CYBERSECURITYTRACKER
TRACKING7,931 stories in this site build1,728 vulnerability news stories in this site build
Vulnerabilities

September 2026 vulnerabilities

Browse this month's returned vendor patches and exploitation signals, with filtering and stable pages for browsing without JavaScript.

Microsoft reports 2 vulnerabilities with exploitation detected in the wild this month. This defender-focused view covers 5,936 vulnerabilities across 17,974 returned patch records from 5 vendors. Filter the month to date, or browse the static page trail without JavaScript.

17,974all patch recordsClear filters1,064criticalShow these records2Microsoft exploitation detectedShow these records4Microsoft in the Known Exploited Vulnerabilities catalogShow these records14,542tracked hereShow these records
Patch records
Returned Microsoft and cross-vendor release records. One Common Vulnerabilities and Exposures (CVE) identifier can appear in more than one record.
Tracked here
Records joined to a vulnerability record in this tracker.
Defender priority
Sorts Microsoft exploitation status, Cybersecurity and Infrastructure Security Agency (CISA) Known Exploited Vulnerabilities (KEV) catalog status, severity, and tracker coverage first.
More likely
Microsoft's Exploitability Index rating that exploitation is more likely. It is not a claim that exploitation was detected.

Narrow the complete month

Filters use every patch record in this month, including records on later static pages.

Clear all

My Stack only keeps records whose vendor you have pinned. Pins are the vendors you added to My Stack on the home page. Your pin list is saved only in this browser. Shared view and feed requests include the selected vendor names in their URLs. Pins never change what the tracker collects or scores.

Microsoft-only signal filters exclude records without Microsoft signal data as unknown, report them separately, and never count them as absent. “Tracked here” covers both Microsoft and cross-vendor records.

Loading the complete-month filter index…

An Exploit Prediction Scoring System (EPSS) percentage is the global 30-day exploitation probability in the wild, not specific to you. Do not read it as a complete risk score or as evidence about your environment or impact.

Page 88 of 90 · records 17,401 to 17,600 of 17,974

Microsoft Security Response Center

CVEDateProductMSRC severityOut-of-bandEPSSTitle
CVE-2026-93208 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailablekasan: fix cache shrink race with CPU hotplug
CVE-2026-93234 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailabledrm/gud: validate TV mode names before creating enum property
CVE-2026-93242 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailablescsi: qla2xxx: Fix response queue over-consumption in __qla_consume_iocb()
CVE-2026-93209 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailableBluetooth: hci_core: use skb_get() instead of skb_clone() for req_skb
CVE-2026-97477 ↗azl3 kernel 6.6.157.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailableRDMA/counter: Fix num_counters leak on bind_qp failure in alloc_and_bind()
CVE-2026-93264 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailableRDMA/efa: Fix PBL chunk length computation
CVE-2026-93222 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailablesignal: avoid shared siginfo namespace rewrites
CVE-2026-93213 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailableof: fix out-of-bounds read in of_alias_scan() stem parser
CVE-2026-93238 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailables390/vfio-ap: fix potential use of uninitialized apm_filtered bitmap
CVE-2026-98128 ↗azl3 kernel 6.6.157.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailablescsi: mpi3mr: Fix target device refcount leak in mpi3mr_sas_port_add()
CVE-2026-93794 ↗azl3 kernel 6.6.157.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailablesmb/client: flush dirty data before punching a hole
CVE-2026-93785 ↗azl3 kernel 6.6.157.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailablecifs: validate idmap key payload length
CVE-2026-97566 ↗azl3 kernel 6.6.157.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailablemptcp: pm: kernel: drop pending ADD_ADDR when removing ID0
CVE-2026-93807 ↗azl3 kernel 6.6.157.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailablewifi: rsi: avoid reading TKIP MIC keys for non-TKIP ciphers
CVE-2026-97929 ↗azl3 kernel 6.6.157.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailableALSA: usbusx2y: validate URB actual_length in interrupt callback
CVE-2026-93275 ↗azl3 kernel 6.6.157.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailableperf/x86/intel/pt: Fix stop/start with no update
CVE-2026-97436 ↗azl3 kernel 6.6.157.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailabledpaa2-switch: rework FDB management on the bridge leave path
CVE-2026-98101 ↗azl3 kernel 6.6.157.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailableipv6: mcast: use copy-on-write RCU updates in ip6_mc_source()
CVE-2026-93231 ↗azl3 kernel 6.6.157.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailablelockd: fix swapped arguments in nlmsvc_match_ip()
CVE-2026-97899 ↗azl3 kernel 6.6.157.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailabledrm/i915: Fix memory leak in query_perf_config_list()
CVE-2026-93272 ↗azl3 kernel 6.6.157.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailableremoteproc: qcom_wcnss: Fix handling the lack of PD regulators in v3
CVE-2026-98126 ↗azl3 kernel 6.6.157.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailablesmb/client: validate new EOF for zero range
CVE-2026-98124 ↗azl3 kernel 6.6.157.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailablesmb/client: invalidate fscache for fallocate range operations
CVE-2026-97422 ↗azl3 kernel 6.6.157.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailabledrm/amdkfd: fix SMI event cross-process information leak
CVE-2026-97930 ↗azl3 kernel 6.6.157.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailableALSA: usbusx2y: fix in04_last array size mismatch with in04_buf
CVE-2026-93792 ↗azl3 kernel 6.6.157.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailablewifi: iwlwifi: mvm: fix a possible underflow
CVE-2026-98092 ↗azl3 kernel 6.6.157.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailableASoC: amd: yc: fix memory leak in acp6x_pdm_dma_close()
CVE-2026-93824 ↗azl3 kernel 6.6.157.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailabletls: reject the combination of TLS and sockmap
CVE-2026-98082 ↗azl3 kernel 6.6.157.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailablebtrfs: fix the possible bioc_list memory leak during error
CVE-2026-93240 ↗azl3 kernel 6.6.157.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailablememcg: make the v1 soft limit knob inert
CVE-2026-97542 ↗azl3 kernel 6.6.157.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailablexfs: bail out on bitmap errors in xrep_agfl_fill
CVE-2026-97973 ↗azl3 kernel 6.6.157.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailablenet: macb: destroy the phylink instance on the probe error path
CVE-2026-97978 ↗azl3 kernel 6.6.157.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailableeth: ice: don't dereference pointers from TP_printk()
CVE-2026-97407 ↗azl3 kernel 6.6.157.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailableASoC: rockchip: rockchip_pdm: Handle runtime PM resume failures in set_fmt
CVE-2026-97966 ↗azl3 kernel 6.6.157.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailableocteontx2-pf: reset HTB scheduler topology before freeing queues
CVE-2026-97479 ↗azl3 kernel 6.6.157.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailabledriver core: Avoid warning when removing a device while its supplier is unbinding
CVE-2026-93600 ↗azl3 kata-containers-cc 3.15.0.aks0-21 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailablerustls webpki Name Constraints URI Validation Bypass
CVE-2026-93601 ↗azl3 kata-containers-cc 3.15.0.aks0-21 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailablerustls webpki 0.101.0 before 0.103.12 Name Constraint Bypass
CVE-2026-95818 ↗azl3 glibc 2.38-21 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailableAT_SECURE program buffer overflow via $ORIGIN processing
CVE-2026-91780 ↗azl3 binutils 2.41-13 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailableGNU Binutils elflink.c elf_link_add_object_symbols null pointer dereference
CVE-2026-91779 ↗azl3 binutils 2.41-13 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailableGNU Binutils Eh Frame elf-eh-frame.c _bfd_elf_eh_frame_section_offset null pointer dereference
CVE-2026-91781 ↗azl3 binutils 2.41-13 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailableGNU Binutils ELF Section elf64-x86-64.c elf_x86_64_common_section_index null pointer dereference
CVE-2026-91986 ↗azl3 rust 1.75.0-31 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailablegitoxide gix-transport before 0.59.2 CR/LF/NUL Injection
CVE-2026-93191 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailablesmack: fix incorrect task context in smack_msg_queue_msgrcv
CVE-2026-81870 ↗azl3 azurelinux-image-tools 1.6.0-2 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailableOpenTelemetry-Go: Exporter config logging may leak endpoint URLs in info logs
CVE-2026-81872 ↗azl3 azurelinux-image-tools 1.6.0-2 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailableOpenTelemetry-Go: BatchProcessor can busy-spin when export buffer is full
CVE-2026-80948 ↗azl3 kernel 6.6.152.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailablewifi: iwlwifi: dvm: fix memory leak in iwl_op_mode_dvm_start()
CVE-2026-89627 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailableHID: roccat: free buffered reports when destroying device
CVE-2026-87876 ↗azl3 cups 2.4.19-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailableCups: openprinting cups: remaining case-insensitive username matching in scheduler side paths (cve-2026-27447 follow-up)
CVE-2026-89473 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailablepower: supply: bq25890: Fix power_supply reference leak
CVE-2026-89757 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailablemm/mglru: fix and remove redundant unevictable folio handling
CVE-2026-80983 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailablenet/smc: fix socket refcount leak in smc_switch_conns()
CVE-2026-89462 ↗azl3 kernel 6.6.152.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailablepower: supply: max17040: propagate register read errors
CVE-2026-89461 ↗azl3 kernel 6.6.152.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailablepower: supply: max17040: synchronize work cancellation on suspend
CVE-2026-89645 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailablebtrfs: drop recovered reloc root refs on recovery failure
CVE-2026-89628 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailableHID: picolcd: clamp eeprom debugfs read to bytes actually received
CVE-2026-80996 ↗azl3 kernel 6.6.157.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailablenet: l2tp: do not propagate multicast notification errors
CVE-2026-80949 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailablewifi: brcmfmac: Fix memory leak in brcmf_sdio_read_control()
CVE-2026-89565 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailableipip: fix skb leak in collect_md mode when metadata_dst allocation fails
CVE-2026-89768 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailablefs: fix user path of nested backing files
CVE-2026-89582 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailablebnx2x: fix double free in bnx2x_init_firmware() error path
CVE-2026-89156 ↗azl3 pcre2 10.42-3 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailablePCRE2 before 10.48 has a pcre2_match out-of-bounds read after a JIT fallback when an attacker can provide invalid UTF data.
CVE-2026-89160 ↗azl3 pcre2 10.42-3 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailablePCRE2 before 10.48 has a pcre2_match out-of-bounds read during the PCRE2_MATCH_INVALID_UTF matching of an invalid UTF subject.
CVE-2026-78127 ↗azl3 strongswan 5.9.14-10 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailablelibcharon in strongSwan 4.1.2 through 6.0.7 has a missing release of memory after its effective lifetime in the IKE message parser.
CVE-2026-78131 ↗azl3 strongswan 5.9.14-10 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailablestrongSwan 4.2.0 through 6.0.7 has a missing release of memory after its effective lifetime in the x509 plugin's attribute certificate parser.
CVE-2026-78124 ↗azl3 strongswan 5.9.14-10 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailablestrongSwan 5.0.2 through 6.0.7 allows PKCS#7 certificate enumeration in the openssl plugin that leads to a lack of release of memory after its effective lifetime.
CVE-2026-80918 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailableHID: core: fix number/pointer type confusion on long items
CVE-2026-80920 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailableio_uring: defer eventfd signaling when queued from a wakeup handler
CVE-2026-18540 ↗azl3 nodejs 24.20.0-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailableundici vulnerable to downstream response splitting via retry interceptor
CVE-2026-80784 ↗azl3 kernel 6.6.152.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailablemptcp: pm: fix memory leak from alloc-during-teardown race
CVE-2026-80827 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailableUSB: serial: option: fix slab OOB read in interrupt URB callback
CVE-2026-80893 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailablemm/hugetlb: fix swap entry corruption when clearing uffd-wp at fork()
CVE-2026-80761 ↗azl3 kernel 6.6.157.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailableBluetooth: ISO: zero the sockaddr before returning it in getname
CVE-2026-80892 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailableerofs: cap LZMA stream pool size
CVE-2026-80910 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailableASoC: codecs: lpass-wsa-macro: Fix enum kcontrol accesses
CVE-2026-80797 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailablenfc: pn533: purge fragmented skbs during cleanup
CVE-2026-80889 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailablecan: isotp: fix timer drain order, wakeup handling and tx_gen ordering
CVE-2026-86137 ↗azl3 libxml2 2.11.5-10 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailableIn libxml2 before 2.15.4, xmlFAParsePosCharGroup has an out-of-bounds read, aka an out-of-bounds read in the NXT macro in xmlregexp.
CVE-2026-80843 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailablexfrm: fix xfrm_state_construct() auth-trunc leak
CVE-2026-86141 ↗azl3 libxml2 2.11.5-10 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailablexmlregexp in libxml2 before 2.15.4 has a NULL pointer dereference in xmlRegNewParserCtxt after a strdup failure, i.e., it does not calculate a string length after NULL checking.
CVE-2026-80744 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0LowOut-of-bandNot availableMicrosoft rating unavailablenetfilter: nf_tables_offload: suppress WARN_ON_ONCE for ENOMEM in abort path

Cross-vendor patches

VendorCVESeverityProductFixed versionPatchAdvisory
SuseCVE-2026-13608trackedCVSS 3.7SUSE Linux Enterprise Micro 5.3curl-0:8.14.1-150400.5.91.1.aarch64no patch linkAdvisory ↗
Red HatCVE-2026-18924trackedCVSS 3.7Red Hat Hardened Imagescurl-0:8.22.0-0.1.hum1@aarch64Patch ↗Advisory ↗
SuseCVE-2026-38752trackedCVSS 3.3Open Enterprise Server 25.4busybox-0:1.37.0-150700.18.21.1.aarch64no patch linkAdvisory ↗
SuseCVE-2026-38755trackedCVSS 3.3Open Enterprise Server 25.4busybox-0:1.37.0-150700.18.21.1.aarch64no patch linkAdvisory ↗
SuseCVE-2026-5773trackedCVSS 3.7SUSE Linux Enterprise Micro 5.3curl-0:8.14.1-150400.5.91.1.aarch64no patch linkAdvisory ↗
Red HatCVE-2026-65183trackedCVSS 2.5Red Hat Hardened Imagestomcat10-0:10.1.59-0.1.hum1@noarchPatch ↗Advisory ↗
Red HatCVE-2026-66422trackedCVSS 2.7Red Hat Hardened Imagestomcat10-0:10.1.59-0.1.hum1@noarchPatch ↗Advisory ↗
Red HatCVE-2026-66785trackedCVSS 2.5Red Hat Advanced Cluster Management for Kubernetes 2.17registry.redhat.io/rhacm2/lighthouse-agent-rhel9@sha256:329806e6d9cee8c20823f45a67c1b0cdb4a8af957c520ef8303557576e8a32f0_amd64Patch ↗Advisory ↗
Red HatCVE-2026-66788trackedCVSS 3.7Red Hat Advanced Cluster Management for Kubernetes 2.17registry.redhat.io/rhacm2/lighthouse-agent-rhel9@sha256:329806e6d9cee8c20823f45a67c1b0cdb4a8af957c520ef8303557576e8a32f0_amd64Patch ↗Advisory ↗
SuseCVE-2026-80229trackedCVSS 3.1SUSE Linux Enterprise Micro 5.3curl-0:8.14.1-150400.5.91.1.aarch64no patch linkAdvisory ↗
Red HatCVE-2026-80230trackedCVSS 3.7Red Hat Hardened Imagescurl-0:8.22.0-0.1.hum1@aarch64Patch ↗Advisory ↗
SuseCVE-2026-80230trackedCVSS 3.1SUSE Linux Enterprise Micro 5.3curl-0:8.14.1-150400.5.91.1.aarch64no patch linkAdvisory ↗
Red HatCVE-2026-80231trackedCVSS 3.7Red Hat Hardened Imagescurl-0:8.22.0-0.1.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-80255trackedCVSS 3.7Red Hat Hardened Imagescurl-0:8.22.0-0.1.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-82209trackedCVSS 3.1Red Hat Hardened Imagescurl-0:8.22.0-0.1.hum1@aarch64Patch ↗Advisory ↗
SuseCVE-2026-34181trackedCVSS 3.1SUSE Linux Micro 6.2libopenssl-3-devel-0:3.5.0-160000.10.1.aarch64no patch linkAdvisory ↗
SuseCVE-2026-34181trackedCVSS 3.1openSUSE Leap 16.0libopenssl-3-devel-0:3.5.0-160000.10.1.aarch64no patch linkAdvisory ↗
SuseCVE-2026-38752trackedCVSS 3.3SUSE Linux Micro 6.0busybox-0:1.36.1-5.1.aarch64no patch linkAdvisory ↗
SuseCVE-2026-38755trackedCVSS 3.3SUSE Linux Micro 6.0busybox-0:1.36.1-5.1.aarch64no patch linkAdvisory ↗
Red HatCVE-2026-75803trackedCVSS 3.7Red Hat Hardened Imagesruby3.3-0:3.3.10-23.6.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-75803trackedCVSS 3.7Red Hat Hardened Imagesruby4.0-0:4.0.6-37.3.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-75803trackedCVSS 3.7Red Hat Hardened Imagesruby3.4-0:3.4.10-31.7.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2025-6170CVSS 2.5Cert Manager support for Red Hat OpenShift release 1.20registry.redhat.io/cert-manager/jetstack-cert-manager-rhel9@sha256:4c096dd98f4e139c2c5f08f26559e4f243edd2d745da197e232f02074092a300_amd64Patch ↗Advisory ↗
Red HatCVE-2025-6170CVSS 2.5Cert Manager support for Red Hat OpenShift release 1.20registry.redhat.io/cert-manager/cert-manager-istio-csr-rhel9@sha256:11d39535560409a0bd51a541f08506048a69b817db68c0e847ccbf73c0feb282_amd64Patch ↗Advisory ↗
Red HatCVE-2025-6170CVSS 2.5Cert Manager support for Red Hat OpenShift release 1.20registry.redhat.io/cert-manager/cert-manager-operator-rhel9@sha256:0bfd185a474fc2a5adf322c153f804799f38e0cb190528ff0b9be9c101c3eaca_s390xPatch ↗Advisory ↗
Red HatCVE-2025-6170CVSS 2.5Cert Manager support for Red Hat OpenShift release 1.20registry.redhat.io/cert-manager/jetstack-cert-manager-acmesolver-rhel9@sha256:607a55f9a9d9a7932e9b51ad85723757db2cf3ccbef6c832f7ded8222e058e8a_ppc64lePatch ↗Advisory ↗
Red HatCVE-2025-6170CVSS 2.5Cert Manager support for Red Hat OpenShift release 1.20registry.redhat.io/cert-manager/cert-manager-istio-csr-rhel9@sha256:0329f6bd8b196ecd1fb76dde04b8f3b9b2e64a1064db05b7d5211b50d8353a95_amd64Patch ↗Advisory ↗
Red HatCVE-2025-6170CVSS 2.5Cert Manager support for Red Hat OpenShift release 1.20registry.redhat.io/cert-manager/cert-manager-operator-rhel9@sha256:3caf7e9deb5e4d432ea666bbe1bb173ced5c2a191a553d126d31d2c3acd5a549_ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-81870CVSS 3.3Cert Manager support for Red Hat OpenShift release 1.20registry.redhat.io/cert-manager/cert-manager-istio-csr-rhel9@sha256:11d39535560409a0bd51a541f08506048a69b817db68c0e847ccbf73c0feb282_amd64Patch ↗Advisory ↗
Red HatCVE-2026-81870CVSS 3.3Cert Manager support for Red Hat OpenShift release 1.20registry.redhat.io/cert-manager/cert-manager-istio-csr-rhel9@sha256:0329f6bd8b196ecd1fb76dde04b8f3b9b2e64a1064db05b7d5211b50d8353a95_amd64Patch ↗Advisory ↗
Red HatCVE-2026-73281CVSS 3.5Red Hat Update Infrastructure 5registry.redhat.io/rhui5/installer-rhel9@sha256:d48913b5697bc2befdfc1933ad427edec6b24bdb00ac06916386b6f319dccc4b_amd64Patch ↗Advisory ↗
Red HatCVE-2025-1218CVSS 3.7Red Hat Hardened Imagesphp-0:8.5.11-2.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2025-6170CVSS 2.5Red Hat Enterprise Linux AppStream EUS (v. 10.0)libxml2-debuginfo-0:2.12.5-9.el10_0.2.aarch64Patch ↗Advisory ↗
Red HatCVE-2025-6170CVSS 2.5Red Hat Enterprise Linux AppStream EUS (v.9.6)libxml2-debuginfo-0:2.9.13-12.el9_6.3.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-60589CVSS 3.7Red Hat Enterprise Linux Supplementary (v. 8)java-1.8.0-ibm-1:1.8.0.8.71-1.el8_10.ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-71463CVSS 2.7Red Hat Ansible Automation Platform 2.6 for RHEL 9automation-controller-venv-tower-0:4.7.17-1.el9ap.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-71463CVSS 2.7Red Hat Ansible Automation Platform 2.5 for RHEL 8automation-controller-venv-tower-0:4.6.33-1.el8ap.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-71463CVSS 2.7Red Hat Ansible Automation Platform 2.7registry.redhat.io/ansible-automation-platform-27/controller-rhel9@sha256:0b4d286c39fbb3056643306df9e81c2d4727e005a551ab74c2cee0950f35bf25_amd64Patch ↗Advisory ↗
Red HatCVE-2026-71463CVSS 2.7Red Hat Ansible Automation Platform 2.6registry.redhat.io/ansible-automation-platform-26/controller-rhel9@sha256:0ea5754e6baa9da37abc43777bd9a05db5815454fc2949a8909a3e2aefc7a039_arm64Patch ↗Advisory ↗
Red HatCVE-2026-71464CVSS 3.1Red Hat Ansible Automation Platform 2.6 for RHEL 9automation-controller-venv-tower-0:4.7.17-1.el9ap.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-71464CVSS 3.1Red Hat Ansible Automation Platform 2.5 for RHEL 8automation-controller-venv-tower-0:4.6.33-1.el8ap.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-71464CVSS 3.1Red Hat Ansible Automation Platform 2.7registry.redhat.io/ansible-automation-platform-27/controller-rhel9@sha256:0b4d286c39fbb3056643306df9e81c2d4727e005a551ab74c2cee0950f35bf25_amd64Patch ↗Advisory ↗
Red HatCVE-2026-71464CVSS 3.1Red Hat Ansible Automation Platform 2.6registry.redhat.io/ansible-automation-platform-26/controller-rhel9@sha256:0ea5754e6baa9da37abc43777bd9a05db5815454fc2949a8909a3e2aefc7a039_arm64Patch ↗Advisory ↗
Red HatCVE-2026-71465CVSS 3.1Red Hat Ansible Automation Platform 2.6 for RHEL 9automation-controller-venv-tower-0:4.7.17-1.el9ap.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-71465CVSS 3.1Red Hat Ansible Automation Platform 2.5 for RHEL 8automation-controller-venv-tower-0:4.6.33-1.el8ap.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-71465CVSS 3.1Red Hat Ansible Automation Platform 2.7registry.redhat.io/ansible-automation-platform-27/controller-rhel9@sha256:0b4d286c39fbb3056643306df9e81c2d4727e005a551ab74c2cee0950f35bf25_amd64Patch ↗Advisory ↗
Red HatCVE-2026-71465CVSS 3.1Red Hat Ansible Automation Platform 2.6registry.redhat.io/ansible-automation-platform-26/controller-rhel9@sha256:0ea5754e6baa9da37abc43777bd9a05db5815454fc2949a8909a3e2aefc7a039_arm64Patch ↗Advisory ↗
Red HatCVE-2026-73281CVSS 3.5Red Hat Hardened Imagesopenssh-0:10.5p1-1.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-15028CVSS 3.9Red Hat Enterprise Linux AppStream (v. 10)bsdcat-debuginfo-0:3.7.7-11.el10_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-16517CVSS 2.9Red Hat Enterprise Linux AppStream (v. 10)bsdcat-debuginfo-0:3.7.7-11.el10_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-73281CVSS 3.5Red Hat Enterprise Linux AppStream (v. 10)openssh-askpass-0:9.9p1-27.el10_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-73281CVSS 3.5Red Hat Enterprise Linux AppStream (v. 9)openssh-askpass-0:9.9p1-11.el9_8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-43514CVSS 3.7Red Hat Enterprise Linux AppStream (v. 10)tomcat9-1:9.0.120-1.el10_2.noarchPatch ↗Advisory ↗
Red HatCVE-2024-54677CVSS 3.7Red Hat Enterprise Linux AppStream EUS (v.9.6)tomcat-1:9.0.120-1.el9_6.noarchPatch ↗Advisory ↗
Red HatCVE-2024-54677CVSS 3.7Red Hat Enterprise Linux AppStream (v. 8)tomcat-1:9.0.120-1.el8_10.noarchPatch ↗Advisory ↗
Red HatCVE-2024-54677CVSS 3.7Red Hat Enterprise Linux AppStream E4S (v.9.2)tomcat-1:9.0.120-1.el9_2.noarchPatch ↗Advisory ↗
Red HatCVE-2024-54677CVSS 3.7Red Hat Enterprise Linux AppStream E4S (v.9.4)tomcat-1:9.0.120-1.el9_4.noarchPatch ↗Advisory ↗
Red HatCVE-2024-54677CVSS 3.7Red Hat Enterprise Linux AppStream E4S (v.8.8)tomcat-1:9.0.120-1.el8_8.noarchPatch ↗Advisory ↗
Red HatCVE-2025-55754CVSS 3.5Red Hat Enterprise Linux AppStream EUS (v.9.6)tomcat-1:9.0.120-1.el9_6.noarchPatch ↗Advisory ↗
Red HatCVE-2025-55754CVSS 3.5Red Hat Enterprise Linux AppStream (v. 8)tomcat-1:9.0.120-1.el8_10.noarchPatch ↗Advisory ↗
Red HatCVE-2025-55754CVSS 3.5Red Hat Enterprise Linux AppStream E4S (v.9.2)tomcat-1:9.0.120-1.el9_2.noarchPatch ↗Advisory ↗
Red HatCVE-2025-55754CVSS 3.5Red Hat Enterprise Linux AppStream E4S (v.9.4)tomcat-1:9.0.120-1.el9_4.noarchPatch ↗Advisory ↗
Red HatCVE-2025-55754CVSS 3.5Red Hat Enterprise Linux AppStream E4S (v.8.8)tomcat-1:9.0.120-1.el8_8.noarchPatch ↗Advisory ↗
Red HatCVE-2026-24733CVSS 3.7Red Hat Enterprise Linux AppStream EUS (v.9.6)tomcat-1:9.0.120-1.el9_6.noarchPatch ↗Advisory ↗
Red HatCVE-2026-24733CVSS 3.7Red Hat Enterprise Linux AppStream (v. 8)tomcat-1:9.0.120-1.el8_10.noarchPatch ↗Advisory ↗
Red HatCVE-2026-24733CVSS 3.7Red Hat Enterprise Linux AppStream E4S (v.9.2)tomcat-1:9.0.120-1.el9_2.noarchPatch ↗Advisory ↗
Red HatCVE-2026-24733CVSS 3.7Red Hat Enterprise Linux AppStream E4S (v.9.4)tomcat-1:9.0.120-1.el9_4.noarchPatch ↗Advisory ↗
Red HatCVE-2026-24733CVSS 3.7Red Hat Enterprise Linux AppStream E4S (v.8.8)tomcat-1:9.0.120-1.el8_8.noarchPatch ↗Advisory ↗
Red HatCVE-2026-43514CVSS 3.7Red Hat Enterprise Linux AppStream EUS (v.9.6)tomcat-1:9.0.120-1.el9_6.noarchPatch ↗Advisory ↗
Red HatCVE-2026-43514CVSS 3.7Red Hat Enterprise Linux AppStream (v. 9)tomcat-1:9.0.120-2.el9_8.noarchPatch ↗Advisory ↗
Red HatCVE-2026-43514CVSS 3.7Red Hat Enterprise Linux AppStream (v. 8)tomcat-1:9.0.120-1.el8_10.noarchPatch ↗Advisory ↗
Red HatCVE-2026-43514CVSS 3.7Red Hat Enterprise Linux AppStream E4S (v.9.2)tomcat-1:9.0.120-1.el9_2.noarchPatch ↗Advisory ↗
Red HatCVE-2026-43514CVSS 3.7Red Hat Enterprise Linux AppStream E4S (v.9.4)tomcat-1:9.0.120-1.el9_4.noarchPatch ↗Advisory ↗
Red HatCVE-2026-43514CVSS 3.7Red Hat Enterprise Linux AppStream E4S (v.8.8)tomcat-1:9.0.120-1.el8_8.noarchPatch ↗Advisory ↗
Red HatCVE-2026-77860CVSS 3.7Red Hat Hardened Imagespython3-unbound-0:1.26.1-1.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-82562CVSS 3.7Red Hat OpenShift Dev Spaces 3.30registry.redhat.io/devspaces/dashboard-rhel9@sha256:167f8fd2b88dc37abed12b6496ac32b5b031de3be233f2864afb918c8b692a1a_arm64Patch ↗Advisory ↗
Red HatCVE-2026-18209CVSS 3.4Red Hat build of Keycloak 26.6rhbk/keycloak-operator-bundle@sha256:214bd43b28c8f61d9c8f81f57e9dd3027d09cb3c00fb307bd265130147dd419b_amd64Patch ↗Advisory ↗
Red HatCVE-2026-18209CVSS 3.4Red Hat build of Keycloak 26.6.7Not reportedPatch ↗Advisory ↗
CiscoCVE-2026-20071CVSS 3.8Cisco Identity Services Engine3.1Patch ↗Advisory ↗
Red HatCVE-2024-53161CVSS 3.8Red Hat Enterprise Linux BaseOS (v. 8)bpftool-0:4.18.0-553.163.1.el8_10.aarch64Patch ↗Advisory ↗
Red HatCVE-2024-53161CVSS 3.8Red Hat Enterprise Linux NFV (v. 8)kernel-rt-0:4.18.0-553.163.1.rt7.504.el8_10.srcPatch ↗Advisory ↗
Red HatCVE-2026-44839CVSS 3.5Red Hat Hardened Imagesrabbitmq-server4.3-0:4.3.6-1.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-45446CVSS 3.7Red Hat Hardened Imagesbootupd-0:0.3.2-1.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-67420CVSS 3.1Red Hat Hardened Imagesrabbitmq-server4.3-0:4.3.6-1.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-87876CVSS 3.0Red Hat Hardened Imagescups-0:2.4.19-4.2.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-89156CVSS 2.9Red Hat Hardened Imagespcre2-0:10.48-0.1.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-89160CVSS 3.7Red Hat Hardened Imagespcre2-0:10.48-0.1.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-89162CVSS 2.9Red Hat Hardened Imagespcre2-0:10.48-0.1.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2025-55754CVSS 3.5Red Hat Enterprise Linux AppStream EUS (v. 10.0)tomcat9-1:9.0.120-1.el10_0.noarchPatch ↗Advisory ↗
Red HatCVE-2026-24733CVSS 3.7Red Hat Enterprise Linux AppStream EUS (v. 10.0)tomcat9-1:9.0.120-1.el10_0.noarchPatch ↗Advisory ↗
Red HatCVE-2026-43514CVSS 3.7Red Hat Enterprise Linux AppStream EUS (v. 10.0)tomcat9-1:9.0.120-1.el10_0.noarchPatch ↗Advisory ↗
Red HatCVE-2026-18540CVSS 3.7Red Hat Hardened Imagesnodejs26-0:26.8.2-0.1.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-85498CVSS 3.5Red Hat Hardened Imagespolkit-main@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-18540CVSS 3.7Red Hat Hardened Imagesgrafana12.4-0:12.4.10-0.2.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-28378CVSS 3.1Red Hat Hardened Imagesgrafana12.4-0:12.4.10-0.2.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-41992CVSS 3.6Red Hat Enterprise Linux BaseOS (v. 8)gzip-0:1.9-15.el8_10.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-41992CVSS 3.6Red Hat Update Infrastructure 5registry.redhat.io/rhui5/cds-kubernetes-rhel9@sha256:7840142734dad76221aa6846ab6e8aacc913a8017e4c5c956d574f78b8dfa98d_amd64Patch ↗Advisory ↗
Red HatCVE-2026-74976CVSS 3.4Red Hat Enterprise Linux AppStream AUS (v.8.6)thunderbird-0:140.14.0-1.el8_6.srcPatch ↗Advisory ↗
Red HatCVE-2026-74976CVSS 3.4Red Hat Enterprise Linux AppStream AUS (v.8.4)thunderbird-0:140.14.0-1.el8_4.srcPatch ↗Advisory ↗
Red HatCVE-2026-74976CVSS 3.4Red Hat Enterprise Linux AppStream E4S (v.8.8)thunderbird-0:140.14.0-1.el8_8.ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-74976CVSS 3.4Red Hat Enterprise Linux AppStream E4S (v.9.2)thunderbird-0:140.14.0-1.el9_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-74976CVSS 3.4Red Hat Enterprise Linux AppStream E4S (v.9.2)firefox-0:140.14.0-1.el9_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-85008CVSS 3.7Red Hat Hardened Imagesgrafana12.4-0:12.4.10-0.2.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-74976CVSS 3.4Red Hat Enterprise Linux AppStream EUS (v. 10.0)firefox-0:140.14.0-1.el10_0.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-74976CVSS 3.4Red Hat Enterprise Linux AppStream E4S (v.8.8)firefox-0:140.14.0-1.el8_8.ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-74976CVSS 3.4Red Hat Enterprise Linux AppStream EUS (v.9.6)firefox-0:140.14.0-1.el9_6.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-74976CVSS 3.4Red Hat Enterprise Linux AppStream E4S (v.9.4)firefox-0:140.14.0-1.el9_4.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-74976CVSS 3.4Red Hat Enterprise Linux AppStream AUS (v.8.6)firefox-0:140.14.0-1.el8_6.srcPatch ↗Advisory ↗
Red HatCVE-2026-74976CVSS 3.4Red Hat Enterprise Linux AppStream AUS (v.8.4)firefox-0:140.14.0-1.el8_4.srcPatch ↗Advisory ↗
Red HatCVE-2026-74976CVSS 3.4Red Hat Enterprise Linux AppStream (v. 9)thunderbird-0:140.14.0-1.el9_8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-74976CVSS 3.4Red Hat Enterprise Linux AppStream (v. 10)thunderbird-0:140.14.0-1.el10_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-74976CVSS 3.4Red Hat Enterprise Linux AppStream (v. 8)thunderbird-0:140.14.0-1.el8_10.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-74976CVSS 3.4Red Hat Enterprise Linux Server (v. 7 ELS)firefox-0:140.14.0-1.el7_9.ppc64Patch ↗Advisory ↗
Red HatCVE-2026-74976CVSS 3.4Red Hat Enterprise Linux AppStream EUS (v. 10.0)thunderbird-0:140.14.0-1.el10_0.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-74976CVSS 3.4Red Hat Enterprise Linux AppStream E4S (v.9.4)thunderbird-0:140.14.0-1.el9_4.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-74976CVSS 3.4Red Hat Enterprise Linux AppStream EUS (v.9.6)thunderbird-0:140.14.0-1.el9_6.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-86137CVSS 2.9Red Hat Hardened Imageslibxml2-0:2.15.4-0.1.hum1@srcPatch ↗Advisory ↗
Red HatCVE-2026-86141CVSS 2.9Red Hat Hardened Imageslibxml2-0:2.15.4-0.1.hum1@srcPatch ↗Advisory ↗
Red HatCVE-2026-54891CVSS 3.7Red Hat Hardened Imageserlang27-0:27.3.4.17-1.hum1@aarch64Patch ↗Advisory ↗

Glossary