| | CVE-2026-32210 | Microsoft | critical | 9.3 | 0.0%
| | Server-side request forgery (ssrf) in Microsoft Dynamics 365 (Online) allows an unauthorized attacke… | Apr 23, 2026 | May 5, 2026 |
| | CVE-2026-32172 | Microsoft | high | 8.0 | 0.0%
| | Uncontrolled search path element in Microsoft Power Apps allows an unauthorized attacker to execute … | Apr 23, 2026 | Apr 29, 2026 |
| | CVE-2026-26150 | Microsoft | high | 8.6 | 0.1%
| | Server-side request forgery (ssrf) in Microsoft Purview allows an unauthorized attacker to elevate p… | Apr 23, 2026 | Apr 29, 2026 |
| | CVE-2026-24303 | Microsoft | critical | 9.6 | 0.0%
| | Improper access control in Microsoft Partner Center allows an authorized attacker to elevate privile… | Apr 23, 2026 | Apr 28, 2026 |
| | CVE-2026-33694 | Tenable | high | 7.4 | — | | This vulnerability allows an attacker to create a junction, enabling the deletion of arbitrary files… | Apr 23, 2026 | Apr 24, 2026 |
| | CVE-2026-34003 | Red Hat | high | 7.8 | — | | A flaw was found in the X.Org X server's XKB key types request validation. A local attacker could se… | Apr 23, 2026 | Apr 23, 2026 |
| | CVE-2026-34001 | Red Hat | high | 7.8 | — | | A flaw was found in the X.Org X server. This use-after-free vulnerability occurs in the XSYNC fence … | Apr 23, 2026 | Apr 23, 2026 |
| | CVE-2026-33999 | Red Hat | high | 7.8 | — | | A flaw was found in the X.Org X server. This integer underflow vulnerability, specifically in the XK… | Apr 23, 2026 | Apr 23, 2026 |
| | CVE-2025-66286 | Red Hat | medium | 4.7 | — | | An API design flaw in WebKitGTK and WPE WebKit allows untrusted web content to unexpectedly perform … | Apr 23, 2026 | Apr 23, 2026 |
| | CVE-2025-13763 | Red Hat | low | 5.7 | — | | Multiple uses of uninitialized variables were found in libopensc that may lead to information disclo… | Apr 23, 2026 | Apr 23, 2026 |
| | CVE-2026-41196 | Red Hat | high | 8.2 | 0.1%
| | A flaw was found in Luanti (formerly Minetest), an open-source game platform. A malicious mod, when … | Apr 23, 2026 | Apr 23, 2026 |
| | CVE-2026-41179 | Red Hat | high | 9.8 | 0.1%
| | A flaw was found in Rclone, a command-line program for syncing files with cloud storage. An unauthen… | Apr 23, 2026 | Apr 23, 2026 |
| | CVE-2026-31532 | Red Hat | high | 7.0 | 0.0%
| | A flaw was found in the Linux kernel's Controller Area Network (CAN) raw socket implementation. A us… | Apr 23, 2026 | Apr 23, 2026 |
| | CVE-2026-31531 | Red Hat | medium | 5.5 | 0.0%
| | A flaw was found in the Linux kernel. A local user can trigger a denial of service by querying a nex… | Apr 23, 2026 | Apr 23, 2026 |
| | CVE-2026-41651 | Red Hat | high | 8.8 | — | | A flaw was found in PackageKit. A time-of-check time-of-use (TOCTOU) race condition on transaction f… | Apr 22, 2026 | Apr 22, 2026 |
| | CVE-2026-6857 | Apache | high | 7.5 | 0.4%
| | A flaw was found in camel-infinispan. This vulnerability involves unsafe deserialization in the Prot… | Apr 22, 2026 | Apr 29, 2026 |
| | CVE-2026-31431 | VMware | high | 7.8 | 4.1%
| ⚠ KEV | In the Linux kernel, the following vulnerability has been resolved:
crypto: algif_aead - Revert to … | Apr 22, 2026 | May 12, 2026 |
| | CVE-2026-40542 | Apache | high | 7.3 | 0.1%
| | Missing critical step in authentication in Apache HttpClient 5.6 allows an attacker to cause the cli… | Apr 22, 2026 | May 1, 2026 |
| | CVE-2026-22754 | VMware | high | 7.5 | 0.0%
| | Vulnerability in Spring Spring Security. If an application uses <sec:intercept-url servlet-path="/se… | Apr 22, 2026 | Apr 24, 2026 |
| | CVE-2026-22753 | VMware | high | 7.5 | 0.1%
| | Vulnerability in Spring Spring Security. If an application is using securityMatchers(String) and a P… | Apr 22, 2026 | Apr 24, 2026 |
| | CVE-2026-22748 | VMware | medium | 5.3 | 0.1%
| | Vulnerability in Spring Spring Security. When an application configures JWT decoding with NimbusJwtD… | Apr 22, 2026 | Apr 24, 2026 |
| | CVE-2026-22747 | VMware | medium | 6.8 | 0.0%
| | Vulnerability in Spring Spring Security. SubjectX500PrincipalExtractor does not correctly handle cer… | Apr 22, 2026 | Apr 24, 2026 |
| | CVE-2026-22746 | VMware | low | 3.7 | 0.0%
| | Vulnerability in Spring Spring Security. If an application is using the UserDetails#isEnabled, #isAc… | Apr 22, 2026 | Apr 24, 2026 |
| | CVE-2026-31433 | Red Hat | medium | — | 0.0%
| | A flaw was found in the ksmbd module of the Linux kernel. A remote attacker can exploit this vulnera… | Apr 22, 2026 | Apr 22, 2026 |
| | CVE-2026-31432 | Red Hat | medium | — | 0.0%
| | A flaw was found in the ksmbd component of the Linux kernel. This vulnerability allows an attacker t… | Apr 22, 2026 | Apr 22, 2026 |
| | CVE-2026-31467 | Red Hat | medium | 5.5 | — | | No description is available for this CVE. | Apr 22, 2026 | Apr 22, 2026 |
| | CVE-2026-31519 | Red Hat | medium | 7.0 | — | | A flaw was found in the Linux kernel's Btrfs filesystem. A race condition, a situation where the out… | Apr 22, 2026 | Apr 22, 2026 |
| | CVE-2026-31488 | Red Hat | medium | — | — | | No description is available for this CVE. | Apr 22, 2026 | Apr 22, 2026 |
| | CVE-2026-31440 | Red Hat | medium | 5.5 | — | | No description is available for this CVE. | Apr 22, 2026 | Apr 22, 2026 |
| | CVE-2026-31476 | Red Hat | medium | — | — | | A flaw was found in ksmbd in the Linux kernel. A remote attacker can exploit this vulnerability by s… | Apr 22, 2026 | Apr 22, 2026 |
| | CVE-2026-31498 | Red Hat | medium | 7.0 | — | | A flaw was found in the Linux kernel's Bluetooth L2CAP (Logical Link Control and Adaptation Protocol… | Apr 22, 2026 | Apr 22, 2026 |
| | CVE-2026-31524 | Red Hat | low | 5.5 | — | | A flaw was found in the Linux kernel's Human Interface Device (HID) subsystem, specifically within t… | Apr 22, 2026 | Apr 22, 2026 |
| | CVE-2026-31493 | Red Hat | medium | 7.0 | — | | A flaw was found in the Linux kernel's RDMA/efa component. When an admin command completes with an e… | Apr 22, 2026 | Apr 22, 2026 |
| | CVE-2026-31450 | Red Hat | medium | 7.0 | — | | No description is available for this CVE. | Apr 22, 2026 | Apr 22, 2026 |
| | CVE-2026-31460 | Red Hat | medium | — | — | | A flaw was found in the `drm/amd/display` component of the Linux kernel. This vulnerability occurs b… | Apr 22, 2026 | Apr 22, 2026 |
| | CVE-2026-31459 | Red Hat | medium | — | — | | No description is available for this CVE. | Apr 22, 2026 | Apr 22, 2026 |
| | CVE-2026-31448 | Red Hat | medium | 7.0 | — | | A flaw was found in the Linux kernel's ext4 filesystem. When creating a directory or node, if an ext… | Apr 22, 2026 | Apr 22, 2026 |
| | CVE-2026-31487 | Red Hat | medium | 7.0 | — | | A flaw was found in the Linux kernel, specifically within its Serial Peripheral Interface (SPI) subs… | Apr 22, 2026 | Apr 22, 2026 |
| | CVE-2026-31508 | Red Hat | high | 7.0 | — | | No description is available for this CVE. | Apr 22, 2026 | Apr 22, 2026 |
| | CVE-2026-31480 | Red Hat | medium | 7.0 | — | | A flaw was found in the Linux kernel. A local attacker or a user with specific privileges could expl… | Apr 22, 2026 | Apr 22, 2026 |
| | CVE-2026-31504 | Red Hat | medium | 7.0 | — | | A flaw was found in the Linux kernel. A race condition in the `packet_release()` function, specifica… | Apr 22, 2026 | Apr 22, 2026 |
| | CVE-2026-31474 | Red Hat | medium | 5.5 | — | | A flaw was found in the Linux kernel's Controller Area Network (CAN) ISO-TP (isotp) module. This vul… | Apr 22, 2026 | Apr 22, 2026 |
| | CVE-2026-31462 | Red Hat | medium | — | — | | A flaw was found in the Linux kernel's `drm/amdgpu` component. This vulnerability arises from the im… | Apr 22, 2026 | Apr 22, 2026 |
| | CVE-2026-31485 | Red Hat | medium | 7.0 | — | | A flaw was found in the `spi-fsl-lpspi` driver within the Linux kernel. This vulnerability, identifi… | Apr 22, 2026 | Apr 22, 2026 |
| | CVE-2026-31456 | Red Hat | medium | 7.0 | — | | A flaw was found in the Linux kernel. A race condition in the memory management subsystem, specifica… | Apr 22, 2026 | Apr 22, 2026 |
| | CVE-2026-31484 | Red Hat | medium | — | — | | A flaw was found in the Linux kernel. A local user could potentially exploit an out-of-bounds read v… | Apr 22, 2026 | Apr 22, 2026 |
| | CVE-2026-31490 | Red Hat | medium | — | — | | A flaw was found in the Linux kernel's `drm/xe/pf` component. This vulnerability occurs when an erro… | Apr 22, 2026 | Apr 22, 2026 |
| | CVE-2026-31518 | Red Hat | medium | 7.0 | — | | A flaw was found in the Linux kernel. When the espintcp component processes network traffic using as… | Apr 22, 2026 | Apr 22, 2026 |
| | CVE-2026-31522 | Red Hat | low | 5.5 | — | | A flaw was found in the Linux kernel's HID magicmouse driver. The `magicmouse_report_fixup()` functi… | Apr 22, 2026 | Apr 22, 2026 |
| | CVE-2026-31514 | Red Hat | low | 5.5 | — | | A flaw was found in the Linux kernel's erofs filesystem component. When an input/output (I/O) reques… | Apr 22, 2026 | Apr 22, 2026 |