| | CVE-2026-76848 | Red Hat | high | 7.5 | 0.4%
| | TypeORM's SelectQueryBuilder.distinctOn accepts an array of strings and stores it on the expression … | Aug 24, 2026 | Aug 24, 2026 |
| | CVE-2026-76845 | Red Hat | medium | 6.5 | 0.1%
| | adm-zip 0.5.9 through 0.6.0 follows symbolic links at the extraction destination. Utils.sanitize in … | Aug 24, 2026 | Aug 24, 2026 |
| | CVE-2026-76844 | Red Hat | high | 8.6 | 0.4%
| | webpack-dev-middleware resolves a request to a local file in getFilenameFromUrl by testing the reque… | Aug 24, 2026 | Aug 24, 2026 |
| | CVE-2026-78701 | Red Hat | medium | 6.5 | 0.3%
| | A flaw was found in 389-ds-base. A remote, authenticated attacker could exploit a vulnerability in t… | Aug 24, 2026 | Aug 24, 2026 |
| | CVE-2026-10582 | Red Hat | high | 7.4 | 0.3%
| | Hugo's security.http.urls allowlist is the only control on outbound fetches made by resources.GetRem… | Aug 24, 2026 | Aug 24, 2026 |
| | CVE-2026-59295 | Red Hat | medium | — | 0.2%
| | Micrometer-instrumented Apache HttpAsyncClient (4.x or 5.x) usage via MicrometerHttpClientIntercepto… | Aug 24, 2026 | Aug 24, 2026 |
| | CVE-2026-76172 | Red Hat | high | 7.5 | 0.2%
| ✓ Fix | fast-uri is a URI parser for Node.js. During parsing it runs a legacy decoding pass over the scheme … | Aug 24, 2026 | Aug 24, 2026 |
| | CVE-2026-75975 | Red Hat | high | 7.5 | 0.2%
| ✓ Fix | fast-uri is a URI parser for Node.js. Its custom parser for bracketed IPv6 literals does not validat… | Aug 24, 2026 | Aug 24, 2026 |
| | CVE-2026-75899 | Red Hat | high | 7.5 | 0.2%
| ✓ Fix | fast-uri is a URI parser for Node.js. It decodes percent escapes in a hostname during parsing and th… | Aug 24, 2026 | Aug 24, 2026 |
| | CVE-2026-75931 | Red Hat | high | 7.5 | 0.2%
| ✓ Fix | fast-uri is a URI parser for Node.js. It canonicalizes a host to its ASCII form only when the input … | Aug 24, 2026 | Aug 24, 2026 |
| | CVE-2026-78323 | Red Hat | medium | 6.5 | 0.1%
| | A flaw was found in JSS (Java Security Services). The JSSTrustManager class does not verify NSS trus… | Aug 24, 2026 | Aug 24, 2026 |
| | CVE-2026-78161 | Red Hat | high | 7.3 | 0.4%
| | A vulnerability was found in warmcat libwebsockets 4.5.0. Impacted is the function report_raw_cbor o… | Aug 24, 2026 | Aug 24, 2026 |
| | CVE-2026-78322 | Red Hat | medium | 6.5 | 0.3%
| | A flaw was found in file-roller. When opening or extracting a malicious 7z or RAR archive containing… | Aug 24, 2026 | Aug 24, 2026 |
| | CVE-2026-78367 | Red Hat | medium | 7.0 | 0.1%
| | A vulnerability was found in RPM's rpmbuild tarball processing. When processing a crafted source arc… | Aug 24, 2026 | Aug 24, 2026 |
| | CVE-2026-78376 | Red Hat | high | 8.8 | 0.3%
| | A flaw was found in WebKitGTK. Processing malicious web content can cause a use-after-free issue due… | Aug 24, 2026 | Aug 24, 2026 |
| | CVE-2026-52492 | Red Hat | high | 7.3 | 0.1%
| ✓ Fix | An integer overflow in the libtiff rgb2ycbcr utility's cvtRaster() function when computing strip buf… | Aug 24, 2026 | Aug 24, 2026 |
| | CVE-2026-52490 | Red Hat | high | 7.3 | 0.4%
| ✓ Fix | An issue in libtiff 85f2ac8e0b01cb7db2bbecf4a3b891bdbef67938 allows an attacker to execute arbitrary… | Aug 24, 2026 | Aug 24, 2026 |
| | CVE-2026-70626 | Red Hat | medium | 6.2 | 0.1%
| | NLTK versions before 3.9.4 contain a symlink escape vulnerability in CorpusReader.open() that allows… | Aug 22, 2026 | Aug 22, 2026 |
| | CVE-2026-66393 | Red Hat | high | 7.5 | 0.4%
| | NLTK versions before 3.9.4 contain an unbounded recursion vulnerability in JSONTaggedDecoder.decode_… | Aug 22, 2026 | Aug 22, 2026 |
| | CVE-2026-65915 | Red Hat | medium | 6.5 | 0.3%
| | NLTK versions before 3.10.0 contain a logic bug in FileSystemPathPointer.open() where the sandbox va… | Aug 22, 2026 | Aug 22, 2026 |
| | CVE-2026-63311 | Red Hat | medium | 4.2 | 0.2%
| | NLTK before 3.10.0 (affected versions <= 3.9.4) contains a server-side request forgery (SSRF) vulner… | Aug 22, 2026 | Aug 22, 2026 |
| | CVE-2026-62388 | Red Hat | high | 7.5 | 0.5%
| | NLTK versions before 3.10.0 default to ENFORCE=False in pathsec.py, causing all security validation … | Aug 22, 2026 | Aug 22, 2026 |
| | CVE-2026-62385 | Red Hat | medium | 5.9 | 0.3%
| | NLTK versions before 3.10.0 contain a path traversal vulnerability in FramenetCorpusReader and NKJPC… | Aug 22, 2026 | Aug 22, 2026 |
| | CVE-2026-62384 | Red Hat | high | 7.5 | 0.5%
| | NLTK versions before 3.10.2 contain a symlink-based sandbox bypass in FramenetCorpusReader that allo… | Aug 22, 2026 | Aug 22, 2026 |
| | CVE-2026-62383 | Red Hat | medium | 5.5 | 0.2%
| | nltk versions before 3.10.2 contain a symlink-based arbitrary file read vulnerability in IPIPANCorpu… | Aug 22, 2026 | Aug 22, 2026 |
| | CVE-2026-71514 | Red Hat | low | 2.5 | 0.1%
| | NLTK 3.9.4 through 3.10.2 contains a path traversal vulnerability in CrubadanCorpusReader. _load_lan… | Aug 22, 2026 | Aug 22, 2026 |
| | CVE-2026-71513 | Red Hat | high | 8.8 | 0.8%
| | NLTK before 3.10.3 contains a remote code execution vulnerability in AllowlistUnpickler that validat… | Aug 22, 2026 | Aug 22, 2026 |
| | CVE-2026-62243 | Red Hat | high | 7.5 | 0.2%
| | Netty (io.netty:netty-handler) versions from 4.2.0.Final through 4.2.16.Final and versions through 4… | Aug 22, 2026 | Aug 22, 2026 |
| | CVE-2026-74584 | Red Hat | medium | 5.5 | 0.1%
| | In the Linux kernel, the following vulnerability has been resolved:
RDMA/bnxt_re: zero shared page b… | Aug 22, 2026 | Aug 22, 2026 |
| | CVE-2026-74595 | Red Hat | medium | 5.5 | 0.1%
| | In the Linux kernel, the following vulnerability has been resolved:
fscrypt: use the mount idmap for… | Aug 22, 2026 | Aug 22, 2026 |
| | CVE-2026-74607 | Red Hat | medium | 5.5 | 0.1%
| | In the Linux kernel, the following vulnerability has been resolved:
KVM: SVM: Serialize accesses to … | Aug 22, 2026 | Aug 22, 2026 |
| | CVE-2026-74625 | Red Hat | medium | 5.5 | 0.5%
| | In the Linux kernel, the following vulnerability has been resolved:
netfilter: bridge: release templ… | Aug 22, 2026 | Aug 22, 2026 |
| | CVE-2026-74638 | Red Hat | medium | 5.5 | 0.2%
| | In the Linux kernel, the following vulnerability has been resolved:
drm/v3d: Serialize the scheduler… | Aug 22, 2026 | Aug 22, 2026 |
| | CVE-2026-74729 | Red Hat | medium | 5.5 | 0.2%
| | In the Linux kernel, the following vulnerability has been resolved:
soc: aspeed: lpc-snoop: Fix user… | Aug 22, 2026 | Aug 22, 2026 |
| | CVE-2026-74730 | Red Hat | medium | 7.0 | 0.5%
| | In the Linux kernel, the following vulnerability has been resolved:
NFS: Pin the 'struct nfs_server'… | Aug 22, 2026 | Aug 22, 2026 |
| | CVE-2026-74664 | Red Hat | low | 5.5 | 0.2%
| | In the Linux kernel, the following vulnerability has been resolved:
net: openvswitch: reallocate upd… | Aug 22, 2026 | Aug 22, 2026 |
| | CVE-2026-74677 | Red Hat | medium | 7.0 | 0.2%
| | In the Linux kernel, the following vulnerability has been resolved:
net: usb: ipheth: fix carrier_wo… | Aug 22, 2026 | Aug 22, 2026 |
| | CVE-2026-74666 | Red Hat | medium | 7.0 | 0.1%
| | In the Linux kernel, the following vulnerability has been resolved:
packet: synchronize pressure cle… | Aug 22, 2026 | Aug 22, 2026 |
| | CVE-2026-74683 | Red Hat | medium | 5.5 | 0.2%
| | In the Linux kernel, the following vulnerability has been resolved:
Input: evdev - sanitize event ty… | Aug 22, 2026 | Aug 22, 2026 |
| | CVE-2026-74624 | Red Hat | medium | 7.0 | 0.5%
| | In the Linux kernel, the following vulnerability has been resolved:
netfilter: nf_conntrack: defer i… | Aug 22, 2026 | Aug 22, 2026 |
| | CVE-2026-74700 | Red Hat | medium | 7.0 | 0.1%
| | In the Linux kernel, the following vulnerability has been resolved:
net/sched: cls_api: Always acqui… | Aug 22, 2026 | Aug 22, 2026 |
| | CVE-2026-74668 | Red Hat | medium | 7.0 | 0.1%
| | In the Linux kernel, the following vulnerability has been resolved:
packet: use consistent hard_head… | Aug 22, 2026 | Aug 22, 2026 |
| | CVE-2026-74712 | Red Hat | medium | 5.5 | 0.1%
| | In the Linux kernel, the following vulnerability has been resolved:
vdpa/mlx5: Fix buffer length in … | Aug 22, 2026 | Aug 22, 2026 |
| | CVE-2026-74715 | Red Hat | medium | 7.0 | 0.1%
| | In the Linux kernel, the following vulnerability has been resolved:
bpf: Fix netns reference imbalan… | Aug 22, 2026 | Aug 22, 2026 |
| | CVE-2026-74599 | Red Hat | medium | 5.5 | 0.2%
| | In the Linux kernel, the following vulnerability has been resolved:
mm/ptdump: always stabilise agai… | Aug 22, 2026 | Aug 22, 2026 |
| | CVE-2026-74632 | Red Hat | medium | 5.5 | 0.1%
| | In the Linux kernel, the following vulnerability has been resolved:
mm/huge_memory: fix huge_zero_pf… | Aug 22, 2026 | Aug 22, 2026 |
| | CVE-2026-74606 | Red Hat | medium | 5.5 | 0.1%
| | In the Linux kernel, the following vulnerability has been resolved:
eventfs: Fix use-after-free in e… | Aug 22, 2026 | Aug 22, 2026 |
| | CVE-2026-74621 | Red Hat | medium | 7.0 | 0.5%
| | In the Linux kernel, the following vulnerability has been resolved:
net/sched: act_ct: fix sk_buff l… | Aug 22, 2026 | Aug 22, 2026 |
| | CVE-2026-74648 | Red Hat | medium | 5.5 | 0.1%
| | In the Linux kernel, the following vulnerability has been resolved:
staging: rtl8723bs: validate mon… | Aug 22, 2026 | Aug 22, 2026 |
| | CVE-2026-74669 | Red Hat | high | 7.0 | 0.5%
| | In the Linux kernel, the following vulnerability has been resolved:
ipvs: clear IPv4 options after r… | Aug 22, 2026 | Aug 22, 2026 |