Open Source Vulnerabilities
Apache Ant: Path traversal in ftp and scp tasks allows arbitrary file write
Apache Ant: Path traversal in ftp and scp tasks allows arbitrary file write
webkit2gtk3-soup2, webkit2gtk4, webkit2gtk3, webkit2gtk4
Security update for webkit2gtk3
webkit2gtk3-soup2/ webkit2gtk4/ webkit2gtk3/ webkit2gtk4
Security update for webkit2gtk3
go.etcd.io/etcd/client/pkg/v3, rootio-go.etcd.io/etcd/client/pkg/v3
CVE-2026-73500 in go.etcd.io/etcd/client/pkg/v3 - Patched by Root
go.etcd.io/etcd/client/pkg/v3/ rootio-go.etcd.io/etcd/client/pkg/v3
CVE-2026-73500 in go.etcd.io/etcd/client/pkg/v3 - Patched by Root
microcode_ctl
Security update for microcode_ctl
postgresql15, postgresql15, postgresql15, postgresql15, postgresql15, postgresql15, postgresql15, postgresql15
Security update for postgresql15
postgresql15/ postgresql15/ postgresql15/ postgresql15/ postgresql15/ postgresql15/ postgresql15/ postgresql15
Security update for postgresql15
postgresql15, postgresql15, postgresql15
Security update for postgresql15
postgresql15/ postgresql15/ postgresql15
Security update for postgresql15
postgresql17, postgresql17, postgresql17, postgresql17, postgresql17
Security update for postgresql17
postgresql17/ postgresql17/ postgresql17/ postgresql17/ postgresql17
Security update for postgresql17
com.jayway.jsonpath:json-path, com.jayway.jsonpath:json-path-assert
TuxCare security update for com.jayway.jsonpath (1 CVE)
com.jayway.jsonpath:json-path/ com.jayway.jsonpath:json-path-assert
TuxCare security update for com.jayway.jsonpath (1 CVE)
postgresql18, postgresql18, postgresql18, postgresql18, postgresql18, postgresql18, postgresql18, postgresql18
Security update for postgresql18
postgresql18/ postgresql18/ postgresql18/ postgresql18/ postgresql18/ postgresql18/ postgresql18/ postgresql18
Security update for postgresql18
com.jayway.jsonpath:json-path, com.jayway.jsonpath:json-path-assert
TuxCare security update for com.jayway.jsonpath (3 CVEs)
com.jayway.jsonpath:json-path/ com.jayway.jsonpath:json-path-assert
TuxCare security update for com.jayway.jsonpath (3 CVEs)
postgresql18, postgresql18, postgresql18, postgresql18, postgresql18
Security update for postgresql18
postgresql18/ postgresql18/ postgresql18/ postgresql18/ postgresql18
Security update for postgresql18
postgresql17, postgresql17, postgresql17, postgresql17, postgresql17, postgresql17, postgresql17, postgresql17
Security update for postgresql17
postgresql17/ postgresql17/ postgresql17/ postgresql17/ postgresql17/ postgresql17/ postgresql17/ postgresql17
Security update for postgresql17
cpio, cpio, cpio, cpio
Security update for cpio
libvirt, libvirt
Security update for libvirt
libvirt, libvirt, libvirt, libvirt, libvirt
Security update for libvirt
libvirt/ libvirt/ libvirt/ libvirt/ libvirt
Security update for libvirt
file-roller
Security update for file-roller
java-21-openjdk, java-21-openjdk, java-21-openjdk
Security update for java-21-openjdk
java-21-openjdk/ java-21-openjdk/ java-21-openjdk
Security update for java-21-openjdk
openexr, openexr
Security update for openexr
libvirt, libvirt, libvirt, libvirt, libvirt, libvirt
Security update for libvirt
libvirt/ libvirt/ libvirt/ libvirt/ libvirt/ libvirt
Security update for libvirt
openexr, openexr, openexr, openexr, openexr, openexr, openexr, openexr, openexr, openexr, openexr
Security update for openexr
openexr/ openexr/ openexr/ openexr/ openexr/ openexr/ openexr/ openexr/ openexr/ openexr/ openexr
Security update for openexr
java-17-openjdk, java-17-openjdk, java-17-openjdk, java-17-openjdk, java-17-openjdk, java-17-openjdk, java-17-openjdk, java-17-openjdk, java-17-openjdk, java-17-openjdk, java-17-openjdk
Security update for java-17-openjdk
java-17-openjdk/ java-17-openjdk/ java-17-openjdk/ java-17-openjdk/ java-17-openjdk/ java-17-openjdk/ java-17-openjdk/ java-17-openjdk/ java-17-openjdk/ java-17-openjdk/ java-17-openjdk
Security update for java-17-openjdk
webkit2gtk3, webkit2gtk3-soup2, webkit2gtk4, webkit2gtk3, webkit2gtk3-soup2, webkit2gtk4, webkit2gtk3, webkit2gtk3-soup2, webkit2gtk4, webkit2gtk3, webkit2gtk3-soup2, webkit2gtk4, webkit2gtk3, webkit2gtk3-soup2, webkit2gtk4, webkit2gtk3, webkit2gtk3-soup2, webkit2gtk4, webkit2gtk3, webkit2gtk3-soup2, webkit2gtk4, webkit2gtk3, webkit2gtk3-soup2, webkit2gtk4
Security update for webkit2gtk3
webkit2gtk3/ webkit2gtk3-soup2/ webkit2gtk4/ webkit2gtk3/ webkit2gtk3-soup2/ webkit2gtk4/ webkit2gtk3/ webkit2gtk3-soup2/ webkit2gtk4/ webkit2gtk3/ webkit2gtk3-soup2/ webkit2gtk4/ webkit2gtk3/ webkit2gtk3-soup2/ webkit2gtk4/ webkit2gtk3/ webkit2gtk3-soup2/ webkit2gtk4/ webkit2gtk3/ webkit2gtk3-soup2/ webkit2gtk4/ webkit2gtk3/ webkit2gtk3-soup2/ webkit2gtk4
Security update for webkit2gtk3
java-25-openjdk
Security update for java-25-openjdk
java-1_8_0-openjdk, java-1_8_0-openjdk, java-1_8_0-openjdk, java-1_8_0-openjdk, java-1_8_0-openjdk, java-1_8_0-openjdk, java-1_8_0-openjdk, java-1_8_0-openjdk, java-1_8_0-openjdk
Security update for java-1_8_0-openjdk
java-1_8_0-openjdk/ java-1_8_0-openjdk/ java-1_8_0-openjdk/ java-1_8_0-openjdk/ java-1_8_0-openjdk/ java-1_8_0-openjdk/ java-1_8_0-openjdk/ java-1_8_0-openjdk/ java-1_8_0-openjdk
Security update for java-1_8_0-openjdk
dracut, dracut, dracut
Security update for dracut
wireshark, wireshark
Security update for wireshark
wireshark, wireshark
Security update for wireshark
emacs, emacs
Security update for emacs
aws-nitro-enclaves-cli, aws-nitro-enclaves-cli
Security update for aws-nitro-enclaves-cli
aws-nitro-enclaves-cli/ aws-nitro-enclaves-cli
Security update for aws-nitro-enclaves-cli
redis7, redis7
Security update for redis7
redis, redis
Security update for redis
go.etcd.io/etcd/server/v3, rootio-go.etcd.io/etcd/server/v3
CVE-2026-73499 in go.etcd.io/etcd/server/v3 - Patched by Root
go.etcd.io/etcd/server/v3/ rootio-go.etcd.io/etcd/server/v3
CVE-2026-73499 in go.etcd.io/etcd/server/v3 - Patched by Root
org.apache.httpcomponents.core5:httpcore5, org.apache.httpcomponents.core5:httpcore5-h2, org.apache.httpcomponents.core5:httpcore5-parent, org.apache.httpcomponents.core5:httpcore5-reactive, org.apache.httpcomponents.core5:httpcore5-testing
TuxCare security update for org.apache.httpcomponents.core5 (2 CVEs)
org.apache.httpcomponents.core5:httpcore5/ org.apache.httpcomponents.core5:httpcore5-h2/ org.apache.httpcomponents.core5:httpcore5-parent/ org.apache.httpcomponents.core5:httpcore5-reactive/ org.apache.httpcomponents.core5:httpcore5-testing
TuxCare security update for org.apache.httpcomponents.core5 (2 CVEs)
org.bouncycastle:bcjmail-jdk15to18, org.bouncycastle:bcjmail-jdk18on, org.bouncycastle:bcmail-jdk15to18, org.bouncycastle:bcmail-jdk18on, org.bouncycastle:bcpg-jdk15to18, org.bouncycastle:bcpg-jdk18on, org.bouncycastle:bcpkix-jdk15to18, org.bouncycastle:bcpkix-jdk18on, org.bouncycastle:bcprov-ext-jdk15to18, org.bouncycastle:bcprov-ext-jdk18on, org.bouncycastle:bcprov-jdk15to18, org.bouncycastle:bcprov-jdk18on, org.bouncycastle:bctls-jdk15to18, org.bouncycastle:bctls-jdk18on, org.bouncycastle:bcutil-jdk15to18, org.bouncycastle:bcutil-jdk18on
TuxCare security update for org.bouncycastle (4 CVEs)
org.bouncycastle:bcjmail-jdk15to18/ org.bouncycastle:bcjmail-jdk18on/ org.bouncycastle:bcmail-jdk15to18/ org.bouncycastle:bcmail-jdk18on/ org.bouncycastle:bcpg-jdk15to18/ org.bouncycastle:bcpg-jdk18on/ org.bouncycastle:bcpkix-jdk15to18/ org.bouncycastle:bcpkix-jdk18on/ org.bouncycastle:bcprov-ext-jdk15to18/ org.bouncycastle:bcprov-ext-jdk18on/ org.bouncycastle:bcprov-jdk15to18/ org.bouncycastle:bcprov-jdk18on/ org.bouncycastle:bctls-jdk15to18/ org.bouncycastle:bctls-jdk18on/ org.bouncycastle:bcutil-jdk15to18/ org.bouncycastle:bcutil-jdk18on
TuxCare security update for org.bouncycastle (4 CVEs)
kibana
Incorrect Authorization in Kibana Leading to Unauthorized Disabling of Privilege Monitoring
kibana
Incorrect Authorization in Kibana Leading to Unauthorized Disabling of Privilege Monitoring
elk
Incorrect Authorization in Kibana Leading to Unauthorized Disabling of Privilege Monitoring
elk
Incorrect Authorization in Kibana Leading to Unauthorized Disabling of Privilege Monitoring
elasticsearch
Allocation of Resources Without Limits or Throttling in Elasticsearch Leading to Denial of Service
elasticsearch
Allocation of Resources Without Limits or Throttling in Elasticsearch Leading to Denial of Service
composer
Composer: Perforce source URL permits P4PORT `rsh:` command execution
composer
Composer: Perforce source URL permits P4PORT `rsh:` command execution
projeto-siga Authentication Flow ExAutenticacaoController.java ExAutenticacaoController.autenticar authorization
projeto-siga Authentication Flow ExAutenticacaoController.java ExAutenticacaoController.autenticar authorization
org.apache.commons:commons-configuration2
TuxCare security update for org.apache.commons:commons-configuration2 (1 CVE)
org.apache.commons:commons-configuration2
TuxCare security update for org.apache.commons:commons-configuration2 (1 CVE)
org.apache.commons:commons-lang3
TuxCare security update for org.apache.commons:commons-lang3 (1 CVE)
org.apache.commons:commons-lang3
TuxCare security update for org.apache.commons:commons-lang3 (1 CVE)
commons-beanutils:commons-beanutils
TuxCare security update for commons-beanutils:commons-beanutils (1 CVE)
commons-beanutils:commons-beanutils
TuxCare security update for commons-beanutils:commons-beanutils (1 CVE)
