa20ae5f920cba27e852cc5e9f28b01a349a21d8f1ea63f_s390xPatch ↗Advisory ↗
Red HatCVE-2026-47204CVSS 6.5Red Hat OpenShift Service Mesh 3.3registry.redhat.io/openshift-service-mesh/istio-proxyv2-rhel9@sha256:09292f6545b2e6619bbbd267024fa4f9c6c8b760e53cfc2833eb54d9f453453e_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-47221CVSS 5.9Red Hat OpenShift Service Mesh 3.0registry.redhat.io/openshift-service-mesh/istio-proxyv2-rhel9@sha256:59fa6f408b345a25d7e9dd12cf79c5e56cae7a7c2d814ef32512346021485060_amd64Patch ↗Advisory ↗
Red HatCVE-2026-47221CVSS 5.9Red Hat OpenShift Service Mesh 3.1registry.redhat.io/openshift-service-mesh/istio-proxyv2-rhel9@sha256:94921265f210e84d79eeba8821c4527e81c36bfc7ce98f0cc8d64b44cbeef7a0_amd64Patch ↗Advisory ↗
Red HatCVE-2026-47221CVSS 5.9Red Hat OpenShift Service Mesh 3.2registry.redhat.io/openshift-service-mesh/istio-proxyv2-rhel9@sha256:a9893f3cced5ab9bafa20ae5f920cba27e852cc5e9f28b01a349a21d8f1ea63f_s390xPatch ↗Advisory ↗
Red HatCVE-2026-47221CVSS 5.9Red Hat OpenShift Service Mesh 3.3registry.redhat.io/openshift-service-mesh/istio-proxyv2-rhel9@sha256:09292f6545b2e6619bbbd267024fa4f9c6c8b760e53cfc2833eb54d9f453453e_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-48706CVSS 5.9Red Hat OpenShift Service Mesh 3.1registry.redhat.io/openshift-service-mesh/istio-proxyv2-rhel9@sha256:94921265f210e84d79eeba8821c4527e81c36bfc7ce98f0cc8d64b44cbeef7a0_amd64Patch ↗Advisory ↗
Red HatCVE-2026-48706CVSS 5.9Red Hat OpenShift Service Mesh 3.2registry.redhat.io/openshift-service-mesh/istio-proxyv2-rhel9@sha256:a9893f3cced5ab9bafa20ae5f920cba27e852cc5e9f28b01a349a21d8f1ea63f_s390xPatch ↗Advisory ↗
Red HatCVE-2026-48706CVSS 5.9Red Hat OpenShift Service Mesh 3.3registry.redhat.io/openshift-service-mesh/istio-proxyv2-rhel9@sha256:09292f6545b2e6619bbbd267024fa4f9c6c8b760e53cfc2833eb54d9f453453e_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-50262CVSS 5.5Red Hat Enterprise Linux Server -EXTENSION(v. 6 ELS-EXTENSION)tigervnc-0:1.1.0-25.el6_10.18.i686Patch ↗Advisory ↗
Red HatCVE-2026-50263CVSS 5.5Red Hat Enterprise Linux Server -EXTENSION(v. 6 ELS-EXTENSION)tigervnc-0:1.1.0-25.el6_10.18.i686Patch ↗Advisory ↗
Red HatCVE-2026-55970CVSS 6.5Red Hat Hardened Imagesperl-thrift-0:0.24.0-0.1.hum1@noarchPatch ↗Advisory ↗
Red HatCVE-2026-58010CVSS 6.5Red Hat Enterprise Linux CRB (v. 8)mingw-glib2-0:2.70.1-9.el8_10.srcPatch ↗Advisory ↗
Red HatCVE-2026-58011CVSS 6.5Red Hat Enterprise Linux CRB (v. 8)mingw-glib2-0:2.70.1-9.el8_10.srcPatch ↗Advisory ↗
Red HatCVE-2026-58012CVSS 6.5Red Hat Enterprise Linux CRB (v. 8)mingw-glib2-0:2.70.1-9.el8_10.srcPatch ↗Advisory ↗
Red HatCVE-2026-58013CVSS 6.5Red Hat Enterprise Linux CRB (v. 8)mingw-glib2-0:2.70.1-9.el8_10.srcPatch ↗Advisory ↗
Red HatCVE-2026-58015CVSS 5.9Red Hat Enterprise Linux CRB (v. 8)mingw-glib2-0:2.70.1-9.el8_10.srcPatch ↗Advisory ↗
Red HatCVE-2026-58023CVSS 6.5Red Hat Hardened Imagesperl-thrift-0:0.24.0-0.1.hum1@noarchPatch ↗Advisory ↗
Red HatCVE-2026-66053CVSS 5.9Red Hat Hardened Imagesperl-thrift-0:0.24.0-0.1.hum1@noarchPatch ↗Advisory ↗
Red HatCVE-2026-67315CVSS 5.8Red Hat Hardened Imagesgrafana13.1-0:13.1.1-0.5.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-67317CVSS 5.3Red Hat Hardened Imagesgrafana13.1-0:13.1.1-0.5.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-67318CVSS 5.3Red Hat Hardened Imagesgrafana13.1-0:13.1.1-0.5.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-72815CVSS 6.5Red Hat Hardened Imagesspire1.14-0:1.14.7-0.4.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-72815CVSS 6.5Red Hat Hardened Imagesspire1.15-0:1.15.2-0.4.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-72816CVSS 6.5Red Hat Hardened Imagesspire1.14-0:1.14.7-0.4.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-72816CVSS 6.5Red Hat Hardened Imagesspire1.15-0:1.15.2-0.4.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-72817CVSS 6.5Red Hat Hardened Imagesspire1.14-0:1.14.7-0.4.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-72817CVSS 6.5Red Hat Hardened Imagesspire1.15-0:1.15.2-0.4.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-18477CVSS 4.4Red Hat Hardened Imagestar-0:1.35-9.1.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-67319CVSS 6.5Red Hat Hardened Imagesgrafana13.1-0:13.1.1-0.4.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-67319CVSS 6.5Red Hat Hardened Imagesgrafana12.4-0:12.4.6-0.3.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-69198CVSS 5.3Red Hat Hardened Imagesgrafana12.4-0:12.4.6-0.3.hum1@aarch64Patch ↗Advisory ↗

Glossary