| | CVE-2026-86308 | Red Hat | medium | 5.3 | — | | A flaw was found in light0011 cms. A remote attacker could exploit a vulnerability in the Debug Mode… | Sep 7, 2026 | Sep 7, 2026 |
| | CVE-2026-86469 | Red Hat | medium | 5.3 | — | | A flaw was found in GLib2. When g_file_replace() is used with G_FILE_CREATE_REPLACE_DESTINATION and … | Sep 7, 2026 | Sep 7, 2026 |
| | CVE-2026-86564 | Red Hat | low | 3.3 | — | | A flaw was found in DPDK lib/vhost. Missing length validation before reading command_data in the vir… | Sep 8, 2026 | Sep 8, 2026 |
| | CVE-2026-78234 | Red Hat | high | 9.9 | — | | A flaw was found in hawtio-operator. The operator reads the OpenShift Service CA private signing key… | Sep 8, 2026 | Sep 8, 2026 |
| | CVE-2026-77968 | Red Hat | high | 8.2 | — | | A flaw was found in hawtio-operator. The operator's ClusterRole grants secrets: [create, get, list, … | Sep 8, 2026 | Sep 8, 2026 |
| | CVE-2026-80219 | Red Hat | high | 8.7 | — | | A flaw was found in hawtio-operator. When deploying Hawtio in cluster mode, the operator creates a c… | Sep 8, 2026 | Sep 8, 2026 |
| | CVE-2026-84389 | Fortinet | low | 2.8 | 0.1%
| | A url redirection to untrusted site ('open redirect') vulnerability in Fortinet FortiSIEM 7.5.0 thro… | Sep 8, 2026 | Sep 10, 2026 |
| | CVE-2026-84385 | Fortinet | medium | 4.9 | 0.1%
| | A improper access control vulnerability in Fortinet FortiSOAR PaaS 7.6.0 through 7.6.6, FortiSOAR Pa… | Sep 8, 2026 | Sep 10, 2026 |
| | CVE-2026-84393 | Fortinet | high | 7.3 | 0.2%
| | A improper validation of certificate with host mismatch vulnerability in Fortinet FortiOS 7.6.1 thro… | Sep 8, 2026 | Sep 10, 2026 |
| | CVE-2026-69806 | Red Hat | high | 7.0 | — | | dotnet-watch AspireServerService exposes information through procfs arguments that can enable inject… | Sep 8, 2026 | Sep 8, 2026 |
| | CVE-2026-58649 | Red Hat | medium | 6.5 | — | | dotnet watch BrowserRefreshServer does not adequately validate cross-origin WebSocket origins, poten… | Sep 8, 2026 | Sep 8, 2026 |
| | CVE-2026-62694 | Microsoft | high | 7.0 | — | | Use after free in Windows Installer allows an authorized attacker to elevate privileges locally. | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69341 | Microsoft | high | 7.0 | — | | Use after free in Windows Image Acquisition allows an authorized attacker to elevate privileges loca… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69522 | Microsoft | high | 8.8 | — | | Heap-based buffer overflow in Visual Studio allows an unauthorized attacker to execute code over a n… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-77482 | Microsoft | high | 8.8 | — | | Heap-based buffer overflow in SQL Server allows an unauthorized attacker to execute code over a netw… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-55007 | Microsoft | high | 8.1 | — | | Double free in Microsoft Exchange Server allows an unauthorized attacker to execute code over a netw… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-50349 | Microsoft | high | 7.0 | — | | Concurrent execution using shared resource with improper synchronization ('race condition') in Windo… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-67368 | Microsoft | high | 8.8 | — | | Improper link resolution before file access ('link following') in SQL Server allows an authorized at… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-67370 | Microsoft | high | 8.8 | — | | Improper neutralization of special elements used in an sql command ('sql injection') in SQL Server a… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-67373 | Microsoft | high | 8.8 | — | | Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a networ… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-67631 | Microsoft | high | 8.8 | — | | Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a networ… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-68785 | Microsoft | medium | 4.9 | — | | Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a networ… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-68787 | Microsoft | high | 7.8 | — | | Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code locally. | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-68832 | Microsoft | high | 7.8 | — | | Integer overflow or wraparound in Windows NTFS allows an authorized attacker to elevate privileges l… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-68835 | Microsoft | high | 7.1 | — | | Use after free in Windows Print Spooler Components allows an authorized attacker to elevate privileg… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-68841 | Microsoft | high | 7.8 | — | | Heap-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges local… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-68845 | Microsoft | high | 7.8 | — | | Heap-based buffer overflow in Windows Program Compatibility Assistant Service allows an authorized a… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-68846 | Microsoft | high | 7.1 | — | | Use after free in Windows Kernel allows an authorized attacker to elevate privileges over a network. | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-68875 | Microsoft | high | 7.8 | — | | Buffer over-read in Windows NTFS allows an authorized attacker to execute code locally. | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-68878 | Microsoft | high | 8.0 | — | | Stack-based buffer overflow in Windows Fast FAT Driver allows an authorized attacker to elevate priv… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-68884 | Microsoft | high | 7.0 | — | | Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges loc… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-68893 | Microsoft | high | 7.1 | — | | Use after free in Windows Remote Desktop Licensing Service allows an authorized attacker to elevate … | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69292 | Microsoft | high | 7.0 | — | | Double free in Remote Desktop Gateway Service allows an authorized attacker to elevate privileges lo… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69279 | Microsoft | high | 7.0 | — | | Use after free in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate pr… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69310 | Microsoft | high | 7.0 | 0.3%
| | Use after free in Windows DNS allows an authorized attacker to elevate privileges locally. | Sep 8, 2026 | Sep 10, 2026 |
| | CVE-2026-69366 | Microsoft | high | 7.1 | — | | Use after free in Windows Kernel allows an authorized attacker to elevate privileges over a network. | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69337 | Microsoft | high | 7.1 | — | | Double free in Windows Registry allows an authorized attacker to elevate privileges over a network. | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69333 | Microsoft | high | 7.0 | — | | Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally. | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69338 | Microsoft | high | 7.1 | — | | Use after free in Remote Desktop Gateway Service allows an authorized attacker to elevate privileges… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69347 | Microsoft | high | 7.4 | — | | Heap-based buffer overflow in Windows Fast FAT Driver allows an unauthorized attacker to execute cod… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69362 | Microsoft | high | 7.0 | — | | Use after free in Windows Error Reporting allows an authorized attacker to elevate privileges locall… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69359 | Microsoft | high | 7.8 | — | | Heap-based buffer overflow in Active Directory Domain Services allows an authorized attacker to elev… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69368 | Microsoft | high | 7.8 | — | | Heap-based buffer overflow in Windows Overlay Filter allows an authorized attacker to elevate privil… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69371 | Microsoft | high | 8.0 | — | | Heap-based buffer overflow in Windows Overlay Filter allows an authorized attacker to elevate privil… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69379 | Microsoft | high | 7.0 | — | | Improper link resolution before file access ('link following') in Windows NTFS allows an authorized … | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69404 | Microsoft | high | 7.0 | — | | Concurrent execution using shared resource with improper synchronization ('race condition') in Windo… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69401 | Microsoft | high | 7.0 | — | | Use after free in Audio Video Control Transport Protocol allows an authorized attacker to elevate pr… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69408 | Microsoft | critical | 9.8 | — | | Integer overflow or wraparound in Microsoft Windows Media Foundation allows an unauthorized attacker… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69436 | Microsoft | high | 7.8 | — | | Heap-based buffer overflow in Windows Error Reporting allows an authorized attacker to elevate privi… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69458 | Microsoft | high | 8.0 | — | | Out-of-bounds read in Windows BitLocker allows an authorized attacker to elevate privileges over a n… | Sep 8, 2026 | Sep 9, 2026 |