| | CVE-2026-21945 | Red Hat | high | 7.5 | 0.1%
| ✓ Fix | Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition produ… | Jan 20, 2026 | Jan 20, 2026 |
| | CVE-2025-11468 | Red Hat | medium | 4.5 | 0.0%
| | When folding a long comment in an email header containing exclusively unfoldable characters, the par… | Jan 20, 2026 | Jan 20, 2026 |
| | CVE-2025-55132 | Red Hat | low | 2.8 | 0.0%
| ✓ Fix | A flaw in Node.js's permission model allows a file's access and modification timestamps to be change… | Jan 20, 2026 | Jan 20, 2026 |
| | CVE-2026-21637 | Red Hat | medium | 5.9 | 0.0%
| ✓ Fix | A flaw in Node.js TLS error handling allows remote attackers to crash or exhaust resources of a TLS … | Jan 20, 2026 | Jan 20, 2026 |
| | CVE-2026-21636 | Red Hat | medium | 5.8 | 0.0%
| | A flaw in Node.js's permission model allows Unix Domain Socket (UDS) connections to bypass network r… | Jan 20, 2026 | Jan 20, 2026 |
| | CVE-2025-59466 | Red Hat | medium | 5.9 | 0.0%
| ✓ Fix | We have identified a bug in Node.js error handling where "Maximum call stack size exceeded" errors b… | Jan 20, 2026 | Jan 20, 2026 |
| | CVE-2025-59464 | Red Hat | medium | 6.5 | 0.1%
| | A memory leak in Node.js’s OpenSSL integration occurs when converting `X.509` certificate fields to … | Jan 20, 2026 | Jan 20, 2026 |
| | CVE-2025-59465 | Red Hat | high | 7.5 | 0.1%
| ✓ Fix | A malformed `HTTP/2 HEADERS` frame with oversized, invalid `HPACK` data can cause Node.js to crash b… | Jan 20, 2026 | Jan 20, 2026 |
| | CVE-2025-55131 | Red Hat | high | 7.1 | 0.0%
| ✓ Fix | A flaw in Node.js's buffer allocation logic can expose uninitialized memory when allocations are int… | Jan 20, 2026 | Jan 20, 2026 |
| | CVE-2025-55130 | Red Hat | high | 7.1 | 0.0%
| ✓ Fix | A flaw in Node.js’s Permissions model allows attackers to bypass `--allow-fs-read` and `--allow-fs-w… | Jan 20, 2026 | Jan 20, 2026 |
| | CVE-2025-33230 | Red Hat | medium | 6.1 | 0.0%
| | NVIDIA Nsight Systems for Linux contains a vulnerability in the .run installer, where an attacker co… | Jan 20, 2026 | Jan 20, 2026 |
| | CVE-2025-33229 | Red Hat | medium | 6.1 | 0.0%
| | NVIDIA Nsight Visual Studio for Windows contains a vulnerability in Nsight Monitor where an attacker… | Jan 20, 2026 | Jan 20, 2026 |
| | CVE-2025-33228 | Red Hat | medium | 6.6 | 0.0%
| | NVIDIA Nsight Systems contains a vulnerability in the gfx_hotspot recipe, where an attacker could ca… | Jan 20, 2026 | Jan 20, 2026 |
| | CVE-2025-15281 | Red Hat | low | 5.9 | 0.1%
| ✓ Fix | Calling wordexp with WRDE_REUSE in conjunction with WRDE_APPEND in the GNU C Library version 2.0 to … | Jan 20, 2026 | Jan 20, 2026 |
| | CVE-2025-14369 | Red Hat | medium | 5.0 | 0.0%
| | dr_flac, an audio decoder within the dr_libs toolset, contains an integer overflow vulnerability fla… | Jan 20, 2026 | Jan 20, 2026 |
| | CVE-2026-23876 | Red Hat | high | 8.1 | 0.1%
| ✓ Fix | ImageMagick is free and open-source software used for editing and manipulating digital images. Prior… | Jan 20, 2026 | Jan 20, 2026 |
| | CVE-2026-23874 | Red Hat | medium | 5.5 | 0.0%
| | ImageMagick is free and open-source software used for editing and manipulating digital images. Versi… | Jan 20, 2026 | Jan 20, 2026 |
| | CVE-2026-22770 | Red Hat | medium | 6.5 | 0.1%
| | ImageMagick is free and open-source software used for editing and manipulating digital images. The B… | Jan 20, 2026 | Jan 20, 2026 |
| | CVE-2026-23950 | Red Hat | high | 8.8 | 0.0%
| ✓ Fix | node-tar,a Tar for Node.js, has a race condition vulnerability in versions up to and including 7.5.3… | Jan 20, 2026 | Jan 20, 2026 |
| | CVE-2026-23949 | Red Hat | high | 8.6 | 0.1%
| | jaraco.context, an open-source software package that provides some useful decorators and context man… | Jan 20, 2026 | Jan 20, 2026 |
| | CVE-2024-31884 | Red Hat | medium | 6.5 | — | ✓ Fix | No description is available for this CVE. | Jan 20, 2026 | Jan 20, 2026 |
| | CVE-2025-56005 | Red Hat | high | 7.8 | 0.9%
| | An undocumented and unsafe feature in the PLY (Python Lex-Yacc) library 3.11 allows Remote Code Exec… | Jan 20, 2026 | Jan 20, 2026 |
| | CVE-2026-21952 | Red Hat | medium | 4.9 | 0.0%
| | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Parser). Supported ve… | Jan 20, 2026 | Jan 20, 2026 |
| | CVE-2026-21941 | Red Hat | medium | 4.9 | 0.0%
| ✓ Fix | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported… | Jan 20, 2026 | Jan 20, 2026 |
| | CVE-2026-21948 | Red Hat | medium | 4.9 | 0.0%
| ✓ Fix | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported… | Jan 20, 2026 | Jan 20, 2026 |
| | CVE-2026-21950 | Red Hat | medium | 6.5 | 0.0%
| | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported… | Jan 20, 2026 | Jan 20, 2026 |
| | CVE-2026-21936 | Red Hat | medium | 4.9 | 0.0%
| ✓ Fix | Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions t… | Jan 20, 2026 | Jan 20, 2026 |
| | CVE-2026-21968 | Red Hat | medium | 6.5 | 0.0%
| ✓ Fix | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported… | Jan 20, 2026 | Jan 20, 2026 |
| | CVE-2026-21937 | Red Hat | medium | 4.9 | 0.0%
| ✓ Fix | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versi… | Jan 20, 2026 | Jan 20, 2026 |
| | CVE-2026-21929 | Red Hat | medium | 5.3 | 0.0%
| | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Parser). Supported ve… | Jan 20, 2026 | Jan 20, 2026 |
| | CVE-2026-21965 | Red Hat | low | 2.7 | 0.0%
| | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Pluggable Auth). Supp… | Jan 20, 2026 | Jan 20, 2026 |
| | CVE-2026-21964 | Red Hat | medium | 4.9 | 0.0%
| ✓ Fix | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Thread Pooling). Supp… | Jan 20, 2026 | Jan 20, 2026 |
| | CVE-2026-21949 | Red Hat | medium | 6.5 | 0.0%
| | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported… | Jan 20, 2026 | Jan 20, 2026 |
| | CVE-2026-23833 | Red Hat | low | 7.5 | 0.1%
| | ESPHome is a system to control microcontrollers remotely through Home Automation systems. In version… | Jan 19, 2026 | Jan 19, 2026 |
| | CVE-2026-23884 | Red Hat | high | 7.6 | 0.2%
| ✓ Fix | FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.21.0, offscreen … | Jan 19, 2026 | Jan 19, 2026 |
| | CVE-2026-23883 | Red Hat | high | 7.6 | 0.2%
| ✓ Fix | FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.21.0, `xf_Pointe… | Jan 19, 2026 | Jan 19, 2026 |
| | CVE-2026-23732 | Red Hat | medium | 6.5 | 0.1%
| | FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.21.0, FastGlyph … | Jan 19, 2026 | Jan 19, 2026 |
| | CVE-2026-23534 | Red Hat | high | 7.6 | 0.1%
| ✓ Fix | FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.21.0, a client-s… | Jan 19, 2026 | Jan 19, 2026 |
| | CVE-2026-23533 | Red Hat | high | 7.6 | 0.1%
| ✓ Fix | FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.21.0, a client-s… | Jan 19, 2026 | Jan 19, 2026 |
| | CVE-2026-23532 | Red Hat | high | 7.6 | 0.1%
| ✓ Fix | FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.21.0, a client-s… | Jan 19, 2026 | Jan 19, 2026 |
| | CVE-2026-23531 | Red Hat | high | 7.6 | 0.1%
| ✓ Fix | FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.21.0, in ClearCo… | Jan 19, 2026 | Jan 19, 2026 |
| | CVE-2026-23530 | Red Hat | high | 7.6 | 0.1%
| ✓ Fix | FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.21.0,`freerdp_bi… | Jan 19, 2026 | Jan 19, 2026 |
| | CVE-2025-68616 | Red Hat | high | 7.5 | 0.1%
| | WeasyPrint helps web developers to create PDF documents. Prior to version 68.0, a server-side reques… | Jan 19, 2026 | Jan 19, 2026 |
| | CVE-2026-0603 | Red Hat | high | 8.3 | 0.0%
| | A flaw was found in Hibernate. A remote attacker with low privileges could exploit a second-order SQ… | Jan 19, 2026 | Jan 19, 2026 |
| | CVE-2026-1190 | Red Hat | low | 3.1 | 0.0%
| ✓ Fix | A flaw was found in Keycloak's SAML brokering functionality. When Keycloak is configured as a client… | Jan 19, 2026 | Jan 19, 2026 |
| | CVE-2026-1200 | Red Hat | medium | 6.3 | 0.1%
| | A flaw was found in the rgaufman/live555 fork of live555. A remote attacker could exploit a segmenta… | Jan 19, 2026 | Jan 19, 2026 |
| | CVE-2026-1145 | Red Hat | high | 6.3 | 0.1%
| | A flaw has been found in quickjs-ng quickjs up to 0.11.0. Affected by this vulnerability is the func… | Jan 19, 2026 | Jan 19, 2026 |
| | CVE-2026-1144 | Red Hat | high | 6.3 | 0.1%
| | A vulnerability was detected in quickjs-ng quickjs up to 0.11.0. Affected is an unknown function of … | Jan 19, 2026 | Jan 19, 2026 |
| | CVE-2026-1180 | Red Hat | medium | 5.8 | 0.0%
| | A flaw was identified in Keycloak’s OpenID Connect Dynamic Client Registration feature when clients … | Jan 19, 2026 | Jan 19, 2026 |
| | CVE-2026-22797 | Red Hat | high | 9.9 | 0.1%
| ✓ Fix | An issue was discovered in OpenStack keystonemiddleware 10.5 through 10.7 before 10.7.2, 10.8 and 10… | Jan 19, 2026 | Jan 19, 2026 |