| | CVE-2026-62723 | Microsoft | high | 7.0 | — | | Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges loca… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62722 | Microsoft | high | 7.8 | — | | Heap-based buffer overflow in Windows Bind Filter Driver allows an authorized attacker to elevate pr… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62712 | Microsoft | high | 7.8 | — | | Heap-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges loc… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62713 | Microsoft | high | 7.8 | — | | Heap-based buffer overflow in Windows Cloud Files Mini Filter Driver allows an authorized attacker t… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62705 | Microsoft | high | 7.0 | — | | Concurrent execution using shared resource with improper synchronization ('race condition') in Windo… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62696 | Microsoft | high | 7.8 | — | | Integer underflow (wrap or wraparound) in Windows Program Compatibility Assistant Service allows an … | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62693 | Microsoft | high | 7.0 | — | | Concurrent execution using shared resource with improper synchronization ('race condition') in Windo… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62690 | Microsoft | high | 7.0 | — | | Concurrent execution using shared resource with improper synchronization ('race condition') in Windo… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62688 | Microsoft | high | 7.8 | — | | Heap-based buffer overflow in Windows MIDI Service Module allows an authorized attacker to elevate p… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62695 | Microsoft | high | 7.8 | — | | Heap-based buffer overflow in Windows Storage allows an authorized attacker to elevate privileges lo… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-61939 | Microsoft | high | 7.0 | — | | Use after free in Winlogon allows an authorized attacker to elevate privileges locally. | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-61934 | Microsoft | high | 7.8 | — | | Use after free in Windows Bind Filter Driver allows an authorized attacker to elevate privileges loc… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-61932 | Microsoft | high | 7.8 | — | | Access of resource using incompatible type ('type confusion') in Windows DWM Core Library allows an … | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-62692 | Microsoft | high | 7.8 | — | | Heap-based buffer overflow in Windows Remote Desktop Services allows an authorized attacker to eleva… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-61937 | Microsoft | high | 7.8 | — | | Integer overflow or wraparound in Windows HTTP.sys allows an authorized attacker to elevate privileg… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-61930 | Microsoft | high | 7.8 | — | | Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges loc… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-61927 | Microsoft | high | 7.0 | — | | Use after free in Windows Bind Filter Driver allows an authorized attacker to elevate privileges loc… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-61925 | Microsoft | high | 7.8 | — | | Incorrect authorization in Windows Installer allows an authorized attacker to elevate privileges loc… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-61367 | Microsoft | high | 7.8 | — | | Missing authentication for critical function in Windows Remote Desktop Services allows an authorized… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-61356 | Microsoft | high | 7.8 | — | | Missing authentication for critical function in Windows Remote Desktop Services allows an authorized… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-61348 | Microsoft | high | 7.0 | — | | Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to ele… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-61361 | Microsoft | high | 7.0 | — | | Use after free in Windows DHCP Client allows an authorized attacker to execute code locally. | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-61353 | Microsoft | high | 7.8 | — | | Heap-based buffer overflow in Windows Telephony Service allows an authorized attacker to elevate pri… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-59134 | Microsoft | high | 7.5 | — | | Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code … | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-59127 | Microsoft | high | 7.8 | — | | Integer overflow or wraparound in Windows Installer allows an authorized attacker to elevate privile… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-49179 | Microsoft | high | 8.8 | — | | Improper neutralization of special elements used in a command ('command injection') in Windows Activ… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-56174 | Microsoft | high | 7.8 | — | | Untrusted search path in Windows Narrator Braille allows an authorized attacker to elevate privilege… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-50472 | Microsoft | high | 7.0 | — | | Heap-based buffer overflow in Windows LUAFV allows an authorized attacker to elevate privileges loca… | Aug 11, 2026 | Aug 12, 2026 |
| | CVE-2026-19550 | Red Hat | medium | 4.3 | — | | A flaw was found in FreeIPA. The trust-fetch-domains command is gated by a read-only permission on t… | Aug 11, 2026 | Aug 11, 2026 |
| | CVE-2026-72746 | Red Hat | high | 7.5 | — | | A flaw was found in FreeRDP. An unauthenticated remote attacker could bypass the server-side authent… | Aug 11, 2026 | Aug 11, 2026 |
| | CVE-2026-72745 | Red Hat | critical | 9.8 | — | | A flaw was found in FreeRDP. A malicious peer, either a server or client, can exploit an out-of-boun… | Aug 11, 2026 | Aug 11, 2026 |
| | CVE-2026-71467 | Red Hat | high | 7.5 | — | | A flaw was found in search-v2-api. The authentication middleware in the affected component unconditi… | Aug 11, 2026 | Aug 11, 2026 |
| | CVE-2026-71468 | Red Hat | medium | 5.3 | — | | A flaw was found in acm-search-v2-api-rhel9. When the `getFederationConfig` function refreshes its c… | Aug 11, 2026 | Aug 11, 2026 |
| | CVE-2026-71474 | Red Hat | medium | 6.3 | — | | A flaw was found in insights-client. When the application receives a non-200 response, it logs the r… | Aug 11, 2026 | Aug 11, 2026 |
| | CVE-2026-71475 | Red Hat | medium | 5.0 | — | | A flaw was found in insights-client. A compromised managed cluster, referred to as a 'spoke', can in… | Aug 11, 2026 | Aug 11, 2026 |
| | CVE-2026-71845 | Red Hat | medium | 6.3 | — | | A flaw was found in insights-client. The setDefault() function logs the value of every environment v… | Aug 11, 2026 | Aug 11, 2026 |
| | CVE-2026-14180 | Red Hat | medium | 5.3 | — | | A flaw was found in the ChunkReader component of the Undertow HTTP server, which is used by WildFly … | Aug 11, 2026 | Aug 11, 2026 |
| | CVE-2026-33922 | Red Hat | medium | 6.0 | 0.2%
| | A flaw was found in Arc. This path traversal vulnerability exists within the Offline archives functi… | Aug 11, 2026 | Aug 11, 2026 |
| | CVE-2026-33921 | Red Hat | medium | 5.2 | 0.1%
| | A flaw was found in the Npcap driver. The Windows installer for Arc deployed Npcap with insecure def… | Aug 11, 2026 | Aug 11, 2026 |
| | CVE-2026-50237 | Red Hat | high | 7.4 | — | | A Server-Side Request Forgery and supply chain flaw was found in the OpenShift Console Helm catalog … | Aug 11, 2026 | Aug 11, 2026 |
| | CVE-2026-50236 | Red Hat | high | 7.4 | — | | An authenticated SSRF flaw was found in the OpenShift Console Dev Console webhook helpers. User-supp… | Aug 11, 2026 | Aug 11, 2026 |
| | CVE-2026-19546 | Red Hat | high | 8.8 | — | | A flaw was found in DBI. This is a fix for a partial fix for CVE-2026-14380 for RHEL 9.8.z and 10.2.… | Aug 11, 2026 | Aug 11, 2026 |
| | CVE-2026-71217 | Red Hat | high | 7.5 | 0.3%
| | A flaw was found in iperf3. A remote attacker can exploit this vulnerability by sending crafted cont… | Aug 11, 2026 | Aug 11, 2026 |
| | CVE-2026-71218 | Red Hat | medium | 5.3 | 0.3%
| | A flaw was found in iperf3. A remote unauthenticated attacker can exploit a vulnerability in the `JS… | Aug 11, 2026 | Aug 11, 2026 |
| | CVE-2026-72694 | Red Hat | high | 7.1 | 0.1%
| | A flaw was found in MRTG. When the MRTG daemon is started as a root user and subsequently drops priv… | Aug 11, 2026 | Aug 11, 2026 |
| | CVE-2026-72693 | Red Hat | medium | 7.8 | 0.1%
| | `openvt -u` is intended to identify the owner of the current VT and then execute `login` as that use… | Aug 11, 2026 | Aug 11, 2026 |
| | CVE-2026-15565 | Red Hat | high | 7.5 | 0.4%
| | A flaw was found in Undertow. A remote attacker can cause Out of Memory on websockets endpoint witho… | Aug 11, 2026 | Aug 11, 2026 |
| | CVE-2026-15567 | Red Hat | high | 7.5 | 0.3%
| | A flaw was found in Wildfly. A remote unauthenticated attacker can trigger OutOfMemoryError as CSIv2… | Aug 11, 2026 | Aug 11, 2026 |
| | CVE-2026-15556 | Red Hat | high | 8.1 | 0.2%
| | A flaw was found in Picketlink's SP signature validation; a SAML response containing zero assertion … | Aug 11, 2026 | Aug 11, 2026 |
| | CVE-2026-15563 | Red Hat | high | 7.4 | 0.2%
| | A flaw was found in EAP's IIOP. The listener's NameService would accept bind operations without auth… | Aug 11, 2026 | Aug 11, 2026 |