| | CVE-2026-81956 | Microsoft | high | 7.8 | 0.4%
| | Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-81957 | Microsoft | high | 7.8 | 0.4%
| | Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-81958 | Microsoft | medium | 5.5 | 0.4%
| | Use of uninitialized resource in Microsoft Office Excel allows an unauthorized attacker to disclose … | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-81959 | Microsoft | high | 7.8 | 0.4%
| | Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-81960 | Microsoft | high | 7.8 | 0.4%
| | Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-83949 | Microsoft | medium | 5.5 | — | | Buffer over-read in Microsoft Office Word allows an unauthorized attacker to disclose information lo… | Sep 8, 2026 | Sep 8, 2026 |
| | CVE-2026-83951 | Microsoft | medium | 5.5 | — | | Buffer over-read in Microsoft Office Word allows an unauthorized attacker to disclose information lo… | Sep 8, 2026 | Sep 8, 2026 |
| | CVE-2026-85875 | Microsoft | medium | 5.5 | 0.4%
| | Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-66302 | Microsoft | critical | 9.8 | — | | External control of file name or path in Skype for Business allows an unauthorized attacker to execu… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-69646 | Microsoft | high | 8.3 | — | | Improper verification of cryptographic signature in Skype for Business allows an unauthorized attack… | Sep 8, 2026 | Sep 9, 2026 |
| | CVE-2026-87065 | Red Hat | low | 2.6 | — | | A flaw was found in konflux-operator-tasks. Tekton task steps within this component run with root pr… | Sep 8, 2026 | Sep 8, 2026 |
| | CVE-2026-87064 | Red Hat | low | 2.6 | — | | A flaw was found in konflux-operator-tasks. The GitHub workflows used by this component do not expli… | Sep 8, 2026 | Sep 8, 2026 |
| | CVE-2026-87063 | Red Hat | low | 2.6 | — | | A flaw was found in konflux-operator-tasks. The Continuous Integration (CI) process installs the `tk… | Sep 8, 2026 | Sep 8, 2026 |
| | CVE-2026-87062 | Red Hat | medium | 4.2 | — | | A flaw was found in konflux-operator-tasks. GitHub Actions within this component are configured to u… | Sep 8, 2026 | Sep 8, 2026 |
| | CVE-2026-87061 | Red Hat | low | 2.6 | — | | A flaw was found in olm-operator-konflux-sample. The `bundle-hack/update_bundle.sh` script lacks mec… | Sep 8, 2026 | Sep 8, 2026 |
| | CVE-2026-87060 | Red Hat | low | 2.6 | — | | A flaw was found in olm-operator-konflux-sample. The system's automated merging of updates, known as… | Sep 8, 2026 | Sep 8, 2026 |
| | CVE-2026-87059 | Red Hat | low | 2.6 | — | | A flaw was found in olm-operator-konflux-sample. The bundle builder stage installs and upgrades Pyth… | Sep 8, 2026 | Sep 8, 2026 |
| | CVE-2026-87058 | Red Hat | low | 2.6 | — | | A flaw was found in olm-operator-konflux-sample. The hermetic build mode is disabled by default, all… | Sep 8, 2026 | Sep 8, 2026 |
| | CVE-2026-87057 | Red Hat | medium | 4.2 | — | | A flaw was found in olm-operator-konflux-sample. The build pipelines use mutable floating tags to re… | Sep 8, 2026 | Sep 8, 2026 |
| | CVE-2026-87052 | Red Hat | low | 2.6 | — | | A flaw was found in operator-foundry. The absence of automated dependency-update and vulnerability-s… | Sep 8, 2026 | Sep 8, 2026 |
| | CVE-2026-87051 | Red Hat | low | 2.6 | — | | A flaw was found in operator-foundry. The path-containment check, designed to restrict file access w… | Sep 8, 2026 | Sep 8, 2026 |
| | CVE-2026-87050 | Red Hat | medium | 4.2 | — | | A flaw was found in operator-foundry. GitHub Actions and reusable workflows within the component are… | Sep 8, 2026 | Sep 8, 2026 |
| | CVE-2026-87049 | Red Hat | high | 8.7 | — | | A flaw was found in operator-foundry. Untrusted external actors can exploit over-permissive GitHub a… | Sep 8, 2026 | Sep 8, 2026 |
| | CVE-2026-87056 | Red Hat | low | 2.6 | — | | A flaw was found in operator-sdk-builder. The repository lacks automated dependency-update configura… | Sep 8, 2026 | Sep 8, 2026 |
| | CVE-2026-87055 | Red Hat | low | 2.6 | — | | A flaw was found in operator-sdk-builder. The software uses a flexible label, called a mutable tag, … | Sep 8, 2026 | Sep 8, 2026 |
| | CVE-2026-87054 | Red Hat | medium | 4.2 | — | | A flaw was found in operator-sdk-builder. The containers-policy.json configuration file defaults to … | Sep 8, 2026 | Sep 8, 2026 |
| | CVE-2026-87053 | Red Hat | medium | 4.2 | — | | A flaw was found in operator-sdk-builder. Due to an oversight in the Containerfile configuration, th… | Sep 8, 2026 | Sep 8, 2026 |
| | CVE-2026-87874 | Red Hat | medium | 8.1 | — | | A flaw was found in the memcached cache plugin of the community.general Ansible
collection. Although… | Sep 9, 2026 | Sep 9, 2026 |
| | CVE-2026-87875 | Red Hat | medium | 4.3 | — | | The cupsUTF32ToUTF8() function in CUPS's cups/transcode.c lacks a source-length bound and can read p… | Sep 9, 2026 | Sep 9, 2026 |
| | CVE-2026-87876 | Red Hat | low | 3.0 | — | | Two case-insensitive comparisons on request-derived usernames outside the main authorization path in… | Sep 9, 2026 | Sep 9, 2026 |
| | CVE-2026-87766 | Red Hat | high | 8.8 | 0.1%
| | A flaw was found in bubblewrap. During sandbox setup, creating files or directories under the new ro… | Sep 9, 2026 | Sep 9, 2026 |
| | CVE-2026-87444 | Red Hat | high | 8.8 | 0.4%
| | A memory corruption flaw was found in the Codecs component of the Chromium browser.
Upstream bug(s):… | Sep 9, 2026 | Sep 9, 2026 |
| | CVE-2026-87460 | Red Hat | high | 8.8 | 0.2%
| | An use after free flaw was found in the Platform component of the Chromium browser.
Upstream bug(s):… | Sep 9, 2026 | Sep 9, 2026 |
| | CVE-2026-87564 | Red Hat | high | 7.4 | 0.2%
| | A type confusion flaw was found in the V8 component of the Chromium browser.
Upstream bug(s):
https:… | Sep 9, 2026 | Sep 9, 2026 |
| | CVE-2026-87499 | Red Hat | high | 8.7 | 0.2%
| | An incorrect authorization flaw was found in the Network component of the Chromium browser.
Upstream… | Sep 9, 2026 | Sep 9, 2026 |
| | CVE-2026-87498 | Red Hat | high | 7.9 | 0.2%
| | A missing authorization flaw was found in the WebUI component of the Chromium browser.
Upstream bug(… | Sep 9, 2026 | Sep 9, 2026 |
| | CVE-2026-87612 | Red Hat | high | 8.8 | 0.2%
| | A type confusion flaw was found in the V8 component of the Chromium browser.
Upstream bug(s):
https:… | Sep 9, 2026 | Sep 9, 2026 |
| | CVE-2026-87657 | Red Hat | medium | 5.7 | 0.2%
| | An use after free flaw was found in the V8 component of the Chromium browser.
Upstream bug(s):
https… | Sep 9, 2026 | Sep 9, 2026 |
| | CVE-2026-87636 | Red Hat | high | 8.8 | 0.3%
| | A type confusion flaw was found in the XML component of the Chromium browser.
Upstream bug(s):
https… | Sep 9, 2026 | Sep 9, 2026 |
| | CVE-2026-87588 | Red Hat | high | 8.8 | 0.2%
| | An use after free flaw was found in the Chromecast component of the Chromium browser.
Upstream bug(s… | Sep 9, 2026 | Sep 9, 2026 |
| | CVE-2026-87465 | Red Hat | medium | 4.6 | 0.2%
| | An incorrect authorization flaw was found in the Downloads component of the Chromium browser.
Upstre… | Sep 9, 2026 | Sep 9, 2026 |
| | CVE-2026-87471 | Red Hat | high | 8.7 | 0.3%
| | An incorrect authorization flaw was found in the ServiceWorker component of the Chromium browser.
Up… | Sep 9, 2026 | Sep 9, 2026 |
| | CVE-2026-87443 | Red Hat | medium | 6.5 | 0.3%
| | A missing authorization flaw was found in the Actor component of the Chromium browser.
Upstream bug(… | Sep 9, 2026 | Sep 9, 2026 |
| | CVE-2026-87645 | Red Hat | medium | 5.4 | 0.2%
| | An improper state validation flaw was found in the Safebrowsing component of the Chromium browser.
U… | Sep 9, 2026 | Sep 9, 2026 |
| | CVE-2026-87497 | Red Hat | medium | 4.3 | 0.2%
| | An uninitialized resource flaw was found in the Codecs component of the Chromium browser.
Upstream b… | Sep 9, 2026 | Sep 9, 2026 |
| | CVE-2026-87476 | Red Hat | medium | 6.5 | 0.2%
| | An incorrect authorization flaw was found in the Loader component of the Chromium browser.
Upstream … | Sep 9, 2026 | Sep 9, 2026 |
| | CVE-2026-87475 | Red Hat | medium | 5.4 | 0.2%
| | A missing authorization flaw was found in the Omnibox component of the Chromium browser.
Upstream bu… | Sep 9, 2026 | Sep 9, 2026 |
| | CVE-2026-87501 | Red Hat | medium | 5.4 | 0.2%
| | An ui misrepresentation flaw was found in the Passwords component of the Chromium browser.
Upstream … | Sep 9, 2026 | Sep 9, 2026 |
| | CVE-2026-87452 | Red Hat | medium | 4.8 | 0.2%
| | An incorrect authorization flaw was found in the GPU component of the Chromium browser.
Upstream bug… | Sep 9, 2026 | Sep 9, 2026 |
| | CVE-2026-87574 | Red Hat | medium | 6.5 | 0.2%
| | An information leak flaw was found in the ServiceWorker component of the Chromium browser.
Upstream … | Sep 9, 2026 | Sep 9, 2026 |