CYBERSECURITYTRACKER
TRACKING7,324 stories in this site build1,532 vulnerability news stories in this site build
Vulnerabilities

September 2026 vulnerabilities

Browse this month's returned vendor patches and exploitation signals, with filtering and stable pages for browsing without JavaScript.

Microsoft reports 2 vulnerabilities with exploitation detected in the wild this month. This defender-focused view covers 3,551 vulnerabilities across 7,669 returned patch records from 4 vendors. Filter the month to date, or browse the static page trail without JavaScript.

7,669all patch recordsClear filters335criticalShow these records2Microsoft exploitation detectedShow these records4Microsoft in the Known Exploited Vulnerabilities catalogShow these records2,539tracked hereShow these records
Patch records
Returned Microsoft and cross-vendor release records. One Common Vulnerabilities and Exposures (CVE) identifier can appear in more than one record.
Tracked here
Records joined to a vulnerability record in this tracker.
Defender priority
Sorts Microsoft exploitation status, Cybersecurity and Infrastructure Security Agency (CISA) Known Exploited Vulnerabilities (KEV) catalog status, severity, and tracker coverage first.
More likely
Microsoft's Exploitability Index rating that exploitation is more likely. It is not a claim that exploitation was detected.

Narrow the complete month

Filters use every patch record in this month, including records on later static pages.

Clear all

Microsoft-only signal filters exclude records without Microsoft signal data as unknown, report them separately, and never count them as absent. “Tracked here” covers both Microsoft and cross-vendor records.

Loading the complete-month filter index…

An Exploit Prediction Scoring System (EPSS) percentage is the global 30-day exploitation probability in the wild, not specific to you. Do not read it as a complete risk score or as evidence about your environment or impact.

Page 36 of 39 · records 7,001 to 7,200 of 7,669

Microsoft Security Response Center

CVEDateProductMSRC severityOut-of-bandEPSSTitle
CVE-2026-80806 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableext4: don't enable DAX on new encrypted files
CVE-2026-80768 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableHID: ft260: fix stack-use-after-return write in I2C read race
CVE-2026-80763 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableBluetooth: hci_event: validate LE Set CIG Parameters response
CVE-2026-80780 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableHID: pidff: fix OOB write when hid->inputs is empty
CVE-2026-80890 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablesctp: reject stale cookies with mismatched verification tags
CVE-2026-80861 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableusb: xhci: bail out of setup if the controller is inaccessible
CVE-2026-80819 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableBluetooth: RFCOMM: take rfcomm_mutex for the deferred setup accept
CVE-2026-80905 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenet: tap: fix wrong transport_header when sending VLAN-tagged frame
CVE-2026-80771 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableHID: nintendo: register input device after capabilities are set
CVE-2026-80829 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableALSA: usb-audio: fix OOB write in snd_usbmidi_novation_output()
CVE-2026-80863 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableRDMA/rxe: Fix OOB in free_rd_atomic_resources()
CVE-2026-80765 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableHID: hyperv: validate initial device info bounds
CVE-2026-80826 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableUSB: c67x00: fix use-after-free in c67x00_add_iso_urb()
CVE-2026-80782 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableHID: magicmouse: do not keep a stale msc->input if no input is claimed
CVE-2026-80770 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableHID: nintendo: stop device IO before hid_hw_stop on probe failure
CVE-2026-80847 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabletcp: clamp route advmss to TCP_MIN_MSS
CVE-2026-80790 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenvmet-fc: fix invalid free in LS IOD error path
CVE-2026-80764 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableBluetooth: hci_event: fix LE list UAF on reset
CVE-2026-80833 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablecrypto: sun8i-ss - Remove crypto_rng interface
CVE-2026-80851 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablegtp: serialize PDP context updates
CVE-2026-80832 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablecrypto: qce - fix CCM AAD buffer underallocation
CVE-2026-80848 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablexfrm: espintcp: fix UAF during close
CVE-2026-80836 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablecrypto: virtio - bound the akcipher result length
CVE-2026-80767 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableHID: sensor: custom: Fix use-after-free in enable_sensor
CVE-2026-6554 ↗azl3 libpcap 1.10.6-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableinfinte loop in libpcap before 1.10.7
CVE-2026-31912 ↗azl3 libpcap 1.10.6-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableOOBR in libpcap before 1.10.7
CVE-2026-6244 ↗azl3 libpcap 1.10.6-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledivision by zero in libpcap before 1.10.7
CVE-2026-18313 ↗azl3 libpcap 1.10.6-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablerpcapd memory leak in libpcap before 1.10.7
CVE-2026-31911 ↗azl3 libpcap 1.10.6-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableabort() in libpcap before 1.10.7 on an invalid BPF opcode
CVE-2026-18238 ↗azl3 libpcap 1.10.6-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableOOBR in rpcap client in libpcap before 1.10.7
CVE-2026-80793 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableipv4: reject undersized MTUs in ip_do_fragment()
CVE-2026-80852 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabletls: device: fix out-of-bounds write in tls_append_frag()
CVE-2026-80854 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableusb: gadget: f_tcm: keep port count until LUN teardown completes
CVE-2026-80824 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableusb: usbfs: fix use-after-free of usb_device in usbdev_release()
CVE-2026-80842 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenet: bridge: mcast: fix use-after-free of a master VLAN's multicast context
CVE-2026-80904 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenet/tls: Fail tls_sw_splice_read() after a failed async decrypt
CVE-2026-80801 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenfc: microread: validate target discovery payload lengths
CVE-2026-80864 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableRDMA/rxe: Fix responder UAF on IB_QP_MAX_DEST_RD_ATOMIC modify_qp
CVE-2026-80805 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablexfs: validate attr entry pointer before field access
CVE-2026-80766 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableHID: uclogic: fix use-after-free of inrange_timer on remove
CVE-2026-80807 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenilfs2: reject invalid block index in GC ioctl
CVE-2026-80796 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenfc: nci: add data_len bound checks to activation parameter extractors
CVE-2026-80794 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenfc: nci: fix uninit-value in the RF discover/activated NTF handlers
CVE-2026-80783 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableHID: magicmouse: prevent unbounded recursion in magicmouse_raw_event()
CVE-2026-80872 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableALSA: hda/tas2781: Cancel async firmware request at unbind
CVE-2026-80762 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableBluetooth: hci_sync: Fix accept list UAF during suspend
CVE-2026-80891 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableKVM: s390: pci: Validate AIBV and AISB before pinning guest pages
CVE-2026-80855 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablefuse: fix invalidate lock leak on open O_TRUNC DAX failure
CVE-2026-80802 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenfc: fdp: bound the device-reported read length and fix an skb leak
CVE-2026-80828 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableALSA: usb-audio: Complete cleanup after system-resume errors
CVE-2026-80809 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableocfs2: fix missing metadata reservation for large xattrs
CVE-2026-80866 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabletipc: avoid busy looping in tipc_exit_net()
CVE-2026-80913 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableselinux: require every boolean value to be defined
CVE-2026-80902 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledmaengine: sun6i-dma: Fix reclaim descriptors while terminating DMA
CVE-2026-80820 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablexfs: don't livelock in scrub on a circular unlinked list
CVE-2026-80912 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableselinux: reject an unclaimed class value in security_get_classes()
CVE-2026-80785 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablefbdev: serialize mode sysfs access with lock_fb_info()
CVE-2026-80846 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablexfrm: drop ESP-in-TCP packets with no ingress device
CVE-2026-86142 ↗azl3 libxml2 2.11.5-10 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableIn libxml2 before 2.15.4, there is a heap-based buffer overflow in xmlXPtrEvalXPtrPart because of xmlXPtrEval xpointer length saturation.
CVE-2026-86139 ↗azl3 libxml2 2.11.5-10 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableIn libxml2 before 2.15.4, xmlURIEscapeStr in uri.c has an integer overflow.
CVE-2026-80856 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablefuse: fix invalidate lock leak on setattr writeback failure
CVE-2026-86138 ↗azl3 libxml2 2.11.5-10 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableIn libxml2 before 2.15.4, xmlDictAddQString in dict.c has an integer overflow and resultant heap-based buffer overflow.
CVE-2026-80841 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenet/packet: defer vmalloc TX_RING free until skbs finish
CVE-2026-86143 ↗azl3 libxml2 2.11.5-10 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableIn xmlIO in libxml2 before 2.15.4, an inconsistency in xmlOutputWriteCallback and xmlBufUse causes negative lengths to reach write callbacks, aka a lack of a check for integer overflow before calling writecallback. This has security relevance for many types of uses of that length value within a callback.
CVE-2026-80834 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablecrypto: sun8i-ce - Remove crypto_rng interface
CVE-2026-86144 ↗azl3 libxml2 2.11.5-10 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableIn xinclude in libxml2 before 2.15.4, xmlXIncludeProcess and xmlXIncludeProcessTree do not propagate parseFlags. This has security relevance for, for example, the XML_PARSE_NONET flag, if (without it) a custom resource loader accesses the internet and triggers XML external entity injection, SSRF, or a denial of service (e.g., for an attacker-controlled internet resource that is intentionally slow).
CVE-2026-80844 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablexfrm: ah6: validate routing header segments_left
CVE-2026-80830 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableusb: core: Add lock to usb_wakeup_notification()
CVE-2026-80831 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablecrypto: mxs-dcp - fix source scatterlist length access
CVE-2026-78662 ↗azl3 cert-manager 1.12.15-11 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablePrevent DoS on deadlocked undecided channel in golang.org/x/crypto/ssh
CVE-2026-85062 ↗azl3 colord 1.4.6-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableColord: Slow rejection of oversized malformed color strings
CVE-2026-76642 ↗azl3 util-linux 2.40.2-5 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableutil-linux libmount Privilege Escalation via Failed Mount Helper
CVE-2026-80743 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableASoC: xilinx: formatter_pcm: pass aud_drv_data to irq handlers
CVE-2026-80756 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableselinux: do not cancel a policy conversion that never started
CVE-2026-80738 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablebpf: Check sk_state before sk_protocol in bpf_tcp_*_syncookie
CVE-2026-80752 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableInput: psxpad-spi - set driver data before use
CVE-2026-80726 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableKVM: x86/mmu: WARN and clear role.invalid when creating a child shadow page
CVE-2026-80728 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableRevert "drm/amdgpu: fix aperture mapping leak"
CVE-2026-80755 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableselinux: reject a permission value exceeding the class permission count
CVE-2026-80731 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenet: remove CAP_SYS_RAWIO zero-padding in dev_validate_header
CVE-2026-80730 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablering-buffer: Fix crash passing ERR_PTR to kthread_stop()
CVE-2026-80733 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenet: remove WARN_ON_ONCE() from sk_mc_loop()
CVE-2026-80737 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableserial: amba-pl011: synchronize DMA teardown
CVE-2026-80747 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledrm/amdkfd: Add bounds check for CRAT subtype length
CVE-2026-80757 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableselinux: reject a class permission count below its inherited common
CVE-2026-80742 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableaf_packet: Don't send zero-byte data in tpacket_snd().
CVE-2026-80732 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableata: pata_sl82c105: fix bridge revision use-after-free
CVE-2026-74994 ↗azl3 erlang 26.2.5.21-4 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableinets, httpd: Authentication Bypass via Directory Namespace Collapse in httpd mod_auth
CVE-2026-71562 ↗azl3 erlang 26.2.5.21-4 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablehttpc does not bound server-supplied numeric header values before integer conversion
CVE-2026-70409 ↗azl3 erlang 26.2.5.21-6 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableeldap does not bound the port component of a referral URL before integer conversion
CVE-2026-59696 ↗azl3 erlang 26.2.5.21-6 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableuri_string does not bound the port component of a URI before integer conversion
CVE-2026-56143 ↗azl3 rubygem-elasticsearch 8.9.0-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableAllocation of Resources Without Limits or Throttling in Elasticsearch Leading to Denial of Service
CVE-2026-78607 ↗azl3 rubygem-elasticsearch 8.9.0-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableMissing Authorization in Elasticsearch Leading to Information Disclosure

Cross-vendor patches

VendorCVESeverityProductFixed versionPatchAdvisory
Red HatCVE-2026-10601CVSS 5.4Red Hat Hardened Imagesloki3.6-0:3.6.16-0.1.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-10601CVSS 5.4Red Hat Hardened Imagesloki3.7-0:3.7.7-0.1.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-86138CVSS 6.9Red Hat Hardened Imageslibxml2-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-86139CVSS 6.9Red Hat Hardened Imageslibxml2-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-86142CVSS 6.9Red Hat Hardened Imageslibxml2-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-86143CVSS 6.9Red Hat Hardened Imageslibxml2-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-86144CVSS 5.6Red Hat Hardened Imageslibxml2-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2025-71147CVSS 5.5Red Hat Enterprise Linux AppStream (v. 9)kernel-64k-debug-debuginfo-0:5.14.0-687.44.1.el9_8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-85024CVSS 5.9Red Hat Hardened Imagesgrafana12.4-0:12.4.9-0.6.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2023-52924CVSS 5.5Red Hat Enterprise Linux for Real Time (v. 7 ELS)kernel-rt-0:3.10.0-1160.159.1.rt56.1311.el7.srcPatch ↗Advisory ↗
Red HatCVE-2024-57849CVSS 5.5Red Hat Enterprise Linux NFV (v. 8)kernel-rt-0:4.18.0-553.159.1.rt7.500.el8_10.srcPatch ↗Advisory ↗
Red HatCVE-2024-57849CVSS 5.5Red Hat Enterprise Linux BaseOS (v. 8)bpftool-0:4.18.0-553.159.1.el8_10.aarch64Patch ↗Advisory ↗
Red HatCVE-2025-40026CVSS 5.5Red Hat OpenShift Container Platform 4.17rhcos-aarch64-417.94.202608250221-0Patch ↗Advisory ↗
Red HatCVE-2025-71132CVSS 4.7Red Hat Enterprise Linux NFV (v. 8)kernel-rt-0:4.18.0-553.159.1.rt7.500.el8_10.srcPatch ↗Advisory ↗
Red HatCVE-2025-71132CVSS 4.7Red Hat Enterprise Linux BaseOS (v. 8)bpftool-0:4.18.0-553.159.1.el8_10.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-10051CVSS 5.3Red Hat Satellite 6.16 for RHEL 8openvox-server-0:8.15.2-1.el8sat.noarchPatch ↗Advisory ↗
Red HatCVE-2026-10051CVSS 5.3Red Hat Satellite 6.19 for RHEL 9openvox-server-0:8.15.2-1.el9sat.noarchPatch ↗Advisory ↗
Red HatCVE-2026-10051CVSS 5.3Red Hat Satellite 6.18 for RHEL 9openvox-server-0:8.15.2-1.el9sat.noarchPatch ↗Advisory ↗
Red HatCVE-2026-10051CVSS 5.3Red Hat Satellite 6.17 for RHEL 9ansible-core-1:2.16.19-1.el9sat.noarchPatch ↗Advisory ↗
Red HatCVE-2026-15534CVSS 5.7Red Hat Hardened Imagesperl-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-15588CVSS 5.3Cert Manager support for Red Hat OpenShift release 1.19registry.redhat.io/cert-manager/cert-manager-operator-rhel9@sha256:636dd466ed2874ecc0bc5985dd7c80eb4c4113b4a4989362b616ff7778e19e43_arm64Patch ↗Advisory ↗
Red HatCVE-2026-15588CVSS 5.3Cert Manager support for Red Hat OpenShift release 1.19registry.redhat.io/cert-manager/jetstack-cert-manager-acmesolver-rhel9@sha256:03d6509e8064ac056a47ca9ab43df0639236f09806cd551f13a0e808f469c0ee_s390xPatch ↗Advisory ↗
Red HatCVE-2026-15588CVSS 5.3Cert Manager support for Red Hat OpenShift release 1.19registry.redhat.io/cert-manager/cert-manager-istio-csr-rhel9@sha256:a5b8d2a99391fa45f9090f5cab9ef209ee3ddff67abb3104766241dbaf9e64ad_amd64Patch ↗Advisory ↗
Red HatCVE-2026-15927CVSS 6.8Red Hat Quay 3.15registry.redhat.io/quay/quay-rhel8@sha256:64967e93bbf7f56601309bea7951c40c2b9fd01be85324d5287c20bf5083861a_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-18710CVSS 6.5Red Hat Build of Apache Camel 3.33 for Quarkus 3.33.3.SP1Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-1965CVSS 6.8Cert Manager support for Red Hat OpenShift release 1.19registry.redhat.io/cert-manager/cert-manager-operator-rhel9@sha256:636dd466ed2874ecc0bc5985dd7c80eb4c4113b4a4989362b616ff7778e19e43_arm64Patch ↗Advisory ↗
Red HatCVE-2026-1965CVSS 6.8Cert Manager support for Red Hat OpenShift release 1.19registry.redhat.io/cert-manager/jetstack-cert-manager-acmesolver-rhel9@sha256:03d6509e8064ac056a47ca9ab43df0639236f09806cd551f13a0e808f469c0ee_s390xPatch ↗Advisory ↗
Red HatCVE-2026-1965CVSS 6.8Cert Manager support for Red Hat OpenShift release 1.19registry.redhat.io/cert-manager/cert-manager-istio-csr-rhel9@sha256:a5b8d2a99391fa45f9090f5cab9ef209ee3ddff67abb3104766241dbaf9e64ad_amd64Patch ↗Advisory ↗
Red HatCVE-2026-21723CVSS 5.3Red Hat Hardened Imagesgrafana13.2-0:13.2.1-0.1.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-21723CVSS 5.3Red Hat Hardened Imagesgrafana13.1-0:13.1.3-0.5.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-2340CVSS 6.5Red Hat OpenShift Container Platform 4.12rhcos-x86_64-412.86.202608241157-0Patch ↗Advisory ↗
Red HatCVE-2026-2340CVSS 6.5Red Hat OpenShift Container Platform 4.17rhcos-aarch64-417.94.202608250221-0Patch ↗Advisory ↗
Red HatCVE-2026-35177CVSS 4.1Red Hat OpenShift Container Platform 4.12rhcos-x86_64-412.86.202608241157-0Patch ↗Advisory ↗
Red HatCVE-2026-35177CVSS 4.1Red Hat OpenShift Container Platform 4.17rhcos-aarch64-417.94.202608250221-0Patch ↗Advisory ↗
Red HatCVE-2026-35469CVSS 6.5Red Hat OpenShift Container Platform 4.17registry.redhat.io/openshift4/ose-ovn-kubernetes-rhel9@sha256:89d63c7f528f915bf1dcbc1f8e61306267b369c1c56e6143984ec909ea7b81a6_amd64Patch ↗Advisory ↗
Red HatCVE-2026-3783CVSS 5.7Cert Manager support for Red Hat OpenShift release 1.19registry.redhat.io/cert-manager/cert-manager-operator-rhel9@sha256:636dd466ed2874ecc0bc5985dd7c80eb4c4113b4a4989362b616ff7778e19e43_arm64Patch ↗Advisory ↗
Red HatCVE-2026-3783CVSS 5.7Cert Manager support for Red Hat OpenShift release 1.19registry.redhat.io/cert-manager/jetstack-cert-manager-acmesolver-rhel9@sha256:03d6509e8064ac056a47ca9ab43df0639236f09806cd551f13a0e808f469c0ee_s390xPatch ↗Advisory ↗
Red HatCVE-2026-3783CVSS 5.7Cert Manager support for Red Hat OpenShift release 1.19registry.redhat.io/cert-manager/cert-manager-istio-csr-rhel9@sha256:a5b8d2a99391fa45f9090f5cab9ef209ee3ddff67abb3104766241dbaf9e64ad_amd64Patch ↗Advisory ↗
Red HatCVE-2026-3833CVSS 6.5Red Hat OpenShift Container Platform 4.12rhcos-x86_64-412.86.202608241157-0Patch ↗Advisory ↗
Red HatCVE-2026-3833CVSS 6.5Red Hat OpenShift Container Platform 4.17rhcos-aarch64-417.94.202608250221-0Patch ↗Advisory ↗
Red HatCVE-2026-42502CVSS 6.1Red Hat Advanced Cluster Management for Kubernetes 2.17registry.redhat.io/rhacm2/lighthouse-agent-rhel9@sha256:329806e6d9cee8c20823f45a67c1b0cdb4a8af957c520ef8303557576e8a32f0_amd64Patch ↗Advisory ↗
Red HatCVE-2026-42502CVSS 6.1Red Hat Enterprise Linux AppStream EUS (v. 10.0)osbuild-composer-0:134.1-10.el10_0.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-42791CVSS 5.9Red Hat Hardened Imageserlang27-0:27.3.4.17-1.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-47256CVSS 6.5Red Hat Hardened Imagesopentelemetry-collector-contrib-0:0.160.0-0.1.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-4878CVSS 6.7Red Hat OpenShift Container Platform 4.12rhcos-x86_64-412.86.202608241157-0Patch ↗Advisory ↗
Red HatCVE-2026-48855CVSS 4.3Red Hat Hardened Imageserlang27-0:27.3.4.17-1.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-48858CVSS 6.5Red Hat Hardened Imageserlang27-0:27.3.4.17-1.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-48860CVSS 6.8Red Hat Hardened Imageserlang27-0:27.3.4.17-1.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-53059CVSS 6.3Red Hat Enterprise Linux for Real Time (v. 7 ELS)kernel-rt-0:3.10.0-1160.159.1.rt56.1311.el7.srcPatch ↗Advisory ↗
Red HatCVE-2026-54371CVSS 6.3Cert Manager support for Red Hat OpenShift release 1.19registry.redhat.io/cert-manager/cert-manager-operator-rhel9@sha256:636dd466ed2874ecc0bc5985dd7c80eb4c4113b4a4989362b616ff7778e19e43_arm64Patch ↗Advisory ↗
Red HatCVE-2026-54371CVSS 6.3Cert Manager support for Red Hat OpenShift release 1.19registry.redhat.io/cert-manager/jetstack-cert-manager-acmesolver-rhel9@sha256:03d6509e8064ac056a47ca9ab43df0639236f09806cd551f13a0e808f469c0ee_s390xPatch ↗Advisory ↗
Red HatCVE-2026-5450CVSS 5.0Red Hat OpenShift Container Platform 4.12rhcos-x86_64-412.86.202608241157-0Patch ↗Advisory ↗
Red HatCVE-2026-5450CVSS 5.0Red Hat OpenShift Container Platform 4.17rhcos-aarch64-417.94.202608250221-0Patch ↗Advisory ↗
Red HatCVE-2026-54886CVSS 6.5Red Hat Hardened Imageserlang27-0:27.3.4.17-1.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-55701CVSS 5.3Red Hat Hardened Imagesopentelemetry-collector-contrib-0:0.160.0-0.1.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-58010CVSS 6.5Cert Manager support for Red Hat OpenShift release 1.19registry.redhat.io/cert-manager/cert-manager-operator-rhel9@sha256:636dd466ed2874ecc0bc5985dd7c80eb4c4113b4a4989362b616ff7778e19e43_arm64Patch ↗Advisory ↗
Red HatCVE-2026-58010CVSS 6.5Cert Manager support for Red Hat OpenShift release 1.19registry.redhat.io/cert-manager/jetstack-cert-manager-acmesolver-rhel9@sha256:03d6509e8064ac056a47ca9ab43df0639236f09806cd551f13a0e808f469c0ee_s390xPatch ↗Advisory ↗
Red HatCVE-2026-58010CVSS 6.5Cert Manager support for Red Hat OpenShift release 1.19registry.redhat.io/cert-manager/cert-manager-istio-csr-rhel9@sha256:a5b8d2a99391fa45f9090f5cab9ef209ee3ddff67abb3104766241dbaf9e64ad_amd64Patch ↗Advisory ↗
Red HatCVE-2026-58011CVSS 6.5Cert Manager support for Red Hat OpenShift release 1.19registry.redhat.io/cert-manager/cert-manager-operator-rhel9@sha256:636dd466ed2874ecc0bc5985dd7c80eb4c4113b4a4989362b616ff7778e19e43_arm64Patch ↗Advisory ↗
Red HatCVE-2026-58011CVSS 6.5Cert Manager support for Red Hat OpenShift release 1.19registry.redhat.io/cert-manager/jetstack-cert-manager-acmesolver-rhel9@sha256:03d6509e8064ac056a47ca9ab43df0639236f09806cd551f13a0e808f469c0ee_s390xPatch ↗Advisory ↗
Red HatCVE-2026-58011CVSS 6.5Cert Manager support for Red Hat OpenShift release 1.19registry.redhat.io/cert-manager/cert-manager-istio-csr-rhel9@sha256:a5b8d2a99391fa45f9090f5cab9ef209ee3ddff67abb3104766241dbaf9e64ad_amd64Patch ↗Advisory ↗
Red HatCVE-2026-58012CVSS 6.5Cert Manager support for Red Hat OpenShift release 1.19registry.redhat.io/cert-manager/cert-manager-operator-rhel9@sha256:636dd466ed2874ecc0bc5985dd7c80eb4c4113b4a4989362b616ff7778e19e43_arm64Patch ↗Advisory ↗
Red HatCVE-2026-58012CVSS 6.5Cert Manager support for Red Hat OpenShift release 1.19registry.redhat.io/cert-manager/jetstack-cert-manager-acmesolver-rhel9@sha256:03d6509e8064ac056a47ca9ab43df0639236f09806cd551f13a0e808f469c0ee_s390xPatch ↗Advisory ↗
Red HatCVE-2026-58012CVSS 6.5Cert Manager support for Red Hat OpenShift release 1.19registry.redhat.io/cert-manager/cert-manager-istio-csr-rhel9@sha256:a5b8d2a99391fa45f9090f5cab9ef209ee3ddff67abb3104766241dbaf9e64ad_amd64Patch ↗Advisory ↗
Red HatCVE-2026-58013CVSS 6.5Cert Manager support for Red Hat OpenShift release 1.19registry.redhat.io/cert-manager/cert-manager-operator-rhel9@sha256:636dd466ed2874ecc0bc5985dd7c80eb4c4113b4a4989362b616ff7778e19e43_arm64Patch ↗Advisory ↗
Red HatCVE-2026-58013CVSS 6.5Cert Manager support for Red Hat OpenShift release 1.19registry.redhat.io/cert-manager/jetstack-cert-manager-acmesolver-rhel9@sha256:03d6509e8064ac056a47ca9ab43df0639236f09806cd551f13a0e808f469c0ee_s390xPatch ↗Advisory ↗
Red HatCVE-2026-58013CVSS 6.5Cert Manager support for Red Hat OpenShift release 1.19registry.redhat.io/cert-manager/cert-manager-istio-csr-rhel9@sha256:a5b8d2a99391fa45f9090f5cab9ef209ee3ddff67abb3104766241dbaf9e64ad_amd64Patch ↗Advisory ↗
Red HatCVE-2026-58015CVSS 5.9Cert Manager support for Red Hat OpenShift release 1.19registry.redhat.io/cert-manager/cert-manager-operator-rhel9@sha256:636dd466ed2874ecc0bc5985dd7c80eb4c4113b4a4989362b616ff7778e19e43_arm64Patch ↗Advisory ↗
Red HatCVE-2026-58015CVSS 5.9Cert Manager support for Red Hat OpenShift release 1.19registry.redhat.io/cert-manager/jetstack-cert-manager-acmesolver-rhel9@sha256:03d6509e8064ac056a47ca9ab43df0639236f09806cd551f13a0e808f469c0ee_s390xPatch ↗Advisory ↗
Red HatCVE-2026-58015CVSS 5.9Cert Manager support for Red Hat OpenShift release 1.19registry.redhat.io/cert-manager/cert-manager-istio-csr-rhel9@sha256:a5b8d2a99391fa45f9090f5cab9ef209ee3ddff67abb3104766241dbaf9e64ad_amd64Patch ↗Advisory ↗
Red HatCVE-2026-58055CVSS 5.4Cert Manager support for Red Hat OpenShift release 1.19registry.redhat.io/cert-manager/cert-manager-operator-rhel9@sha256:636dd466ed2874ecc0bc5985dd7c80eb4c4113b4a4989362b616ff7778e19e43_arm64Patch ↗Advisory ↗
Red HatCVE-2026-58055CVSS 5.4Cert Manager support for Red Hat OpenShift release 1.19registry.redhat.io/cert-manager/jetstack-cert-manager-acmesolver-rhel9@sha256:03d6509e8064ac056a47ca9ab43df0639236f09806cd551f13a0e808f469c0ee_s390xPatch ↗Advisory ↗
Red HatCVE-2026-58055CVSS 5.4Cert Manager support for Red Hat OpenShift release 1.19registry.redhat.io/cert-manager/cert-manager-istio-csr-rhel9@sha256:a5b8d2a99391fa45f9090f5cab9ef209ee3ddff67abb3104766241dbaf9e64ad_amd64Patch ↗Advisory ↗
Red HatCVE-2026-59944CVSS 5.0Red Hat Hardened Imagescomposer-0:2.10.3-1.hum1@noarch@public-hummingbird-aarch64-rpmsPatch ↗Advisory ↗
Red HatCVE-2026-66780CVSS 6.5Red Hat Advanced Cluster Management for Kubernetes 2.17registry.redhat.io/rhacm2/subctl-rhel9@sha256:1b38ba10de27535bc6e76dac4db2e66b95e7c666f20136c15d7ac11531c541df_arm64Patch ↗Advisory ↗
Red HatCVE-2026-66781CVSS 5.4Red Hat Advanced Cluster Management for Kubernetes 2.17registry.redhat.io/rhacm2/subctl-rhel9@sha256:1b38ba10de27535bc6e76dac4db2e66b95e7c666f20136c15d7ac11531c541df_arm64Patch ↗Advisory ↗
Red HatCVE-2026-66782CVSS 5.8Red Hat Advanced Cluster Management for Kubernetes 2.17registry.redhat.io/rhacm2/subctl-rhel9@sha256:1b38ba10de27535bc6e76dac4db2e66b95e7c666f20136c15d7ac11531c541df_arm64Patch ↗Advisory ↗
Red HatCVE-2026-66783CVSS 4.4Red Hat Advanced Cluster Management for Kubernetes 2.17registry.redhat.io/rhacm2/subctl-rhel9@sha256:1b38ba10de27535bc6e76dac4db2e66b95e7c666f20136c15d7ac11531c541df_arm64Patch ↗Advisory ↗
Red HatCVE-2026-66787CVSS 5.4Red Hat Advanced Cluster Management for Kubernetes 2.17registry.redhat.io/rhacm2/lighthouse-agent-rhel9@sha256:329806e6d9cee8c20823f45a67c1b0cdb4a8af957c520ef8303557576e8a32f0_amd64Patch ↗Advisory ↗
Red HatCVE-2026-69153CVSS 5.3Red Hat Quay 3.15registry.redhat.io/quay/quay-rhel8@sha256:64967e93bbf7f56601309bea7951c40c2b9fd01be85324d5287c20bf5083861a_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-73180CVSS 5.4Red Hat Hardened Imagestomcat10-main@noarchPatch ↗Advisory ↗
Red HatCVE-2026-8595CVSS 5.7Red Hat Hardened Imagesgrafana13.2-0:13.2.1-0.1.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-8595CVSS 5.7Red Hat Hardened Imagesgrafana13.1-0:13.1.3-0.5.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-8609CVSS 5.3Red Hat Hardened Imagesgrafana13.2-0:13.2.1-0.1.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-8609CVSS 5.3Red Hat Hardened Imagesgrafana13.1-0:13.1.3-0.5.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-90698CVSS 5.3Red Hat Hardened Imagesmemcached-0:1.6.45-1.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2024-46744CVSS 5.5Red Hat Enterprise Linux AppStream EUS (v.9.6)kernel-64k-debug-debuginfo-0:5.14.0-570.138.1.el9_6.aarch64Patch ↗Advisory ↗
Red HatCVE-2025-68211CVSS 5.5Red Hat Enterprise Linux AppStream EUS (v.9.6)kernel-64k-debug-debuginfo-0:5.14.0-570.138.1.el9_6.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-10601CVSS 5.4Red Hat Hardened Imagestempo2.10-0:2.10.8-0.2.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-10601CVSS 5.4Red Hat Hardened Imagestempo3.0-0:3.0.3-0.2.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-15789CVSS 6.5Red Hat Hardened Imagespodman-0:6.0.2-2.3.hum1@aarch64Patch ↗Advisory ↗
CiscoCVE-2026-20354CVSS 5.9Cisco Secure Email Gateway13.0Patch ↗Advisory ↗
CiscoCVE-2026-20355CVSS 5.9Cisco Secure Email Gateway13.0Patch ↗Advisory ↗
Red HatCVE-2026-34180CVSS 5.0Red Hat Hardened Imagesruby3.3-0:3.3.10-23.6.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-34180CVSS 5.0Red Hat Hardened Imagesruby4.0-0:4.0.6-37.3.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-34180CVSS 5.0Red Hat Hardened Imagesruby3.4-0:3.4.10-31.7.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-34181CVSS 6.3Red Hat Hardened Imagesruby3.3-0:3.3.10-23.6.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-34181CVSS 6.3Red Hat Hardened Imagesruby4.0-0:4.0.6-37.3.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-34181CVSS 6.3Red Hat Hardened Imagesruby3.4-0:3.4.10-31.7.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-35188CVSS 5.9Red Hat Hardened Imagesruby3.3-0:3.3.10-23.6.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-35188CVSS 5.9Red Hat Hardened Imagesruby4.0-0:4.0.6-37.3.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-35188CVSS 5.9Red Hat Hardened Imagesruby3.4-0:3.4.10-31.7.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-39817CVSS 5.9Red Hat Hardened Imagesgolang1.26-0:1.26.8-0.1.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-39819CVSS 4.4Red Hat Hardened Imagesgolang1.26-0:1.26.8-0.1.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-39827CVSS 6.5Red Hat Hardened Imagesgolang1.26-0:1.26.8-0.1.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-39834CVSS 6.5Red Hat Hardened Imagesgolang1.26-0:1.26.8-0.1.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-42500CVSS 6.5Red Hat Hardened Imagesgolang1.26-0:1.26.8-0.1.hum1@aarch64Patch ↗Advisory ↗

Glossary