| | CVE-2026-23421 | Red Hat | low | 5.5 | 0.0%
| | In the Linux kernel, the following vulnerability has been resolved:
drm/xe/configfs: Free ctx_restor… | Apr 3, 2026 | Apr 3, 2026 |
| | CVE-2026-23419 | Red Hat | medium | 5.5 | 0.0%
| | In the Linux kernel, the following vulnerability has been resolved:
net/rds: Fix circular locking de… | Apr 3, 2026 | Apr 3, 2026 |
| | CVE-2026-23420 | Red Hat | medium | 5.5 | 0.0%
| | In the Linux kernel, the following vulnerability has been resolved:
wifi: wlcore: Fix a locking bug
… | Apr 3, 2026 | Apr 3, 2026 |
| | CVE-2026-23424 | Red Hat | medium | — | 0.0%
| | In the Linux kernel, the following vulnerability has been resolved:
accel/amdxdna: Validate command … | Apr 3, 2026 | Apr 3, 2026 |
| | CVE-2026-23422 | Red Hat | medium | — | 0.0%
| | In the Linux kernel, the following vulnerability has been resolved:
dpaa2-switch: Fix interrupt stor… | Apr 3, 2026 | Apr 3, 2026 |
| | CVE-2026-26135 | Microsoft | critical | 9.6 | 0.6%
| | Server-side request forgery (ssrf) in Azure Custom Locations Resource Provider (RP) allows an author… | Apr 3, 2026 | Jul 24, 2026 |
| | CVE-2026-32173 | Microsoft | high | 8.6 | 0.9%
| | Improper authentication in Azure SRE Agent allows an unauthorized attacker to disclose information o… | Apr 3, 2026 | Jul 24, 2026 |
| | CVE-2026-32211 | Microsoft | critical | 9.1 | 0.8%
| | Missing authentication for critical function in Azure MCP Server allows an unauthorized attacker to … | Apr 3, 2026 | Jul 24, 2026 |
| | CVE-2026-32213 | Microsoft | critical | 10.0 | 0.9%
| | Improper authorization in Azure AI Foundry allows an unauthorized attacker to elevate privileges ove… | Apr 3, 2026 | Jul 24, 2026 |
| | CVE-2026-33105 | Microsoft | critical | 10.0 | 0.7%
| | Improper authorization in Microsoft Azure Kubernetes Service allows an unauthorized attacker to elev… | Apr 3, 2026 | Jul 24, 2026 |
| | CVE-2026-33107 | Microsoft | critical | 10.0 | 0.7%
| | Server-side request forgery (ssrf) in Azure Databricks allows an unauthorized attacker to elevate pr… | Apr 3, 2026 | Jul 24, 2026 |
| | CVE-2026-35535 | Red Hat | high | 7.4 | 0.0%
| | In Sudo through 1.9.17p2 before 3e474c2, a failure of a setuid, setgid, or setgroups call, during a … | Apr 3, 2026 | Apr 3, 2026 |
| | CVE-2026-35536 | Red Hat | medium | 5.4 | 0.0%
| | In Tornado before 6.5.5, cookie attribute injection could occur because the domain, path, and samesi… | Apr 3, 2026 | Apr 3, 2026 |
| | CVE-2026-35549 | Red Hat | medium | 6.5 | 0.1%
| | An issue was discovered in MariaDB Server before 11.4.10, 11.5.x through 11.8.x before 11.8.6, and 1… | Apr 3, 2026 | Apr 3, 2026 |
| | CVE-2026-27124 | Red Hat | medium | 6.5 | 0.1%
| | FastMCP is the standard framework for building MCP applications. Prior to version 3.2.0, while testi… | Apr 3, 2026 | Apr 3, 2026 |
| | CVE-2026-32186 | Microsoft | critical | 10.0 | 0.7%
| | Server-side request forgery (ssrf) in Microsoft Bing allows an unauthorized attacker to elevate priv… | Apr 3, 2026 | Jul 24, 2026 |
| | CVE-2026-27447 | Red Hat | medium | 6.4 | 0.0%
| | OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems.… | Apr 3, 2026 | Apr 3, 2026 |
| | CVE-2026-34990 | Red Hat | medium | 5.2 | 0.0%
| | OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems.… | Apr 3, 2026 | Apr 3, 2026 |
| | CVE-2026-34978 | Red Hat | medium | 6.5 | 0.1%
| | OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems.… | Apr 3, 2026 | Apr 3, 2026 |
| | CVE-2026-34979 | Red Hat | medium | 5.3 | 0.0%
| | OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems.… | Apr 3, 2026 | Apr 3, 2026 |
| | CVE-2026-34980 | Red Hat | medium | 6.4 | 0.0%
| | OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems.… | Apr 3, 2026 | Apr 3, 2026 |
| | CVE-2026-27456 | Red Hat | medium | 4.7 | 0.0%
| ✓ Fix | util-linux is a random collection of Linux utilities. Prior to version 2.41.4, a TOCTOU (Time-of-Che… | Apr 3, 2026 | Apr 3, 2026 |
| | CVE-2026-34933 | Red Hat | medium | 5.5 | 0.0%
| ✓ Fix | Avahi is a system which facilitates service discovery on a local network via the mDNS/DNS-SD protoco… | Apr 3, 2026 | Apr 3, 2026 |
| | CVE-2026-34769 | Red Hat | high | 7.7 | 0.0%
| | Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and C… | Apr 3, 2026 | Apr 3, 2026 |
| | CVE-2026-34766 | Red Hat | low | 3.3 | 0.0%
| | Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and C… | Apr 3, 2026 | Apr 3, 2026 |
| | CVE-2026-34767 | Red Hat | medium | 5.9 | 0.0%
| | Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and C… | Apr 3, 2026 | Apr 3, 2026 |
| | CVE-2026-34768 | Red Hat | low | 3.9 | 0.0%
| | Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and C… | Apr 3, 2026 | Apr 3, 2026 |
| | CVE-2026-34771 | Red Hat | high | 7.5 | 0.0%
| | Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and C… | Apr 3, 2026 | Apr 3, 2026 |
| | CVE-2026-34772 | Red Hat | medium | 5.8 | 0.0%
| | Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and C… | Apr 3, 2026 | Apr 3, 2026 |
| | CVE-2026-34773 | Red Hat | medium | 4.7 | 0.0%
| | Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and C… | Apr 3, 2026 | Apr 3, 2026 |
| | CVE-2026-34774 | Red Hat | high | 8.1 | 0.0%
| | Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and C… | Apr 3, 2026 | Apr 3, 2026 |
| | CVE-2026-34775 | Red Hat | medium | 6.8 | 0.0%
| | Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and C… | Apr 3, 2026 | Apr 3, 2026 |
| | CVE-2026-34776 | Red Hat | medium | 5.3 | 0.0%
| | Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and C… | Apr 3, 2026 | Apr 3, 2026 |
| | CVE-2026-34777 | Red Hat | medium | 5.4 | 0.0%
| | Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and C… | Apr 3, 2026 | Apr 3, 2026 |
| | CVE-2026-34778 | Red Hat | medium | 5.9 | 0.0%
| | Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and C… | Apr 3, 2026 | Apr 3, 2026 |
| | CVE-2026-34780 | Red Hat | high | 8.0 | 0.0%
| | Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and C… | Apr 4, 2026 | Apr 4, 2026 |
| | CVE-2026-35616 | Fortinet | critical | 9.8 | 88.9%
| ⚠ KEV | A improper access control vulnerability in Fortinet FortiClientEMS 7.4.5 through 7.4.6 may allow an … | Apr 4, 2026 | Jul 24, 2026 |
| | CVE-2016-20050 | Trellix | medium | 6.2 | 0.2%
| | NetSchedScan 1.0 contains a buffer overflow vulnerability in the scan Hostname/IP field that allows … | Apr 4, 2026 | Jul 20, 2026 |
| | CVE-2026-5530 | Red Hat | medium | 6.3 | 0.0%
| | A flaw has been found in Ollama up to 18.1. This issue affects some unknown processing of the file s… | Apr 5, 2026 | Apr 5, 2026 |
| | CVE-2026-5265 | Red Hat | medium | 6.5 | 0.1%
| ✓ Fix | When generating an ICMP Destination Unreachable or Packet Too Big response, the handler copies a por… | Apr 6, 2026 | Apr 6, 2026 |
| | CVE-2026-4878 | Red Hat | high | 6.7 | 0.0%
| ✓ Fix | A flaw was found in libcap. A local unprivileged user can exploit a Time-of-check-to-time-of-use (TO… | Apr 6, 2026 | Apr 6, 2026 |
| | CVE-2026-31410 | Red Hat | medium | — | 0.0%
| | A flaw was found in ksmbd in the Linux kernel. This vulnerability occurs because ksmbd incorrectly u… | Apr 6, 2026 | Apr 6, 2026 |
| | CVE-2026-31409 | Red Hat | medium | — | 0.0%
| | A flaw was found in ksmbd, a component of the Linux kernel. This vulnerability occurs when a multich… | Apr 6, 2026 | Apr 6, 2026 |
| | CVE-2026-31405 | Red Hat | medium | — | 0.0%
| | A flaw was found in the Linux kernel's dvb-net component. A remote attacker could exploit this vulne… | Apr 6, 2026 | Apr 6, 2026 |
| | CVE-2026-31408 | Red Hat | medium | 5.5 | 0.0%
| | A flaw was found in the Linux kernel's Bluetooth SCO (Synchronous Connection-Oriented) protocol impl… | Apr 6, 2026 | Apr 6, 2026 |
| | CVE-2026-31406 | Red Hat | medium | 5.5 | 0.0%
| | A flaw was found in the Linux kernel, specifically within its xfrm (IP eXtensible FRamework) compone… | Apr 6, 2026 | Apr 6, 2026 |
| | CVE-2026-31407 | Red Hat | medium | 5.5 | 0.0%
| | A flaw was found in the Linux kernel's netfilter conntrack subsystem. Missing netlink policy validat… | Apr 6, 2026 | Apr 6, 2026 |
| | CVE-2026-37977 | Red Hat | low | 3.7 | 0.0%
| | A flaw was found in Keycloak. A remote attacker can exploit a Cross-Origin Resource Sharing (CORS) h… | Apr 6, 2026 | Apr 6, 2026 |
| | CVE-2026-5673 | Red Hat | medium | 5.6 | 0.0%
| | A flaw was found in libtheora. This heap-based out-of-bounds read vulnerability exists within the AV… | Apr 6, 2026 | Apr 6, 2026 |
| | CVE-2026-37980 | Red Hat | medium | 6.9 | 0.1%
| | A flaw was found in Keycloak, specifically in the organization selection login page. A remote attack… | Apr 6, 2026 | Apr 6, 2026 |