Open Source Vulnerabilities

    Dashboard / Open Source Vulnerabilities

    MINI-mwqp-pwvv-77hc
    Fix available
    Packages

    cilium-dnsproxy-1.20

    Summary

    Published
    6 Sept 2026
    MINI-85mv-5r7f-q46r
    Fix available
    Packages

    calico-node-driver-registrar-fips-3.31

    Summary

    Published
    6 Sept 2026
    MINI-8j42-j4jr-85x6
    Fix available
    Packages

    calico-node-driver-registrar-3.31

    Summary

    Published
    6 Sept 2026
    MINI-g7j3-mh7q-jrc5
    Fix available
    Packages

    calico-node-driver-registrar-fips-3.32

    Summary

    Published
    6 Sept 2026
    MINI-8pm6-7gwv-6392
    Fix available
    Packages

    bento

    Summary

    Published
    6 Sept 2026
    MINI-wxf4-7q4p-pq68
    Fix available
    Packages

    bento-fips

    Summary

    Published
    6 Sept 2026
    MINI-2jq8-g659-39j6
    Fix available
    Packages

    aws-mountpoint-s3-csi-driver

    Summary

    Published
    6 Sept 2026
    MINI-6m7m-vr5m-5cp2
    Fix available
    Packages

    aws-efs-csi-driver-fips

    Summary

    Published
    6 Sept 2026
    MINI-g5r8-8pgq-j54q
    Fix available
    Packages

    aws-efs-csi-driver-fips

    Summary

    Published
    6 Sept 2026
    MINI-v4j9-r9mf-7r5x
    Fix available
    Packages

    aws-efs-csi-driver

    Summary

    Published
    6 Sept 2026
    MINI-w7r9-hqcf-8q8p
    Fix available
    Packages

    aws-efs-csi-driver

    Summary

    Published
    6 Sept 2026
    MINI-835q-vrcq-mgh3
    Fix available
    Packages

    argo-events

    Summary

    Published
    6 Sept 2026
    MINI-gcm3-mg6c-xr42
    Fix available
    Packages

    argo-events-fips

    Summary

    Published
    6 Sept 2026
    MINI-3mvv-c2mc-wrmw
    Fix available
    Packages

    ansible-operator

    Summary

    Published
    6 Sept 2026
    MINI-5rm4-4vf5-m5m6
    Fix available
    Packages

    ansible-operator-fips

    Summary

    Published
    6 Sept 2026
    MINI-xv5q-pvf9-6jg5
    Fix available
    Packages

    amazon-k8s-cni-fips

    Summary

    Published
    6 Sept 2026
    CVE-2026-83534
    Fix available
    Packages

    Summary

    PostgreSQL Anonymizer: Privilege escalation to superuser via anon.anonymize_database_parallel()

    Published
    6 Sept 2026
    MINI-2fh3-9x8p-7695
    No fix available
    Packages

    mcp-obsidian

    Summary

    Published
    6 Sept 2026
    MINI-vhxq-7hch-cpm5
    No fix available
    Packages

    tensorrt-llm

    Summary

    Published
    6 Sept 2026
    CVE-2026-86283
    Fix available
    Packages

    Summary

    MISP UiBeta Collection View Bypasses Event ACL, Exposing Unauthorized Event Data

    Published
    6 Sept 2026
    MINI-p8m5-2hq4-w3rr
    No fix available
    Packages

    duckduckgo-mcp

    Summary

    Published
    6 Sept 2026
    MINI-4qp4-pw5h-m779
    Fix available
    Packages

    corretto-fips-config-8

    Summary

    Published
    6 Sept 2026
    MINI-6h92-xr2m-54mj
    Fix available
    Packages

    corretto-fips-config-26

    Summary

    Published
    6 Sept 2026
    MINI-wprx-67r4-pw8h
    Fix available
    Packages

    corretto-fips-config-25

    Summary

    Published
    6 Sept 2026
    MINI-2wfh-wp3r-q48r
    Fix available
    Packages

    corretto-fips-config-24

    Summary

    Published
    6 Sept 2026
    MINI-v3m2-qjc8-q6r6
    Fix available
    Packages

    corretto-fips-config-21

    Summary

    Published
    6 Sept 2026
    MINI-jx92-83m5-44h8
    Fix available
    Packages

    corretto-fips-config-17

    Summary

    Published
    6 Sept 2026
    MINI-xw6p-47q9-wwxg
    Fix available
    Packages

    corretto-fips-config-11

    Summary

    Published
    6 Sept 2026
    MINI-gx2f-48j4-33mx
    Fix available
    Packages

    corretto-fips-config-24

    Summary

    Published
    6 Sept 2026
    CVE-2026-86259
    Fix available
    Packages

    Summary

    OpenMAIC before 1.0.1 SSRF via Environment-Gated URL Validation

    Published
    6 Sept 2026
    CVE-2026-86258
    Fix available
    Packages

    Summary

    nbviewer through 1.0.1 Path Traversal via LocalFileHandler

    Published
    6 Sept 2026
    GHSA-fg72-q65g-wm5w
    No fix available
    Packages

    h3

    Summary

    Duplicate Advisory: H3: Unbounded Chunked Cookie Count in Session Cleanup Loop may Lead to Denial of Service

    Published
    6 Sept 2026
    CVE-2021-48007
    Fix available
    Packages

    Summary

    Published
    6 Sept 2026
    CVE-2021-48006
    Fix available
    Packages

    Summary

    Published
    6 Sept 2026
    CVE-2020-37277
    Fix available
    Packages

    Summary

    Published
    6 Sept 2026
    CVE-2026-86257
    Fix available
    Packages

    Summary

    wger before 2.6 CSV Formula Injection via member export

    Published
    6 Sept 2026
    CVE-2026-86256
    Fix available
    Packages

    Summary

    wger before 2.6 Open Redirect via trainer-login next parameter

    Published
    6 Sept 2026
    CVE-2026-86255
    Fix available
    Packages

    Summary

    wger before 2.5 Uncontrolled Resource Consumption via date_sequence

    Published
    6 Sept 2026
    CVE-2026-86253
    Fix available
    Packages

    Summary

    h3 before 1.15.6 Path Traversal via Percent-Encoded Dot Segments

    Published
    6 Sept 2026
    CVE-2026-86252
    Fix available
    Packages

    Summary

    h3 before 1.15.9 SSE Event Injection via Carriage Return

    Published
    6 Sept 2026
    CVE-2026-86251
    Fix available
    Packages

    Summary

    h3 before 1.15.9 Path Traversal via Double Decoding

    Published
    6 Sept 2026
    CVE-2026-86250
    Fix available
    Packages

    Summary

    h3 before 2.0.1-rc.18 Denial of Service via Unbounded Chunked Cookie

    Published
    6 Sept 2026
    CVE-2026-86205
    Fix available
    Packages

    Summary

    h3 before 2.0.1-rc.18 Open Redirect via redirectBack()

    Published
    6 Sept 2026
    CVE-2022-51009
    Fix available
    Packages

    Summary

    PocketMine-MP before 4.7.2 Denial of Service via Skin Geometry

    Published
    6 Sept 2026
    CVE-2022-51008
    Fix available
    Packages

    Summary

    PocketMine-MP before 4.12.3 Denial of Service via Unauthenticated Sessions

    Published
    6 Sept 2026
    CVE-2026-86242
    Fix available
    Packages

    Summary

    Unauthenticated RCE via Custom Plugin HTTP Path on Dynamically Linked Builds

    Published
    6 Sept 2026
    CVE-2026-86212
    Fix available
    Packages

    Summary

    Open5GS AMF/MME improper authorization

    Published
    6 Sept 2026
    CGA-v88x-7pmw-qg5p
    Fix available
    Packages

    parseable, parseable

    Summary

    Published
    6 Sept 2026
    RHSA-2026:62537
    Fix available
    Packages

    tempo3.0

    Summary

    Red Hat Security Advisory: Red Hat Hardened Images RPMs Security Update

    Published
    6 Sept 2026
    RHSA-2026:60854
    Fix available
    Packages

    opentelemetry-collector-contrib

    Summary

    Red Hat Security Advisory: Red Hat Hardened Images RPMs Security Update

    Published
    6 Sept 2026