| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2025-0577 | Glibc: vdso getrandom acceleration may return predictable randomness | - | - | Medium | 4.8 | 2026-02-18 20:25:35 | Deep Dive |
| CVE-2026-2443 | Libsoup: out-of-bounds read in libsoup handle_partial_get() leading to heap information disclosure | Red Hat | Red Hat Enterprise Linux 10 | Medium | 5.3 | 2026-02-13 11:58:20 | Deep Dive |
| CVE-2026-26158 | Busybox: busybox: arbitrary file modification and privilege escalation via unvalidated tar archive entries | Red Hat | Red Hat Enterprise Linux 6 | High | 7.0 | 2026-02-11 20:27:07 | Deep Dive |
| CVE-2026-26157 | Busybox: busybox: arbitrary file overwrite and potential code execution via incomplete path sanitization | Red Hat | Red Hat Enterprise Linux 6 | High | 7.0 | 2026-02-11 20:27:06 | Deep Dive |
| CVE-2025-11537 | Keycloak-server: sensitive headers shown in the http access logs | Red Hat | Red Hat Build of Keycloak | Medium | 5.0 | 2026-02-10 10:53:28 | Deep Dive |
| CVE-2025-14778 | Keycloak: incorrect ownership checks in /uma-policy/ | Red Hat | Red Hat build of Keycloak 26.2 | Medium | 5.4 | 2026-02-09 18:58:29 | Deep Dive |
| CVE-2026-1529 | Org.keycloak.services.resources.organizations: keycloak: unauthorized organization registration via improper invitation token validation | Red Hat | Red Hat build of Keycloak 26.2 | High | 8.1 | 2026-02-09 18:36:15 | Deep Dive |
| CVE-2026-1486 | Org.keycloak.protocol.oidc.grants: disabled identity providers are still accepted for jwt authorization grant | Red Hat | Red Hat build of Keycloak 26.4 | High | 8.8 | 2026-02-09 18:36:10 | Deep Dive |
| CVE-2025-14831 | Gnutls: gnutls: denial of service via excessive resource consumption during certificate verification | Red Hat | Red Hat Enterprise Linux 10 | Medium | 5.3 | 2026-02-09 14:51:32 | Deep Dive |
| CVE-2026-1709 | Keylime: keylime: authentication bypass allows unauthorized administrative operations due to missing client-side tls authentication | Red Hat | Red Hat Enterprise Linux 10 | Critical | 9.4 | 2026-02-06 19:13:28 | Deep Dive |
| CVE-2026-0598 | Ansible-lightspeed: broken object level authorization leading to cross-user ai conversation context injection in ansible lightspeed api | Red Hat | Red Hat Ansible Automation Platform 2 | Medium | 4.2 | 2026-02-06 05:47:57 | Deep Dive |
| CVE-2023-38281 | Multiple Vulnerabilities in IBM Cloud Pak System | IBM | Cloud Pak System | Medium | 5.3 | 2026-02-04 20:45:06 | Deep Dive |
| CVE-2023-38017 | Multiple Vulnerabilities in IBM Cloud Pak System | IBM | Cloud Pak System | Medium | 5.3 | 2026-02-04 20:44:04 | Deep Dive |
| CVE-2023-38010 | Multiple Vulnerabilities in IBM Cloud Pak System | IBM | Cloud Pak System | Medium | 5.3 | 2026-02-04 20:24:56 | Deep Dive |
| CVE-2026-1801 | Libsoup: libsoup: http request smuggling via malformed chunk headers | Red Hat | Red Hat Enterprise Linux 10 | Medium | 5.3 | 2026-02-03 20:12:21 | Deep Dive |
| CVE-2026-1760 | Libsoup: soupserver: denial of service via http request smuggling | Red Hat | Red Hat Enterprise Linux 10 | Medium | 5.3 | 2026-02-02 14:01:27 | Deep Dive |
| CVE-2026-1761 | Libsoup: stack-based buffer overflow in libsoup multipart response parsingmultipart http response | Red Hat | Red Hat Enterprise Linux 10 | High | 8.6 | 2026-02-02 14:01:04 | Deep Dive |
| CVE-2026-1757 | Libxml2: memory leak leading to local denial of service in xmllint interactive shell | Red Hat | Red Hat Hardened Images | Medium | 6.2 | 2026-02-02 12:38:15 | Deep Dive |
| CVE-2026-1518 | Keycloak: blind server-side request forgery (ssrf) via ciba backchannel notification endpoint in keycloak | Red Hat | Red Hat Build of Keycloak | Low | 2.7 | 2026-02-02 07:17:47 | Deep Dive |
| CVE-2026-1530 | Fog-kubevirt: fog-kubevirt: man-in-the-middle vulnerability due to disabled certificate validation | Red Hat | Red Hat Satellite 6.16 for RHEL 8 | High | 8.1 | 2026-02-02 05:47:10 | Deep Dive |